Short, plain answers to the questions people ask about post-quantum cryptography and app security.
Post-quantum cryptography
- Is RSA safe from quantum computers? Not in the long run — what that means, when, and what replaces it.
- What is ML-KEM? NIST's standard post-quantum key exchange (FIPS 203).
- What is "harvest now, decrypt later"? Why data encrypted today is already at risk.
- How do I migrate to post-quantum cryptography? The five practical steps.
- What is a CBOM? The cryptographic bill of materials, and why auditors ask for one.
App security
- Does my Lovable or Bolt app leak API keys? How to check an AI-built app, and what to do if it does.
More answers are in the FAQ.