Scrutari
Technical specifications

What the wire actually carries.

If you're the security engineer scanning this page, you're not here for marketing copy. Here are the primitives, by their formal names.

SurfacePrimitiveStandard
Key exchange (PQ)ML-KEM-768NIST FIPS 203
Key exchange (classical)X25519RFC 7748
Hybrid combinerHKDF(X25519 ‖ ML-KEM-768)TLS 1.3 hybrid draft
Bulk AEADAES-256-GCM, ChaCha20-Poly1305RFC 5288, RFC 7539
Server signatureECDSA-P256-SHA256, RSA-PSS-SHA256RFC 8446
JWT signature (PQ)ML-DSA-65NIST FIPS 204
JWT signature (classical)ES256, EdDSARFC 7518, RFC 8037
HashSHA-256, SHA-384, BLAKE3-128FIPS 180-4, BLAKE3 spec
HMAC (audit cursor)HMAC-SHA-256FIPS 198-1
CSPRNGaws-lc-rs SystemRandomNIST SP 800-90A
Cert lifetime (Scrutari edge)90 days, auto-renewed at 60dCA/B Forum BR
TLS versionTLS 1.3 onlyRFC 8446

Move your TLS posture to post-quantum before the timeline moves you.

Scrutari is in early access for enterprise SaaS teams who've been told to have a migration plan by their largest customers and don't want to rebuild their TLS stack to get there. We'd like to talk to yours.