Colitu VPN for Android 2.2.0
The first open-source release of the Colitu VPN client for Android.
Highlights
- Brand-new interface. The whole app has been rebuilt in Jetpack Compose: onboarding, sign-in and registration, e-mail verification, home, locations, plans, account and support now live in one fast, consistent shell.
- Automatic protocol selection. Hysteria2, VLESS Reality, Trojan and Shadowsocks are probed in parallel. The fastest one starts, the tunnel is verified with a real request, and the app falls back to the next candidate if it fails.
- Support inside the app. Open tickets and read replies without leaving Colitu.
- Android TV. A dedicated TV layout with D-pad navigation and a leanback launcher entry.
- Verified in-app updates. For builds installed outside Google Play, an update is installed only if its SHA-256 matches the release manifest.
- Secure token storage. Session tokens are encrypted with AES-GCM using a key held in the Android Keystore.
- Languages: Russian, English and Turkish, switchable instantly inside the app.
Which file should I download?
| File | For | SHA-256 |
|---|---|---|
Colitu-2.2.0-universal.apk |
Any device (recommended if unsure) | 64f0a2baa39b2b2dafbeb18434bbb2b012d8b4372efcb495e5187a9ad7237329 |
Colitu-2.2.0-arm64-v8a.apk |
Most phones from 2017 onward | faeac80ae7ef48738856640579c5eeed99e3041442c313868244a5b55001403c |
Colitu-2.2.0-armeabi-v7a.apk |
Older 32-bit phones | ae94917943a3fed12081c481af1dfcd970a5cc90fd3201fa523b59f1952796e8 |
Requirements: Android 7.0 or newer. A Colitu account is required to connect; sign up at colitu.com.
Signing certificate SHA-256:
900e364616e5fce83766310f74bd06e4743a6936460a9e108edd096dfb5e82fc
When installing an APK from the browser, Android may ask you to allow installs from this source. Updates signed with a different certificate will be refused by Android, which protects you from tampered builds.
Colitu for Android is licensed under GPL-3.0; third-party notices are in NOTICE.