CipherHorizon: find the cryptography that won't survive a quantum computer
A post-quantum readiness scanner that inspects certificates, dependency manifests, and live domains for algorithms a large quantum computer would break — then scores the exposure and monitors it over time. The migration deadline is set by physics and standards bodies, not by your roadmap; this tells you where you stand.
CipherHorizon is a live tool that answers one uncomfortable question: how much of your cryptography is on borrowed time? It takes certificates, dependency manifests, or a domain, identifies the algorithms in use that a sufficiently large quantum computer would break, and turns that into a readiness score you can act on — with continuous monitoring for teams that need to track the exposure as it changes.
The problem
Most of the encryption protecting data in transit and at rest today — RSA, elliptic-curve — rests on math that a large quantum computer is expected to break. That machine may still be years out, but the threat is already here in a form security teams call "harvest now, decrypt later": an adversary can capture encrypted traffic today and simply wait until the hardware exists to open it. Anything that must stay confidential for a decade is effectively at risk right now.
Standards bodies have responded — NIST has finalized post-quantum algorithms and migration is officially on the clock — but the first practical problem for any organization is simply knowing what it has. Which certificates, which libraries, which endpoints are relying on cryptography with an expiration date? Most teams can't answer that, and you can't migrate what you can't see.
The approach
CipherHorizon meets that gap with three ways to feed it what you actually have, because exposure hides in different places:
- Certificate upload — drop in
.pem,.crt, or.cerfiles and it parses them in the browser to identify the signing and key-exchange algorithms at risk. - Dependency manifest — paste a manifest and it flags crypto libraries and versions whose primitives won't survive the transition.
- Domain scan — point it at a live domain and it inspects the TLS configuration actually being served.
Each path feeds a scoring dashboard that turns raw findings into a readiness posture — a single picture of where an organization stands and what to prioritize — rather than a wall of undifferentiated certificate details.
The revenue model
CipherHorizon is packaged as a product, not just a demo: a $149 single report for a one-time readiness assessment, and $99/month continuous monitoring for teams that need to watch the exposure as certificates rotate and dependencies change. The two tiers map to how the need actually shows up — a one-off audit for a point-in-time answer, and an ongoing subscription for organizations that have to prove they're tracking it.
Status
CipherHorizon is live — certificate upload, dependency scanning, domain inspection, and the scoring dashboard are all running, with the pricing tiers in place. It's available to explore directly, and available for licensing or acquisition as a productized security asset.
Related case studies
Interested in licensing or acquiring CipherHorizon?
The scanner is live to try, and available as a productized security asset for license or acquisition.