Centre of Excellence

World-leading post-quantum cryptography, proven in production.

We maintain a Data Room of evidence of our achievements. Here are the highlights.

Time travelled

In 2026 we implemented the 2030 and 2035 requirements for pure and hybrid post-quantum cryptography.

World firsts

The first free platform for FIPS 203, 204 and 205 key pairs, and the first DoQ resolver on pure post-quantum cryptography.

Guaranteed cryptoagility

If an algorithm we rely on is ever broken, our commitment is to switch within the hour.

01

World firsts, and an aim

Specific, dated and verifiable. The detailed records sit in the Data Room.

Our aim is to provide better cryptography than all the big brands.

  • kyber.club, launched October 2023, became in April 2025 the first free online platform to generate FIPS 203, 204, 205 and many other post-quantum key pairs, built in the browser on open, standard libraries.
  • We built the first DoQ resolver running pure post-quantum cryptography.
  • Our VPN enables pure post-quantum mutual authentication.
  • "Better than the big brands" is measured, not asserted: post-quantum key-exchange groups negotiated over DoT and DoH, 59 against 2 and 1 for the two leading public resolvers, 2026.
The dated comparison behind this aim, measured against named providers, is held in the Data Room, available under NDA.
Published research, open access on Zenodo: DNSSEC maturity across 201 top-level domains (July 2026) and Classic McEliece as a long-term hedge (September 2026).
02

Engineering excellence, in numbers

Breadth that is built and operated in-house, not assembled from third parties.

64
KEM groups
21 pure · 38 hybrid · 5 classical
72
Digital signatures
36 pure · 26 hybrid · 10 classical
3-tier
Private CA
Root, intermediate and issuing certificates on pure and hybrid signatures. Experimental and not publicly trusted, governed by our published CPS · Status
BeatQuantum 59 Leading resolver A 2 Leading resolver B 1
Post-quantum key-exchange groups each resolver negotiates: BeatQuantum's 21 pure and 38 hybrid, against the two leading public resolvers. Measured over DoT and DoH, 2026.
The full algorithm matrix is held in the Data Room, available under NDA.
03

A full post-quantum stack

Engineered and operated in-house, held ready for when you need them. Pure post-quantum and hybrid are both implemented: for production we recommend hybrid, in line with BSI and NCSC guidance, and provide pure post-quantum where a jurisdiction requires it.

Secure access
Dual VPN
Two independent post-quantum VPNs, with pure post-quantum mutual authentication.
Encrypted DNS
Resolvers: DoH, DoH3, DoT, DoQ
Encrypted DNS across every major transport, including the first DoQ resolver on pure PQC.
Use the resolvers →
Web
Cryptoagile web server
Delivering the key-encapsulation mechanisms of 2035, in 2026.
Mail
Post-quantum mail server
Post-quantum protected email.
Transfer
SSH and SFTP
Post-quantum protected remote access and file transfer.
Conferencing
Video conferencing
End-to-end encrypted conferencing.
04

Approved algorithms across jurisdictions

The approvals are of the algorithms, not of BeatQuantum as a vendor. We implement what each authority standardises or mandates, so one implementation travels.

United States
NIST FIPS 203, 204 and 205; CNSA 2.0.
United Kingdom
NCSC post-quantum migration guidance.
European Union
BSI TR-02102-1, ANSSI and NLNCSA recommendations, including FrodoKEM and Classic McEliece hybrids.
China
SM2, SM3 and SM4 under the Cryptography Law.
India
DST National Quantum Mission roadmap; TEC 910018:2025.
Brazil
ITI IN-35/2026 for ICP-Brasil (ML-KEM and ML-DSA).
05

Interoperability that travels

By design
Forward and backward compatible
We maintain forward and backward compatibility, so deployments work alongside and ahead of the standards in use today.
In practice
Built for multinationals
A German manufacturer meeting US requirements, or a UK bank meeting Dutch requirements, from one implementation.
06

Guaranteed cryptoagility

Two commitments, each with a deadline, measured end to end on our own multi-protocol estate and rehearsed against a severe-but-plausible scenario library written to PRA SS1/21.

If a KEM is broken
Switch within one hour
If a key-encapsulation algorithm we use is ever broken, we move to alternatives within one hour: from the decision to retire it to every host serving the changed policy. Best measured run: 14 minutes.
If a signature is compromised
Revoke and reissue within 24 hours
If a digital signature algorithm in our Private CA, or a certificate, is ever compromised, we revoke and reissue within 24 hours.
07

Where the standards are not yet ready

We prove first and speak later, which means being clear about what is not yet possible.

Ecosystem gaps
Industry-wide, not ours alone
  • The CA/B Forum has yet to support post-quantum signatures for TLS certificates.
  • IETF standards for post-quantum DNSSEC and RPKI are still evolving.
  • Classic McEliece, for niche BSI Germany requirements, is not yet available to us.
Not yet in our stack
By deliberate choice, for now
  • South Korean (kPQC) algorithms are not yet available.
  • Russian algorithms are not available.

Want the evidence in full?

Public now: kyber.club, the DNS resolvers, the Time-Stamp Authority, the CPS and status pages, published papers and the dated claims on this page. Under NDA: launch records, the full algorithm matrix, named provider comparisons and client records. Start by telling us what you need the most.

Tell us what you need the most