TLS quantum readiness check
Test your domain for quantum-safe TLS.
button-label
Run scan
What it does
This tool analyzes a website or IP address to see whether its TLS connection uses TLS 1.3 and a quantum-safe key exchange, such as ML-KEM. Quantum-safe encryption helps protect sensitive data from "harvest now, decrypt later" attacks.
improve-heading
How to improve
improve-description
Complete these steps to strengthen your posture. We'll update your result on the next scan.
domain-label
Website URL
running-scan-message
Analyzing security…
scan-failed-message
Scan could not be completed
error-prefix
⚠️ Error:
tls13
Upgrade endpoints to TLS 1.3 and disable legacy TLS protocol versions.
pq-groups
Enable hybrid key exchange groups such as X25519MLKEM768.
Ready to start your quantum-safe journey?
Sign up for the free preview of Quantum Central to assess, plan, and manage your transition to post-quantum cryptography.
What does this tool check?
It scans your domain to determine whether your server supports post-quantum cryptography (PQC) key exchanges, such as ML-KEM. Many platforms already support quantum-safe key exchanges. If your environment doesn't, enabling support may be as simple as a software update.
What is post-quantum cryptography?
Post-quantum cryptography (PQC) is the next generation of cryptography, designed to protect data against attacks from future quantum computers. It replaces today's vulnerable mathematical approaches with quantum-resistant algorithms built for long-term security.
Why is this important?
Attackers are already collecting encrypted data today with the expectation that future quantum computers will be able to decrypt it—a strategy known as "harvest now, decrypt later." Adopting post-quantum cryptography now helps protect sensitive data against that future risk.