A tools-first post-quantum readiness platform
ZeroTrustPQC exists because the post-quantum transition needs fewer think-pieces and more instruments. Every page on this site is an interactive tool or a structured reference. No blog. No news ticker. No filler.
Mission
Help organizations of every size understand their PQC posture today, map what needs to change, and verify that change as it ships. Work product, not commentary.
Scanner methodology
The domain scanner at /check runs a real TLS 1.3 handshake against the target you choose. The server-side path uses OpenSSL 3.6 compiled with the oqs-provider from the Open Quantum Safe project, deployed as a Cloudflare Container.
The browser self-test fetches Cloudflare's PQ research endpoint as a fallback probe when a local measurement isn't possible. A self-hosted PQ test endpoint is on the roadmap as the primary for browser self-tests, reducing our dependence on a single external provider.
Content governance
- Tools are the content. If a page can't host an interaction, it doesn't ship.
- Reference data, not commentary. Vendor and regulatory entries cite their source.
- Updates are data updates. The matrix and timeline shift as the world does; there's no "news post" about it.
- Every reference row carries a "last verified" date. Staleness is visible.
Open source
The scanner, site, and data files are open source. Corrections and vendor updates go through pull request — there is no editorial gatekeeper beyond "cite your source."