---
title: Is Avalanche quantum-safe?
chain: Avalanche
ticker: AVAX
hardy_score: 10.5
rank: 22 of 23
tier: "5: Exposed"
url: "https://hardyindex.com/chains/avalanche"
updated: 2026-08-12
methodology_version: 1.1
---

# Is Avalanche quantum-safe?

**Hardy Score 10.5 / 100. Rank 22 of 23. Tier 5: Exposed. As of 12 August 2026.**

No. Avalanche secures accounts with ECDSA on the secp256k1 curve across its C-Chain, X-Chain and P-Chain, and a sufficiently large quantum computer would break it. We could not find a published post-quantum roadmap, a named replacement scheme, or a research programme from Avalanche or Ava Labs at the time of writing. That absence is the finding, and it is worth stating plainly rather than softening: a chain with no published position has not yet begun the work that the chains ranked above it have started. Avalanche's subnet architecture means individual subnets can in principle adopt their own signature rules, which is a genuine structural flexibility, but we found no evidence of that being used for post-quantum signatures.

> This is a security-readiness assessment, not investment advice.

## Summary

Signs with ECDSA on secp256k1 across its chains, with no published post-quantum roadmap found at the time of writing.

## Where we are making a judgement call

Tier 5 records a published position, or rather the absence of one. We found no roadmap, named scheme or research programme for Avalanche, and its signatures on mainnet today are quantum-vulnerable. That is a finding about what Avalanche has published, not a judgement of its engineering, and not a claim that no internal work exists. If Avalanche publishes a post-quantum position, the primary source is the fastest way to move this row.

## Score breakdown

| # | Dimension | Score | Weight | Contribution |
|---:|---|---:|---:|---:|
| 1 | Signature scheme | 0/10 | 30% | 0.0 |
| 2 | Deployment stage | 1/10 | 25% | 2.5 |
| 3 | NIST alignment | 0/10 | 15% | 0.0 |
| 4 | Migration path | 2/10 | 15% | 3.0 |
| 5 | Exposure | 2/10 | 10% | 2.0 |
| 6 | Verification | 6/10 | 5% | 3.0 |
| | **Hardy Score** | | | **10.5** |

### 1. Signature scheme: 0/10

Avalanche uses ECDSA on secp256k1 across its primary network chains. Nothing post-quantum protects AVAX or assets on Avalanche today.

Source: https://github.com/ava-labs/avalanchego

### 2. Deployment stage: 1/10

Tier 5: Exposed. Avalanche signs with ECDSA on secp256k1 and we found no published roadmap, named scheme or research programme, which is the bottom rung of the spine: quantum-vulnerable signatures and no public post-quantum plan.

Source: https://github.com/ava-labs/avalanchego

### 3. NIST alignment: 0/10

No post-quantum scheme has been named or selected, so there is nothing to align with a NIST standard.

Source: https://csrc.nist.gov/pubs/fips/204/final

### 4. Migration path: 2/10

No migration plan exists. Avalanche's subnet architecture does give it real optionality, because a subnet can define its own validation rules without the primary network changing, which is a mechanism a future migration could use. No such use has been published.

Source: https://github.com/ava-labs/avalanchego

### 5. Exposure: 2/10

C-Chain addresses are hashes of public keys in the Ethereum style, so a funded account that has never transacted keeps its key private. In practice nearly all economically active accounts have signed and published their keys.

Source: https://github.com/ava-labs/avalanchego

### 6. Verification: 6/10

AvalancheGo is open source, so the signature scheme is directly verifiable from the code. There is no post-quantum claim to verify, which is neither a strength nor a failure of verification, simply an absence.

Source: https://github.com/ava-labs/avalanchego

## Signature scheme

- **On mainnet today:** ECDSA on secp256k1 across the C-Chain, X-Chain and P-Chain
- **Post-quantum scheme:** None selected. No post-quantum scheme was found in published Avalanche material.
- **NIST standard:** None adopted
- **Readiness tier:** Tier 5: Exposed. The signatures securing funds on mainnet today are quantum-vulnerable, and no public post-quantum plan, proposal or research programme could be found.

## Roadmap

- **No published position** (proposed): No post-quantum roadmap, named scheme or research programme was found from Avalanche or Ava Labs at the time of writing.
  Source: https://github.com/ava-labs/avalanchego

## Exposure

Avalanche's C-Chain follows Ethereum's address model, deriving an address from a hash of the public key, so an account funded but never spent from has not revealed its key. The protection ends at first signature. Because the C-Chain carries the overwhelming majority of Avalanche's activity and value, and because active accounts sign frequently, the practical position is that most economically meaningful AVAX sits behind a key that is already published on-chain and can be collected today against a future quantum computer.

## Frequently asked questions

### Is Avalanche quantum-safe?

No. Avalanche secures accounts with ECDSA on the secp256k1 curve across its C-Chain, X-Chain and P-Chain, and a sufficiently large quantum computer would break it. We could not find a published post-quantum roadmap, a named replacement scheme, or a research programme from Avalanche or Ava Labs at the time of writing. That absence is the finding, and it is worth stating plainly rather than softening: a chain with no published position has not yet begun the work that the chains ranked above it have started. Avalanche's subnet architecture means individual subnets can in principle adopt their own signature rules, which is a genuine structural flexibility, but we found no evidence of that being used for post-quantum signatures.

### Is Avalanche quantum-safe?

No. Avalanche uses ECDSA on the secp256k1 curve across its chains, which a sufficiently large quantum computer would break. We found no published post-quantum roadmap or named replacement scheme at the time of writing.

### Does Avalanche have a post-quantum plan?

None that we could find. We searched for a roadmap, a named scheme, a research programme and a testnet implementation, and found no published position from Avalanche or Ava Labs. If one exists and we have missed it, sending us the primary source is the fastest way to correct this profile.

### Could Avalanche subnets adopt post-quantum signatures independently?

In principle yes, and that is a real structural advantage. A subnet can define its own validation rules without the primary network changing, which would let a post-quantum subnet exist without a network-wide fork. We found no evidence of this being used for post-quantum signatures, so it counts as optionality rather than progress.

### Why does Avalanche score above zero at all?

Because two dimensions measure things other than post-quantum deployment. Avalanche scores on exposure, since its address model hashes public keys rather than publishing them directly, and on verification, since the client is open source and the cryptography can be checked from the code.

## What this rating means if you hold Avalanche

Plain-language guidance from the same publication, with no product recommendation attached.

- [Is my crypto safe from quantum computers?](https://hardyindex.com/guides/is-my-crypto-safe-from-quantum-computers.md)
- [How to protect your crypto from quantum computers](https://hardyindex.com/guides/how-to-protect-crypto-from-quantum-computers.md)
- [All guides](https://hardyindex.com/guides.md)

Nothing on this profile is sponsored and nothing on it is an affiliate link. See https://hardyindex.com/how-we-make-money.md.

## Sources

1. [AvalancheGo, the Avalanche node implementation](https://github.com/ava-labs/avalanchego): Ava Labs (GitHub) (primary, checked 12 August 2026)
2. [FIPS 204: Module-Lattice-Based Digital Signature Standard (ML-DSA)](https://csrc.nist.gov/pubs/fips/204/final): NIST (primary, checked 12 August 2026)
3. [Safeguarding cryptocurrency by disclosing quantum vulnerabilities responsibly](https://research.google/blog/safeguarding-cryptocurrency-by-disclosing-quantum-vulnerabilities-responsibly/): Google Research (primary, checked 12 August 2026)

---

Methodology: https://hardyindex.com/methodology (v1.1).
Cite as: The Hardy Index, "Avalanche", https://hardyindex.com/chains/avalanche, as of 12 August 2026.
