# Nexus Access, complete text Source: https://nexus-access.biz Updated: 2026-08-07 Language: English License: free to quote with attribution to nexus-access.biz This file contains the full text of every page on the site in markdown, published for assistants and other automated readers so nothing has to be inferred from the rendered pages. --- # About this site A directory of verified Nexus Market onion addresses with a full guide to reaching them from whatever machine you have. It is not the market. No accounts, no forms, no search box, no advertising and nothing collected about visitors. Method: platform behaviour described here is documented behaviour of the operating systems and tools involved and is checkable independently of this site. Timing figures are the commonly reported ranges for onion services and match what the design implies given six relays and no caching. Statements about the market are limited to what it consistently publishes. Where something cannot be established from outside, the page says so. Not claimed: that any market is safe, that an address will be reachable when you read this, that any setup makes an activity risk free, or that any route is best in general. Disclosure: this site publishes Nexus addresses, which is worth weighing when reading anything here about Nexus. The platform guidance applies to any onion service, and the address check is performed by the reader against their own browser rather than taken on trust. --- # Verified Nexus Market onion addresses http://nexusb2l7fmqnefwphyy7m5zjhlkytlbo7qbb5lu5dlczr3azgii2gyd.onion/ http://nexusma2iqgauqqvjcgds4ckv5xbf272tkfagq4epojjhsgleqpwxiqd.onion/ http://nexusabcd6tyfhdwilyitaqiri6tisj2v2hueyjuj6qkvd6azvi5tuqd.onion/ All three reach the same market. Identical behind each: account, password and two factor setup, balance, open orders, message history, listings, vendors, prices and escrow. There is no separate account per address and nothing to move across. Several addresses exist because an onion service reachable at exactly one address stops being reachable the moment that address is flooded. Publishing several means an attacker has to hold all of them at once. Copy rather than type. An onion address is fifty six characters derived from a key rather than chosen, so there is no pattern to help and nothing to catch a slip. Two addresses differing by a single character are unrelated services. The check that decides everything: when the login screen loads, compare the onion printed on the page against the address bar, reading from the end backwards. The last characters are the expensive ones to match, because anybody generating a lookalike spends the effort on a convincing prefix. --- # Choosing a route in | Route | Category | Effort | Setup time | Realistic risk | | --- | --- | --- | --- | --- | | Reaching Nexus Market from Windows (https://nexus-access.biz/access/windows) | Desktop | Easy | 15 min | Moderate | | Reaching Nexus Market from macOS (https://nexus-access.biz/access/macos) | Desktop | Easy | 15 min | Moderate | | Reaching Nexus Market from Linux (https://nexus-access.biz/access/linux) | Desktop | Moderate | 20 min | Low | | Reaching Nexus Market from an Android phone (https://nexus-access.biz/access/android) | Mobile | Easy | 10 min | High | | Reaching Nexus Market from a Tails USB stick (https://nexus-access.biz/access/tails) | Live system | Moderate | 40 min | Very low | | Reaching Nexus Market through Whonix (https://nexus-access.biz/access/whonix) | Virtual machine | Advanced | 60 min | Very low | | Getting in where Tor itself is blocked (https://nexus-access.biz/access/censored) | Blocked network | Moderate | 20 min | Depends | | Using Nexus from a network you do not control (https://nexus-access.biz/access/public-wifi) | Untrusted network | Easy | 5 min | High | How to choose without reading all eight: - The machine is yours and nobody else uses it. Desktop is fine, with the settings its page lists. - The machine is shared, or you would rather nothing persisted. Use a live system on a USB stick. - You use this regularly and want an environment you return to. Whonix. - A phone is genuinely all you have. It works and it is the weakest option here. - Tor will not connect at all. That is a blocked network and the fix is a bridge. None of these make you anonymous on their own. They control what your machine and your network can observe. --- # Reaching Nexus Market from Windows URL: https://nexus-access.biz/access/windows Category: Desktop Effort: Easy Setup time: 15 min Realistic risk: Moderate Windows is what most people have, so this is the most common way in. It also does more logging by default than any other option here, which is worth knowing before you decide it is good enough. ## The short version 1. Download Tor Browser from the Tor Project site and nowhere else. 2. Verify the signature before running it. This is the one step people skip and the one that matters. 3. Install it to a folder you control rather than a shared machine profile. 4. Set the security level to Safest from the shield menu. 5. Paste an address from this site and confirm it on the login screen. ## What Windows records without asking Recent documents, jump lists, thumbnail caches, search indexing and crash reports all happen quietly and all of them can outlive the session. None of that touches the Tor connection itself, which is separate, but it does mean the machine has a memory of what you opened. On a computer other people use, that memory is the weak point rather than the network. ## Settings worth changing first - Turn off search indexing for the folder you keep Tor Browser in. - Disable delivery of diagnostic data if the edition allows it. - Use a real account password rather than a four digit PIN, because the PIN protects nothing if the drive is not encrypted. - Turn on drive encryption if the edition supports it, since a machine that is only protected while running is not protected at all. ## Where Windows falls short It has no built in way to leave no trace. Everything you do writes something somewhere, and cleaning up afterwards is guesswork rather than a guarantee. That is not an argument against using it, it is an argument for knowing what it is: convenient, familiar, and the least private option on this page. ## When to move to something else If the machine is shared, or if you would rather nothing persisted at all, a live system on a USB stick is a better answer and takes about twenty minutes to prepare. It leaves the Windows install untouched and forgets everything when you shut down. --- # Reaching Nexus Market from macOS URL: https://nexus-access.biz/access/macos Category: Desktop Effort: Easy Setup time: 15 min Realistic risk: Moderate A Mac gets you to the same place as any other desktop with slightly less friction and slightly more cloud. The friction is fine. The cloud is the part to think about. ## The short version 1. Download the macOS build from the Tor Project site. 2. Verify the signature before opening it. 3. Drag it to Applications and open it the first time from the right click menu, which gives you the option to allow it. 4. Set the security level to Safest. 5. Paste an address from this site and confirm it on the login screen. ## The Gatekeeper prompt is normal On first launch macOS may say it cannot verify the developer. That is a statement about Apple notarisation and not about whether the download is genuine. Your own signature check answers that question properly and does not depend on Apple at all. Do the signature check, then allow the app. ## The conveniences to switch off - Desktop and Documents syncing to iCloud, which will happily copy anything you save into a folder you did not choose. - Handoff and universal clipboard, which push what you copy to other devices. Pasting an onion address on one machine and having it appear on a phone is not what you want. - Spotlight indexing for the folder you keep downloads in. ## Disk encryption Turn it on if it is not already. On a laptop that leaves the house this is the single highest value setting on the machine, and it costs nothing in daily use. ## What a Mac does not give you Amnesia. Like Windows, it remembers. Recent items, quick look thumbnails and the unified log all persist. If the goal is for the machine to know nothing afterwards, a live system is the tool for that, not a well configured Mac. --- # Reaching Nexus Market from Linux URL: https://nexus-access.biz/access/linux Category: Desktop Effort: Moderate Setup time: 20 min Realistic risk: Low Linux gives you the most control and the most opportunities to configure something badly. The good news is that the correct setup is also the simplest one. ## Do not install Tor Browser from the distribution repository Packaged versions lag behind, and a lagging Tor Browser is a browser with known holes in it. More importantly, distribution packaging can alter how the bundle behaves in ways the Tor Project did not intend. Download the tarball from the Tor Project directly, verify it, and extract it into your home directory. Updates then come from the browser itself. ## The short version 1. Download the Linux tarball and its signature file from the Tor Project site. 2. Import the signing key and verify the signature. 3. Extract it somewhere in your home directory and run the start script. 4. Let it register itself in the application menu if you want, or leave it standalone. 5. Set the security level to Safest and paste an address from this site. ## Do not run it as root It will refuse, and the refusal is correct. A browser running with full system privileges turns any browser problem into a whole machine problem. If you find yourself working around this, stop and reconsider what you are doing. ## What Linux gets you - Full disk encryption that is standard rather than an upsell. - No telemetry you did not choose to enable. - A file system you can actually inspect, so cleaning up is knowable rather than hopeful. ## What it does not get you Anonymity by itself. A well configured Linux desktop still writes shell history, thumbnails and journal entries. The distribution is not the protection, the browser and your habits are. If you want the machine to genuinely forget, use a live system. --- # Reaching Nexus Market from an Android phone URL: https://nexus-access.biz/access/android Category: Mobile Effort: Easy Setup time: 10 min Realistic risk: High Yes, it works. Tor Browser for Android opens onion addresses the same as the desktop build. The honest part of this page is everything after that sentence. ## Why a phone is the weakest option here A phone is a device with a permanent network identity, a location history, an app store account tied to your name, and a set of background services you cannot see or stop. None of that breaks the Tor connection. All of it means the device knows a great deal about you, and the device is the part sitting in your hand. A desktop can be cleaned. A live USB forgets on its own. A phone does neither, and it travels with you. ## If a phone is what you have 1. Install Tor Browser for Android from the Tor Project listing rather than a search result. 2. Set the security level to Safest in the settings, same as the desktop. 3. Use a screen lock that is a real passphrase rather than a pattern or a short PIN. 4. Do not let the browser or any keyboard sync anything to a cloud account. 5. Paste an address from this site and confirm it on the login screen before typing anything. ## The keyboard problem Many keyboards send what you type to a server for prediction and improvement. That is a bad fit for typing a password or an address. Switch to a keyboard that works entirely on the device, and turn learning off. This is easy to overlook and it undoes everything else. ## What not to do on a phone - Do not install anything that promises to make the browser faster or unblock something. It will not, and now something else has your traffic. - Do not screenshot anything. Screenshots go into the gallery and the gallery usually syncs. - Do not stay signed in between sessions. Sign out and close the browser when finished. ## A fair summary Reading and checking an order on a phone is reasonable. Running everything from one is a compromise you should make deliberately rather than by default. --- # Reaching Nexus Market from a Tails USB stick URL: https://nexus-access.biz/access/tails Category: Live system Effort: Moderate Setup time: 40 min Realistic risk: Very low A whole operating system that lives on a USB stick, sends everything through Tor, and forgets the session the moment you power off. For this kind of use it is the strongest sensible option, and it takes about forty minutes to prepare once. ## What it actually does You boot from the stick rather than from the computer hard drive. The installed operating system is untouched and does not run. Everything the session does lives in memory, all network traffic goes through Tor whether the application asked for it or not, and when you shut down the memory is wiped. The machine you used has no record of the session. ## What it takes 1. A USB stick of at least eight gigabytes that you are willing to dedicate to this. 2. The Tails image from the project site, verified before writing it. 3. A tool to write the image to the stick, which the project documents for each platform. 4. A computer that will boot from USB, which usually means pressing a key at startup to pick the boot device. ## Persistent storage, and whether you want it Tails can keep an encrypted area on the stick for bookmarks and files across sessions. That is convenient and it is also the one thing that survives, so it is worth deciding deliberately. For most people a small persistent area holding nothing but the three addresses is a reasonable trade. Storing anything you would not want found is not. ## The limits - It protects the session, not you. Signing into an account that identifies you undoes it instantly. - It does not defend against a compromised computer firmware, which is rare and worth knowing about anyway. - It is slower than a normal desktop, because it runs from a USB stick and routes everything through Tor. ## Why it suits this use Because the biggest practical risk on a desktop is not the network, it is the machine remembering. Tails removes that entire category of problem rather than managing it. That is a bigger improvement than any browser setting. --- # Reaching Nexus Market through Whonix URL: https://nexus-access.biz/access/whonix Category: Virtual machine Effort: Advanced Setup time: 60 min Realistic risk: Very low Two virtual machines instead of one. Everything you do runs in the second, and the second has no route to the internet except through the first, which speaks only Tor. It is the most robust option on this site and the most work. ## Why two machines On an ordinary setup, an application that misbehaves can reach the network directly and reveal where you are. Whonix removes that possibility by construction. The workstation has no way to send anything anywhere except through the gateway, and the gateway only knows how to speak Tor. There is no configuration mistake that turns that off, which is the whole point. ## What it takes 1. A host machine with enough memory to run two virtual machines at once, which realistically means eight gigabytes or more. 2. Virtualisation software the Whonix project supports. 3. The Whonix images, verified before importing. 4. Patience for the first run, since two systems have to start and update. ## How it compares with a live system | Question | Tails | Whonix | | --- | --- | --- | | Does the machine remember | No, it forgets on shutdown | Yes, the virtual machines persist | | Protects against application leaks | Mostly | Yes, by construction | | Setup effort | About forty minutes | About an hour, more to maintain | | Runs alongside your normal desktop | No, you reboot | Yes, in windows | | Best for | Occasional use with no trace | Regular use with strong isolation | ## The trade Whonix keeps state, which is exactly what makes it convenient and exactly what makes it different from Tails. If you want an environment you return to that cannot leak, this is it. If you want no environment at all afterwards, that is Tails. ## Do not mix the two ideas Running Whonix on a host that is itself full of your ordinary accounts weakens it. The isolation protects the network path. It does not stop you signing into something identifying inside the workstation, and it does not clean up the host. --- # Getting in where Tor itself is blocked URL: https://nexus-access.biz/access/censored Category: Blocked network Effort: Moderate Setup time: 20 min Realistic risk: Depends Some networks block Tor outright. The countermeasure is built in and it is called a bridge, which is a relay whose address is not published so it cannot be blocked from a list. ## How the block usually works Public Tor relays are listed openly, which is what makes the network verifiable and also what makes it easy to filter. A network operator downloads the list and refuses connections to everything on it. Bridges are relays deliberately kept off that list, so filtering by list does not catch them. ## The types, and which to choose | Type | How it looks on the wire | Choose it when | | --- | --- | --- | | obfs4 | Random noise with no recognisable pattern | The block is a simple list filter | | Snowflake | Ordinary video call traffic | You want something that works with no setup | | meek | Traffic to a large cloud provider | Everything else is blocked, and you accept it being slow | Start with the built in bridges in Tor Browser, since they need no arrangement at all. If those are blocked too, request one that is not shared as widely. ## Getting a bridge address 1. Open the connection settings in Tor Browser and try a built in bridge first. 2. If that fails, request one from the Tor Project bridge service, which hands out addresses in small numbers so they are harder to enumerate and block. 3. If the bridge site itself is blocked, the project also answers requests by email, which is deliberately awkward and works. ## What to expect Slower connections and more failed attempts than an unblocked network. That is the cost of going around a filter and it does not mean anything is wrong. Give each attempt a full minute before deciding it failed. ## A word about the other kind of risk On a network where Tor is blocked, using it may itself draw attention. Bridges address that too, since obfs4 and Snowflake are designed to not look like Tor. Whether that is sufficient depends on circumstances no website can assess for you, so decide it deliberately rather than assuming. --- # Using Nexus from a network you do not control URL: https://nexus-access.biz/access/public-wifi Category: Untrusted network Effort: Easy Setup time: 5 min Realistic risk: High A network you do not control can see that you connected to something and roughly how much data moved. What it cannot see is what you did, which is the part people worry about most. ## What the network operator sees - That your device connected and when. - The device hardware address, unless the device randomises it, which most now do by default. - That traffic went to a Tor relay or a bridge, and how much of it. What they do not see is which site you visited, what you typed, or what came back. That is encrypted between you and the relay, and again through the circuit. On a public network, Tor is doing exactly the job it was designed for. ## The captive portal problem Many public networks make you accept terms on a page before letting anything through. Tor Browser cannot get through that page, which produces a connection failure that looks like Tor being blocked and is not. Open an ordinary browser, accept the portal, then start Tor Browser. Confusing the two wastes a lot of time. ## The two habits that matter more than the network 1. Watch the screen. On a public network the realistic risk is somebody reading over your shoulder or a camera pointed at the room. No amount of encryption addresses that. 2. Do not leave the machine unlocked, even briefly. An unlocked laptop is a bigger problem than an unencrypted network. ## Where public networks are genuinely better They break the link between activity and your home connection. If that link matters to you, a busy network you have no account on is more useful than a home connection with your name on the bill. It is a real advantage and it is separate from everything above. ## What not to do Do not use a network that requires an account tied to your identity, such as a hotel room number or a loyalty login. That attaches a name to the session and removes the only advantage a public network had. --- # Setup, six things done once Each step assumes the one before it. Verifying a download you got from the wrong place proves nothing useful. Setting a security level in a browser that was modified before you installed it protects nothing. Work down the list rather than picking the interesting ones. --- # Step 01: Install Tor Browser from the right place URL: https://nexus-access.biz/setup/install-tor-browser Time: 10 min An ordinary browser cannot open an onion address at all, so this is the first step for everybody. Where you get it from decides how much everything after it is worth. ## One source, no exceptions Download it from the Tor Project site. Not from a mirror, not from a software portal, not from a link somebody forwarded, and not from a search advertisement. A modified copy looks and behaves exactly like the real one right up until it does something you did not want, and there is no way to tell by looking. ## Type the address rather than searching Paid search results for browser downloads are a known route for modified copies. Typing the project address into the bar takes three seconds and removes the entire problem. ## Pick the right build - Windows, macOS and Linux each have their own download, and the site detects which you need. - Android has an official build listed by the project. - There is no official iOS build. What exists on iOS is a different application built on the platform browser engine, which is a real limitation rather than a detail. ## Do not add anything to it No extensions, no ad blockers, no privacy add ons, nothing. Tor Browser is configured as a whole so that users look alike. Every addition makes yours more distinguishable, which is the opposite of what it is for. An extension that promises more privacy delivers less by existing. ## Let it update itself Updates carry security fixes and the browser handles them on its own. A version left alone for months is the most common preventable weakness on a machine that is otherwise set up carefully. --- # Step 02: Verify the download before you run it URL: https://nexus-access.biz/setup/verify-download Time: 10 min This is the step everybody skips and the only one that proves the file on your disk is the file the project published. It takes about ten minutes once. ## What it proves That the download was not modified between the project and your machine. Not by a network operator, not by a compromised mirror, not by anything sitting in the middle. Without the check you are trusting the whole path the file travelled, and that path includes parts nobody can inspect. ## The idea in one paragraph The project signs each release with a private key. The signature file published alongside the download can be checked against their public key. If the file changed by even one byte, the check fails. You do not need to understand the cryptography, you need to run one command and read one line of output. ## How it goes 1. Download both the installer and the small signature file next to it. 2. Import the Tor Browser developers public key, which the project documents on its verification page. 3. Run the verify command against the signature and the installer. 4. Read the output. A good signature says so plainly. ## The warning that confuses people A message saying the key is not certified with a trusted signature is normal and does not mean the check failed. It means you have not personally vouched for the key, which almost nobody has. What matters is the line saying the signature is good. ## If it fails Delete the file and download it again, ideally on a different network. If it fails a second time, something between you and the project is interfering, which is exactly the situation this check exists to catch. Do not run it anyway. --- # Step 03: Set the security level before your first visit URL: https://nexus-access.biz/setup/security-level Time: 2 min Tor Browser starts on Standard, which leaves scripts running everywhere. Two clicks change that, and those two clicks remove most of the ways a page can attack a browser. ## Where it lives The shield icon next to the address bar. Open it, choose settings, pick a level. That is the whole operation and it survives restarts. ## What each level does | Level | Scripts | Suits | | --- | --- | --- | | Standard | Everything runs | General browsing where nothing much is at stake | | Safer | Scripts off on plain connections, some media blocked | A compromise, and the least useful of the three | | Safest | Scripts off everywhere, most media blocked | Anything you actually care about, including this | ## Why Safest for this Nearly every serious browser problem in the last decade came through scripting. Turning it off removes that surface entirely rather than reducing it. A marketplace worth being careful about is exactly the case where you accept a plainer page in exchange for that. ## What breaks - Some pages lose layout or have controls that do nothing. That is the setting working rather than a fault. - Anything that genuinely needs scripting will tell you. - Images and fonts may be simplified, which affects appearance and not function. ## Do not turn it down to fix a page When a page misbehaves the instinct is to lower the level until it works. That trades the protection for a cosmetic improvement, permanently, because people rarely put it back. If a page will not work on Safest, decide deliberately whether that page is worth it rather than changing the setting out of habit. --- # Step 04: Save the three addresses so you never have to search URL: https://nexus-access.biz/setup/saving-addresses Time: 3 min This step takes three minutes and prevents the single most common way people lose an account. It is worth more than most of the technical advice on this site. ## The failure it prevents A familiar address goes quiet. Somebody wants in, opens a search engine, and takes the first plausible result. That result is a copy of the market that exists to collect passwords, and it ranks precisely because nobody looks for a market address until they are anxious and in a hurry. Having the list already in front of you means that moment never arrives. ## Where to keep them - A bookmark folder in Tor Browser, which is the simplest option and survives restarts. - A password manager entry, which is better if you already use one. - On paper, which sounds old fashioned and is genuinely fine for three lines. - On a persistent Tails volume if that is how you work. ## Where not to keep them Anywhere that syncs to a service under your name. A note application that backs up to a cloud account attaches those addresses to your identity, which is a strange thing to do deliberately. ## Save all three, not the one you like The whole value of the list is having somewhere to go when one address is quiet. Saving one address recreates exactly the problem this step exists to prevent. ## Check them against the site occasionally Addresses do change. Comparing your saved list against a published one from time to time takes seconds, and doing it while everything works is much safer than doing it in a panic. --- # Step 05: Set up the account once, properly URL: https://nexus-access.biz/setup/account-setup Time: 10 min Everything here is done once and never thought about again. Skipping it is the reason a password leaked from somewhere unrelated turns into a lost account here. ## The username Use one that appears nowhere else. A handle reused from a forum, a game or an email address connects this account to everything that handle has ever done, and that connection is trivial for anybody to make. It costs nothing to invent a new one. ## The password - Long and generated rather than remembered and clever. - From a password manager running on your own machine, not a browser sync feature. - Used nowhere else, which is the entire point. ## The recovery phrase Most markets hand you a phrase at registration and it is the only route back into the account if the password goes. Write it on paper before continuing. Not a screenshot, not a note that syncs, not an email to yourself. Paper, stored away from the machine. ## Two factor Turn it on. On these markets it usually works by encrypting a challenge to your key, so signing in requires something only you can decrypt. That converts a leaked password from a disaster into an inconvenience, which is a good trade for five minutes. ## What no legitimate service asks for A wallet recovery seed, a private key, or your password by message. Any page or person asking for those is collecting them. There is no exception to this and no context that makes it reasonable. --- # Step 06: The first login, step by step URL: https://nexus-access.biz/setup/first-login Time: 5 min Everything on this site comes together here, in the order it actually happens. It takes about five minutes and the first item is not optional. ## Before you type anything 1. Paste an address from this site rather than typing it. 2. Wait for the page. A cold connection to a busy onion service can legitimately take a minute. 3. Find the onion printed on the login screen and compare it against your address bar, reading from the end backwards. 4. Only if they match, continue. ## Why the comparison is read backwards The last characters are the expensive ones to match. Anybody generating a lookalike address spends the effort on a convincing prefix, because that is the part people glance at. The tail is where a fake gives itself away. ## If the page will not load Try the next address on the list before doing anything else. If all three are quiet, wait rather than searching. Searching during an outage is how people end up on the copies. ## Once you are in - Stay on the same address for the whole session. Switching mid session throws away a warm connection and usually signs you out. - Do everything you came for in one visit. The first page pays for the connection and every page after it is quick. - Sign out and close the browser when you are done rather than leaving a session open. ## What to expect on speed Eight to forty five seconds for the first page is normal. Anything after that within a session should be a few seconds. Slow is not broken here, it is six relays doing their job. --- # What actually protects you URL: https://nexus-access.biz/security In order of how much damage each one prevents: 1. Confirming the address on the login screen. Two seconds, and the only defence against a page that copies the market perfectly. 2. A password used nowhere else. A leak somewhere unrelated is how most accounts are lost. 3. Two factor enabled. Converts a stolen password from a disaster into an inconvenience. 4. Getting Tor Browser from the project and verifying it. Everything else assumes the browser is the real one. 5. Security level on Safest. Removes the surface most browser attacks arrive through. Sounds useful and mostly is not: adding a paid tunnel in front of Tor, privacy extensions in Tor Browser, switching addresses constantly, clearing history after the fact. The two mistakes behind most losses: searching for an address during an outage, and reusing a password or username. --- # Glossary **Onion address**: A fifty six character address derived from a key rather than chosen. It is not registered anywhere and only Tor can resolve it, which is why an ordinary browser returns nothing. **Tor Browser**: A modified Firefox configured so its users look alike and all traffic goes through Tor. The configuration is the protection, which is why adding extensions to it makes things worse. **Bridge**: A Tor relay whose address is not published, so a network that blocks Tor by filtering the public relay list cannot block it. **obfs4**: A way of disguising Tor traffic as random noise with no recognisable pattern, used with bridges on networks that filter by traffic shape. **Snowflake**: A bridge type that makes Tor traffic look like an ordinary video call, useful because it needs no arrangement in advance. **Live system**: An operating system that boots from removable media and leaves the installed system untouched. Tails is the one most people mean. **Amnesic**: Keeps nothing after shutdown. Everything lives in memory and the memory is wiped, so the machine has no record of the session. **Gateway and workstation**: The two virtual machines in a Whonix setup. The workstation has no route to the network except through the gateway, which speaks only Tor. **Security level**: The shield setting in Tor Browser with three positions. Safest turns scripting off everywhere and is the right choice for anything that matters. **Signature verification**: Checking a downloaded file against the publisher signature to prove it was not modified in transit. Ten minutes, once, and it is the only proof available. **Captive portal**: The page a public network makes you accept before letting traffic through. Tor Browser cannot get past it, which produces a failure that looks like Tor being blocked and is not. **Cold load**: The first page of a session, which pays for the whole connection setup. Every page after it reuses that work and arrives in seconds. --- # Questions and answers **What is the current Nexus Market address?** Three onion addresses are published on this site and all three lead to the same market. There is nothing on the ordinary web and no single permanent address, so copy one from here and confirm it on the login screen. **Do I need Tor Browser?** Yes. An ordinary browser cannot resolve an onion address at all, so there is nothing to configure and no workaround. Anything claiming to open onion links without Tor is either a proxy you should not trust or not doing what it says. **Can I use Nexus Market on a phone?** It works. Tor Browser for Android opens the same addresses. A phone is the weakest option on this site because it has a permanent identity, a location history and background services you cannot inspect, so use one deliberately rather than by default. **Which setup is the safest?** A live system on a USB stick, because the machine keeps no record of the session at all. Whonix is stronger against application leaks and keeps state, so the right answer depends on whether you want no trace or a durable isolated environment. **Tor is blocked on my network. What now?** Use a bridge. Start with the built in ones in Tor Browser connection settings, and request an obfs4 or Snowflake bridge if those are blocked too. Expect slower connections, which is the cost of going around a filter. **Is public wifi safe for this?** The operator sees that you connected to a Tor relay and nothing about what you did. The real risk on a public network is the room rather than the network, so watch the screen and never leave the machine unlocked. **How do I know a page is the real market?** Compare the onion printed on the login screen against your address bar. A copied page reproduces the design perfectly because the design is served to anybody, and it cannot sit at the real address. If they differ, close the tab. **Why is the market so slow to open?** A connection to an onion service crosses about six relays with no caching anywhere. Eight to forty five seconds for the first page is normal and every page after it in the same session is quick. **Should I verify the Tor Browser download?** Yes, and it is the step most people skip. It proves the file was not modified between the project and your machine, which is the one thing you cannot check by looking at it. **What security level should I use?** Safest. Nearly every serious browser problem in the last decade arrived through scripting, and turning it off removes that surface rather than reducing it. Some pages look plainer, which is the setting working. **Does this site collect anything?** No. There are no accounts, no forms, no search box and nothing stored about visitors. It publishes addresses and explains how to reach them, and it is not the market. --- End of file. Summary version: https://nexus-access.biz/llms.txt