Before importing: what an airport subscription does

In Clash clients, an “airport” usually means a proxy service that provides access to one or more relay nodes. The provider may give you a subscription URL: a private web address that lets a compatible client retrieve a profile containing node information and, depending on the provider, routing groups or other settings. In Clash Verge Rev, importing that URL creates a profile that the application can load and update. It does not, by itself, guarantee that every node is available or that traffic is already using a proxy.

Keep three separate actions in mind: import the subscription, select and activate the profile, and choose a working proxy or policy group. A successful import means the application could retrieve and parse profile data. It does not prove that the service is currently reachable, that your account has remaining traffic, or that a selected node can connect from your network. Separating these checks makes troubleshooting much easier than treating every failure as “the subscription is broken.”

Before you begin, obtain the subscription URL from the service’s account page or another channel you can verify. Read the provider’s current instructions for any required client compatibility or profile conversion options. Some providers supply a URL intended for Clash-compatible clients; others offer several formats with similar labels. Choose the option that specifically names Clash, Mihomo, or a compatible profile rather than pasting a dashboard address, a sign-in link, or a single-node connection string into a subscription field.

You will also need an internet connection that can reach the provider’s subscription endpoint. If you are on a managed work or school device, check its network and software policies before importing a profile or changing system proxy settings. Avoid changing DNS, TUN, or other advanced options just to make the import button work: subscription retrieval is a separate step from routing traffic through the core.

⚠ Private link: Treat the subscription URL like a password. It may contain an account token that grants access to your profile. Do not post it in screenshots, public issue trackers, chat rooms, or logs. If it is exposed, revoke or regenerate it through your provider’s account controls when available.

Add the subscription URL in Clash Verge Rev

Start Clash Verge Rev and open its profile management area. Depending on the build and language, the section may be called Profiles, Profile, or 订阅; look for the screen that lists imported configurations rather than the proxy selection panel. If the application has just been installed, allow it to finish its first launch and core initialization before importing. A profile page that is still loading application components can make a normal network request appear unresponsive.

Use the profile page’s add or import control, then choose the option for a remote URL or subscription. Paste the complete address supplied by your provider into the URL field. Preserve the full value, including its scheme such as https:// and any query string after a question mark. Do not remove “unfamiliar” characters or add spaces at either end. A copied URL can be long, and some password managers or messaging apps may wrap it visually; the line break shown on screen is not necessarily part of the actual address.

If the form offers a profile name, choose a short label that helps you recognize the provider or account without exposing the secret URL. A useful label might be a provider nickname and a purpose, such as “Travel profile,” rather than your email address or the full token. The label is local organization information; changing it should not alter the subscription endpoint.

Review any other fields before saving. Some builds or provider workflows expose options such as a custom update interval, a user-agent value, or a conversion service. Leave these at their defaults unless your provider’s instructions specifically require a change. A random conversion address or user-agent copied from an unrelated guide can introduce another failure point and may send profile data to a service you did not intend to trust.

Submit the form and wait for the fetch to finish. A newly imported profile should appear in the profile list with a name, update information, or other status indication. Select it if the interface does not select it automatically. If the application reports an error, note the exact message before trying repeatedly; “invalid format,” “timeout,” and “unauthorized” point to different causes. Avoid pasting your private URL into a public search engine or support post while investigating.

On some releases, controls move between the profile list and a profile’s context menu. If you cannot find an add button, check the visible labels and icons in the profile view, then consult the help information shipped with your installed build. Do not assume that a button labeled “New” creates a remote subscription; it may create a local configuration instead. The reliable cue is an input field that explicitly accepts a URL or remote profile address.

Confirm the profile loaded and traffic can connect

After import, confirm that the profile is present and that its update or load status does not show an error. Open its details if available and check whether the client recognizes usable proxy entries or policy groups. A profile with a name but no visible nodes may have been fetched successfully yet contain data the selected core cannot parse, or the provider may have returned an empty response. In either case, the profile name alone is not proof that the configuration is usable.

Next, activate the imported profile. Clash Verge Rev may distinguish the selected profile from the configuration currently running in the core. If the interface has a separate Use, Apply, or reload action, complete it and wait for the core to finish starting. Look for an explicit running state or a successful core status rather than assuming that clicking a profile row is enough.

Open the proxy or group view and inspect the available choices. Many subscriptions present a selector group, where you choose a node manually, or a test group that measures candidate nodes and may select one according to its policy. Choose an option that is available and, if the interface provides a test action, run a test. A test result is only a quick reachability signal; it does not promise that every website or application will work through that node.

For an initial check, use a simple, permitted destination and observe the client’s connection or traffic view. If the application is configured to use the system proxy, confirm that the system-proxy control is enabled and that no other VPN or proxy client is competing for the same setting. Browser extensions, environment variables, PAC files, and operating-system proxy settings can each send traffic through different paths. A browser that appears unproxied does not necessarily mean the imported profile failed.

Keep the first test narrow. Do not enable TUN mode, change DNS strategy, edit routing rules, or modify several proxy groups at once. Those settings can be useful for specific needs, but adding them before confirming the basic profile creates more variables. First establish that the profile loads, the core runs, a proxy group has an appropriate selection, and the chosen application is actually using the client’s local proxy.

ℹ Interpret the result: A successful profile update tests retrieval and parsing. A successful node test tests a particular connection path. A successful browser request tests that browser’s route. These are related checks, but none substitutes for the others.

Refresh a subscription and understand profile updates

Subscription profiles are usually refreshed from the profile list using a refresh icon or an item in the profile’s menu. Select the profile you want to update and trigger its refresh action. Wait for the request to complete, then check the displayed update time or status. If the application has an automatic update interval, use the provider’s recommended value or the client’s default rather than setting a very short interval. Frequent requests can create unnecessary load and may cause the provider to rate-limit your account.

A refresh generally replaces or updates the remote profile data; it is not the same as editing a local YAML file. If you have made local changes, first determine whether they are stored as profile overrides, separate configuration files, or edits that will be overwritten on the next fetch. Keep a backup of deliberate local work before refreshing, especially if you cannot easily reproduce custom rules or group changes.

Refresh when your provider announces new nodes, when the profile’s access information changes, or when a previously available entry disappears. If nothing has changed on the provider side and the current profile is working, there is usually no need to refresh repeatedly. A subscription update does not necessarily renew payment, restore expired access, or reset a provider-side traffic quota; those account conditions must be checked with the service itself.

If a refresh fails once, record the status and retry after checking basic connectivity. Repeatedly pressing refresh can obscure whether the problem is temporary or persistent. Compare the failure time with any provider maintenance notice, account renewal date, or network change. If the provider offers a dashboard status page, check it through a normal browser session without sharing the private subscription link.

Keep the profile name stable where practical. Renaming a profile may be harmless, but deleting and re-adding it can remove local selections or make it harder to distinguish an older profile from a new one. If you must replace a URL, confirm that the new one belongs to the same account and provider before saving it. An old link that still appears in the application may have expired even though the profile entry remains visible.

Fix common subscription import errors

“Invalid URL” or a rejected address: Check that you copied the entire URL, including https://, and that no quotation marks, spaces, punctuation, or explanatory text were added. If the provider gave you separate links for different clients, choose its Clash-compatible subscription rather than a browser login page. A URL that opens a dashboard in a browser may not be a profile endpoint.

Timeout, connection refused, or network error: Confirm that the device has ordinary internet access and that the provider’s endpoint is reachable from the current network. Captive portals, unstable Wi-Fi, DNS filtering, firewall rules, and temporary provider outages can all prevent a fetch. Finish any hotel or public Wi-Fi sign-in page first. If you are using another VPN or proxy, test without changing several network settings at once, provided doing so complies with your organization’s policy.

Unauthorized, forbidden, or expired: These responses commonly indicate an invalid, expired, revoked, or account-specific URL. Sign in to the provider’s official account page and check subscription status or generate a replacement link if the service allows it. Do not try to repair a rejected token by editing random parts of the address. Contact the provider through its official support channel if the account appears active but the endpoint still refuses access.

Fetch succeeds but no usable nodes appear: Verify that you selected the correct profile format and that the profile is compatible with the core bundled with your Clash Verge Rev build. A provider may return an empty response when an account has expired or when its endpoint expects a different client identifier. Check the provider’s documentation before experimenting with conversion settings. If a format mismatch is confirmed, use the provider’s supported conversion method rather than an unknown third-party service.

Profile loads, but the core will not start: Inspect the client’s error or log view for the first configuration parsing error. The issue may be a profile field unsupported by the installed core, malformed provider data, or a conflict with another active configuration. Update Clash Verge Rev only through a trusted release channel, then retry the profile refresh. If the error persists, preserve the relevant diagnostic message but remove tokens, subscription URLs, server credentials, and personal identifiers before sharing logs with support.

Import appears successful, but applications do not use the proxy: Check whether the profile is active, the core is running, a usable group is selected, and the relevant system-proxy or application setting is enabled. Another VPN, proxy manager, browser extension, or enterprise policy may override the route. Test one application at a time and inspect the client’s connection view. Avoid changing DNS or TUN settings as a first reaction; first identify which layer is not connected to the one before it.

What you see What to check first
Address rejected immediately Full URL, correct subscription format, and accidental spaces
Request times out Internet access, captive portal, provider availability, and firewall
Unauthorized response Account status, token validity, and provider-issued replacement URL
Profile has no usable entries Client format, account state, and provider compatibility guidance
Profile loads but apps connect directly Active profile, running core, selected group, and system-proxy state

Protect the link and keep the setup maintainable

A subscription URL is a credential, not merely a convenient shortcut. Store it in a password manager or another private location, and avoid putting it in screenshots, shared documents, shell history, or public configuration repositories. When requesting help, describe the error and the stage where it occurs instead of attaching the link. If a diagnostic export contains the URL, remove or redact it before sharing the file.

Review the provider’s account controls periodically. If the service supports link rotation, use it after accidental exposure or when changing accounts. Then replace the old URL in Clash Verge Rev and confirm that the new profile refreshes successfully before deleting a working fallback profile. Do not assume that deleting a local profile revokes the server-side link; revocation usually needs to be performed through the provider’s account system.

Keep the client and its bundled core from a trustworthy distribution channel, and be cautious about instructions that ask you to paste private profile data into unfamiliar converters or diagnostic websites. A remote profile can reveal server addresses and account-specific metadata even when it does not include your personal name. Limit access to the device, protect its login, and follow workplace, school, and local network rules when using proxy software.

A subscription setup is easiest to maintain when each layer has one clear job: the provider issues the link, Clash Verge Rev fetches and parses the profile, the core runs it, and the selected group determines the proxy path for compatible traffic. Record the profile label, the last successful refresh, and any provider-specific update guidance without recording the secret URL itself. That small amount of housekeeping makes account renewals and future troubleshooting far less confusing.

Some lightweight proxy clients make adding a link feel simpler, but they may offer less visibility into profile status, core errors, and policy-group selection; more general VPN applications can be convenient yet may not expose the subscription workflow or Clash-compatible routing controls this task requires. For this specific setup, Clash Verge Rev provides a clearer path from remote profile import to refresh and connection checks. If you want those steps in one desktop workflow, you can download Clash V.CORE and use the same careful approach: protect the link, verify the loaded profile, and test the actual route before relying on it.