Proof Lab
StartEcosystem
Explore (579)Live Systems (52)Pricing
Log InGet API Key✓ Verify It Yourself
H33-74 / Portable Post-Quantum Evidence

How H33 Makes Post-Quantum Scale

Post-quantum cryptography makes the proof heavier. H33-74 keeps the proof — and makes it portable. The complete, independently verifiable evidence stays intact; H33-74 is the compact cryptographic commitment to it, not a substitute for it.

Post-quantum security makes cryptographic truth heavier

Post-quantum signatures are far larger than the classical signatures they replace — and high-assurance systems don’t stop at one signature. A single governed event accumulates authority, key-use, the exact executable identity that produced it, identity and device evidence, temporal proof, and lineage — each of them post-quantum attested. A complete, independently verifiable evidence bundle for one event runs to tens of kilobytes.

At post-quantum scale, carrying that heavyweight proof through every API response, event stream, audit record, blockchain anchor, agent interaction, and transaction becomes an infrastructure problem in its own right. A billion governed events means terabytes of proof in motion — before retention, replication, or verification. That is the post-quantum scale problem.

Nothing is thrown away

The heavyweight post-quantum evidence remains intact — preserved once in the evidence architecture, and independently retrievable and replayable from it. H33-74 carries the compact cryptographic commitment that lets systems refer to and verify that evidence without transporting the entire proof everywhere. Proof preservation is separated from proof representation.

stays intact
Heavyweight cryptographic truth

Full post-quantum evidence

Full PQ signatures · authority · BIND provenance · identity evidence · PQ-Time · Evolve lineage.

↓ retained, not summarized
one immutable copy
H33 Evidence Graph

Independently verifiable, intact

The full evidence remains — content-addressed, independently retrievable and replayable. It is stored once; it does not travel.

↓ H33-74 commits to it
travels
H33-74

Compact cryptographic commitment

Per the H33-74 specification: a 32-byte anchor plus a 42-byte governed binding, attested by three post-quantum keys. A single H33-74 object commits to the evidence’s identity — it does not carry the evidence itself; it lets a verifier retrieve and check it.

everywhere
Portable evidence

Carried where the proof must appear

APIs · authentication · agents · audit · compliance · transactions · blockchains — each carries the small commitment, not the whole proof.

Preserved once
Represented everywhere

What the primary experiment proved

In a controlled experiment against a real database and real post-quantum signatures, an independent verifier — given only the evidence root — recovered and re-verified every coordinate of one authorization’s evidence, fetched the content-addressed evidence, and verified the underlying signature. Tampering with the service identity, the evidence kind, the evidence graph, the temporal state, or crossing evidence between two decisions each failed closed.

  • Root-based recovery. The verifier reconstructs the evidence identity from the sealed root alone — no external service constant, version, kind, or locator is handed to it.
  • Fail-closed replay. Every tampered or mismatched coordinate is rejected, never repaired.
  • Real post-quantum verification. The underlying triple post-quantum signature (ML-DSA + FALCON + SLH-DSA) verifies.
  • Scoped semantic closure. The authorization’s service identity, type, and kind are recovered from the root and re-verified — meaning is bound cryptographically, not assumed.
  • The full heavyweight proof still verifies independently. Nothing is discarded.

74 bytes isn’t where we started. It’s the boundary we’re proving.

The portable H33-74 form is a 32-byte anchor plus a 42-byte binding — 74 bytes by specification. We report what the experiment established: that a compact root determines and recovers the evidence, fail-closed. We do not claim to have measured a serialized 74-byte wire object, and we do not yet claim closure for every possible evidence graph. Security — not branding — determines the minimum portable representation. If the honest floor turns out to be larger, that is the number we will publish.

Where H33-74 fits

H33-74 doesn’t replace the rest of H33 — it commits to the evidence the rest of H33 produces. Each component answers exactly one question about a governed event; H33-74 answers only the last.

ComponentThe one question it answers
H33-KeyWas the cryptographic key authorized for this use?
H33-BINDWhat exact executable implementation produced it?
H33-PQ-TimeWhen, and in what causal lineage, did it occur?
H33-EvolveHow did this state legitimately succeed the previous one?
H33-74What compact cryptographic commitment binds the resulting evidence?

The future of cryptography is heavier. The proof doesn’t have to be.

H33-74 is the portable, post-quantum-attested commitment to heavyweight governed evidence — while the complete proof stays intact behind it.

Explore H33-74 →