nexusmarkettorReference procedures for using Nexus Market over Tor
14 documents in 4 classes
3 verified addresses
Archive All documents Access and transport Verification and authenticity Payment and settlement Operations and risk Addresses FAQ Scope

Archive > Access and transport > NM-003

NM-003: Circuit behaviour and reachability failures

IdentifierNM-003
Versionv1.2 · stable
SubjectsAccess and transport, diagnostics (NMT.acc)
Last updated29 Jul 2026
Applies toNexus Market, running since 2023, 2 of 3 multisig escrow
AbstractClassifies the reachability failures a user encounters, separates causes local to the user from causes at the service, and specifies the response for each class.

1. Failure classes

Reachability failures fall into three classes and they need different responses. Confusing them wastes time at best and produces a phishing loss at worst, because the reaction to a perceived outage is where most losses begin.

ObservationClassResponse
One address fails, another opensLoad at that addressUse another verified address
All verified addresses fail, other onion sites finePressure on the serviceWait, then retry
All onion sites fail or crawlLocal circuit or connectionNew circuit, then restart the browser

2. Circuit renewal

A circuit is the path your traffic takes through the network and it degrades over time or lands on a slow relay by chance. Requesting a new circuit for the site rebuilds that path and resolves the majority of local failures. If it does not, closing the browser entirely and reopening rebuilds everything rather than one path.

3. Service side pressure

Sustained floods against hidden services are routine. During one, an address may accept a connection and then stall, or refuse entirely. This resolves on its own timescale, usually minutes, and there is no user side action that speeds it up.

4. Prohibited responses

  • Do not search for a replacement address during a failure, which is the sequence behind nearly every credential loss around markets
  • Do not lower the browser security level, which has no effect on reachability
  • Do not install alternative clients or accelerators claiming to improve onion access
  • Do not conclude that a market has ended because one address was unreachable for an afternoon

5. Escalation threshold

A single address quiet for minutes or hours is unremarkable. Every verified address unreachable for days, with no signed communication anywhere, is a different situation and justifies caution rather than action. Even then the correct response is patience, because the alternatives available during an outage are overwhelmingly hostile.

Verified address set

Verified address set
[1]nexusb2l7fmqnefwphyy7m5zjhlkytlbo7qbb5lu5dlczr3azgii2gyd.onion
[2]nexusma2iegzo7atzwbrwxhcdopyri3vare2twibldnlc3txqjdeb5yd.onion
[3]nexusabcd6tyfhdwilyitaqiri6tisj2v2hueyjuj6qkvd6azvi5tuqd.onion

Required check. Open in Tor Browser only. Before entering anything, compare the onion printed on the login screen against your browser address bar. A mismatch means the page is a copy and the tab should be closed. See NM-004.

Other documents in Access and transport

NM-001v2.1 · core
Subjects: Access and transport (NMT.acc)
Updated: 5 Aug 2026
Specifies how Tor Browser should be obtained, verified and configured before a first connection to Nexus Market, and states why each step exists rather than only what to do.
NM-002v1.4 · stable
Subjects: Access and transport (NMT.acc)
Updated: 3 Aug 2026
Describes the structure of a version three onion address, why Nexus publishes several at once, and the handling rules that prevent an operator error from becoming a loss.