Layer 1: Network — Tor v3 onion routing, 3-hop relay minimum
↳ Ed25519 key authentication on .onion address
↳ Eliminates clearnet exposure for all platform traffic
Layer 2: Authentication — Username + password + optional PGP 2FA
↳ Challenge-response PGP signature verification
↳ Session tokens invalidated on IP change (Tor circuit change)
Layer 3: Communication — Mandatory PGP end-to-end encryption
↳ Messages encrypted before transmission to server
↳ Server sees only ciphertext — cannot read message content
Layer 4: Payment — Monero subaddress per transaction
↳ Ring signatures: sender identity hidden among decoys
↳ RingCT: transaction amounts hidden from blockchain
↳ Stealth addresses: receiver unlinkability
Layer 5: Escrow — 2-of-3 multisig wallet
↳ No single party controls funds unilaterally
↳ Market, buyer, vendor each hold one key
Layer 6: Accountability — PGP-signed feedback, warrant canary
↳ Immutable audit trail for all completed transactions
↳ Monthly canary update verifies platform integrity