AWAMARKET

Home//Client//C2 Security level

C2Awazon Market // record C2

C2 // Standard to Safer

Ten seconds, no install, no subscription. It removes the machinery that most browser attacks need in order to run at all.

Awazon Market // onion addresses

The three strings below open the same market. The same account, the same balance, the same open orders sit behind each one. Copy a string, paste it into Tor Browser, and read the last six characters in the address bar before you type a password.

  • awazonozc4jwyrveu4473igv5ldt2hnccl2s7lerm2z27cvrc22e4uyd.onion
  • awazonth6ocz5cyos63czmhtsglqr7ydkdcc4lopux7nxbauoo2qmvyd.onion
  • awazonvaqbgkhirejon6qnlxcjibrhkqhzh2xb2lclc6t67vxhlvjkyd.onion

NOTHING HERE IS RANKED. THE ORDER IS THE ORDER THEY WERE WRITTEN IN.

Baseline
Tor Browser at its default Standard level, with scripting enabled everywhere.
Substitution
The shield menu set to Safer, or Safest. Nothing else changed.
What moves
Scripting is disabled on non secure origins, some media handling is turned off, and several font and maths features are restricted. Attacks that need a script to run stop having a script.
Does not move
Which address you open, whether it is genuine, your account, and the fact that a page can still be a convincing forgery in plain markup.
Cost
Some interface elements stop working. On a market that leans on scripting for its cart or its captcha, parts of the flow may need Standard for a moment.
Verdict
Do it. Start at Safer and drop back only for the specific page that needs it.

IWhy the slider is the best value in this group

Historically, the attacks that unmasked people using Tor were not attacks on Tor. They were attacks on the browser, delivered as script by a page the person opened, exploiting a bug in the engine to make the machine speak directly to somebody rather than through the circuit. The routing was intact throughout. The browser simply stepped around it.

Turning the slider up removes the delivery mechanism for most of that. It is not a guarantee, because markup and images have had their own bugs, but the surface it closes is by far the largest one available to a single setting.

IIWhat each level does

LevelScriptingPractical effect
StandardOn everywhereEverything works. The full attack surface is open.
SaferOff on http originsOnion sites lose script driven features. Most reading is unaffected.
SafestOff everywhereMany interactive pages break. Highest protection, lowest convenience.

IIIWorking with it on a market

  1. 01Set Safer before you open anything. Make it the state the browser starts in.
  2. 02Read, browse and compare at that level. Most of a market catalogue is ordinary markup.
  3. 03If a captcha or a checkout step genuinely will not proceed, drop to Standard for that page only, finish the step, and put it back.
  4. 04Never drop the level because a page you did not expect asked you to. A page that demands scripting to show you a login form is worth a second look at the address bar first.

IVWhat it does not touch

A clone of the Awazon login page needs no scripting at all. It is a form and a stylesheet. The slider will not help you there, and nothing in this group will. That job belongs to record A2, and it is manual.

DEFAULT

Safer is the correct resting state. Standard should be something you turn on for one page and turn off again, not something you live in.