Cryptographic inventory, exposure class, data lifetime, and CBOM-ready evidence.
Identify the cryptography, systems, vendors, certificates, and protocols that create quantum-relevant exposure inside approved scope.
How we work
Scope. Evidence. Next action.
Scope is stated. Evidence is reviewable. Action is governed. Public pages do not display customer environments.
Qtonic Quantum Lab scores are generated through automated evaluation using publicly available evidence. Scores reflect conditions at the time of evaluation and may change as solutions evolve. Vendors may request a retest at any time. See our fidelity commitment for full details.
Some infrastructure assurance belongs to the underlying provider. It supports buyer diligence, but it is not a Qtonic Quantum-held certification or attestation.
Qtonic Quantum Lab · Evidence-linked scoring registry
Qtonic Quantum Lab gives buyers a public proof layer for post-quantum migration: evidence-linked scoring, disclosed data health, proof-state labeling, and published methodology. 132 public entries are shown across 15 categories. 174 additional submissions are under evaluation; 306 total scored implementations span both states, with the current data/proof state disclosed above.
It extends Qtonic Quantum's evidence-led quantum cyber risk and vulnerability intelligence tools and services into a public post-quantum vendor evidence surface.
Exposure graph
Talon is the Lab scoring and proof engine (not a separate buyer product). It publishes the runtime control graph that binds score signing, audit-chain integrity, commercial watchlist coverage, and active release identity into one reconstructable proof. The evidence pack verifies the signed snapshot and transparency anchor outside the Talon process.
Signed control records
319/319
100% of Talon (Lab scoring/proof engine) current-score records; separate from published registry entries
What tier means
| 11 | Runtime Verified · High | 83.6 EvaluatedLast evaluated 1d ago |
|---|---|---|
| 12 | Web Evidence · Low | 83.4 ReviewedLast evaluated 1d ago |
| 13 | Runtime Verified · High | 80.6 EvaluatedLast evaluated 1d ago |
| 14 | Runtime Verified · High | 80.4 EvaluatedLast evaluated 1d ago |
| 15 | Runtime Verified · High | 80.4 EvaluatedLast evaluated 1d ago |
| 16 | Runtime Verified · High | 80.2 EvaluatedLast evaluated 1d ago |
| 17 | Web Evidence · Low | 79.8 ReviewedLast evaluated 1d ago |
| 18 | Runtime Verified · High | 79.5 EvaluatedLast evaluated 1d ago |
| 19 | Runtime Verified · High | 79.5 EvaluatedLast evaluated 1d ago |
| 20 | Runtime Verified · High | 78.8 EvaluatedLast evaluated 1d ago |
174 scored submissions remain below the public evidence threshold. They are excluded from published registry counts, leaderboard results, and the sitemap.
Review the research queueQLab in the operating path
A buyer-readable path from quantum exposure to governed evidence: find the cryptographic surface, prove materiality, fix the migration sequence, and credential outcomes without exposing customer data.
Scoring engine
Each solution is scored across 10 weighted dimensions on a published quantitative rubric. Domain-expert review controls are independent of the automated evaluation system and publish conservative provenance labels when evidence is contested, inferred, or degraded. Published score records carry review status and public change tracking.
Compliance surface
Published solutions are mapped against 13 technical, policy, sector, and data-protection anchors including FIPS 203, FIPS 204, FIPS 205,CNSA 2.0, NSM-10, EO 14028, PCI DSS 4.0.1, HIPAA, GDPR, and international privacy frameworks. Each primary source and its scope are disclosed; these mappings support technical review and do not assert that every source mandates PQC or establish legal compliance.
View standards trackerWe evaluate PQC solutions on request. Submit a vendor for review and we will route it through the Qtonic Quantum Lab intake queue.
Qtonic Quantum Lab scores are independent research opinions based on a published quantitative rubric and automated evaluation of publicly available evidence. Domain-expert review controls are independent of the automated evaluation system, and provenance labels disclose when evidence is verified, contested, inferred, or degraded. No vendor pays for inclusion, ranking, or evaluation. Scores do not constitute endorsement, certification, or legal advice. Methodology is uniformly applied and publicly disclosed. All product names and trademarks are the property of their respective owners. Solution maintainers may request a methodology retest at any time. Full research disclaimer.
Workbench
Qtonic Quantum Lab is the proof surface. When you need to go deeper, each stage builds on the last — from cryptographic exposure to materiality proof, migration sequence, and readiness evidence.
Contact/ticket intake · 7 days
Approved-scope cryptographic exposure intelligence that finds vulnerable systems, data-lifetime risk, owners, and migration urgency against NIST timelines.
Data plane
Live API
Leaderboard refreshed Jul 22, 2026, 12:53 AM UTC
Qtonic Quantum does not sell, resell, or earn fees on any solution evaluated in this registry. Public scores are released on a quantitative rubric with provenance states, review status, and published scoring records.
Talon is the scoring and proof engine behind the Lab, binding public registry results to reproducible evidence and surfacing proof-state review until signed-record verification is restored.
Score records keep their provenance trail visible; the current public proof manifest is marked for review until signature health returns.
Audit chain
6,159
Snapshot audit rows
Scheduler SLO
Running · 0 actionable
0 running jobs · 1 recovered or non-actionable
Release
10e3e17
Promoted Jul 18, 7:21 PM UTC
Proof hash
dd8aacbc29...7c87a7
Trusted ML-DSA-65 signature verified
Witness
pass
Evidence pack efec40fdf2...ba81e5 verifies snapshot and anchor
Every current public score row must carry signature material and a canonical signed payload.
ML-DSA-65 · quantum: resistant · risk: low
Public snapshot responses append a chain-linked audit row and publish the head hash.
SHA-256 row hash chain · quantum: monitor_grover_margin · risk: low
Each approved top-watchlist candidate must be mapped, signed-excluded, or explicitly blocked.
operator-signed disposition records plus Lab proof envelope · quantum: not_applicable_control_plane · risk: low
The Lab scheduler process must be running, required proof jobs must be fresh, and public scoring, audit, and calibration jobs must have no unrecovered 24h failures, warnings, partials, or timeouts.
supervisord process snapshot plus scheduler_runs recovered-failure classification · quantum: not_applicable_runtime_control · risk: low
Runtime services boot from a single active-release manifest and publish the git SHA for parity checks.
git SHA pinned active-release manifest · quantum: not_applicable_release_control · risk: low
Materiality, attacker path, validation boundary, and falsifiable evidence.
Convert selected exposure into governed forward-threat demonstration and separate evidence from noise before migration work expands.
Owner assignment, exception handling, migration sequence, and control routing.
Turn the finding record into a buyer-controlled remediation sequence aligned to standards, procurement, architecture, and operating constraints.
Release proof, sample evidence, diligence boundaries, and readiness records.
Publish public proof where it is safe, keep buyer-specific evidence controlled, and preserve a record leaders can defend.
Forward-threat validation with provider-aligned platform profiles and engagement-tied performance commitments documented in SOW.
ExploreMonthly insights on PQC migration and quantum risk. No spam.
Provider Infrastructure: Inherited provider controls via Zoho Cloud. Full provider certification inventory in Trust Center
Release proof entry pointLab: signed snapshot proofQStrike: synthetic E2E proofQScout: backend health proofRelease Proof
© 2024–2026 Qtonic Quantum Corp.
Miami, FL HQ · Be’er Sheva R&D