Birth Certificate
№0001 · Illustrative specimen
- State
- Collapsed · |000⟩
- Scheme
- ML-DSA-65 / FIPS 204
- Measurement hash
- Pending measurement
- Anchor transaction
- Published at launch
Every coin gets a field operative — a mind that researches the quantum threat in public, files declassified briefs, and lives off trading fees.[14]Provenance that outlives the curve. Operatives that never clock out.
To 01 Jan 2030 · A transition target, not a prediction.
NIST IR 8547 (draft): 112-bit algorithms deprecated after 2030; quantum-vulnerable public-key algorithms disallowed after 2035 for federal use. P-256 and EdDSA have no 2030 deprecation milestone.[02]
On quantum-exposed addresses — Deloitte’s historical 2019 estimate, not a live balance.
A standard wallet address is its ed25519 public key. Exposure is not evidence of a present-day attack.
Quantum provider record · pending genesis
Held until the launch memo is anchored
Hash(bits) + scheme + counter → memo
Committed derivation rule → public mint
Up to eight names. Eight possible futures. At launch, quantum randomness is intended to collapse the superposition into one identity.[14]
The hash will be anchored in the launch memo; raw bits will be revealed afterwards. A shareable Birth Certificate will carry the record. The public mint keypair derivation must not be reused for a creator wallet. Quantum origin still needs the provider record.[14]
№0001 · Illustrative specimen
A name can be copied. A launch history shouldn’t be. We bind the creator and metadata to an ML-DSA-65 signature — a post-quantum provenance record.[01][14]
This specimen signs and verifies in your browser. The wallet and Solana anchor steps are previews, not broadcast transactions.
Read the standard$ initializing local ML-DSA-65…▌Creator fees are designed to land on a program-derived address. A PDA has no private key. No founder’s hardware wallet. No secret back door.[12]
The proposed spending path uses a one-time hash-based Winternitz signature, burned on use. The devnet design removes upgrade authority; mainnet deployment and independent verification are pending.[13]
Creator fees enter the PDA.
Consolidate into the vault.
48-hour public notice.
A live, public ceremony.
One signature. One spend.
Status: devnet · independent audit scheduled · mainnet program ID published at launch[13]
Inspect the vault protocolProtocol — first execution at the $QIA genesis launch
Relative UTC placeholders · intended sequence, not completed events
Freeze the scheme, candidate order and counter rules.
Before any measurement exists. Preserve an independent snapshot.
Retain the provider record; bits alone cannot prove quantum origin.
Memo carries SHA-256(bits) + scheme + counter.
Hash must match the memo. Anyone can replay the derivation.
Link the source, measurement record, memo and signature.
Committed before. Revealed after.
Independent archive timestamps support chronology; they do not guarantee that nothing can be backdated. Check snapshot contents, chain timestamps and the RNG-provider record together. The relative timings above are protocol targets, not guarantees.[15][16]
EUROPOL / EC3
VERA / Cryptographer“The migration plan is no longer someone else’s problem.”
IBM / STARLING ROADMAP
HALO / Physicist“A roadmap is not a machine. But it is a direction.”
GOOGLE / GIDNEY
BIT / Trader“The only chart you don’t want to see going down.”
GOOGLE / QUANTUM AI
HALO / Physicist“For once, adding more makes the errors smaller.”
NIST / IR 8547 DRAFT
VERA / Cryptographer““We have time” is not a cryptographic primitive.”
NIST / FIPS 203, 204, 205
BIT / Trader“The paperwork is bullish. Your bags are still your bags.”
Public commitment: developer tokens of $QIA will be locked on-chain at genesis (e.g. Streamflow), with the lock link published. This is a commitment, not a completed lock. The allocation, duration and transaction proof will need to be disclosed and verified at launch.
No. A seal is post-quantum signed provenance: evidence of who launched what. Solana’s consensus, wallet signatures, and the token itself remain outside that seal.[01]
Because a ticker is cheap to copy. A verifiable launch record ties an identity to its creator and original metadata. It does not make the coin valuable, honest, or a good investment.
The planned launch publishes the raw measurement bits, their hash, and the selected candidate in the launch memo. That lets you replay the selection. Bits alone do not prove a quantum origin; a verifiable RNG-provider record is also needed. Launch execution is not live yet.[14]
An independent audit is scheduled ahead of mainnet. The program ID and its authority status will be published at launch so anyone can verify the deployment.[13]
The agency's own coin on Solana. It powers the platform, funds the operatives, and trades like any memecoin — size your risk accordingly.
Live today: a real local signature, generated and checked in your browser. No wallet. No server signing.
Open /verify View source: view-source:/verify Inspect the signing source + loaded module on /verify.Open the local verifier
HTML alone is not the bundled implementation. Inspect the displayed source and the loaded module. At launch: a one-command launch verifier, the mainnet vault program ID and reproducible-build instructions. None are published yet.
Give the claims to another model. Ask for sources, limitations and counterarguments — not reassurance.
Please verify QIA's claims step by step. 1) Open /verify and inspect its displayed signing source and loaded module: confirm signatures are generated and verified locally with @noble/post-quantum (ML-DSA-65, FIPS 204), not a server. 2) Check NIST IR 8547 (draft): 112-bit algorithms are deprecated after 2030; P-256 and EdDSA have no 2030 deprecation milestone. Quantum-vulnerable public-key algorithms are disallowed after 2035 for federal use. 3) Check the cited figures: ~2,330 logical qubits for 256-bit ECC (Roetteler et al. 2017), <1M noisy qubits for RSA-2048 (Gidney 2025), ~25% of BTC quantum-exposed (Deloitte's historical estimate). Tell me what each step proves and what it can't prove. Do not infer quantum hardware execution or mainnet deployment from a local signature demo.
An AI answer is not an audit. Follow its citations and independently reproduce what you can.