What Links for Tor Browser Actually Are
Links for Tor browser are URLs ending in .onion that point to services hosted on the Tor network. Unlike regular websites, onion links route traffic through multiple Tor relays, encrypting it at each hop. These links do not resolve on the regular internet; you must use Tor browser to reach them.
Onion links for Tor browser come in two forms: v2 addresses (16 characters, now deprecated by the Tor Project) and v3 addresses (56 characters, the current standard). A v3 onion link looks like a long string of random letters and numbers followed by .onion. The length and randomness are intentional; they make the address cryptographically tied to the service's private key, preventing impersonation if you verify the address through an official channel.
Official Starting Points and Directories
The Tor Project itself maintains the Tor Browser download page and documentation, which is your first safe checkpoint. From there, you can access the official Tor directory and community resources.
Several onion directories function as curated lists of verified services. These directories do not host content themselves; they aggregate links to forums, marketplaces, news sites, and tools. The most widely referenced directory is maintained by the community and accessible through Tor browser. When you first access a directory, check that the onion address matches what is published on the official Tor Project website or on PGP-signed announcements from trusted sources.
Search engines designed for onion content exist, but they are less comprehensive than surface-web search engines. They index only sites that allow crawling and that have submitted themselves for indexing. Using a Tor browser search engine is safer than randomly clicking links, because the search results are at least catalogued by a known service.
How to Verify Onion Links Before Clicking
Phishing clones are the most common threat when searching for onion links on Tor browser. A scammer registers a similar-looking onion address (for example, by changing one character) and creates a fake version of a popular forum or marketplace. When you land on the clone, it looks identical to the real site, but your login credentials or funds go to the attacker.
Verification requires checking the address through an official, out-of-band source:
- Visit the official Tor Project website or the service's official social media account (if they maintain one).
- Look for a PGP-signed announcement that includes the correct onion address.
- Copy the full onion address from that source and paste it into Tor browser, rather than clicking a link from a forum or search result.
- Check that the Tor browser address bar shows the same address you pasted.
- Look for any security warnings or certificate mismatches; if Tor browser flags the site, do not proceed.
This process is tedious, but it is the only reliable way to avoid phishing. Bookmarking verified addresses in Tor browser also reduces the risk of typos or accidental clicks on similar-looking links.
Reality Layer: How Phishing and Impersonation Work in Practice
The Tor Project documentation notes that onion addresses are long and random specifically to prevent typosquatting, yet users still fall victim to phishing because they rely on memory or copy-paste from untrusted sources. When a user searches for a popular forum on a Tor search engine or reads about it on Reddit, they may land on a clone without realizing it. The clone captures their username and password, which the attacker then uses to steal funds or personal data from the real site.
Law-enforcement press releases and court records from darknet market seizures show that even moderators and administrators of large forums have been compromised by phishing. This means that a link shared by someone you trust on Tor may still be a clone if that person's account was hacked. Security-vendor incident reports document cases where users lost significant sums because they trusted a link shared in a Telegram group or Reddit thread about Tor browser links. The lesson for readers is that no social channel is a safe source for onion addresses; only PGP-signed announcements from the service operator or the Tor Project itself should be trusted.
Onion Links on Reddit and Telegram
Reddit and Telegram are common places where people ask for or share onion links for Tor browser. These platforms are monitored by law enforcement and are also full of scammers. A link shared on a Telegram group or a Reddit thread about Tor browser links is almost certainly either a phishing clone, a honeypot set up by law enforcement, or a link to a service that has already been compromised.
If you see a recommendation for an onion link on Reddit or Telegram, treat it as a starting point for your own verification, not as a trustworthy source. Go to the official website or social account of the service, find the PGP-signed announcement, and verify the address independently. Do not assume that because many people are discussing a link, it is legitimate. Scammers often create fake Reddit accounts and Telegram bots that mimic popular services and post links in relevant threads.
Safe Tor Browser Practices When Following Links
Before you click any onion link in Tor browser, take these steps:
- Ensure Tor browser is fully updated to the latest version.
- Disable JavaScript in Tor browser settings (this prevents some deanonymization attacks).
- Use a separate Tor browser profile or virtual machine for each service you visit, if possible.
- Never maximize your browser window; a unique window size can be used to fingerprint you.
- Never enable plugins or extensions unless you understand the security implications.
- Never open files downloaded from onion sites unless you have scanned them with antivirus software.
- Assume that any onion link could be a honeypot or a phishing clone until you have verified it.
These practices do not guarantee anonymity, but they reduce the surface area for attacks. The Tor Project documentation emphasizes that Tor browser alone does not make you anonymous; your behavior online matters just as much as the tool.
What to Do When a Link No Longer Works
Onion services go offline frequently. A site may be seized by law enforcement, shut down by its operator, or simply moved to a new address. When you click an onion link and get a connection timeout or a 404 error, the service may be temporarily down or permanently closed.
Do not assume that a dead link means the service was seized. Many onion sites go offline for maintenance or because the operator lost interest. If you need to know the current status of a service, check the official Tor Project website, look for recent PGP-signed announcements from the service operator, or visit the Useful Resources page of this site. Do not search for a replacement link on Reddit or Telegram; instead, go back to the official source and verify the new address through the same process you used before.
If a service you relied on has closed, this is an opportunity to reassess whether you need it. Many people use onion links out of habit or curiosity rather than necessity. If the service is gone, you may find that you do not actually need a replacement.
Next Steps: Building Your Own Verified Link Collection
The most practical approach is to build a small, verified collection of onion links that you actually use and update it only when you have confirmed the new address through an official channel. Rather than bookmarking dozens of links from search results or forums, focus on the few services that matter to you.
Start by identifying which onion services you genuinely need: a news site, a forum, a communication tool, or a directory. For each one, find the official announcement or website, verify the onion address through PGP signature or the Tor Project documentation, and bookmark it in Tor browser. Test the link once to confirm it works, then leave it alone unless you see an official announcement that the address has changed.
This approach takes more time upfront but saves you from the constant risk of accidentally clicking a phishing clone. It also reduces the number of sites you expose yourself to, which lowers your overall attack surface. The goal is not to explore every onion link available, but to use Tor browser safely for the specific purposes you have in mind.
Frequently asked questions
where do i find safe links for tor browser
The safest starting point is the official Tor Project website, which links to verified onion directories and resources. From there, you can access community-maintained directories that list verified services. Always verify any onion link through a PGP-signed announcement or the official Tor Project documentation before clicking it. Never rely on links shared on Reddit, Telegram, or forums without independent verification.
how do i know if an onion link is real or a phishing clone
Copy the full onion address from an official, out-of-band source (the Tor Project website, a PGP-signed announcement, or the service's official account) and paste it into Tor browser. Compare the address in the browser address bar to the one you pasted. If they match and Tor browser shows no security warnings, the link is likely legitimate. Never trust a link based on how similar it looks to the real site or because others have shared it.
is it safe to click onion links from tor browser search engines
Tor search engines are safer than random links from forums or social media, because they at least catalogue the sites they index. However, they are not foolproof; a search result could still point to a phishing clone or a honeypot. Always verify the onion address independently before entering any credentials or sensitive information. Treat search results as a starting point, not as a guarantee of legitimacy.
what should i do if an onion link stops working
A dead link does not necessarily mean the service was seized; it may be offline for maintenance or permanently closed. Check the official Tor Project website or look for a recent PGP-signed announcement from the service operator to learn the current status. Do not search for a replacement link on Reddit or Telegram; go back to the official source and verify any new address through the same verification process.
can i trust onion links shared on reddit or telegram
No. Reddit and Telegram are monitored by law enforcement and are full of scammers. A link shared in these channels is likely a phishing clone, a honeypot, or a link to a compromised service. Use such links only as a starting point for your own verification; always confirm the address through an official, out-of-band source before clicking.





