You expect the search result to be the real link
WeTheNorth addresses
hn2paw7zadwkcra3qzv5e4q547i7e5lvxm62cfxqftuqdu7moiu2ceyd.onionhn2paw7zfvndw3dovycegeqmvvnf4pl67b3g2p7pohjlzavloosh73id.onionhn2paw7zrgujyhnt6mgxlt2q6uhgbke4itpqitxhyfbumq3wtnckbuyd.onionPrinted as supplied, in no order. Nothing here is checked or timed, so an address that opens is not proof of anything. more about the set
The top result for a search is the official one. Ranking is a kind of vetting.
Ranking measures links, clicks and freshness. None of those touch the question of who holds the private key for the address on the page.
The gap: you are reading a popularity measurement as an ownership proof.
Why the belief is so sticky
For most of the web, ranking and legitimacy line up. Search for a bank and the bank is first, because the bank has twenty years of coverage and everyone links to it. The correlation is strong enough that people stop treating it as a correlation and start treating it as a check. Nobody decided this. It was learned by a decade of it working.
Then the same person searches for a we the north darknet market address, and the entire structure that made ranking meaningful is missing. No newspapers link to any of these pages. No official site exists to outrank a copy. What is left is a field of pages that all look the same, competing on the one thing an engine can measure.
What ranking actually measures
| The engine can see | The engine cannot see |
|---|---|
| How many pages link here | Who controls the onion address printed on the page |
| How recently the page changed | Whether the address was swapped last night |
| Whether people clicked and stayed | Whether the people who clicked lost anything |
| How well the text matches your words | Whether the text is true |
That table is the whole problem. Every column on the left can be produced deliberately, cheaply, by anyone. A page can be new, well written, densely linked from a network of other pages the same person owns, and matched perfectly to the phrase wethenorth mirror. It costs an afternoon. Nothing in the ranking process ever asks the only question you care about.
What actually carries weight
Only two things survive this. The first is a source with a history you can check, which has been publishing the same claims under the same name long enough that a swap would be visible to people who were already watching. The second is a signature, which moves the question from who is talking to what key signed the statement. That second one is the only real answer, and it is the subject of the entry on PGP.
Neither of those is a search result. Search is fine for finding candidate sources. It is not a verdict on any of them, and the position of a result on the page carries no information about the address printed inside it.
- Use search to build a short list of sources, then judge the sources on their own history.
- Cross-read. If three unrelated pages carry the same address set and one carries a different one, you have learned something. If all three copy each other, you have learned nothing.
- Distrust urgency in the copy. A page that wants you to hurry is optimising for the one state in which people skip checks.
The uncomfortable part is that this cuts both ways. This site also appears in results, and its position there proves nothing about it either. That is why about says plainly who wrote it and what it does not do.
Questions people send about this
Is a result with more pages linking to it safer?
No. Link volume is easy to manufacture and says nothing about who controls the address on the destination page.
Should I use a Tor search engine instead?
The same limits apply. Indexes on the network rank what they crawled and cannot verify ownership of anything they list.