Is Tor Browser Safe? What It Protects and What It Doesn't

Is Tor Browser safe to use? Learn who sees your activity, what Tor cannot protect, whether you need a VPN and how to browse more safely.

Table of contents

Tor Browser is a legitimate privacy tool and it's safe to use as long as you download it from the official Tor Project website and keep it updated. It hides your IP address from the sites you visit. It makes tracking you across the web harder. It usually stops your internet provider or a shared Wi-Fi network from seeing which sites you visit.

Tor does not make you completely anonymous. It will not protect you from a phishing site, a malicious download, an infected device or information you type into a form yourself. Under specific conditions, a well-resourced attacker also uses advanced traffic analysis to work around Tor's protections. The rest of this article explains each of these in plain terms.

What Tor Protects You From

Tor helps withTor does not help with
Hiding your real IP address from websitesPhishing sites and malicious downloads
Keeping your internet provider or local Wi-Fi from seeing which sites you visitMalware already on your device
Reducing cross-site tracking and browser fingerprintingInformation you type into a form or account
Getting around some network blocks and censorshipTraffic from other apps on your device
An already-infected device
Advanced, resource-heavy traffic-correlation attacks

Tor Browser vs. the Tor Network

Tor Browser is the app you install. Tor, or "the Tor network," is the system of volunteer-run relays it connects through. Think of Tor Browser as a regular browser with this routing built in, plus extra protection against tracking.

For an ordinary website, your connection takes this path:

Your device → Entry relay → Middle relay → Exit relay → Website

Tor encrypts your traffic in layers as it travels this path. Each relay only knows the step before it and the step after it, never the full route. The entry relay sees your real IP address but not which site you're visiting. The exit relay sees which site you're visiting but not who you are.

Onion services, the .onion sites, work differently. Your connection stays inside the Tor network the whole way and never reaches an exit relay.

Where HTTPS Comes In

Tor's own encryption covers your traffic inside the Tor network. What happens after the exit relay depends on the website itself.

If the site uses HTTPS, which most sites do today, this final leg is separately encrypted too. The exit relay sees which site you're reaching. It doesn't see the page content, your password or your messages.

If the site only uses HTTP, this final leg isn't encrypted. The exit relay, or anyone else positioned on this leg of the connection, technically sees the unencrypted content. This isn't specific to Tor. It's true of HTTP on any network, with or without Tor involved.

Tor Browser's HTTPS-Only Mode pushes connections to HTTPS whenever a site supports it. As the Electronic Frontier Foundation explains in its interactive breakdown of Tor and HTTPS, checking for the padlock icon and the correct domain in the address bar still matters, the same as it does in any browser.

Beyond hiding your IP, Tor Browser also resists browser fingerprinting, identifying you by your device and browser settings instead of your IP address. Tor does this by making Tor users look as similar to each other as possible.

Who Sees Your Activity When You Use Tor?

Here's a simple way to think about it. The real question isn't whether you're anonymous. It's who sees what and at which point. For a typical connection to an ordinary HTTPS website:

ObserverWhat they usually seeWhat Tor hides
Internet provider / local networkYou're connecting to Tor, plus timing and volume of trafficWhich sites you visit and what you send
Entry relayYour real IP addressThe site you're visiting
Exit relayThe destination site and connection metadataYour real IP address, plus the page content on HTTPS sites
WebsiteWhat you do on the site and any data you submitYour real IP address

This is a simplified picture. It assumes your device isn't already compromised and no one is correlating traffic across multiple points in the network at once, a case covered further down.

For example: if you log into a personal account over Tor, this site knows who you are. Your real IP address stays hidden from it. Your internet provider does not see what happens inside this logged-in session.

What Are the Real Risks of Using Tor?

Malicious Websites and Downloads

Tor does not check whether a website or download is safe. A phishing page is still a phishing page, whether you reach it over Tor or a regular browser. A malicious file is still malicious. Tor only protects the path your traffic takes to get there.

Unencrypted Sites and Exit Relays

If you visit a plain HTTP site over Tor, the exit relay technically sees what you send and receive. This is true of any unencrypted connection, on any network. This doesn't apply to HTTPS sites, where content stays encrypted past the exit relay. Watching for HTTPS is one of the simplest ways to cut this risk.

Giving Away Your Identity Yourself

The biggest gap between "using Tor" and "being anonymous" is usually the user, not the network. If you fill out a form with your name or email, or log into a personal account, this information goes straight to the site. Tor Project says this directly: once you give a site your name, email, address or phone number, you're no longer anonymous to this site, no matter how well your IP address is hidden.

Browser Bugs and Advanced Tracking

Like any browser, Tor Browser occasionally has bugs, which is why running the current version matters. A separate risk comes from a well-resourced observer watching traffic at multiple points in the network at once, where it enters and where it exits. Under the right conditions, this observer statistically matches the two and undermines Tor's protections. An ordinary website or a coffee-shop network doesn't pull this off. It describes a specific, resource-intensive attack, covered next, not an everyday risk for a typical browsing session.

What Do Independent Research and Audits Tell Us?

Security researchers have audited Tor Browser more than once. Cure53, an independent security firm, reviewed Tor Browser and related tools across 2022, 2023 and again after a later interface update. Together, these audits found and helped fix several vulnerabilities, including a couple of high-severity ones, plus some lower-risk weaknesses. All were fixed.

Tor Project's own writeup of these audits puts it plainly: independent audits have found and helped fix vulnerabilities in Tor Browser and related components. Their results support confidence in the areas tested, but they do not guarantee every part of Tor is free from vulnerabilities.

A separate question is traffic correlation: matching traffic entering the Tor network with traffic leaving it, to identify who's talking to whom. A 2018 study called DeepCorr used machine learning to do this with high accuracy in a lab test. The attacker in this test already had visibility into traffic at both the entry and exit points, something an ordinary website or network doesn't normally have. The study shows traffic correlation is possible under the right conditions. It does not measure how likely a typical Tor session is to be unmasked this way in practice. It wasn't designed to.

How to Use Tor Browser Safely

A short list, based on Tor Project's own guidance:

  • Download Tor Browser only from the official Tor Project site. Modified copies elsewhere sometimes skip these protections.
  • Keep it updated. Updates include the fixes from the audits above and any new ones since.
  • Use the built-in security levels instead of changing dozens of settings by hand. See the table below.
  • Skip extra extensions. Tor Project advises against adding them, since they sometimes bypass Tor's protections or make you easier to identify.
  • Be careful what you type into forms. A name, email or address you submit reaches this site no matter how well Tor hides your IP.
  • Don't open downloaded documents in other apps while you're still online. Files like PDFs and DOCs quietly connect to the internet outside Tor and reveal your real IP address.
  • Don't use BitTorrent over Tor. Torrent apps often leak your real IP address through the tracker request, regardless of your proxy settings. It also slows the network down for everyone else.

Standard, Safer or Safest?

Tor Project describes three built-in security levels, adjustable from one menu:

LevelWhat changesTrade-off
StandardAll browser and website features workBest compatibility, the default
SaferJavaScript off on non-HTTPS sites, some fonts and symbols disabled, audio and video need a click to playBlocks some commonly abused features, a few sites break
SafestJavaScript off everywhere by default, more fonts, icons and images disabledClosest to plain, static pages, more sites need adjusting

Standard isn't unsafe. It's the setting most people use without sites breaking. Safer and Safest trade some convenience for a smaller attack surface. Which one fits depends on what you're doing and who you're trying to avoid, not a fixed rule for everyone.

Do You Need a VPN With Tor?

No. A VPN isn't required to use Tor safely. Tor Project's own guidance generally advises against combining a VPN with Tor unless you know how to configure both correctly. Done wrong, it reduces your anonymity instead of improving it. A VPN changes who you're trusting and what's visible at each point in the connection, without automatically making you more anonymous.

Your concern here might be different: you don't want your network to see you're using Tor at all, regardless of what you do with it. Bridges solve this specific problem, letting you connect to the Tor network less visibly. A VPN solves a different problem. Bridges make Tor use harder to notice, not impossible to detect.

Using Tor as Your Everyday Browser

Ordinary sites work through Tor the same way they work through any browser. Whether it makes sense day to day depends on what you need it for.

Expect some friction. Pages load slower, since traffic bounces through three relays instead of going straight there. Some sites add extra CAPTCHAs or block Tor exit IPs outright, treating this traffic as more suspicious than an ordinary connection. Logging into personal accounts still identifies you to those specific sites. Hiding your IP doesn't change what a site you've signed into already knows. Tor Browser also only protects traffic going through it. It doesn't secure other apps on the same device.

If you mainly want to hide your network origin or cut down on tracking, Tor is a solid fit for daily use. If Tor's trade-offs (slower speed, occasional site friction) don't work for you, a privacy-focused regular browser is worth comparing instead. Brave and Sigma Browser (our own browser) both build ad and tracker blocking into a Chromium-based browser for everyday use, though neither hides your IP address the way Tor does. See our breakdown of Brave's security and privacy trade-offs.

Download Sigma Browser

Also available on Windows, iOS and Android. Linux version coming soon!

Questions & Answers

If you have any questions,
reach out to us on X at @Sigma_Browser
Is Tor Browser safe to download?
Does using Tor automatically take you to the dark web?
Is Tor Browser safer than Chrome?
×

Get Sigma on Android

We’ll let you know when Sigma for Android launches.
You’re on the list!
Please enter a valid email address.
Oops! Something went wrong while submitting the form.
Oops! Something went wrong while submitting the form.