This page is the reference handbook for VPNWY. The quickstart guide keeps only the shortest path — follow it and you are done. This page fills in the reasoning behind each step, what the parameters mean, the edge cases and the troubleshooting branches. If this is your first time with the service, work through the quickstart page first, then come back to the matching chapter here whenever a decision comes up.

01

Service Scope and Core Concepts

VPNWY is a cross-border network acceleration subscription service for users who need reliable access to international websites, streaming services and AI tools. The service currently covers 110+ countries and 150+ routes, with clients for five platforms: Windows, macOS, iOS, Android and Linux. Signing up takes only a username and a password, with no email address required; monthly plans start at ¥9.9, simultaneous devices are unlimited, and there is a 30-day refund, no questions asked.

Before you start, it helps to break the whole chain apart. Each chapter below maps to one link in that chain: the client (the program running on your device) → the subscription link (an address carrying your account token that tells the client which routes are available) → the route list (the node list the client shows after fetching) → picking one route → establishing an encrypted tunnel → reaching the target site through the exit node. When something goes wrong at any point, the symptom looks the same — it will not connect, or pages will not open — but the causes are completely different. Chapter 6 walks this chain segment by segment.

Route types come in three tiers, and this is the single most useful thing to understand when picking one. IEPL dedicated lines run on an isolated channel with a fixed path and no mixing with other traffic, which suits long sessions that need stability — video meetings, remote desktop, sustained large file transfers. Relay routes connect first to a nearby entry node and forward from there to the exit region; the path has one more hop than a direct connection, but the optimisation for cross-border links is more pronounced, and this is the type most often chosen for everyday use. Direct routes connect straight to the exit region, the shortest path, and suit ordinary websites that are not strict about exit region. All three types are labelled in the client's route list, and the servers page gives the full list by region.

On protocols, the service offers WireGuard, Trojan and Shadowsocks. WireGuard is lean, handshakes fast and draws little power, which suits mobile devices and long-running connections; Trojan uses the standard TLS port and blends in with ordinary web traffic, giving better compatibility where the local network is more sensitive; Shadowsocks is the oldest and the most widely implemented, with the broadest compatibility — older devices and third-party clients can usually support it. Most clients pick a suitable protocol automatically for the current route, and you can also set one manually.

Billing comes in two forms. A monthly plan is metered by traffic, and the allowance resets each month on the day you activated it — activate on the 5th, for example, and the allowance returns to its starting value on the 5th of every following month. It does not reset on the 1st of the calendar month, so activating mid-month never costs you half a month. A data pack is a one-off purchase that lasts until it runs out and never expires, which suits users whose usage is irregular. The two kinds of allowance can coexist, and the panel overview shows the remaining amount for each separately.

On privacy, the service's policy is not to log browsing content, and all transmission uses quantum encryption. That policy is consistent with how the product is designed: signing up needs no email address and no extra personal information — an account consists only of a username and a password.

Six terms that recur throughout this handbook
TermMeaningWhere it sits in the workflow
Subscription linkAn address carrying your account token that the client fetches on a scheduleThe only entry point for the route list
Node / routeA connectable exit channel, labelled with region and typeOne row in the client's route list
Exit IPThe source address the target site seesDetermines region checks and content library
Split routingRules that decide which traffic goes through the tunnel and which goes directThe core configuration in rule mode
Global modeAll traffic goes into the tunnelThe baseline state when troubleshooting
Rule modeTraffic is split by preset rules; addresses in mainland China go directThe default state for everyday use

Finally, to be clear about how this page and the quickstart page divide the work: the quickstart page is the main line for getting started and keeps only the shortest path — follow it and you are done; this page is the reference handbook that fills in the reasoning behind each step, what the parameters mean, the edge cases and the troubleshooting branches. The relationship is "get it working first, then read deeper". You do not need to read this page end to end before you start using the service.

02

Choosing a Plan or Data Pack

Monthly plans come in three tiers, and the only difference is the monthly traffic allowance — route coverage, supported platforms and device count are identical: ¥9.9/month with 60GB, ¥18/month with 250GB, ¥28/month with 500GB. Traffic resets each month on the day you activated.

The three monthly tiers compared
TierMonthly feeMonthly trafficBest suited to
Entry¥9.9 / month60GBMostly web pages, messaging, music streaming and text-based AI tools
Standard¥18 / month250GBA mix of everyday video, short video, online meetings and image-based AI tools
High volume¥28 / month500GB4K streaming, cloud drive sync, long online meetings and several devices at once

To judge which tier fits, start by sorting your usage into three groups. Low-traffic use covers web browsing, messaging, email, music streaming and text-based AI chat — these consume very little allowance. Medium-traffic use covers 1080p video, short video, online meetings and image-generation AI tools, where consumption rises noticeably. High-traffic use covers 4K video, large file downloads and cloud drive sync, the fastest drain of all. If you are unsure, start on the entry tier and upgrade when the allowance runs short — the upgrade difference is prorated against the remaining days, so nothing you have already paid for is wasted.

Data packs and monthly plans are two separate products. Data packs are ¥158/300GB, ¥358/1000GB and ¥658/3000GB — a one-off purchase, valid until used up, never expiring, and not cleared month by month. They suit two kinds of user: those whose usage is irregular and who may go a long time between concentrated sessions, and those whose monthly allowance has already run out but who do not want to change tier — topping up with a data pack is more flexible than upgrading the monthly plan.

The things the three monthly tiers share are worth listing separately, because that is what you are really comparing when you pick a price: all 110+ countries and 150+ routes are available, with no region locked behind a tier; simultaneous devices are unlimited; five platforms are supported — Windows, macOS, iOS, Android and Linux; three payment methods are supported — Alipay, WeChat and USDT; and there is a 30-day refund, no questions asked. In other words, the price difference maps to exactly one variable, the traffic allowance. There is no tiering where "the cheaper tier gets worse routes".

If you only want the conclusion: light use — ¥9.9; everyday mixed use — ¥18; heavy 4K and multi-device use — ¥28; irregular usage — buy a data pack instead. Full plan details, payment methods and a comparison table are on the pricing page.

One detail that is easy to miss: traffic resets each month on your activation day, not on the calendar month. That means you never have to wait for the 1st to line up with the start of a month — activating on any day mid-month costs you nothing. If usage spikes in a given month, you can upgrade straight to a higher tier; the difference is prorated against the remaining days, with no need to recalculate the whole cycle.

One last note: the allowance is counted per account, not per device. Unlimited simultaneous devices means one allowance is shared by every device that is online. If you run many devices, look at the ¥18 or ¥28 tier first rather than buying a low tier and topping up often.

03

Account Setup, Ordering and Payment

Account setup takes only two steps: open the registration page in the user panel, enter a username and a password, and submit. No email address is required and there is no verification email — you go straight into the panel after submitting. The reason for the design is simple: an email address is the piece of information most likely to leak during registration and the one most often used to link accounts together, so if it is not needed, it is not collected.

A few suggestions for choosing a username and password: the username is only used for signing in and for support tickets, so avoid real names, the prefix of an email address you commonly use, or a social media handle; set the password separately rather than reusing one from another site. The panel keeps you signed in locally, so remember to sign out after using a shared device.

  1. Open the user panel, go to the registration page and enter a username and a password.
  2. Once signed in, open the plans section and choose a monthly tier or a data pack.
  3. Confirm the amount and pay with Alipay, WeChat or USDT.
  4. Return to the overview section and confirm the plan status and remaining allowance have updated.
  5. In the downloads section, get the client for your platform and import the subscription as described in Chapter 4.

Once payment completes, the order status updates and the plan benefits take effect. If an order stays in an unfinished state for a long time, submit the order details in a ticket and it will be checked manually. The three payment methods sit side by side in the panel: Alipay and WeChat suit everyday payment habits in mainland China, while USDT suits users who prefer paying in cryptocurrency.

Three common questions about orders and benefits. First, a monthly plan and a data pack can be held at the same time; the panel overview shows the remaining allowance for each separately, and you do not need to cancel a plan in order to buy a data pack. Second, a data pack is not cleared by the monthly plan's reset cycle — it lasts until used up and never expires. Third, when you upgrade a tier the difference is prorated against the remaining days, with no need to recalculate the cycle and no situation where you renew and then immediately have to buy again.

Security note: the panel address, your account password and the subscription link are all credentials. Do not post screenshots of a subscription link in public groups or forums, and do not share one account between several people. If a subscription link leaks, reset it in the panel — the old link stops working and you simply import the new one on each device.

On refunds, the service offers a 30-day refund, no questions asked. Where the conditions are met, submit a request through the ticket section of the panel; the refund process and specific terms follow the terms of service page. Including the order details and your username with the request saves a round of confirmation.

Once you have signed up, do one thing first: check the account status and plan allowance in the panel overview, then go to the downloads section for the client that matches your platform. Verifying "the account works" up front rules out the account later on, which narrows the search considerably when a connection problem appears.

04

Subscription Link Retrieval and Import

What a subscription link is: an address carrying your account token that the client fetches at a fixed interval to obtain the route list and connection parameters currently available to your account. It does not contain an installer, and it is not a fixed route address — when routes change, the client's next fetch brings back the updated list with no manual editing of configuration. That is exactly the value of the subscription mechanism over manual configuration: it turns "configuration" into "a reference", so the client only ever stores one address.

Where to get it: sign in to the user panel and click "Get subscription" in the overview or downloads section; the panel then shows the matching subscription link and a one-click import button for each client type. The marketing pages provide no static subscription address, and that is deliberate — a subscription has to be bound to a specific account to bill and meter correctly, and it keeps the address out of unrelated hands.

Formats and import priority: the panel offers several formats at once, ordered from most to least compatible — clashplus:// one-click import, Shadowrocket, Stash, sing-box, Clash configuration. The rule for choosing is simple: if the client supports one-click import, use it; if not, copy the generic subscription link and add it manually in the client. The advantage of one-click import is that it removes copy-and-paste, and it also keeps the link from being pasted somewhere it should not be.

A subscription link looks like this; the example is a placeholder, not a working address:

https://example.com/sub?token=YOUR_TOKEN

Real links are generated only in the panel after signing in, and each one maps to a single account. Any similar address on any page or in any guide is a format example only; copying it will not work.

How updates work: clients usually fetch the subscription on launch and again at intervals, refreshing the route list each time. If you changed your plan in the panel or routes have changed and the client shows nothing new, run "Update subscription" manually in the client. Note that some clients keep using the previous configuration when an update fails, so a client that looks fine is not proof that it has synced to the latest list.

What to do if a subscription link leaks: reset the subscription in the panel. The old link stops working and you copy the new one into each client. A simple signal that something has leaked is traffic consumption that clearly does not match your own habits — the usage figures in the panel overview are the first place to look.

On manual configuration: writing node parameters by hand instead of importing a subscription is not recommended. Hand-written configuration breaks whenever routes change on the server side, it is easy to mistype ports, passwords and other parameters, and it is harder to troubleshoot. If you really do need to maintain a configuration file by hand, treat it only as a local cache of the fetched subscription and keep the subscription link as the single source.

If the subscription concept is new to you, the blog post "What Is a Subscription Link? A Complete Guide to Retrieval, Client Import and Updates" (read the full post) covers the same ground in less space — read that first, then come back to this chapter.

05

Client Import Steps on Five Platforms

The import flow has the same skeleton on all five platforms: install the client → add the subscription → pick a route → connect. What differs is how you install and what system permission prompts appear. Client installers come from the downloads section of the user panel, which is only reachable after signing in; the marketing pages provide no direct installer links.

Import methods across the five platforms
PlatformClient formHow the subscription is importedWatch out for
WindowsDesktop clientOne-click import or paste the subscription linkThe system firewall may prompt on first run; allow it
macOSDesktop clientOne-click import or paste the subscription linkThe first connection needs network extension permission in System Settings
iOSApp Store clientOne-click import or paste the subscription linkThe first connection shows a system prompt to add a VPN configuration
AndroidApp installer packageOne-click import or paste the subscription linkThe app needs permission to create a VPN connection in system settings
LinuxCommand-line or graphical clientPaste the subscription link or a local configuration fileThe configuration has to be handed to the client manually

Windows

In the panel's downloads section choose Windows, then download and run the installer. Once installed, open the client and choose "Import from clipboard" in the "Subscription" or "Configuration" area — click the one-click import button in the panel first so the matching subscription address is on your clipboard, or paste the subscription link manually. After a successful import the client lists the routes; pick one with a suitable latency and click connect. If the connection fails, first check whether the system firewall is blocking the client process, then check whether another program has taken over the system proxy.

macOS

macOS follows much the same path as Windows: download the installer, drag it into the Applications folder, open the client, import the subscription, pick a route, connect. On the first connection the system asks you to allow a network extension — allow it under "System Settings → General → Login Items & Extensions". If the client icon appears in the menu bar but nothing responds, the extension is usually unauthorised; running the authorisation flow again is faster than reinstalling repeatedly.

iOS

Install the client from the App Store and open it, then choose to add a subscription and paste the subscription link, or use one-click import. On the first connection the system shows an "Add VPN Configuration" prompt; allow it and verify your device passcode. This is system behaviour, not the client asking for extra permissions. On iOS one client can hold several subscriptions — switch routes and reconnect. The system may reclaim the connection while running in the background, so tapping connect again after a long idle period is normal.

Android

Install the client on Android and open it, then paste the subscription link on the configuration or subscription page to import. On the first connection the system asks for permission to create a VPN connection; allow it and you can connect. Some customised systems clear network processes in the background, so add the client to the battery optimisation allowlist in system settings to reduce disconnects caused by background cleanup.

Linux

On Linux you will usually use a command-line client or a kernel-based graphical client. Taking the common configuration-file approach as an example, first fetch the subscription content locally; the example address is a placeholder:

# Save the subscription content as a local configuration file (placeholder address, not usable)
curl -L "https://example.com/sub?token=YOUR_TOKEN" -o vpnwy.yaml

# Confirm the file was fetched and is not empty
wc -l vpnwy.yaml

Then hand the configuration file to the client to load and start the connection. The advantage of a command-line client is that it can run as a persistent service holding the connection in the background, which suits scenarios that need a stable long-lived connection; the drawback is that switching routes means reloading the configuration, which is less immediate than a graphical client. If a graphical client is available, use it for everyday work and keep the command line for automation.

Three points that apply to all five platforms. First, update the route list once after importing the subscription before connecting, so you do not land on a node that has been taken offline. Second, using one account on several devices at the same time is allowed with no device limit — just import the subscription on each device. Third, if the client on one platform misbehaves, verify with the same account on another platform; if the other platform works, the problem is most likely the client or the system settings rather than the account.

06

Connection Checks and Troubleshooting

To tell whether a connection really succeeded, check three places: the client's connect button shows a connected state; the client icon appears in the system tray or status bar; and the current route in the panel overview shows as connected. When all three agree, the tunnel is up. The client interface alone is not enough — some clients still show connected after their background process has been reclaimed.

Exit IP check: after connecting, look up your current exit IP on any IP geolocation site and confirm it falls in the region of the route you chose. If it still shows your local IP, traffic is not going through the tunnel — usually because the client has not taken over system traffic, for example a browser proxy was configured but never enabled in the browser, or the system proxy switch is off.

DNS leak self-check: even after the exit IP has switched, domain resolution may still go through local DNS. To check, look up the DNS server address currently in use; if it belongs to your local network rather than the exit region, there is a leak. Most modern clients take over DNS automatically in TUN or global mode; in system-proxy-only mode you need to confirm it separately.

The difference between the three operating modes is worth remembering on its own: global mode sends all traffic into the tunnel, behaves most predictably and is the right choice for troubleshooting; rule mode splits traffic by preset rules, with addresses in mainland China going direct and the addresses that need acceleration going through the tunnel, making it the most allowance-efficient choice for everyday use; direct mode bypasses the tunnel and is used to switch acceleration off temporarily. When troubleshooting, switch to global mode first to confirm the tunnel itself is healthy, then switch back to rule mode.

Common symptoms and where to look first
SymptomCheck firstNotes
Shows connected but pages will not openChange route, then change protocolUsually the current route or protocol is unusable on the local network
Connection spins forever or drops immediatelyCheck the local network and other proxy softwareA restricted local network, or several proxy programs fighting over the system proxy, will both cause this
Some sites open, others time outCheck the operating mode and split-routing rulesIn rule mode, domains matched to direct do not go through the tunnel
Certificate or time errorsCheck that the system time is accurateA large system clock offset makes the encrypted handshake fail
Speed clearly below expectationsChange route, protocol or time of dayPeak hours and current network conditions both affect speed; changing route is the quickest way to test

It helps to fix the troubleshooting order into a chain, starting with the least effort: step one, change route; step two, change protocol; step three, restart the client; step four, switch operating mode; step five, check the system time and local network; step six, verify on another device; step seven, open a ticket. Fixing the order stops you from retrying the same step over and over — most connection problems are solved at step one or two.

What to include in a ticket: the platform and client name you are using, the region of the route you selected, the exact symptom (will not connect / connects but pages will not open / slow), and the steps you have already tried. The more specific the information, the faster the diagnosis. The ticket section of the panel lets you submit and track progress.

An easy-to-miss troubleshooting point: when several proxy programs run on the same device at once they fight over the system proxy settings, which shows up as intermittent behaviour. With this kind of on-and-off problem, confirm that only one proxy program is running before you start suspecting the route.

07

Routine Upkeep and Renewal

Traffic reset rule: a monthly plan's traffic resets each month on the activation day. Activate on the 12th, for example, and the allowance returns to its starting value on the 12th of every following month. The benefit is that you never wait to line up with the start of a month, activating mid-month costs you nothing, and there is no easy-to-misremember "cleared at month end" deadline to track.

Checking usage: the panel overview shows traffic used in the current cycle and the remaining allowance. Look at it once towards the end of a cycle — if several months in a row come close to the cap, upgrading the tier is less hassle than topping up each time; if you only go over occasionally, a data pack is more flexible.

Upgrades and proration: when you upgrade a monthly tier mid-cycle, the difference is prorated against the remaining days and there is no need to recalculate the whole cycle. A data pack is a one-off product with no cycle at all — it lasts until used up, never expires, and is not part of any proration.

Renewal: a monthly plan renews by cycle, and renewal starts a new traffic cycle. Data packs involve no renewal — they are not time-billed, so one purchase stays in your account until it is used up.

Managing several devices: simultaneous devices are unlimited, and each device just imports the subscription. When you have many devices, use the same subscription link across all of them rather than resetting a separate subscription per device — the subscription link is account-level, so one reset means re-importing on every device.

Subscription updates: clients fetch the subscription automatically at intervals, so route changes need no manual action. If the route list in the client disagrees with the panel, update the subscription once manually. For a device you have not used in a long time, update the subscription before the next use so you do not land on a route that has been taken offline.

Account security: set a separate password for the panel, do not send screenshots of the subscription link, and sign out after using a shared device. If you suspect the subscription link has leaked, reset the subscription in the panel and re-import the new link on each device. This does not affect your plan allowance — it only replaces the access credential.

Refunds and the end of a cycle: the service offers a 30-day refund, no questions asked. If you do not renew when a cycle ends, any remaining data-pack allowance is still kept under the data pack's own rules — data packs are stated as lasting until used up and never expiring, and that does not change when a monthly plan's cycle ends.

Upkeep boils down to three things: check usage once a month, update the subscription when routes misbehave, and reset the subscription if you suspect a leak. Beyond that, the service needs no day-to-day maintenance.

08

Advanced Usage

Split-routing rules: the value of rule mode is that what should go direct goes direct and what should be accelerated is accelerated. The default rule set already covers common cases, and advanced users usually do two more things: add corporate intranet and LAN addresses to the direct list so internal access is not pushed into the tunnel, and group domains that need a fixed exit region separately so they do not drift with the global route.

Protocol choice in one line: WireGuard first on mobile devices, Trojan first on complex networks, Shadowsocks first for compatibility.

Trade-offs between the three protocols
ProtocolCharacteristicsSuggested for
WireGuardLean, fast handshakes, low power drawPhones and laptops kept connected for long periods
TrojanUses the standard TLS port and blends with ordinary web trafficWhen the local network is sensitive to traffic characteristics
ShadowsocksWidely implemented, broadly compatibleOlder devices and third-party clients

Accessing AI tools: mainstream AI tools judge by exit region, and some are stricter about region than ordinary websites — once risk controls trigger you get a verification page or a flat refusal. There are two ways to handle it: pick a route in the same region as the account was registered, and stick to one route so the exit region does not jump around. For more on how the checks work and how to choose, see the blog post "Recommended Setup for Stable Claude Access: Region Checks, Risk Controls and Route Choice" (read the full post).

Streaming: streaming platforms serve different content libraries by exit region, and stable playback depends on whether the route is recognised by the platform. 4K playback demands both bandwidth and link stability; quality dropping to a low tier is usually not the client's fault but a fluctuation somewhere along the link. For how to tell and which metrics matter, see the blog post "4K Streaming Tested: Why Quality Drops to 480p and Which Metrics to Watch" (read the full post).

Gaming: the experience is decided by latency and packet loss together — latency affects how responsive controls feel, packet loss affects whether the picture rubber-bands. Game accelerators and proxies are two different approaches with different best-fit scenarios. For the comparison, see the blog post "Game Accelerator or Proxy? Latency, Packet Loss and Use Cases Compared" (read the full post).

Separating devices by scenario: no device limit means you can assign different devices to different routes — a laptop pinned to an IEPL dedicated line for work, a phone on a relay route for everyday browsing. The benefit is that a usage spike on one device does not affect the others, and when something goes wrong it is easier to tell which device is involved.

A practical rule for picking routes: there is no need to stay on one route forever. Use relay routes for everyday browsing, IEPL dedicated lines for long tasks that need stability, and direct routes for ordinary sites that are not strict about region. The servers page lists route types and streaming support by region, so you can filter by region first and then choose by type.

If terms like split routing, rules and global are still unclear, start with the blog post "Complete VPN Beginner's Guide: Subscriptions, Nodes, Protocols and Split Routing Explained" (read the full post). It explains the common terms one by one, and this chapter will read much more smoothly afterwards.

09

Support Channels and FAQ

Support channels: questions about your account, orders, refunds or the subscription can all be submitted through the ticket section of the panel. Include the platform, route, symptom and the steps you have already tried, and the diagnosis will be much faster. Ticket progress can also be tracked in the panel, so there is no need to submit the same question repeatedly.

Why does signing up not need an email address?

Signing up uses only a username and a password, which removes one piece of information to look after and one that is easily used to link accounts. Anything else account-related is handled through panel tickets — just give your username when you submit one.

Should I choose a monthly plan or a data pack?

If your usage is steady and you need cross-border access every month, choose a monthly plan; if it is irregular and you may go a long time between concentrated sessions, choose a data pack. You can hold both at once, and a data pack lasts until used up and never expires — it is not cleared by the monthly plan's reset.

How many devices can one account use?

Unlimited. Each device just imports the subscription; the subscription link is account-level, so the same link works on several devices and the allowance is counted per account.

Does upgrading mid-cycle waste what I have already paid?

No. The difference is prorated against the remaining days, so there is no need to recalculate the whole cycle and no need to wait for the current cycle to end.

What happens when the traffic runs out?

Once the month's allowance is used up there are two options: top up with a data pack, or upgrade to a higher tier (the difference is prorated against the remaining days). Both are done in the panel, with no need to register a new account.

Some sites will not open after connecting — what should I do?

Switch to global mode first to confirm the tunnel itself is healthy, then switch back to rule mode and check the split-routing rules. If only a few sites are affected, they are usually being matched to direct by the rules; adjusting the rules fixes it.

The route list in the client does not match the panel

Run "Update subscription" manually in the client. Clients fetch automatically at intervals, so after a change in the panel you have to wait for the next fetch before the local list syncs.

Can I share the subscription link with someone else?

It is not recommended. The subscription link is bound to your account, so anything shared is metered against your allowance and the traffic figures get mixed together. If you have already shared it, reset the subscription in the panel to invalidate the old link.

Can I get a refund if I am not satisfied?

The service offers a 30-day refund, no questions asked. The refund process and specific conditions follow the terms of service page, and requests are submitted through a panel ticket.

Finally, if you have not started yet, the shortest path is: sign up (no email address needed) → pick a tier → get the subscription link → import it on your platform → connect. The quickstart page walks through the whole process step by step, while the nine chapters here are what you come back to whenever a step needs a judgement call. Plans and prices are on the pricing page and the route list is on the servers page.