No offense but "unphisable market" is not possible without webauthn which on darknet markets is not possible to implement. Once you grow idiot users will be phished, period, it's just a matter of time. Some MITM proxies are work of art but phishing is a user problem not a market problem though.
You're correct. Our goal is to make it as difficult as possible, but if someone explicitly requests to be hacked, it will likely happen. Thank you for bringing this to my attention.
Impossible to exit scam is possible though and it has been around for almost a decade. It's called multisig and the folks at DarkMatter have a working implementation of it with XMR, shout out to them.
We have a different approach to phishing, even if we may get some flak for it: Let the users get phished. Most evolved beings don't make the same mistake twice so here we are. Get phished once then use the most reliable antiphishing method: your eyes and 5 to 10% of your brain. Nothing will beat that.
I think there is certainly an expectation for a market to have at least some basic anti-phishing safeguards like a simple mirror verification process but in general I agree that getting phished is, for the average IQ user, a one-time important learning experience. That said, there are always going to be a subset of users that constantly get phished from their own carelessness and willful ignorance. For example, there are phishing links for Dark Matter that are not even onion sites, the URL ends in ".link" or ".xyz" and many users still lose money to them.
Yes but as market operators there is a fine balancing act between "antiphishing" and usability. Our log in message shows the authentic url, what can we do more ? We won't introduce extra friction for a subset of users who are retarded or high. Not to discriminate here but it is what it is.
Yeah man but what can we do ? Seriously we can't sit behind them and bitch slap them for not following instructions, and we can't punish our sane users for a small subset who willingly or unwittingly decide to ignore instructions.
You will have to stand in line, and I do not advise you to break it)) As a newbie, we have a lot of goal-oriented people here ;) But in general, we have fun, if you do not look at how many shoot themselves in the feet.
We have a different approach to phishing, even if we may get some flak for it: Let the users get phished. Most evolved beings don't make the same mistake twice so here we are. Get phished once then use the most reliable antiphishing method: your eyes and 5 to 10% of your brain. Nothing will beat that.
Dont forget about the not-insignificant subset who are both retarded and high.