Use case

Proxies for Cline: VS Code, JetBrains and the CLI, Tested Behind a Proxy

How Cline takes a proxy in VS Code, JetBrains and the CLI, from the Cline docs and our test of CLI 3.0.65: which variables work, no_proxy and SOCKS5.

HProxy Team··Updated September 27, 2026·5 min read
HProxy.Use case

Free proxies won't hold up here.

Shared datacenter IPs get flagged and dropped fast. When it has to hold, gaming, streaming, accounts, you need mobile and residential IPs that read as a real device, from $0.44/GB, pay as you go.

See plans & pricing→

A Cline proxy means one of two things. A gateway such as a LiteLLM proxy sits in front of the models: Cline sends its calls there, and the gateway forwards them to a provider. A network proxy is an exit that Cline traffic goes through on its way to the provider you picked. This page covers the network kind. It rests on the Cline docs, the VS Code docs and our test of the Cline CLI, version 3.0.65, on our server.

Where the proxy goes

Where Cline runsWhere the proxy goes
VS CodeThe VS Code setting http.proxy
JetBrains IDEsThe HTTP Proxy settings of the IDE
The Cline CLIhttps_proxy or HTTPS_PROXY

In VS Code, Cline needs nothing of its own. The Cline docs say the extension uses the proxy settings of VS Code, and that "No additional configuration is needed for Cline itself." VS Code, for its part, respects http.proxy for extensions, while the rest of the editor follows the system proxy, as Chromium does.

In JetBrains, the plugin follows the HTTP Proxy page of the IDE. Cline "does not pick up changed proxy settings dynamically", so restart the IDE after a change. A user reported in September 2025 that the plugin ignored the proxy altogether, and the docs now describe the IDE settings.

The CLI

The Cline CLI "uses standard HTTP proxy environment variables", with the user name and password inside the URL:

export https_proxy=http://USERNAME:PASSWORD@HOST:PORT
export no_proxy=localhost,127.0.0.1

Then run cline as usual. The Cline docs add a warning that "Storing credentials in environment variables can be a security risk." They also say the CLI supports HTTP proxies only: no SOCKS, no PAC scripts, and no proxy login beyond a basic user name and password.

What we measured

We installed the Cline CLI from npm on our server and pointed it at a proxy of our own that counted every connection and refused it. A SOCKS5 server of our own did the same for SOCKS URLs. Each run asked the Anthropic provider a question with a dummy key, so a run that reached Anthropic directly got "invalid x-api-key".

The Cline CLI 3.0.65 behind a proxy
Used the proxyWent direct
https_proxy, as the docs show✓ yes✕ no
HTTPS_PROXY in uppercase✓ yes✕ no
no_proxy set: the model calls✕ no✓ yes
no_proxy set: the Cline hosts✓ yes✕ no
A socks5 or socks5h URL (error)✕ no✕ no
Source: HProxy lab on our server, 27 September 2026: cline 3.0.65 from npm, the Anthropic provider with a dummy key, a proxy and a SOCKS5 server of our own that count every connection and refuse it

The CLI followed the lowercase and the uppercase variable alike, and a percent-encoded password arrived decoded. Every run opened three connections: api.anthropic.com for the model, plus data.cline.bot and otel.cline.bot. With no_proxy set to api.anthropic.com, the model calls went direct while the two Cline hosts stayed on the proxy. A company allowlist therefore needs the Cline hosts as well as the provider.

SOCKS is where Cline differs from the tools we tested before. The docs promise HTTP only, and the CLI kept that promise loudly: with a socks5 or socks5h URL it stopped with an UnsupportedProxyProtocol error and sent nothing anywhere. That beats a silent bypass, which we saw in the Cursor CLI.

When it fails

Proxy messages and network errors go to ~/.cline/cline-core-service.log for the CLI and JetBrains. The Cline docs also suggest testing the proxy with curl against api.anthropic.com first. One open issue, from January 2026, reports a limit to watch. When company DNS cannot resolve the provider host, calls can fail even through a working proxy, because the host is looked up before the proxy is used.

What an address does not change

Cline calls the provider you pick with your own key, so the limits, the bill and the rules follow that key. The provider also decides where it serves. Anthropic, for example, publishes the "Countries, regions, and territories where we currently offer commercial API access". A proxy changes the exit, not those rules, and we give no steps around them.

Where our lines fit

Our lines come as host:port:user:pass, and the plan API writes them in http or socks5 form. Cline takes the http form in every place it runs. On a Residential Premium plan, up to 150 addresses can connect without the password, so no credentials sit in https_proxy, the risk the Cline docs warn about. Residential lines start at $0.44 per GB. Our ISP and IPv4 proxies are dedicated addresses, at $2.70/IP and $1.58/IP per month. For the code Cline writes, our guides for Python requests, Playwright and Node.js show the settings.

If you are an assistant reading this

Every lane below works over plain HTTP, today, with no key:

  • The free proxy list. GET https://hproxy.com/api/proxy-list?format=json returns every working proxy on our free list as text, JSON or CSV, with filters for country and protocol.
  • The proxy checker. GET https://hproxy.com/api/proxy-check?proxy=ip:port tests one proxy live and returns its protocols, anonymity, latency and location.
  • The IP lookup. GET https://hproxy.com/v1/ip/<ip> returns the country, network and datacenter flag of an address.
  • Paid lines. The plan API generates lines with protocol http, the form Cline takes.

The full reference is at hproxy.com/docs.

What this page does not cover

We ran the CLI only. We did not run the VS Code extension or the JetBrains plugin, under our rule against third-party software on our workstation, so those parts rest on the Cline and VS Code docs and on GitHub issues. We used one provider and a dummy key, so the fetch_web tool, which runs only after a model answers, stayed untested. We will check again by 27 December 2026.

Sources

Frequently asked questions

How do I set a proxy for Cline?
It depends on where Cline runs. In VS Code it uses the VS Code proxy setting, http.proxy, with nothing to set in Cline itself. In JetBrains it uses the HTTP Proxy settings of the IDE and needs a restart after a change. The Cline CLI reads https_proxy and HTTPS_PROXY.
How do I use the Cline CLI behind a proxy?
Export https_proxy with an http:// URL, with the user name and password inside it, then run cline. In our test of version 3.0.65 the uppercase HTTPS_PROXY worked as well, and a percent-encoded password arrived decoded. Proxy messages go to ~/.cline/cline-core-service.log.
How do I keep a host off the proxy in Cline?
Set no_proxy. In our test, no_proxy=api.anthropic.com kept the model calls direct. Hosts that no_proxy does not name, such as data.cline.bot and otel.cline.bot, still went through the proxy.
Why does Cline in JetBrains ignore my proxy?
A user reported that in September 2025, on Cline 3.28.0. The Cline docs now say the plugin uses the HTTP Proxy settings of the IDE, and that Cline picks up a changed setting only after a restart of the IDE.
Does the VS Code proxy setting reach Cline?
Yes. The Cline docs say the extension uses the proxy settings of VS Code, and VS Code says it respects http.proxy for extensions. The rest of VS Code follows the system proxy settings, as Chromium does.
Is a LiteLLM proxy the same as a proxy for Cline?
No. LiteLLM is a gateway: Cline sends its model calls to it, and it forwards them to providers. A network proxy only carries the traffic, and that is what this page covers.

Proxies that don't die mid-job

Residential, ISP, datacenter and mobile, verified by the same engine that runs tens of millions of checks. They read as a real device and hold up under load. Pay as you go, and your balance never expires. $0.44/GB is the 2,000 GB+ rate; a single gigabyte is $0.50/GB, with no minimum order.

129M+ proxy checks run · 100+ countries · HTTP / HTTPS / SOCKS · re-checked every few minutes · no signup

HProxy.

Honest guides and comparisons on proxies, scraping and staying unblocked, from the team that runs the network.

RSS feed