quantakrypto documentation
Everything you need to assess and fix post-quantum exposure: the open-source toolkit, the MCP server for AI agents, and reference material on the standards, policies, and migration playbooks.
MCP server
Post-quantum tools inside your AI coding agent — local stdio, or the hosted OAuth endpoint.
Credentials
Verifiable, tamper-proof (OpenTimestamps) post-quantum credentials for people and organizations — one-click add to LinkedIn.
The toolkit
qScan, Sieve, the CI Action, and the MCP server — free, open-source, Apache-2.0.
Standards reference
The NIST algorithms, deployment profiles, compliance mandates, and interchange formats, explained.
Guides
Practical explainers on the threat model, crypto-agility, inventory, migration, and conformance.
Toolkit
pqc-tools on GitHub ↗qScan
BetaCLI scanner
Find quantum-vulnerable cryptography in any codebase.
npx @quantakrypto/qscan ./
quantakrypto MCP
PreviewMCP server
PQC-readiness, native to your AI coding agent.
claude mcp add quantakrypto npx @quantakrypto/mcp
Sieve
BetaConformance battery
Conformance-test an ML-KEM / ML-DSA / SLH-DSA implementation against the bugs that matter.
npx @quantakrypto/sieve --impl "./your-impl" --param ml-kem-768
quantakrypto Action
BetaCI integration
Fail the build when new quantum-vulnerable crypto lands.
uses: quantakrypto/pqc-tools/packages/action@v1
Standards
Guides
- Harvest now, decrypt later: the threat that makes PQC urgent today
- Crypto-agility: designing systems that can swap algorithms
- Building a cryptographic inventory: you can't migrate what you can't see
- A post-quantum migration roadmap: sequencing the move to PQC
- Migrating TLS to hybrid post-quantum key exchange
- Conformance testing for post-quantum crypto: why passing the KATs is not enough
- A post-quantum cryptography primer: the 10-minute orientation
- Hybrid key exchange, explained: pairing classical and post-quantum
- RSA vs ML-KEM: what actually changes when you replace classical key exchange
- Mosca's theorem explained: is your data already at risk?
- The PQC readiness assessment: measuring how prepared you are to migrate
- Finding quantum-vulnerable cryptography in code and on the network
- Migrating RSA and ECDH key exchange to ML-KEM
- Implementing crypto-agility: patterns for swappable cryptography
- A FIPS 203 conformance checklist for ML-KEM implementations
- ACVP vs conformance vs FIPS 140-3: what each one actually proves
Turn quantum risk into a credential.
Book a discovery call and get an indicative scope and pricing for your organisation.