Evidence loadedpartialML-DSA-65 (FIPS 204), pure variant, empty context string
Local fork evidence
Implementation evidence · runtime pending
Current boundaryFork patches, ML-DSA-65 syscall, pq-vault SBF program and TypeScript client are implemented and unit tested. The fork validator binary has NOT been built on this host: the release build was stopped by a disk guard (free space fell below 1.5 GiB while the separate unmodified validator ledger grew ~100-190 MB/min). No fork validator is running, so no genesis hash and no on-chain transaction signatures exist yet.
- Algorithm
- ML-DSA-65 (FIPS 204), pure variant, empty context string
- PQ genesis
- Pending evidence
- PQ validator RPC
- Pending evidence · reserved local port 8999
- Verifier / vault program
- FQn1rtLkx2wTqXQK4Ur96HATPdQhHeFyA5v2F1NSChBn
- Checked at
- 2026-10-08T22:25:00+02:00
No PQ validator transaction signature has been published yet.
Implementation map
Protected now
- Implemented scopeML-DSA-65 verification syscall implemented and unit tested
- Implemented scopepq-vault authorization, replay protection, and tamper tests implemented
Implementation map
Still classical
- ClassicalFee payer and every transaction signature: Ed25519
- ClassicalRelayer that stages signature buffers and submits pq-vault transactions: Ed25519 (cannot move vault funds)
- ClassicalVault account creation: one-time Ed25519 signature by the vault address and setup authority; powerless after SealVault
- ClassicalValidator identity and vote accounts: Ed25519
- ClassicalVotes / consensus (Tower BFT, and Alpenglow BLS where enabled): classical
- ClassicalGossip, Turbine shreds, repair, QUIC/TLS networking: classical
- ClassicalBridge authorities: none implemented
- ClassicalProgram upgrade authority: pq-vault is immutable at genesis; all other upgradeable programs use Ed25519 authorities
- ClassicalWallets and ordinary system-program accounts: Ed25519
Measurements
Measured, not inferred
- host
- Apple Silicon macOS (darwin 25.6.0), release build, median of 2000 iterations
- mldsa65VerifyMedianNs
- 108666
- secp256k1RecoverMedianNs
- 91750
- calibration
- secp256k1_recover syscall costs 25000 CU = 3.670 ns/CU on this host = 29610 CU suggested
- mldsa65VerifyBaseCu
- 30000
- mldsa65VerifyPerByteCu
- 1 CU per 32 message bytes (rounded up)
- syscallCuPerVaultTransfer
- 30006
- transactionsPerPqTransfer
- 4
- oneTimeVaultSetupTransactions
- 3
- packetLimitBytes
- 1232
- vaultAccountBytes
- 2048
- signatureBufferAccountBytes
- 3392
Prototype measurements do not establish native transaction or consensus protection.
External boundary
A bridge does not upgrade Solana
The source token, Solana settlement, source wallet signatures, and bridge custody remain separate security surfaces. Post-quantum authorization on the Lattice fork does not make the Solana representation post-quantum protected.