AIR
Proof Lab
StartEcosystem
Explore (579)Live Systems (52)Pricing
Log InGet API Key✓ Verify It Yourself
moved the post-quantum deadline to 2029

Your Company Has 5 Options.
1 of Them Is Good.

Related · tier-1 reading. For what a portable artifact actually is, see Portable Artifact.

Rip & Replace
$10M+ · 3-5 yrs
Hire PQ PhDs
$2M+/yr · if available
Wait for Vendors
Uncontrolled risk
Do Nothing
Pray
Call H33
One API call · Done
We Already Solved It.
One API call. Post-quantum end-to-end. Your infrastructure stays. H33 wraps it.
35.25µs
Per auth
2.21M
Auth/sec
$0.001
Per auth
0
GPUs needed
Get Free API Key → See the Demo
One API call includes
FHE — 4 engines with automatic routing
ZK-STARKs — Lookup + AIR, SHA3-256
Dilithium — ML-DSA-65/87, FIPS 204
Kyber — ML-KEM-768/1024, FIPS 203
FALCON — NTRU-based signatures
3-Key — Ed25519 + Dilithium + FALCON
AI-Blind — AI processes without decrypting
HATS — SOC 2, HIPAA, GDPR, EU AI Act
Harvest Now, Decrypt Later
2029 isn't a deadline. It's a guess. Nation-states are recording encrypted traffic today. Every piece of data transmitted over classical crypto is sitting in a database, waiting for a quantum computer to open it. The question is whether your data is already captured.
What "the PQ deadline" means

The post-quantum deadline is the date by which an organization must have migrated its public-key cryptography to quantum-resistant algorithms — conforming to the NIST standards ML-KEM (FIPS 203), ML-DSA (FIPS 204), and SLH-DSA (FIPS 205), all finalized, with FN-DSA/FALCON (FIPS 206) still in draft. It exists because a cryptographically relevant quantum computer will retroactively break every RSA and elliptic-curve key in use today, and adversaries are recording encrypted traffic now to decrypt later.

Use H33 now if you hold data that must stay confidential past that horizon, or you face CNSA 2.0 or sector deadlines. You do not need it to replace AES-256 (symmetric encryption stays quantum-safe) — the deadline is about public-key algorithms, not your bulk-data cipher.

Meeting the deadline is one thing; proving you met it is another. The durable, portable evidence that an operation ran post-quantum is produced by H33-74; whether your systems stay post-quantum over time is recorded and monitored by HATS; and the independent verdict that an attestation is valid — requiring ML-DSA, FN-DSA/FALCON, and SLH-DSA to all verify, a strict 3-of-3 gate — is rendered by Verification. H33 verifies against and migrates to the NIST standards; it does not own or prove them.

When not to use this page as your answer: if your question is not "how do I migrate by the deadline" but "how do I prove a post-quantum operation happened," use H33-74 instead; if it is "how do I keep my fleet post-quantum over time," that is monitored by HATS; and if it is "is this attestation valid," that verdict is rendered by Verification. This page is about the migration deadline itself, not the proof, the monitoring, or the verdict.

Frequently asked questions
Did the post-quantum deadline really move to 2029?

Guidance timelines have shifted, but a fixed date is the wrong thing to plan around. The real driver is harvest-now-decrypt-later: encrypted data captured today can be decrypted once a quantum computer arrives, so long-lived data is already exposed regardless of any published deadline year.

Which NIST standards are finalized?

ML-KEM (FIPS 203), ML-DSA (FIPS 204), and SLH-DSA (FIPS 205) are finalized. FN-DSA/FALCON (FIPS 206) is still a draft and not yet finalized. AES-256 remains quantum-safe and needs no migration.

Do I have to re-architect my infrastructure?

No. H33 wraps your existing systems through an API, adding post-quantum signatures and key exchange alongside your current classical algorithms. Your infrastructure stays in place; the post-quantum layer is additive.

How do I prove I actually migrated?

The durable, portable proof that a post-quantum operation occurred is produced by H33-74 as a 74-byte attestation; ongoing compliance state is recorded and monitored by HATS; and the independent verdict that the attestation is valid — requiring all three signature families to verify, a strict 3-of-3 gate — is rendered by Verification.

Stop planning. Start deploying.
Free tier. 1,000 credits. No credit card required.
© 2026 H33.ai, Inc. · 300+ patent claims Pending · Terms · Privacy