Discover your cryptographic assets across enterprise systems. Assess quantum risk. Plan your post-quantum migration โ powered by AI.
Quantum computers will break RSA, ECDSA, and other widely-used cryptographic algorithms. Organizations need to discover what cryptography they're using, understand the risk, and plan their migration to quantum-safe alternatives.
Most enterprises don't have visibility into their cryptographic inventory. pqAgility changes that.
Harvest Now, Decrypt Later โ attackers record encrypted traffic today to decrypt when quantum computers arrive
Trust Now, Forge Later โ long-lived signing certificates become forgeable once quantum breaks the algorithm
Top-down architecture modeling meets bottom-up operational discovery
Enterprise Architects
Model desired cryptographic architecture using the ArchiMate toolkit with CycloneDX CBOM integration. Define target state and track compliance.
Security Operations
Discover and catalog actual cryptographic assets from production systems. Assess risk in real-time and track remediation progress.
Everything you need to manage your cryptographic landscape
Ingest from CycloneDX CBOM, Qualys, AWS S3, and ServiceNow CMDB. Connectors, API integrations, and manual upload.
Animated radar visualization with 10+ risk factors. Quantum vulnerability detection, HNDL/TNFL threat identification, weak cipher detection.
RAG pipeline with Qdrant vector search. Ask natural language questions about your cryptographic inventory. Powered by OpenAI.
Mermaid-based diagrams per application with risk-color-coded nodes. Infrastructure topology with crypto protocol annotations.
Deterministic matching by hostname, fingerprint, and bomRef. Semantic fallback via vector embeddings for unlinked assets.
Phased PQC migration roadmap. Per-application plans with algorithm replacement recommendations (ML-KEM-768, ML-DSA-65).
Export to Archi-compatible XML with 7 crypto specialization types. Custom icon set and jArchi automation scripts.
Full CycloneDX 1.6 Cryptographic Bill of Materials support. Import/export scripts for CI/CD pipeline integration.
From raw data to actionable migration plans in four steps
Upload or connect data sources โ CBOM, Qualys SSL scans, AWS S3 inventories, CMDB exports. Each source has a dedicated parser with validation.
Assets are normalized to a common schema, stored with vector embeddings, then linked across sources using deterministic and semantic matching.
Each asset is scored on algorithm strength, protocol version, key length, certificate expiry, service criticality, and quantum threat exposure.
Generate phased migration roadmaps, architecture diagrams, ArchiMate exports, and use AI to answer questions about your crypto landscape.
Dark-themed UI built with React, Material UI, and custom SVG visualizations
Animated concentric-ring radar with severity-proportional arcs, risk cards, and detailed findings
Connector cards, API integrations, manual upload, and data source usage summary
Per-application Mermaid diagrams with risk-color-coded nodes and protocol annotations
Export architecture to Archi-compatible XML with crypto specialization types
Ingest from the tools your organization already uses
Certificates, algorithms, keys, and protocols from your software bill of materials
TLS/SSL configuration scanning with vulnerability and cipher suite detection
Cloud storage encryption status, KMS key configuration, and bucket inventory
Business context โ ownership, service tier, data classification, and hostnames
Modern, production-ready architecture
Docker Compose brings up the full stack โ PostgreSQL, Qdrant, backend, and frontend
# Start all services
docker-compose up -d
# Frontend: http://localhost:3001
# Backend API: http://localhost:3000
# Load sample data (15 apps, 72 assets)
# Upload files from examples/ via the Data Sources tab
Interested in pqAgility for your organization? Have questions about post-quantum migration? We'd love to hear from you.