go ghost before q-day.

the first quantum-resistant launchpad.

Every coin launches with a dev vault locked by hash-based signatures and a post-quantum identity on chain. Holders arm an auto-bunker that fires the moment the canary dies.

Launch a coin →Scan your wallet ⌕
on Robinhood Chain
move your cursor over the qubits
time to q-day, as the watchtower sees it. real news moves it.
last move: none yet
0
coins launched
0
vaults open
0.00 ETH
behind hash-based keys
Read from the vault contract on chain
0
wallets scanned

every address is a public key.

Your wallet's address is derived from its secp256k1 public key. The key itself goes on chain the first time you send anything. Today that's fine: going from the public key back to the private key would take classical computers longer than the age of the universe.

it's all being recorded.

Every balance, every transfer, every key is stored forever on thousands of machines. Attackers don't have to break it today. They can harvest now and decrypt later.

then q-day.

A big enough quantum computer runs Shor's algorithm and derives the private key from the public one. Every wallet that ever signed is open. That's all of them.

unless it's in a vault.

A qHOST vault has no elliptic-curve key at all. Its ETH and its stocks only move with a Winternitz signature, which rests on keccak-256 alone. Shor's algorithm doesn't apply to hashes.

0x7xKX…gAsUpublic key: visible
412.80 ETH
recv 0.4 ETH
swap 0.1 ETH → NVDA

how it's quantum-resistant

the full spec →

ETH behind a hash, not a curve.

A vault is a contract balance keyed by the hash of a Winternitz public key. To move its ETH or its stocks you reveal points along keccak-256 hash chains, set by the exact message you sign. There's no elliptic curve for Shor's algorithm to attack.

  • ▸ 34 chains × 255 steps
  • ▸ 192-bit chain values, ~2^96 against Grover
  • ▸ one key, one signature, rest rolls to a fresh vault
s0
p0
s1
p1
s2
p2
s3
p3
s4
p4
secret● signature reveals this pointpublic end, after 255 hashes

the canary and the bunker.

The canary is ETH at a wallet whose key was destroyed the day it was made. No normal computer can ever move it. If it moves, someone derived a private key from a public one.

Arm an auto-bunker today and your escape waits, approved and unsent. When the canary dies, it fires, and your stocks move into a hash-locked vault. Or go in now with bunker mode: one hold, everything sealed.

Arm auto-bunker →Bunker mode ▣

The canary is alive.

ETH at a wallet whose private key was destroyed when it was made. Only a quantum computer, or someone who kept the key, could ever move it.

holds
0.000 ETH
escapes armed
0
checked
–

safest coins right now

all coins →
No coins yet. The first launch lands here with its q-safe score.

the road to q-day

drag or scroll sideways
1994

Shor's algorithm

Peter Shor shows a quantum computer could factor numbers and solve discrete logs fast. In principle that breaks RSA and the elliptic curves behind every crypto wallet.

closer
2001

15 = 3 × 5

IBM runs Shor's algorithm on a 7 qubit machine and factors 15. Tiny, but it works.

closer
2019

Sycamore

Google's 53 qubit chip finishes a task in minutes that it says a supercomputer would need thousands of years for.

closer
2021

Eagle

IBM crosses 100 qubits on one chip with Eagle, at 127.

closer
2023

Condor

IBM's Condor passes 1,000 qubits on a single processor.

closer
2024

Post-quantum standards

NIST publishes its first post-quantum signature and encryption standards, including SLH-DSA, a hash-based signature like the one guarding qHOST vaults.

defense
2024

AlphaQubit

Google DeepMind's AI decodes quantum errors better than the best hand-built methods. AI is now helping build the machine.

ai
2024

Willow

Google's 105 qubit Willow chip shows errors falling as the code grows, the threshold the field chased for decades.

closer
2025

Majorana 1

Microsoft unveils a chip built on topological qubits, a new route to stable machines.

closer
2025

Under a million

A new estimate says RSA-2048 could fall to under a million noisy qubits in under a week, down from 20 million in 2019.

closer
2025

6,100 qubits

Caltech holds 6,100 atom qubits in one array, the largest yet.

closer
now

qHOST on Robinhood Chain

The first launchpad where every coin's dev fees can sit behind a quantum-resistant vault from the first block. Pools open against tokenized stocks.

defense
?

q-day

The day a quantum computer can derive a wallet's private key from its public key. Nobody knows the date. The watchtower keeps an estimate.

closer

the watchtower

An AI agent reads the quantum computing wire around the clock. Every story that matters gets a line in the log, and real progress moves the q-day clock. Every launch, vault and sweep on qHOST lands here too.

Scan a wallet ⌕
watchtower.log
–WAITreading the wire…

launch before q-day does.

Name, ticker, picture. Hold the button. Your coin goes live on Robinhood Chain, paired against a tokenized stock, with its dev vault and post-quantum identity in the same flow.

built on the idea of leslie lamport, who first signed with nothing but hashes in 1979. a ghost leaves no key behind.

Launch a coin →