Get in Touch
https://nexusb2l7hog66bnzz5msrz4m5qxj7jbi7aab3r65uzydy5mew2fu3id.onion.watchIf you've encountered a phishing mirror, a vendor dispute, or need help verifying a Nexus Market URL, we're here to help. This page outlines how to reach us securely and what information to include so we can respond quickly. Last updated: July 2026.
Secure Contact Methods
We only accept encrypted messages. Plaintext emails or unencrypted chats will be ignored.
Send your message to [email protected] with the subject line "Verification Request" or "Report Phishing".
Always include:
- The .onion address you're questioning
- A screenshot of the site's PGP signature block (if present)
- Your Session ID or preferred reply method
Our PGP fingerprint is below. Verify it matches the one on the market's documented documentation before encrypting.
-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: GnuPG v2.0.22 (GNU/Linux)
mQINBF5JQ5oBEADBvLQJQJ5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5
J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5J5Q5
[…truncated for brevity…]
-----END PGP PUBLIC KEY BLOCK-----
For real-time support, use our Session ID: 05b4a1d3e7f2c9a8b6d5e4f3c2b1a09876543210fedcba9876543210fedcba
Session is an open-source, end-to-end encrypted messenger that doesn't require a phone number or email. Download it from getsession.org.
When you first message us, include:
- The .onion address you're verifying
- A brief description of the issue
- Your timezone (so we can coordinate responses)
Never send sensitive information without encrypting it first. If you're reporting a phishing site, include the full URL and any screenshots of suspicious behavior. We'll never ask for your login credentials or personal details.
Current Status at a Glance
Before reaching out, check if your issue is already known. This grid updates every 15 minutes.
Frequently Asked Questions
What should I do if I suspect a phishing mirror?
First, do not enter any credentials or personal information. Take a screenshot of the site, including the URL bar, and note the exact .onion address. Then, use our PGP Signature Verifier to check if the address matches the market's documented signing key. If it doesn't, report it to us immediately via PGP-encrypted email or Session ID.
How long does it take to verify a new mirror?
Verification typically takes 1-3 hours, depending on the queue. We manually check each reported mirror against the market's PGP key and test basic functionality (login, captcha, and escrow pages). If the mirror passes, we add it to our verified URLs list and update the status grid on this page.
Can I report a vendor for scamming?
Yes, but we need evidence. Include screenshots of the vendor's profile, the product listing, and any chat logs or transaction IDs. We'll forward the report to the market's moderation team, but we don't handle disputes directly. For your safety, always use multisig escrow and avoid finalizing early.
Why isn't my message being answered?
We only respond to PGP-encrypted messages or Session IDs. If you sent a plaintext email or didn't include the required details (e.g., the .onion address, screenshots, or your reply method), we won't reply. Check that you're using the correct PGP key—phishing sites sometimes distribute fake keys to intercept reports.
Send us a message
Submit a question or report a phishing mirror. You will receive a contact ID — write it down or bookmark the lookup link to check for replies later. We do not require an email; if you provide one it is stored for our records only and never shared.