Evidence over assertion
A score, report, or claim should retain the source, assumptions, confidence, and proof boundary behind it.
About RelixQ
RelixQ helps organizations find cryptographic exposure, understand which data and paths matter, validate approved posture safely, and keep the migration moving through engineering controls.
In one paragraph
RelixQ is a managed SaaS platform for post-quantum exposure management. It discovers cryptography across 10 evidence surfaces — source code, dependency manifests, TLS endpoints, cloud key management, cloud TLS infrastructure, runtime telemetry, and the readiness graph that joins them — with detection coverage spanning 31 programming languages and 13 configuration and infrastructure formats.
Every surface normalizes to one finding schema, and that is what the rest is built on: a deduplicated CycloneDX 1.6 CBOM, harvest-now-decrypt-later exposure ranked by dated Mosca X+Y>Z windows rather than by algorithm counts, a deterministic 0–100 RelixQ Score, TTL-bounded exceptions recorded on a hash-chained audit trail, and baseline-aware release gates that block net-new exposure inside a pull request.
RelixQ does not claim to decrypt anything. No cryptographically relevant quantum computer exists today, so the product proves exposure, reachability, and classical breaks — never quantum decryption.
Operating principles
A score, report, or claim should retain the source, assumptions, confidence, and proof boundary behind it.
Migration work must reach owners, retests, exceptions, integrations, and release gates or it becomes another static report.
Security testing must stay inside proven ownership, explicit scope, signed Rules of Engagement, and non-overridable safeguards.
No cryptographically relevant quantum computer exists today. RelixQ models exposure; it does not claim impossible decryption.
Work with RelixQ
Scope an Enterprise pilot around the evidence, teams, and controls that already exist in your organization.