industry · quantum risk
Is Institutional custody Quantum Proof? Industry Quantum Risk
Verdict
Institutional custody is not quantum-proof while withdrawal authorization uses classical signatures or classical MPC assumptions. Demand algorithm transparency and migration plans.
Overview
Custodians combine legal controls with cryptographic controls. Quantum risk is the latter: what algorithms authorize moves.
Cryptographic profile
- Signatures: Cold storage ceremonies, MPC/threshold schemes as deployed, Policy engines and API auth
- Hash: Proof-of-reserve and audit artifacts (vendor-dependent)
- Public-key exposure: Long-term asset custody with classical or hybrid ops designs.
- Vertical: exchanges
What breaks
- Opaque “military-grade” claims
- No chain-by-chain algorithm matrix
- API keys that bypass strong ceremony
Mitigations
- Algorithm questionnaires per asset
- Ceremony and dual-control evidence
- Track PQC research for threshold schemes
FAQ
MPC = quantum-safe?
MPC is a key-management pattern; underlying assumptions may still be classical.
Related?
/glossary/mpc and bitcoin-custody
Key concepts (technical dictionary)
Terms used on this page — open a definition: