Before You Begin
Clash for Android is a mobile proxy client that helps you import subscription profiles, select proxy nodes, and control how applications connect to the internet. Unlike a subscription provider, the app does not create nodes by itself. You need a valid subscription URL from a proxy service before you can use the available servers.
This guide is written for beginners who have just installed Clash for Android and are unsure what to do next. You will learn how to add a subscription, download or update its profile, choose a node, activate the VPN service, and diagnose the most common connection problems. No YAML editing or networking background is required for the basic setup.
What You Will Achieve
By the end, your Android device will have an imported Clash profile, a selected proxy node, and an active local VPN connection that can be tested safely.
Before opening the app, prepare three things: a working internet connection, a subscription link, and enough account balance or remaining traffic from your provider. A subscription link usually begins with https:// and may contain a long token. Treat it like a password because anyone who obtains it may be able to access your profile and consume your traffic.
1Add a Subscription Profile
The exact labels may vary slightly between Clash for Android builds, Clash Meta for Android, and other Mihomo-based clients. The general workflow is the same: open the profile management page, add the subscription URL, save it, and download the remote configuration.
- Sign in to your proxy provider's official website or user panel.
- Open the page named Subscriptions, Clash Config, Client Links, or something similar.
- Choose a Clash, Clash Meta, or Mihomo-compatible link if several formats are available.
- Tap Copy and make sure the complete URL has been copied. Avoid manually typing the link because a missing character can make the request fail.
Protect Your Subscription
Do not post a subscription URL in a public chat, screenshot, issue tracker, or social media comment. If the link is exposed, revoke it from your provider panel and generate a new one.
After copying the URL, return to Clash for Android. Open the Profiles or Configuration screen. Look for a plus button, an add icon, or a menu item such as New Profile. Select the option for a remote URL rather than the option for importing a local file.
- Tap the add button in the profile list.
- Select URL, Remote, or Import from URL.
- Paste the subscription URL into the address field.
- Enter a short profile name such as
My Subscriptionor the provider's name. - Save the entry, then tap the download, refresh, or cloud icon next to it.
A successful update normally displays the profile size, the number of proxies, or a list of policy groups. If the profile appears in the list but has no nodes, it has probably not been downloaded successfully. Tap the refresh icon once more while using a stable network, then check whether the provider's subscription has expired or reached its traffic limit.
Choosing the Correct Profile Format
Some providers offer separate links for different clients. A link designed for a traditional VPN app, browser extension, or WireGuard client may not work in Clash. Select the option explicitly marked Clash, Clash Meta, or Mihomo. These profiles usually contain proxy nodes, proxy groups, DNS settings, and routing rules in YAML format.
Do not paste a normal website address into the profile field unless your provider specifically tells you to do so. The URL may look unusual, but that is normal. It often includes an access token and may return a configuration file only when requested by a compatible client.
2Update the Profile and Activate the VPN
Importing a profile and activating the proxy are two separate actions. The profile contains instructions and nodes, while the Android VPN switch determines whether applications actually send traffic through Clash. Many beginners download a profile successfully but forget to start the service.
Update Subscription Data
Open the profile list and identify the profile you want to use. Tap its refresh icon or open the profile menu and select Update. Updating retrieves the latest node information from the provider. It may also apply new routing rules, remove expired servers, and change the available policy groups.
Update the profile when you see an expired node, when the provider announces a configuration change, or when all connections suddenly stop working. You do not need to update it repeatedly every few minutes. Excessive refresh requests may consume a provider's API quota or trigger a temporary rate limit.
Pro Tip: Keep a Backup
If your app supports profile export, save a local copy of important custom settings before replacing a profile. A remote update may overwrite manual changes, especially edits made directly to rules or DNS options.
Start the Clash Service
After the profile has finished updating, tap the profile to make it active. Then return to the main dashboard and enable the main switch. Android will display a system dialog asking whether Clash may create a VPN connection. Review the permission request and tap OK or Allow if you want to proceed.
- Confirm that the intended profile is selected.
- Choose a mode such as Rule if you want automatic routing.
- Tap the main switch to start the service.
- Accept Android's VPN permission prompt the first time.
- Look for the VPN key icon or VPN indicator in the Android status bar.
The Android VPN indicator is an important confirmation. A selected profile alone does not prove that traffic is being proxied. If the switch is on but no VPN icon appears, check whether another VPN application is already active. Android normally allows only one VPN service to control the system connection at a time.
Understand Rule, Global, and Direct Modes
Most Clash clients provide three common operating modes. Rule mode uses the rules included in the profile and is the best starting point for everyday use. Local services may use DIRECT, while matching international domains may use a proxy group.
Global mode sends nearly all eligible traffic through the currently selected proxy group. It can be useful for testing whether a node works, but it may increase latency, use more traffic, and make local services slower. Direct mode bypasses the proxy and is useful when troubleshooting or when you want to confirm that a problem exists on the direct network rather than in Clash.
Recommended Beginner Setting
Start with Rule mode. Use Global mode only as a short diagnostic test, and switch back to Rule mode after confirming that the service can connect.
3Choose and Switch Proxy Nodes
After the service is active, open the Proxies page. You will usually see several policy groups rather than one flat list. A group may be named PROXY, Proxy, 节点选择, Auto, or after the provider's branding. Tap the group to view its available nodes.
Nodes are commonly labeled by location, protocol, bandwidth, or purpose. For example, a provider may list servers in Japan, Singapore, the United States, Germany, or Hong Kong. Some nodes may include labels such as IEPL, 低倍率, Netflix, or Premium. These labels are provider-specific, so read the provider's explanation before assuming that one location is always fastest.
- Open the Proxies page while the Clash service is running.
- Tap the policy group used by your active rules, often called
PROXY. - Select a node with a reasonable location and a recent latency result.
- Wait a few seconds for the selected node indicator to change.
- Open a test website or app to confirm that traffic works.
Latency testing is useful, but it is not the only measure of quality. A node with a very low ping may still be slow during downloads, unstable with video, or blocked by a particular service. When comparing nodes, consider stability, packet loss, loading speed, and whether the destination service accepts the node's IP address.
- For web browsing: choose a stable node with consistent latency rather than chasing the lowest single result.
- For video: test playback for several minutes because congestion may appear after the initial connection.
- For real-time calls or games: prioritize low jitter and low packet loss, and make sure UDP support is available if the application requires it.
- For regional services: select a location that matches the service's supported region, but remember that IP reputation can also affect access.
Automatic Selection and Health Checks
Some profiles include an automatic group such as URL-Test, Auto, or Fallback. These groups can test nodes against a URL and select one according to latency or availability. Automatic selection is convenient, but the test result may not represent the service you actually use. A node that responds quickly to the provider's test URL may perform poorly with streaming, messaging, or file downloads.
If the automatic group keeps changing nodes, open its settings and check the testing interval. Very frequent switching can interrupt long downloads or log you out of websites. For a stable daily connection, manual selection is often preferable once you have found a reliable node.
4Troubleshoot Common Connection Problems
When Clash for Android does not work, avoid changing many settings at once. First determine whether the issue is the subscription, the selected node, the Android VPN permission, or the destination application. A simple sequence makes the problem easier to isolate.
The Profile Cannot Be Updated
Check the subscription URL for missing characters and confirm that your phone can browse other websites. If the provider uses an access token, the link may have expired or been revoked. Try opening the provider panel and copying a newly generated link. A provider may also temporarily reject requests because of traffic limits or too many refresh attempts.
If the update reports a certificate, timeout, or network error, try a different network such as mobile data or trusted Wi-Fi. Do not disable certificate verification merely to hide an error. An invalid certificate can indicate interception, a misconfigured provider server, or an unsafe connection.
The VPN Switch Is On but Websites Do Not Load
First switch to another node in the active proxy group. A node can be online but unable to reach a particular destination. Next, check that the selected profile is the one currently running. Some clients let you edit or select a profile without automatically restarting the service.
Then test the modes in a controlled order: use Direct to verify the normal network, use Global to test one proxy node, and finally return to Rule for normal operation. If Global works but Rule does not, the issue is probably related to the profile's rules or policy groups rather than the node itself.
Android Battery and App Restrictions
Android may stop background applications to save battery. If Clash disconnects after the screen has been off for a while, open the system battery settings and allow Clash to run without aggressive optimization. The exact menu differs by phone manufacturer, but it is commonly found under Apps, Battery, or Background usage.
Also check whether Android has enabled a data-saving feature, a work profile restriction, or another always-on VPN. These settings can prevent Clash from maintaining its tunnel. If you use an always-on VPN, disable it temporarily while testing Clash, then decide which service should control the connection.
Do Not Test Too Many Variables at Once
Keep the same profile and mode while changing nodes. If you update the profile, change DNS, switch modes, and change nodes together, it becomes difficult to identify what actually fixed or caused the problem.
Confirm the Connection Safely
After selecting a node, visit a familiar HTTPS website and try the application that originally failed. You can also use a reputable IP-checking service to confirm that the apparent public IP has changed when that is the intended result. Avoid entering passwords or payment details on unfamiliar test pages, and remember that Clash itself does not guarantee the trustworthiness of a proxy provider.
When you finish testing, keep the configuration simple: use Rule mode, retain a stable node or automatic group, and update the subscription only when necessary. If the connection stops working later, check the subscription expiration date, remaining traffic, node availability, and Android VPN status before editing advanced YAML settings.
Final Setup Checklist
Your basic Clash for Android setup is complete when the following points are all true:
- A valid Clash, Clash Meta, or Mihomo subscription URL has been imported.
- The profile has been updated successfully and displays usable nodes.
- The intended profile is selected as active.
- The main Clash switch is enabled and Android shows a VPN indicator.
- A proxy group contains a selected node rather than an unavailable entry.
- Rule mode works for normal browsing, unless your provider recommends another mode.
- You know how to refresh the profile and switch to another node when performance changes.
The most important habit is to separate profile management from node selection. The subscription supplies the available configuration, the policy group decides which node is used, and the Android VPN service determines whether traffic enters Clash at all. Once these three layers are clear, most beginner problems become straightforward to diagnose.