Hardy Index Quantum readiness benchmark

Chain profile

Aptos

APT Committed

Proposed SLH-DSA-SHA2-128s for transaction signatures as an opt-in scheme, accepting signatures 82 times larger than Ed25519 in exchange for minimal new security assumptions.

Is Aptos quantum-safe?

No, not today. Aptos accounts sign with Ed25519, which a sufficiently large quantum computer would break. Aptos has proposed adding SLH-DSA-SHA2-128s, the hash-based signature scheme standardised by NIST as FIPS 205, for transaction signatures. The proposal is unusually candid about the cost: signatures would be 7,856 bytes, roughly 82 times larger than an Ed25519 signature, and verification takes about 294 microseconds, roughly 4.8 times slower. The compensating argument is conservatism, because SLH-DSA relies on SHA-256, a hash function blockchains already depend on heavily, so adopting it introduces very few new cryptographic assumptions. Existing Ed25519 accounts would continue to work normally, with the post-quantum scheme offered to those who opt in.

At a glance

On mainnet today

Ed25519 for account authentication

Post-quantum scheme

SLH-DSA-SHA2-128s proposed for transaction signatures, offered opt-in alongside Ed25519

NIST standard

FIPS 205 (SLH-DSA), finalised August 2024

Readiness tier

Tier 3: Committed. A funded roadmap with public dates and active research exists, but no post-quantum signature is live on mainnet.

Score breakdown

Each dimension scored 0 to 10. The weight beside it is its share of the total score.
Show the weighted arithmetic and the sourced note for each dimension
Aptos Hardy Score by dimension, with weights and weighted contributions
No. Dimension Score Weight Contribution
1 Signature scheme 0 30% 0.0
2 Deployment stage 5 25% 12.5
3 NIST alignment 9 15% 13.5
4 Migration path 6 15% 9.0
5 Exposure 2 10% 2.0
6 Verification 7 5% 3.5
Hardy Score 40.5

1 Signature scheme 0/10, weighted 30%

Band 0: Classical signatures only on mainnet, with nothing post-quantum protecting live funds. Short-lived devnets and one-off benchmarks sit here: they demonstrate research rather than something a user can hold keys on.

Aptos transactions are signed with Ed25519 today and nothing post-quantum protects live APT. The SLH-DSA scheme is a proposal rather than a deployed mainnet feature. source

2 Deployment stage 5/10, weighted 25%

Band 5: Tier 3: Committed.

Tier 3: Committed. A specific scheme with published performance characteristics has been proposed and is under active work, with nothing post-quantum live on mainnet. source

3 NIST alignment 9/10, weighted 15%

Band 9 to 10: The scheme in use is covered by a final NIST standard (FIPS 204, FIPS 205, or SP 800-208).

SLH-DSA-SHA2-128s is a parameter set of FIPS 205, a final NIST standard published in August 2024, not a candidate awaiting publication. Choosing a hash-based standard also means the security rests on SHA-256, which the chain already depends on. source

Placement in the band Not a 10: SLH-DSA-SHA2-128s is a final standard, but the proposal had not been adopted on mainnet, so this is a standard selected rather than a standard in use.

4 Migration path 6/10, weighted 15%

Band 6 to 8: A credible published plan exists with a mechanism identified, but key parts are unbuilt or undated.

Existing Ed25519 accounts keep working and the post-quantum scheme is offered opt-in, which avoids a forced migration. source

Placement in the band The floor of the band: the mechanism is identified and existing accounts keep working, but protection is opt-in rather than automatic, and a 7 or an 8 would need the proposal adopted rather than pending.

5 Exposure 2/10, weighted 10%

Band 0 to 2: Public keys are exposed for effectively all accounts, or a large, measured share of total supply sits in exposed addresses.

Aptos is an account-model chain and an account's authentication key is published on-chain when it first transacts, so effectively all economically active supply has an exposed key and is harvestable today. source

Placement in the band At the top of the band rather than a 0 or a 1: the authentication key is published only on first transaction, so never-used accounts retain protection, though on an active chain that covers almost nothing.

6 Verification 7/10, weighted 5%

Band 6 to 8: Open source with public review or a named third-party audit of the relevant component.

The proposal is public and states its own costs precisely, including signature size and verification time, which is a form of honesty that is easy to check and easy to get wrong. Aptos is open source. source

Placement in the band A 7 rather than an 8: the proposal is public and states its own costs precisely, which is real public review, but it covers a proposal rather than shipped and audited code.

The deployment dimension is not a separate judgement. It is Tier 3 expressed as a number. See the tier mapping.

How it compares

All 31 rated chains on the 0 to 100 scale. Aptos is marked. Select any point to open that profile.

Nearest chains in the ranking

The 9 chains Aptos sits among, out of 31 rated. The last column is the gap in Hardy points from Aptos.

Chains ranked immediately around Aptos, with tier, Hardy Score and the gap to Aptos
Rank Chain Tier Hardy vs APT
10 Sui 3: Committed 45.5 +5.0
11 Hedera 3: Committed 42.0 +1.5
12 Stellar 3: Committed 41.0 +0.5
13 Zcash 3: Committed 41.0 +0.5
14 Aptos this chain 3: Committed 40.5
15 Polkadot 3: Committed 40.5 level
16 Ethereum 3: Committed 40.0 -0.5
17 Cardano 3: Committed 37.5 -3.0
18 Tron 4: Debating 34.5 -6.0

Roadmap

  1. August 2024 shipped

    NIST finalises SLH-DSA as FIPS 205, giving Aptos a published standard to propose against. source

  2. 2026 proposed

    Aptos proposes SLH-DSA-SHA2-128s for transaction signatures, with 7,856-byte signatures and roughly 4.8 times slower verification, offered opt-in while existing Ed25519 accounts continue to work. source

Exposure

Exposure measures how much of the chain's value already sits behind a public key that an attacker can record today and break later. This is the part of the threat that a future upgrade cannot undo.

Aptos publishes an account's authentication key on-chain once the account transacts, so in practice every economically active account has an exposed key that can be recorded today against a future quantum computer. Aptos accounts do support key rotation, which is a useful primitive for a future migration because it lets an account change its authentication key without moving funds to a new address, but rotation does not undo the exposure of a key that has already been published.

What this rating means for you

If you hold Aptos

Aptos has a funded roadmap but no post-quantum signature protecting funds on mainnet yet. Until it ships, your exposure is the ordinary one, and the steps that reduce it cost nothing.

Editorial guidance from the Hardy Index. Nothing on this profile is sponsored and nothing on it is an affiliate link. The guides carry disclosed affiliate links, which never affect a rating. How we make money.

Embed this rating

Paste this anywhere to show Aptos's current rating. It renders live from the index, so it updates when the rating does, and the review date is written into the image. There is nothing to sign up for and nothing to pay.

<a href="https://hardyindex.com/chains/aptos"><img src="https://hardyindex.com/badge/aptos.svg" width="260" height="76" alt="Quantum readiness rated by the Hardy Index"></a>

The image is /badge/aptos.svg. It is a plain SVG with no script and no tracking, it sets no cookie, and it records nothing about whoever loads it.

Questions

Is Aptos quantum-safe?

No. Aptos accounts authenticate with Ed25519, which a sufficiently large quantum computer would break. Aptos has proposed adding SLH-DSA-SHA2-128s as an opt-in post-quantum signature scheme, but that proposal is not live on mainnet.

Why did Aptos choose a scheme with such large signatures?

Because it minimises new assumptions. SLH-DSA is hash-based and relies on SHA-256, a function blockchains already depend on heavily, so adopting it adds very little new cryptography to trust. The cost is size and speed: signatures of 7,856 bytes, about 82 times larger than Ed25519, and verification roughly 4.8 times slower.

Would existing Aptos accounts have to migrate?

Not under the proposal as published. Existing Ed25519 accounts would continue operating normally, with SLH-DSA offered only to holders who opt in. That avoids forcing a migration, but it also means existing accounts are not protected by the upgrade itself.

How does Aptos compare with the other committed chains?

Its algorithm choice is among the strongest, because SLH-DSA is a final NIST standard and hash-based schemes carry the most conservative security assumptions in the set. Its weakness is the same as its peers: nothing is live on mainnet, so the signature dimension, which carries 30 per cent of the score, earns nothing.

Sources

  1. Aptos Improvement Proposals Aptos Foundation (GitHub) · primary · checked 12 August 2026
  2. FIPS 205: Stateless Hash-Based Digital Signature Standard (SLH-DSA) NIST · primary · checked 12 August 2026
  3. Safeguarding cryptocurrency by disclosing quantum vulnerabilities responsibly Google Research · primary · checked 12 August 2026
Cite this rating

A rating is only true as of the day it was reviewed, so both forms below carry the review date and the methodology version. If you are quoting the score, quote those too.

Plain text

The Hardy Index (2026). Aptos: quantum readiness assessment. Hardy Score 40.5 of 100, Tier 3: Committed. Methodology v1.4. Reviewed 2 October 2026. https://hardyindex.com/chains/aptos

BibTeX
@misc{hardyindex_aptos_2026,
  author       = {{The Hardy Index}},
  title        = {Aptos: quantum readiness assessment},
  year         = {2026},
  howpublished = {\url{https://hardyindex.com/chains/aptos}},
  note         = {Hardy Score 40.5 of 100, Tier 3: Committed. Methodology v1.4},
  urldate      = {2026-10-02}
}

The whole dataset is reusable under the terms on the about page. A machine-readable version of this page is at /chains/aptos.md.

This is a security-readiness assessment, not investment advice.