SMProxy - Secure Connection
Utilidades
Gratis
SMProxy is a client for connecting with your own configuration.
One app across all your Apple devices: iPhone, iPad, Mac and Apple TV. Your settings and server lists carry over, and the interface is the same everywhere.
The app provides no VPN servers, contains no built-in connection and sells nothing. To get started, add a configuration you already have: paste a link, scan a QR code or enter the details by hand.
Modern protocols are supported: VLESS, Reality, WireGuard, AmneziaWG, VMess, Trojan, Shadowsocks and Socks.
Smart routing
Not all traffic needs the tunnel. You can set exclusions by domain, IP and subnet (CIDR) — so your banking app or local network goes direct, for example. Routing rules from your configuration apply automatically, and the bundled geoip and geosite databases let them take effect instantly.
DNS protection
DNS queries are kept inside the tunnel so they cannot leak around it. You can also enable DNS-over-HTTPS and point it at any resolver you like.
Server lists under control
Automatic server-list refresh with an interval you choose, refresh on app launch, and a button to refresh everything at once. Server groups can be collapsed when the list gets long.
Features
• Import a configuration by link, QR code or manually
• Pick a server manually or automatically, with latency testing
• Exclusions by domain, IP and subnet
• DNS leak protection and DNS-over-HTTPS
• TLS fragmentation for difficult networks
• Local SOCKS and HTTP proxy for other apps
• Light and dark themes
• Daily traffic statistics
• Auto-connect on launch
• Runs on iPhone, iPad, Mac and Apple TV
Privacy
The app keeps no logs of your activity and shares no data with third parties. Your configuration stays on your device only.
Website: https://smproxy.com
Más A subscription or server you are currently connected to can no longer be deleted — disconnect first (the app tells you so).
2.0.18 hace 2 días
- Renaming a single server now renames the server itself, and the name you set survives refreshes of a .conf/link subscription (the list used to show the name from the link again).
- DNS over HTTPS: the default resolver is now doh.ffmuc.net (Freifunk München, unfiltered), with AdGuard unfiltered as the first backup; the fallback list is ffmuc → AdGuard unfiltered → doh.li → flatuslifir. doh.42l.fr (the default in the previous build) turned out unreliable and is gone; a saved setting pointing at it switches to the new default automatically.
- Ping always goes through the server now. The measuring core used the provider's routing rules, and a rule like "geoip:ru → direct" could send the test URL straight to an ISP-local Google cache — showing 1–2 ms that had nothing to do with the server. The ping's own traffic is now pinned to the proxy outbound.
- Subscription panel: a clear "Show servers (N)" / "Collapse servers" bar at the bottom of the header, in addition to the small chevron.
- Connection check: each step now gives up after 7 seconds (was 8), and the timeout is adjustable in Settings → Advanced.
- Links with the vpn:// scheme are accepted as WireGuard/AmneziaWG links (same base64 .conf payload as wireguard:// / awg:// / wg://) — pasted, from the clipboard, from QR codes and from the browser; the app registers itself as a handler for vpn:// links.
- Subscription panel: double-tap (double-click) on an empty spot of the header collapses or expands its server list.
- Hysteria 2 servers: hysteria2:// and hy2:// links are now accepted and run (auth, SNI, insecure, Salamander obfuscation).
- Connection check: a tap on your address copies the IP to the clipboard.
- Hysteria 2: certificate pinning from the link (pinSHA256), ECH and uTLS fingerprint are honoured — self-signed servers now connect; insecure=1 alone is not supported by the core.
- Server list: single-word protocol labels (WireGuard, AmneziaWG) are shown in the accent colour like other protocols.
- Links with allowInsecure=1 (VLESS/Trojan) start again: the flag is no longer written to the core config, which rejected it.
- Subscription URLs that carry no provider title (no profile-title header) are listed under "My servers" instead of a made-up "SMProxy" subscription.
- Header "Connected to …" shows the server's own name for "My servers" (a name you set yourself wins).
- Switching servers: a tap made while a connection is still being established is no longer lost — once the tunnel is up the app re-switches to the last server you picked.
- TUIC v5 servers: tuic:// links (uuid:password, sni, alpn, congestion_control, udp_relay_mode, pinSHA256) are accepted and run — TCP and UDP with fragmentation. Engine rebuilt.
- Links tuic://, hysteria2:// and hy2:// open straight from Safari and messengers.
- Exclusions: an invalid entry no longer stops the tunnel from starting — bad entries are skipped and named in the log; the input is checked before adding.
- "My servers" collapse/expand on a double tap of their header too.
- A subscription whose panel ever sent a name stays a subscription.
2.0.17 hace 4 días
- Renaming a single server now renames the server itself, and the name you set survives refreshes of a .conf/link subscription (the list used to show the name from the link again).
- DNS over HTTPS: the default resolver is now doh.ffmuc.net (Freifunk München, unfiltered), with AdGuard unfiltered as the first backup; the fallback list is ffmuc → AdGuard unfiltered → doh.li → flatuslifir. doh.42l.fr (the default in the previous build) turned out unreliable and is gone; a saved setting pointing at it switches to the new default automatically.
- Ping always goes through the server now. The measuring core used the provider's routing rules, and a rule like "geoip:ru → direct" could send the test URL straight to an ISP-local Google cache — showing 1–2 ms that had nothing to do with the server. The ping's own traffic is now pinned to the proxy outbound.
- Subscription panel: a clear "Show servers (N)" / "Collapse servers" bar at the bottom of the header, in addition to the small chevron.
- Connection check: each step now gives up after 7 seconds (was 8), and the timeout is adjustable in Settings → Advanced.
2.0.16 hace 5 días
• WireGuard servers now show what they really are: plain WireGuard or AmneziaWG with its version (1.0 / 1.5 / 2.0 / 3.0 / 3.1).
• Ping only what you tap: the subscription you pressed, or a single server from its "…" menu — no more pinging every server of every subscription.
• Single servers: the name you type when adding a link is kept; a link that returns a plain WireGuard/AmneziaWG .conf is imported too, listed under "My servers" and shown as is in "View config".
• Two subscriptions from different providers no longer re-send each other's notifications; the inbox shows messages from both.
• New on the empty screen: "Ask the assistant" — the built-in help that answers even when you're offline.
2.0.15 hace 6 días
AmneziaWG 3.1 fix/design changes
2.0.14 23 sep
- Fixed an issue where the "Add subscription" screen could open with an old error message after a locally imported WireGuard/AmneziaWG config. Local configs are no longer treated as subscription links.
2.0.11 17 sep
SMProxy 2.0.10 (315) — iOS / macOS / tvOS
- AmneziaWG 3.1: H1–H4 given as ranges ("a-b") are now imported and applied; previously such profiles silently lost these values and could not complete the handshake.
- WireGuard/AmneziaWG .conf import now passes PersistentKeepalive (number or range) to the engine.
2.0.10 11 sep
- In-app website links now point to smproxy.io (previously the old domain).
- The routing profile builder's example geo database URLs now point to the public geo-latest release on GitHub.
- Connection screen title reads "Connecting to SMProxy" instead of the old brand name.
2.0.9 4 sep
• Routing profiles: multiple DNS resolvers per role (order = priority), automatic fallback to the next one and to the configuration's own DNS if profile resolvers are unreachable
• Bootstrap addresses for DoH — resolvers work even when the DNS server's own name cannot be resolved
• Provider messages now arrive with a notification and an unread mark — a badge on the app icon and in the Dock, plus a dot on the macOS menu bar icon
• Detailed DNS journal: each resolver's source and the final query order
• Log privacy: your server addresses are masked, so logs can be safely shared with support
2.0.8 3 sep
• Routing profiles: multiple DNS resolvers per role (order = priority), automatic fallback to the next one and to the configuration's own DNS if profile resolvers are unreachable
• Bootstrap addresses for DoH — resolvers work even when the DNS server's own name cannot be resolved
• Provider messages now arrive with a notification and an unread mark — a badge on the app icon and in the Dock, plus a dot on the macOS menu bar icon
• Detailed DNS journal: each resolver's source and the final query order
• Log privacy: your server addresses are masked, so logs can be safely shared with support
2.0.6 2 sep
• Routing profiles: multiple DNS resolvers per role (order = priority), automatic fallback to the next one
• Profile resolvers are now complemented by the configuration's own DNS — name resolution keeps working if the first ones are unreachable
• Bootstrap addresses for DoH resolvers — they work even when the DNS server's own name cannot be resolved
• Detailed DNS journal: each resolver's source and the final query order
• Log privacy: your server addresses are masked, so logs can be safely shared with support
2.0.5 2 sep
• Warning banner when a WireGuard/AmneziaWG server does not answer the handshake
• Traffic accounting for WireGuard connections
• Provider announcements and banners, support and account links
• Routing profiles: link commands, auto-update with version-rollback protection
• Compatibility with other clients' bypass keys (TLS fragmentation, noise packets)
• Subscriptions refresh strictly on the provider's interval — less background activity
• Fixed subscription storage and minor UI issues
2.0.4 1 sep
Better censorship circumvention
• The VPN server address is now resolved over encrypted DNS before connecting, so the app finds your server even where the network tampers with replies.
• Your provider can supply several resolvers at once — if the first one is unreachable, the app quietly tries the next.
• Routing profiles sent by your provider as a link never applied before. Now they do.
• TLS fragmentation and noise packets now apply correctly to WireGuard servers.
Help and diagnostics
• Built-in help: answers to common questions right in the app, works offline.
• Routing profile viewer — see which rules apply, where geo files come from and which DNS is used. Geo files update with one tap.
• The log now shows which settings your provider sent and why a connection failed.
• Sharing the log takes one tap and no longer stalls on large files.
Also: AmneziaWG support, faster connection, and fixes for rare crashes on dropped connections.
2.0.3 31 ago
AmneziaWG support — WireGuard with obfuscation that hides your traffic from blocking. Add servers by link, QR code or config file
• Routing profiles: a single profile sets the whole rule set — what goes direct, what goes through the tunnel, what gets blocked. A profile can be assigned to an individual subscription
• All DNS settings in one place: leak protection, DNS-over-HTTPS and server address lookup
• Noise packets and TLS fragmentation — ways around signature-based blocking
• Custom server order in the list, set by your subscription provider
• Routing profiles can be deleted, and the list opens right away when a profile is active
• A clear message when a profile is missing the data it needs, with the option to connect without routing
• Exclusions now always take priority over profile rules: an address you add by hand goes exactly where you sent it
• "View config" now shows settings in readable form
• Import a routing profile by link or QR code
• A dedicated tab with the connection log — helps when something doesn't work
• More reliable WireGuard connections: fixed failures on disconnect
• Updated connection core
2.0.1 28 ago
• Complete English localization — including the routing exceptions screen, connection buffer setting and notifications
• Updated built-in geo databases for routing
• More reliable connection recovery after interruptions
• Minor UI fixes
1.2.2 24 ago
Major stability update.
• VPN connection is now far more reliable: fixed causes of drops during long sessions and heavy traffic
• Auto-recovery: if the system interrupts the VPN tunnel, it reconnects automatically within seconds — no need to open the app
• Update notifications: the app lets you know when a new version is available on the App Store
• Switching between Wi-Fi and cellular no longer reconnects the tunnel — connections recover on the fly
• New "Connection buffer" setting for fine-tuning speed and stability
• Updated core with memory optimizations
• Selected servers for Wi-Fi and cellular are preserved across subscription updates
• Improved logs and connection diagnostics
1.2.1 17 ago
A subscription or server you are currently connected to can no longer be deleted — disconnect first (the app tells you so).
Más Versión 2.0.18 hace 2 días
Datos no asociados con tu identidad Los siguientes datos pueden recopilarse, pero no están asociados con tu identidad: