Chute - Network Proxy

System-wide proxy for tvOS

Only for Apple TV

Free · In‑App Purchases

Apple TV

Scan the QR code on your TV and the web console opens already signed in — upload configurations, watch live connections, and pull a diagnostic bundle from any browser. Chute TV puts the full Chute network engine on your Apple TV. Turn it on and every app on the device — streaming, games, the App Store itself — goes through the rules you wrote. It is the same engine that runs Chute on iPhone and Mac, rebuilt around the remote: focus-based navigation, an on-screen dashboard, and a web panel so you never have to type a server address with the on-screen keyboard. MANAGE IT FROM A BROWSER Chute TV runs a built-in web server. From any Mac, PC, or phone on the same network, open the panel to upload, switch, rename, and delete configurations — the TV picks up the change instantly. The TV shows its address as a QR code that carries the sign-in token, so there is no remote-control typing, ever. The same console holds the debugging side: live and past connections with the rule and policy behind each one, which rewrites fired, live probes, and HAR or diagnostic-bundle downloads. WHOLE-DEVICE PROXY • Chute VIF routes all tvOS traffic at the system level — no per-app setup • Runs around the clock, so an always-on Apple TV becomes a proxy gateway for your LAN • Local HTTP and SOCKS5 servers for the other devices on your network • Hot configuration reload — changes apply without dropping connections 17 PROXY PROTOCOLS HTTP, HTTPS, SOCKS5, SOCKS5 over TLS, Shadowsocks (AEAD, AEGIS, and 2022), ShadowsocksR, VMess, VLESS, Trojan, TUIC v5, Hysteria2, WireGuard, AmneziaWG, AnyTLS, ShadowTLS, MASQUE, and SSH tunneling — plus a built-in Tailscale client. Transport and TLS: XTLS Vision, REALITY, XHTTP, uTLS fingerprinting, ECH, and X25519MLKEM768 post-quantum key exchange. 30 RULE TYPES • DOMAIN, DOMAIN-SUFFIX, DOMAIN-KEYWORD, DOMAIN-WILDCARD, DOMAIN-REGEX • IP-CIDR, IP-CIDR6, GEOIP, IP-ASN, SUBNET • SRC-IP, SRC-PORT, DEST-PORT, IN-PORT, IN-TYPE, IN-USER, IN-NAME • PROCESS-NAME, PROCESS-PATH, USER-AGENT, URL-REGEX, PROTOCOL, HOSTNAME-TYPE • AND / OR / NOT for composite conditions • RULE-SET and DOMAIN-SET with remote subscriptions and auto-update • SCRIPT for the cases a rule alone cannot express POLICY GROUPS URL-Test for the lowest-latency node, Fallback for automatic failover, Load Balance, SSID, and manual Select — switch the active outbound from the couch without restarting the tunnel. MODERN DNS • DoH, DoH3, DoQ, DoT, and plain DNS — a different resolver per domain if you want • FakeDNS for fast, leak-free routing decisions • EDNS Client Subnet, negative caching, custom hosts, and full query logs ON-SCREEN DASHBOARD • Live connections, DNS queries, and per-session detail on the TV itself • Real-time throughput and traffic accounting • No second device needed to see what your Apple TV is talking to FULL EDITOR ON tvOS Policies, policy groups, rules, rule and proxy providers, DNS, HTTPS decryption, URL and header and body rewrites, mock responses, JavaScript scripts, modules, and Tailscale — all editable with the remote, all reloadable without restarting the tunnel. FREE AND PAID The proxy engine, the rule engine, the DNS stack, and the dashboard are free to use with one configuration. A single one-time purchase — no subscription — adds multiple switchable configurations, control of the local HTTP/SOCKS5 proxy server, and traffic recording for Chute Dashboard. One purchase covers up to 3 Apple TV devices and 3 iPhone or iPad devices, and buying in either Chute app unlocks both. Chute does not operate proxy servers and does not provide network access on its own — you bring your own server or a service you already use. Traffic and logs stay on your device. Chute collects no browsing data and sells nothing to anyone.

  • This app hasn’t received enough ratings or reviews to display an overview.

Chute TV 1.4 is about getting the console onto a device that has a keyboard — and getting a diagnostic off a television. WEB CONSOLE • The Control Panel shows a Web UI Address row and turns it into a QR code: scan it and you are signed in, with no address or token typed on the remote • The console gained Current and History connection views, an inspect view, a Rules page that shows which rewrites actually fired, and a Diagnostics page with live probes — complete in nine languages • Runtime Diagnostic Bundle and HAR export download from the console, generated by the engine with real status codes and timings plus the policy and rule behind every request DIAGNOSTICS ON THE TV • Offline Diagnostic Bundle in Settings works even when the tunnel will not start — redacted, and handed over as a QR code from a one-shot local server that closes with the screen • Filter the session log by severity instead of typing a search with the remote • Session detail names the rewrite or mock rule that changed a request • The engine records whether the previous run ended cleanly or was killed ENGINE • Rule matching on large RULE-SET / DOMAIN-SET lists is far faster (a 50k-line list drops from about 94 ms to under 2 ms per lookup) and uses less memory; UDP flows are matched once • Smarter recovery after a network change: dead tunnels are closed instead of hanging apps, and black-holed paths are reported • The HTTP API now generates an access token when the configuration sets none, instead of serving open • New API endpoints for rule dry-runs, live log-level changes, and configuration validation APP • French is now a built-in language • Allow WiFi Access is editable in the configuration editor • HTTP API, Web UI, Protocol Sniffing, Optimus DNS and Purge DNS Cache no longer need the paid unlock — only Multiple Configurations, Local Proxy Server Control and Traffic Recorder do FIXES • HTTPS decryption, rewrites and mock responses now work for app traffic in Chute VIF mode — previously they only worked through the local HTTP/SOCKS5 proxy • allow-wifi-access now actually exposes the local proxy to your Wi-Fi • Fixed the Control Panel crashing when a switch was toggled, and the session log showing only part of a run once the engine began rotating it • no-resolve IP rules, RULE-SET lines with trailing options, and HOSTNAME-TYPE now match as documented • Starting the tunnel no longer posts a false "policy group switched" notification • Fixed an occasional XHTTP crash, the license screen's certificate label, and the About page's App Store links

The developer, S. Smart Rabbit LLC, indicated that the app’s privacy practices may include handling of data as described below. For more information, see the developer’s privacy policy .

  • Data Not Linked to You

    The following data may be collected but it is not linked to your identity:

    • Diagnostics

Privacy practices may vary, for example, based on the features you use or your age. Learn More

The developer has not yet indicated which accessibility features this app supports. Learn More

Seller
  • S. Smart Rabbit LLC
Size
  • 37.2 MB
Category
  • Utilities
Compatibility
Requires tvOS 17.0 or later.
  • Apple TV
    Requires tvOS 17.0 or later.
Languages
  • English
Age Rating
4+
In-App Purchases
Yes
Copyright
  • © 2019-2026 S. Smart Rabbit LLC