InHive — Cross-platform VPN Client InHive

InHive

A cross-platform VPN client. Bring your own subscription and connect through modern, privacy-focused protocols. Pick a different server for any site or app — no limit on how many.

Why InHive

  • Route any site or app to its own server. Pick a rule — by domain, app, country, or IP — and send it through a specific server from any subscription. No cap on how many at once.
  • 19 proxy protocols — VLESS Reality, Hysteria2, NaiveProxy, TUIC, Trojan, ShadowTLS, AnyTLS, Shadowsocks, WireGuard, AmneziaWG, Mieru, DNSTT, SSH, SOCKS, OLCRTC, UTProto (our own), and more. HTTP proxies work inside a config file.
  • Encrypted subscription links — open PIN-protected inhive://sub links from your provider. The raw URL never shows up in chat history.
  • Backup subscription endpoints — your provider can publish backup URLs. If the main one is blocked, the app switches automatically.
  • Secure environment (Android) — built-in setup for an Android work profile: move apps that don't like VPNs into a separate space. Settings → Protection.
  • Traffic obfuscation — make your connection harder to spot: browser-like fingerprint, split first packet, QUIC off. Turn on what your network needs in Settings → Traffic obfuscation.
  • Privacy by design — no accounts, no telemetry, no tracking. Your subscription URL stays on your device.

Key features

Any rule, its own server

Pick a rule — by domain, app, country, or IP — and send it through a specific server from any subscription. No cap on how many at once.

One-tap Connect

A server is picked for you — one that already worked on this network goes first. On phones everything goes through the tunnel; on computers, apps that use the system proxy.

Bring your own subscription

Paste any link — InHive understands common subscription formats and links for 18 protocols.

Split tunnel

Send apps, sites, IP ranges, whole countries or your own lists around the tunnel — keep banking and government apps on your real connection.

Smart failover

If your server stops responding, the app moves you to a working one — same country first. No background pinging, no swaps for a few milliseconds.

Servers by network

Pick one server for Wi-Fi and another for mobile data. When your phone switches networks, InHive switches servers too.

Subscription links

Add a subscription with one tap from a link. Encrypted links from your provider use inhive://sub and a PIN.

Cross-device QR

Show a subscription as a QR code and scan it with your phone (Android, iOS). On a Mac, read it from a screenshot.

Supported protocols (19)

  • VLESS

    Reality, XHTTP, XTLS-Vision, WebSocket, gRPC

  • VMess

    V2Ray classic

  • Trojan

    Classic TLS proxy

  • ShadowTLS

    Real TLS handshake to a public hostname

  • AnyTLS

    TLS-in-TLS multiplexed transport

  • Shadowsocks

    AEAD ciphers, lightweight

  • NaiveProxy

    Chromium TLS stack (naive+https, naive+quic)

  • Hysteria

    QUIC-based v1 (legacy, kept for compatibility)

  • Hysteria2

    QUIC-based, high-throughput

  • TUIC

    QUIC-based, congestion control

  • WireGuard

    Modern UDP tunnel

  • AmneziaWG

    WireGuard with junk packets / fragmentation

  • Mieru

    Anti-fingerprinting transport

  • DNSTT

    DNS tunneling outbound

  • UTProto

    In-house FakeTLS transport, MTProto-style wire mimicry

  • SSH

    SSH tunnel outbound

  • OLCRTC

    Tunnel over WebRTC video-call rooms

  • SOCKS

    SOCKS5 outbound

  • HTTP

    HTTP CONNECT, inside a JSON or Clash config only

  • VLESS

    Reality, XHTTP, XTLS-Vision, WebSocket, gRPC

  • VMess

    V2Ray classic

  • Trojan

    Classic TLS proxy

  • ShadowTLS

    Real TLS handshake to a public hostname

  • AnyTLS

    TLS-in-TLS multiplexed transport

  • Shadowsocks

    AEAD ciphers, lightweight

  • NaiveProxy

    Chromium TLS stack (naive+https, naive+quic)

  • Hysteria

    QUIC-based v1 (legacy, kept for compatibility)

  • Hysteria2

    QUIC-based, high-throughput

  • TUIC

    QUIC-based, congestion control

  • WireGuard

    Modern UDP tunnel

  • AmneziaWG

    WireGuard with junk packets / fragmentation

  • Mieru

    Anti-fingerprinting transport

  • DNSTT

    DNS tunneling outbound

  • UTProto

    In-house FakeTLS transport, MTProto-style wire mimicry

  • SSH

    SSH tunnel outbound

  • OLCRTC

    Tunnel over WebRTC video-call rooms

  • SOCKS

    SOCKS5 outbound

  • HTTP

    HTTP CONNECT, inside a JSON or Clash config only

Supported subscription formats

Paste any of the following:

  • URI schemes: vless://, vmess://, trojan://, ss://, naive+https://, naive+quic://, hysteria2:// (or hy2://), hysteria://, tuic://, wireguard:// (or wg://), awg://, mieru://, dnstt://, utproto://, ssh://, olcrtc://, anytls://, shadowtls://, socks://
  • Subscription content: base64-encoded link list (most common), plain link list, Clash YAML, SIP008
  • Config files: sing-box or Xray JSON, WireGuard/AmneziaWG .conf, AmneziaVPN vpn:// — InHive takes the servers; routing and DNS stay under your settings

Privacy

InHive does not collect personal data. The app does not run VPN servers — it is a client utility. You are responsible for compliance with the laws of your jurisdiction.

See full Privacy Policy and Terms of Service.