Documentation

An overview of Cadarn's capabilities and standards. Full API reference, integration guides and repository access are provided to evaluated partners on request.

Overview

Cadarn is a quantum-resistant security library. It provides post-quantum key exchange, digital signatures, hybrid encryption, tokens, licensing, key rotation and a tamper-evident audit log through a clean, modern interface.

The cryptographic primitives come from independently audited, widely-used implementations. Cadarn does not roll its own cryptography — it is the trustworthy composition around standardised algorithms.

Standards

  • Post-quantum key exchange — ML-KEM-768 (NIST FIPS 203)
  • Post-quantum signatures — ML-DSA-65 (NIST FIPS 204)
  • Authenticated encryption — AES-256-GCM with HKDF-SHA256
  • Aligned with UK NCSC guidance on post-quantum migration

Capabilities

  • Post-quantum key exchange
  • Digital signatures and verification
  • Hybrid encryption at rest and in transit
  • Signed, rotating tokens and licence verification
  • Managed key rotation
  • Hash-chained, signed tamper-evident audit log

API reference & integration

The full API reference, quick-start guides and integration support are provided privately to evaluated prospects, audit partners and licensees. They are not published publicly.

Get in touch and we will share documentation and repository access under a suitable arrangement.

Request access

Security & provenance

  • No hand-rolled cryptography — primitives from independently audited libraries.
  • Documented threat model and key-management guidance (provided on request).
  • SBOM and cryptography bill of materials ship with the library.
  • Independent audit under way — we say "quantum-resistant", and will only say "certified" once certification is complete.

Get access

Cadarn is available for evaluation, audit review and licensing.

cadarnsecurity@protonmail.ch