Market Knowledge Base
This database outlines the operational protocols of Drughub Market. It covers our Monero-only settlement layer, PGP authentication standards, and the 2-of-3 multisig escrow system. All users are expected to understand these protocols before conducting trade.
01. Platform Architecture
Drughub Market is a next-generation darknet platform architected for resilience and anonymity. Launched in late 2023, it operates exclusively on the Tor network using a custom-built, JavaScript-free capable frontend.
We distinguish ourselves through a Monero-only (XMR) payment framework, enforcing strict privacy, and a passwordless authentication system based entirely on PGP cryptography. Our infrastructure is decentralized across multiple rotating mirrors to mitigate DDoS attacks and ensure 99.9% uptime for global commerce.
Access is strictly limited to the Tor network via verified .onion addresses. Users must utilize the Tor Browser. To ensure integrity, we recommend verifying the PGP signature on the landing page against our official public key before entering any credentials.
Drughub Market employs a unique 'Individual Mirror' system where established users are assigned private entry nodes to prevent congestion and phishing. Always consult the /links page for the current verified rotation.
We have deprecated the insecure username/password model. To log in to Drughub Market, you must possess a PGP key pair. The server generates a random challenge string encrypted with your Public Key. You must decrypt this string using your Private Key and paste the result back to verify your identity. This 'Challenge-Response' protocol ensures that even if our database were compromised, no usable credentials exist to be stolen.
Guest access is permitted for market transparency. Unregistered users may browse categories, view vendor profiles, and inspect product feedback. However, all interactive functions—including messaging, placing orders, accessing the wallet, and viewing sensitive shipping data—require a fully authenticated account. This separation protects operational security while allowing prospective users to verify market activity.
02. Security & Encryption
Phishing defense is user-responsibility. Every authentic Drughub Market page contains a signed PGP message in the footer or header. You should import the Drughub Market Official Key into your PGP client (e.g., Kleopatra, GPG Suite) and verify this signature. A valid signature confirms the site is controlled by us. If the signature is invalid or missing, you are on a phishing site; exit immediately.
To combat the twin threats of DDoS attacks and targeted censorship, Drughub Market utilizes a decentralized mirror network. Upon account maturity, users are assigned a private, dedicated onion URL via our Link Directory Nodes (LDNs). This isolates your traffic from the public load, ensuring faster page loads and stability. Do not share your private mirror; doing so degrades its performance and security.
Yes. PGP (Pretty Good Privacy) is not optional on Drughub Market. It is required for login, Two-Factor Authentication (2FA), and encrypting shipping details (Auto-Encrypt is available but manual encryption is preferred). We enforce this to guarantee that sensitive information remains inaccessible to us, law enforcement, or any intercepting party. Unencrypted communication is blocked by the server.
03. Financial Protocol
Bitcoin and other transparent-ledger cryptocurrencies pose a severe security risk due to chain analysis and taint tracking. Drughub Market exclusively uses Monero because its protocol enforces privacy by default.
Ring Signatures, Stealth Addresses, and RingCT completely obfuscate the sender, receiver, and transaction amounts, making financial tracing effectively impossible. This protects our users from retroactive blockchain surveillance.
Our escrow architecture provides mathematically guaranteed fairness. A unique wallet is generated for each order, controlled by three keys: the Buyer's, the Vendor's, and the Market's. Funds can only move when 2 of the 3 parties sign the transaction. This prevents the market from exit-scamming funds unilaterally and allows disputes to be resolved by the market acting as a mediator between buyer and vendor.
Drughub operates a hybrid wallet system. Deposits require 10 confirmations on the XMR blockchain to prevent double-spend attacks. Withdrawals are batched and processed manually every 6 hours to keep hot wallet balances low, minimizing risk. Users should ensure their receiving addresses are correct, as XMR transactions are irreversible.
We operate on a competitive fee model to sustain the infrastructure. Buyers pay no fees. Vendors are charged a commission ranging from 4% down to 2%, inversely correlated with their Vendor Level and total sales volume. A nominal network fee is deducted from withdrawals to cover Monero mining costs.
04. Order Execution
Vendor integrity is paramount. Applicants must pay a non-refundable bond (tiered from 1 to 5 XMR). Established vendors from other markets (e.g., Archetyp, Bohemia) may apply for a bond waiver via PGP-signed proof of identity. All new listings undergo manual approval, and we conduct random chemical analysis on products to verify purity claims.
The order flow is designed for zero-knowledge:
- Select item and quantity.
- Provide shipping info (Encrypted via Vendor's PGP Key).
- Transfer XMR to the generated Subaddress.
- Vendor ships package.
- Buyer receives and Finalizes order.
Shipping data is automatically purged from our servers 14 days after finalization or immediately upon manual deletion.
If an issue arises (non-delivery, poor quality), the buyer must initiate a Dispute before the auto-finalize timer expires. This locks the escrow. A moderator will review the case, analyzing shipping evidence and communication logs. The moderator will then sign the transaction in favor of the rightful party (Buyer or Vendor), completing the 2-of-3 signature requirement.
05. Operational Support
Tor network volatility is common. If the main gateway is unresponsive, immediately switch to one of the verified mirrors listed on the /links page. Do not panic. If all mirrors appear down, consult the official Drughub status on Dread or Pitch. Never use links obtained from clearweb sources, wikis, or unsolicited DMs.
Registered users can open a support ticket via the dashboard. Tickets are encrypted and handled by our support staff 24/7. Please prioritize using the FAQ and Tutorial sections before opening a ticket. For account recovery (lost PGP key), support is limited as we cannot decrypt accounts without the user's private key.