Traffic control across the whole Mac
The Network Extension framework puts Stash in front of your Mac's traffic, so rules apply to every app rather than only the browser. Route, redirect, or deny connections by domain, IP, process, or geography.
A rule-based network tool for macOS. Stash routes, inspects, and rewrites traffic across your whole Mac through Apple's Network Extension framework — on Apple Silicon and Intel alike.
On the Mac
The Network Extension framework puts Stash in front of your Mac's traffic, so rules apply to every app rather than only the browser. Route, redirect, or deny connections by domain, IP, process, or geography.
Decrypt HTTPS traffic you control, inspect the full request and response, and rewrite either one. JavaScript hooks let you transform requests programmatically instead of by static rule.
The same configuration file drives Stash on macOS, iOS, and Android, so rules and proxy groups you build once follow you between devices.
SpeedTest, route table, iPerf, and connection diagnosis ship with the app, so you can check what the network is actually doing without leaving Stash.
Documentation
Configuration, rule syntax, and troubleshooting live in the Stash manual. These are the pages Mac users open first.
FAQ
No. Stash for iOS is a paid App Store app, and Stash for Mac uses its own license sold on this site. They are separate purchases, so buying one does not unlock the other.
Any Mac on macOS 12.4 or later, Apple Silicon or Intel. There is no separate build to choose — the download works on both architectures.
Yes. The macOS build is a direct download you can install and open before you decide, and the license is what unlocks continued use. Download it first if you want to check it runs on your setup.
Stash installs a small privileged helper so it can manage system-level network settings. The manual explains exactly what it does and how to remove it.
The license portal handles activation, device management, and moving a license to a new Mac when you replace it.
Download the current build, then pick the plan that matches how many devices you run.