Home / OPSEC
Nexus OPSEC — Security Guidelines
OPSEC baseline for researching Tor gateways safely. General privacy hygiene — no unlawful instructions.
OPSEC checklist
- Use Tor Browser from torproject.org with no extra add-ons and the safest security level you can tolerate.
- Verify mirrors against this archive and any PGP-signed list before entering anything — see Mirrors.
- Isolate sessions: one gateway, one circuit, one task. New identity between tasks.
- Never reuse usernames, passwords, or PINs across gateways or clearnet services.
- Prefer Monero (XMR); if Bitcoin (BTC) is required, use fresh Multi-Sig contexts only — see Crypto.
- Disable scripts and media autoplay where possible; never open downloaded files online.
- Bookmark verified mirrors after manual verification; never trust link aggregators.
- Check the Warrant Canary date on every visit. Stale canary means stop.
Session hygiene
Close sessions on inactivity, clear Tor state between research passes, and treat any gateway that asks for credentials before the encrypted tunnel as hostile. Background reading on threat models is available at eff.org.