# SagerNet/sing-box

The universal proxy platform

Repository: https://github.com/SagerNet/sing-box
Canonical: https://ross.abutalabs.com/products/sing-box
Homepage: https://sing-box.sagernet.org/
Language: Go
License: NOASSERTION
License Family: other
Last push: 2026-08-25T02:42:20+00:00

## Health v2 (maintenance only)
Score: 95/100 (v2, computed 2026-09-03T02:39:23.370411+00:00)
- activity 99, release rhythm 86, longevity 100
- inputs: {"age_days": 1525, "days_push": 8, "days_rel": 16, "gap_med": 7.5, "n_releases_24m": 69}
- flags: no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 37302, forks 4482 (observed 2026-08-28T04:12:01.404737+00:00)

## What it is
sing-box is a universal proxy platform written in Go that supports a wide range of proxy protocols (Shadowsocks, VLESS, Hysteria2, WireGuard, Tor, Tailscale, and more) with rule-based routing and TUN mode. It runs as a CLI service on Linux, macOS, Windows, and FreeBSD, and ships graphical clients for Android, iOS, and Apple platforms.

## Use cases
- route traffic through multiple proxy protocols with rule-based routing
- set up a transparent TUN-based VPN client on Android or iOS
- run a self-hosted proxy server or tunnel in Docker
- bypass network censorship with protocols like Hysteria2 or VLESS
- proxy only specific apps or processes via per-app and process rules
- combine WireGuard and Tailscale endpoints with proxy outbounds

## When to choose
- you need a single cross-platform proxy client supporting many modern protocols
- you want fine-grained rule-based routing by domain, IP, process, or app
- you need TUN mode with unprivileged VPN service on mobile platforms
- you want to self-host a proxy server or tunnel with Docker or a systemd service

## When to avoid
- you need a simple GUI-only VPN with no configuration files
- you require a permissively licensed codebase for derivative works (GPLv3 plus naming restrictions)
- you only need a basic SOCKS/HTTP proxy without advanced routing

## Facets
- artifact type: application
- maturity: active
- function: proxy, networking, vpn, routing, security
- domain: networking, privacy, security, censorship-circumvention, cross-platform
- platform: windows, cross-platform, cli
- tags: proxy-platform, tun, shadowsocks, vless, hysteria2, wireguard, tailscale, censorship-circumvention, rule-based-routing, linux, macos, android, ios, docker

## Member repositories
- SagerNet/sing-box (main) score 95

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:12:01.404737+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T16:25:38.725815+00:00, confidence not recorded.
  - readme: https://github.com/SagerNet/sing-box (fetched 2026-08-28T04:12:01.404737+00:00, sha 6f1cd1e2a47f)
  - homepage: https://sing-box.sagernet.org/ (fetched 2026-08-29T07:47:24.497485+00:00, sha 803008f046ef)
  - site_page: https://sing-box.sagernet.org/installation/package-manager (fetched 2026-08-29T07:47:24.500174+00:00, sha e12ac46f4dd2)
  - site_page: https://sing-box.sagernet.org/installation/docker (fetched 2026-08-29T07:47:24.507243+00:00, sha 7aa79880426a)
  - site_page: https://sing-box.sagernet.org/installation/build-from-source (fetched 2026-08-29T07:47:24.509147+00:00, sha ca4081637eeb)
  - site_page: https://sing-box.sagernet.org/clients/android/features (fetched 2026-08-29T07:47:24.511216+00:00, sha 22c3344989d8)
  - site_page: https://sing-box.sagernet.org/clients/apple/features (fetched 2026-08-29T07:47:24.513053+00:00, sha 15c0f01bfb2d)
  - site_page: https://sing-box.sagernet.org/clients/desktop/features (fetched 2026-08-29T07:47:24.514887+00:00, sha 825a2d67d714)
  - site_page: https://sing-box.sagernet.org/changelog (fetched 2026-08-29T07:47:24.502389+00:00, sha 7a2f7e0c0269)
- Data as of 2026-08-30T08:39:29.467469+00:00.
