Windows x64 / User guide
Start with your app list.
Requires a running Mihomo / Clash Meta core, service mode, TUN and auto-route. AppSorter uses your existing nodes and network driver.
First use
- Choose a working proxy node in Clash and enable service mode, TUN and auto-route.
- When the desktop release is available, extract the Windows ZIP and open
AppSorter.exe. The runtime is included. - The first startup without a cache scans apps. Later startups load the saved list.
- Enable the switches for apps that need VPN. Leave other switches off, then choose an existing node or proxy group.
- Click Enable routing and wait for verified status. Old connections may require restarting the corresponding app.
App-list cache
Click Rescan after installing software or when updates change executable paths. New entries are merged with the cache, preserving existing switch choices. Manual additions and removals are saved.
Clash connection
Select the complete generated running YAML configuration, not a subscription index or port-only fragment. A common Clash Verge Rev location is:
%APPDATA%\io.github.clash-verge-rev.clash-verge-rev\clash-verge.yaml
Only http://127.0.0.1:port or http://[::1]:port is allowed. API credentials can be detected from the configuration and are stored using Windows current-user DPAPI.
Monitoring and pauses
When enabled, the client checks nodes, modes, ports and configuration changes every five seconds. Verifiable changes can be reapplied. It pauses or backs off when TUN is disabled, the adapter is unavailable, the target is missing, the source is unknown or repeated reloads conflict.
Restore and exit
Use Restore original configuration in the Clash connection page or tray menu. The backup is removed only after verification. Closing the window sends the app to the tray; use the tray menu to exit.
Exiting stops monitoring but leaves loaded Clash rules in effect. Restore the configuration first if you want to stop app routing.
Practical limits
- Off means DIRECT, not blocked internet.
- Global mode ignores process rules. App routing uses rule mode and TUN.
- Browser routing applies to the whole process, not individual tabs.
- Independent networking helpers may need their own .exe entry. Shared helpers are routed as a whole.
- Unidentified old connections may need an app restart.
- A reject fallback prevents selected-app UDP from falling through to DIRECT when a node lacks UDP support.
- DNS, node tests and subscription updates retain Clash settings. Total VPN traffic is not guaranteed to be zero.
- Legacy non-Meta Clash, complex logical/sub-rule takeover and restricted TUN capture configurations are not supported.
Local data
%LOCALAPPDATA%\AppSorter holds preferences.json for the cached list and switches, with encrypted credentials, and recovery.bin for the full encrypted recovery backup. Keep unfinished recovery backups and do not upload these files to a public repository.