github nymtech/nym-vpn-client nym-vpn-v2026.13.0-beta.3
v2026.13.0-beta.3

pre-release8 hours ago

Nym VPN v2026.13.0-beta.3 application and core binaries. This release is for all platforms, except Android (Google Play)

🚀 What's New

🛠️ Core

Added

  • Detect when the diagnostics check should be run (#5993)
  • Persist gateway list to disk, seeded from a built-in list (#6015)
  • [Linux] Authenticate also via UNIX group "nym-vpn" membership, or root (#6100)
  • Configuration profiles: Safest, Most Private, Fastest and Random (#6073)
  • Add six_months subscription kind to the vpn-api models and gRPC proto (#6320)
  • Add end-to-end plumbing for dynamically applying DNS fallbacks from Discovery (#6126)
  • [Desktop] Detect conflicting software and report it to the user (#6122). Temporarily disabled, as it falsely reports DNS interception on systemd-resolved systems

Changed

  • [macOS] Sign cli with net.nymtech.vpn.cli bundle identifier. Add it to client signing requirement. (#5998)
  • Merge rpc-uniffi crate into lib-uniffi (#6010)
  • Fallback to random when no location data available (#6382)
  • Re-order authentication flow and do checks as soon as possible (#6406)

Fixed

  • Run diagnostics in the background so a slow one no longer blocks other commands, such as disconnect
  • Remove a gateway from the blacklist once a tunnel through it connects, so a working server is not hidden from the server list
  • Only report connected once both the in-tunnel ping and the gateway metadata check pass, and tear down the tunnel when the ping check fails (removes the metadata-based teardown deferral from #5762 and the connect-on-healthy-metadata fallback from #6091)
  • Keep the cached gateway list on the first connect and when a discovery refresh updates the current network, instead of refetching it
  • Keep the in-flight location lookup instead of restarting it on each connect or settings update, so automatic gateway selection is less likely to fall back to random
  • Treat a built-in or unknown-age gateway cache as stale on startup so a fresh list is fetched (including an on-disk cache older than the Windows system uptime)
  • Remove failed pending requests before creating new ones (#6295)
  • [macOS] Fix file permissions for nym-vpnc in the macOS installer package, helping ensure the installed application can run correctly (#6456)

🤖 Android app

Added

  • Changelog validation workflow for Play Store (#6128)
  • Profiles: UI and logic (#6144)
  • Set geo location for android command sender (#6144)
  • Log prior process exit reasons on startup (#6236)
  • Add Profiles screen to Settings (#6319)
  • Six-month subscription kind with long-plan expiry warnings (#6320)
  • Add error handling for Connect button (http://github.com/nymtech/nym-vpn-client/pull/6329)
  • Enable ARM Memory Tagging Extension (MTE) in async mode (#6436)
  • Log out asks every time whether the passphrase is saved (#6480)
  • Screen lock confirmation for passphrase, subscription, social login and shortcuts (#6504)
  • Screen lock required for account creation (#6504)
  • Block screenshots on passphrase/PIN screens (#6562)
  • Clear copied passphrase/PIN after 60s (#6562)

Changed

  • Maestro UI suite: repair the five flows broken by the dVPN rename, the Connection profiles settings row and the Passphrase download removal; replace assertions that could not fail; correct mock gateway uptime to a 0-1 fraction
  • Remove score placeholder. Update animation (#6231)
  • Bump toolchain version to 25 (#6296)
  • Bump detekt (#6296)
  • Separate workflow for Play Store metadata (#6411)
  • Disable default PII in Sentry (#6440)
  • Disable view hierarchy attachment in Sentry (#6533)
  • Remove unused libs (#6442)
  • Update notifications security (#6444)
  • Remove camera usage (#6449)
  • Download function removed from Passphrase screen (#6460)
  • Remove unused permissions (#6479)
  • Dismissible screen lock alert on Main Screen (#6562)

Fixed

  • Prefer validated WiFi or Ethernet over cellular when binding the VPN process on the cover TUN
  • Fail cover TUN setup if bindProcessToNetwork returns false instead of logging success
  • Proper status handling for Notification Manager (#6268)
  • Fix Quick Tile crash after service destroy (#6232)
  • Disable Sentry Session Replay to stop foreground ANR kills (#6248)
  • Fail tunnel configure if the VPN app cannot be excluded from the blocking interface (#6213)
  • Fix NavComponent crash after libs version update (#6442)
  • Screen lock confirmation on Android 7–10 devices with only a PIN, pattern or password (#6504)
  • Fix grey nav bar on bottom sheets (#6562)

🐧🪟 Windows & Linux apps

Added

  • Connection profiles: Auto, Anonymous, Fastest and Random (#6141, #6314)
  • Recently used servers (#6118)
  • Upcoming-expiry renewal reminder (#6512)
  • Mixnet tuning: cover-traffic toggle and tuning slider (#6598)
  • Italian and Indonesian locales (#6327)

Changed

  • Rename "Safest" to "Auto" (#6424)
  • Beta pill on the App & Wallet proxy setting (#6409)

Fixed

  • (windows) Fix cannot move state from Destroyed panic on shutdown, logoff or Restart Manager close by bumping tauri to 2.12.1 (tao 0.37) (#6617)

🍎 iOS & macOS apps

Added

  • Six-month subscription kind (#6320)
  • Add Profiles: UI & logic (#6364)
  • Upcoming-expiry renewal reminder (#6507)
  • Mixnet tuning: cover-traffic toggle and tuning slider (#6596)
  • Italian and Indonesian locales (#6327)

Changed

  • Rename "Safest" to "Auto" (#6424)

Removed

  • Widget support for both iOS & macOS (#6255)

Fixed

  • Account bar refresh on iOS and macOS (#6458)
  • Home and exit server caret alignment (#6464, #6518)
  • Disable Sentry PII collection (#6441)

📦 Core Components Overview

  • nym-vpnd: Background daemon service managed via the UI app or CLI.
  • nym-vpnc: Command-line interface (CLI) to control the daemon (nym-vpnd).
  • nym-socks5-proxy: SOCKS5 proxy handling geo-exclusion routing.
  • nym-diagnostic: System information and network troubleshooting tool.
  • nym-setup: macOS helper tool for system service configuration.

💾 Downloads & Assets

🤖 Android

  • nym-vpn-fdroid-2026.13.0-beta.3-prerelease.apk: Android App (F-Droid Build)
How to verify the build fingerprint?

Signing Certificate SHA-256 Fingerprint (4096-bit):

3c98a016aa4f14a3ba185c764ed363415cf7ff3c3d328a87ffff2ff1b140ff06

Verification Steps:

To verify the build fingerprint on your system, run:

apksigner verify --print-certs "nym-vpn-fdroid-2026.13.0-beta.3-prerelease.apk" | grep SHA-256

🐧 Linux

  • Desktop App
    • nym-vpn-app_2026.13.0-beta.3_amd64.deb: Nym VPN app, debian package (x86_64)
    • nym-vpn-app_2026.13.0-beta.3_arm64.deb: Nym VPN app, debian package (arm64)
    • NymVPN_2026.13.0-beta.3_amd64.AppImage: Nym VPN app, AppImage (x86_64)
    • NymVPN_2026.13.0-beta.3_aarch64.AppImage: Nym VPN app, AppImage (arm64)
  • CLI & Daemon
    • nym-vpnd_2026.13.0~beta.3_amd64.deb: Nym VPN daemon, debian package (x86_64)
    • nym-vpnd_2026.13.0~beta.3_arm64.deb: Nym VPN daemon, debian package (arm64)
    • nym-vpnc_2026.13.0~beta.3_amd64.deb: Nym VPN command-line tool, debian package (x86_64)
    • nym-vpnc_2026.13.0~beta.3_arm64.deb: Nym VPN command-line tool, debian package (arm64)

🍎 macOS

  • NymVPN-2026.13.0-beta.3.pkg: Desktop App Installer
  • nym-vpnc-2026.13.0-beta.3.pkg: Command-Line Tool Installer

🪟 Windows

  • NymVPN_2026.13.0-beta.3_x64-setup.exe: Desktop App Installer (x64)
  • NymVPN_2026.13.0-beta.3_arm64-setup.exe: Desktop App Installer (arm64)

Don't miss a new nym-vpn-client release

NewReleases is sending notifications on new releases.