Security, privacy and audit requirements · C0900
Is the cryptography designed to be swapped out later, for example for post-quantum methods?
Designed, not yet built
Short answer
REQ-4606 is a high-priority requirement for the medium and large tiers: cryptographic modules must support agility, including hybrid X25519+ML-KEM-768 for key establishment; ML-DSA signatures are optional and (still an open decision). Not yet. It is designed in the specification and not built in the pilot. To verify it, the specification says suite negotiation test. Parts of it are explicitly marked as open in the specification.
This is designed, not built.
- Specification item
- REQ-4606
- Specification priority
- P1 (of P0 to P3)
- Tiers
- Medium, Large
Status as of September 30, 2026. Version 0.2.0, synthetic data only. See what's built today. Not legal, medical or security advice.
Related answers
- Which password hashing method does the specification call for? Designed
- How often would encryption keys be rotated? Designed
See it in context: Key management · Search the help center · Ask a question