awesome-repositories.com
Blog
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectAboutHow we rankPressMCP server
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
SagerNet avatar

SagerNet/sing-box

0
View on GitHub↗
35,061 stars·4,156 forks·Go·17 viewssing-box.sagernet.org↗

Sing Box

Sing-box is a universal proxy engine and traffic router designed to manage complex network connectivity across multiple operating systems. It functions as a configuration-driven core that intercepts system-level traffic, allowing for transparent proxying through encrypted tunnels. By normalizing diverse network protocols into a unified interface, the engine enables consistent traffic forwarding and protocol translation regardless of the underlying environment.

The project distinguishes itself through a declarative configuration pipeline that validates and merges modular settings into a unified internal state before execution. It employs a rule-based traffic dispatcher that evaluates incoming packets against hierarchical criteria to determine optimal routing paths dynamically. This is complemented by an asynchronous domain name resolution pipeline, which provides granular control over how network requests are mapped and filtered, ensuring that traffic handling remains both accurate and performant.

Beyond its core routing capabilities, the platform includes a comprehensive security layer for managing encrypted connections, including support for advanced handshake options and certificate validation. It also provides tools for monitoring real-time traffic and connection status, alongside flexible management of routing rule sets that can be sourced from local or remote locations. The software is designed to be installed as a background service, providing a stable and scalable infrastructure for controlled network communication.

Features

  • Proxy Engines - Manages complex traffic forwarding, protocol translation, and secure tunnel establishment across operating systems.
  • Network Traffic Routers - Directs traffic through multiple protocols and configurations using a universal engine designed for flexible connectivity.
  • Network Tunnels - Intercepts and redirects device traffic through encrypted proxy protocols for private connectivity.
  • Traffic Routing Engines - Evaluates network packets against custom rules to determine optimal paths and connection handling.
  • System Tunneling - Routes device traffic through secure remote tunnels to provide transparent proxying for all applications.
  • Traffic Dispatchers - Evaluates incoming network packets against hierarchical criteria to determine the optimal outbound path dynamically.
  • Encrypted Connection Handlers - Manages TLS handshakes and certificate validation to protect data transit between endpoints.
  • Virtual Network Tunnels - Intercepts system-level traffic by routing packets through a virtual network interface to enable transparent proxying.
  • Advanced Traffic Routing - Directs network requests to specific destinations based on complex domain and protocol rules.
  • Cross-Platform Tunneling - Implements transparent proxying across mobile and desktop platforms to secure device traffic.
  • DNS Pipelines - Processes domain name resolution requests through a non-blocking chain of filters and caches to optimize lookup performance.
  • DNS Resolution Managers - Defines servers, routing rules, and caching strategies to map domain names to IP addresses effectively.
  • Secure Proxy Infrastructure - Manages encrypted proxy connections with support for multiple protocols and advanced TLS configurations.
  • Network Proxy Clients - Universal proxy platform with high-performance core capabilities.
  • Network Tools - Acts as a universal proxy platform with per-app routing.
  • Media & Communication - Universal proxy and network tunneling tool.
  • VPN and Proxy Tools - Universal proxy platform supporting multiple protocols.
  • DNS Query Routers - Directs domain name queries to specific servers while applying caching and timeout rules to optimize resolution.
  • Inbound Connection Managers - Sets up network protocols to receive and process incoming traffic through proxy, tunnel, or direct connections.
  • Outbound Connection Managers - Defines proxy protocols and routing rules for traffic leaving the local environment to ensure correct pathing.
  • Proxy Abstractions - Normalizes diverse network protocols into a unified internal interface to enable seamless switching between tunneling methods.
  • TLS Management - Configures security policies and TLS handshake options to ensure encrypted traffic remains secure.
  • Configuration Managers - Validates and formats complex network settings to maintain scalable proxy infrastructure.
  • Proxy Profile Managers - Syncs proxy settings from local or remote sources to maintain consistent network behavior.
  • DNS Query Evaluators - Sends domain name queries to servers and stores responses for rule matching without terminating the evaluation process.
  • DNS Resolution - Controls domain resolution through custom servers, caching strategies, and traffic filtering.
  • DNS Responders - Answers domain name queries with predefined records and custom response codes to control how clients resolve addresses.
  • DNS Rule Engines - Creates routing rules that match specific traffic patterns and apply custom actions to manage network requests.
  • Configuration Management - Merges and validates multiple configuration files into a unified operational structure.
  • Default Routing Managers - Sets default network parameters including interface binding and routing marks for traffic that does not match specific rules.
  • DNS Query Filters - Drops domain name queries or returns specific error codes based on defined policies to block unwanted traffic.
  • Routing Rules - Defines traffic routing criteria to ensure data flows through intended network paths.
  • Configuration Pipelines - Parses and validates structural settings into a unified internal state to ensure consistent network behavior.
  • Schema Validation Tools - Checks settings for syntax and structural integrity before runtime to prevent service failures.

Star history

Star history chart for sagernet/sing-boxStar history chart for sagernet/sing-box

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Sing Box

Similar open-source projects, ranked by how many features they share with Sing Box.
  • v2ray/v2ray-corev2ray avatar

    v2ray/v2ray-core

    46,872View on GitHub↗

    v2ray-core is a network proxy framework and custom proxy engine designed for censorship circumvention. It functions as a traffic routing platform that directs network data between inbound and outbound connections to access blocked content and services. The system employs a modular architecture using pluggable protocol handlers and a chain-based connection pipeline to transform and forward network traffic. It provides secure tunneling infrastructure to establish encrypted connections and uses a rule-based routing system to direct data between protocols and destinations. The framework includes

    Gogolanghttp-proxyproxy
    View on GitHub↗46,872
  • matsuridayo/nekoboxforandroidMatsuriDayo avatar

    MatsuriDayo/NekoBoxForAndroid

    21,403View on GitHub↗

    NekoBoxForAndroid is a network utility for Android that functions as a system-wide VPN tunneling client. It leverages the Sing-Box engine to capture and redirect device traffic through a virtual network interface, providing a centralized platform for managing proxy connections and network routing. The application distinguishes itself through its advanced configuration management, allowing users to define granular traffic rules based on domains, IP addresses, or specific applications. It supports complex network requirements by enabling multi-hop proxy chaining, custom DNS resolution strategie

    Kotlinandroidgfwproxy
    View on GitHub↗21,403
  • daeuniverse/daedaeuniverse avatar

    daeuniverse/dae

    5,876View on GitHub↗

    dae is a high-performance Linux network tool that functions as an eBPF transparent proxy. It intercepts and redirects packets at the kernel level to route internet traffic based on domains, IP addresses, and process names. The project distinguishes itself by modifying TLS handshakes to simulate browser signatures, which prevents server-side detection of proxy traffic. It also implements a full-cone network address translation gateway to maintain stable bidirectional connections and utilizes a latency-based node selector to automatically route traffic through the fastest available proxy nodes.

    Godaeebpfgolang
    View on GitHub↗5,876
  • gui-for-cores/gui.for.singboxGUI-for-Cores avatar

    GUI-for-Cores/GUI.for.SingBox

    7,188View on GitHub↗

    GUI.for.SingBox is a desktop graphical interface client for managing the sing-box network proxy core. It functions as a network proxy manager and subscription manager, allowing users to configure routing rules, organize proxy profiles, and synchronize remote proxy server lists from external subscription providers. The application distinguishes itself through an event-driven plugin architecture and a script-based configuration middleware, enabling users to extend core functionality and programmatically modify configuration values. It also features a system for cross-platform settings synchroni

    Vueguirolldown-vitesing-box
    View on GitHub↗7,188
See all 30 alternatives to Sing Box→

Frequently asked questions

What does sagernet/sing-box do?

Sing-box is a universal proxy engine and traffic router designed to manage complex network connectivity across multiple operating systems. It functions as a configuration-driven core that intercepts system-level traffic, allowing for transparent proxying through encrypted tunnels. By normalizing diverse network protocols into a unified interface, the engine enables consistent traffic forwarding and protocol translation regardless of the underlying environment.

What are the main features of sagernet/sing-box?

The main features of sagernet/sing-box are: Proxy Engines, Network Traffic Routers, Network Tunnels, Traffic Routing Engines, System Tunneling, Traffic Dispatchers, Encrypted Connection Handlers, Virtual Network Tunnels.

What are some open-source alternatives to sagernet/sing-box?

Open-source alternatives to sagernet/sing-box include: v2ray/v2ray-core — v2ray-core is a network proxy framework and custom proxy engine designed for censorship circumvention. It functions as… matsuridayo/nekoboxforandroid — NekoBoxForAndroid is a network utility for Android that functions as a system-wide VPN tunneling client. It leverages… daeuniverse/dae — dae is a high-performance Linux network tool that functions as an eBPF transparent proxy. It intercepts and redirects… gui-for-cores/gui.for.singbox — GUI.for.SingBox is a desktop graphical interface client for managing the sing-box network proxy core. It functions as… xtls/xray-core — Xray-core is a high-performance, cross-platform networking engine designed to manage secure data transmission and… chika0801/sing-box-examples — This repository serves as a comprehensive collection of configuration templates, deployment scripts, and technical…