Discover
Collect deterministic observations from supported discovery sources.
Cipher Discovery inspects authorized public TLS services and supported repository patterns with deterministic evidence. Repository files stay in the browser; retained results contain bounded metadata, not source code.
Modern systems depend on cryptography across source code, dependencies, TLS, certificates, APIs, cloud infrastructure, authentication, signing and key exchange.
Those dependencies are distributed across teams and technology layers. Cipher Discovery is designed to turn fragmented observations into a traceable inventory—not another opaque security score.
Each stage keeps the evidence and coverage needed to make defensible cryptographic decisions.
Collect deterministic observations from supported discovery sources.
Turn source-specific observations into consistent cryptographic assets.
Apply versioned rules to identify security and PQC migration relevance.
Prioritize evidence-backed findings and build a migration inventory.
The product combines selected public TLS services, browser-local repository rules and explicit imported declarations while keeping each source and its limits visible.
Identify cryptographic algorithms and the contexts in which they are used.
Public and local sources availableParse public certificates, keys, signatures, validity and presented chains.
Public service TLS availableObserve TLS versions, negotiated suites, groups and cryptographic parameters.
Public service TLS availableFind supported cryptographic API and dependency declarations locally in an authorized repository.
Local repository rules availableMap declared package and CBOM relationships without inventing runtime evidence.
Local manifest and CBOM sourcesSurface RSA, elliptic-curve and other public-key assets for review.
Public and local sources availableDocument public TLS behavior and supported static configuration with exact evidence.
Public and local sources availablePrioritize observations that need a post-quantum migration path.
Available for supported findingsA cryptographic finding is useful only when a reviewer can see why it exists. Cipher Discovery keeps the observation, method and uncertainty attached to the result.
The endpoint, file or asset where it was observed.
The algorithm, certificate, protocol or dependency identified.
The deterministic parser, negotiation or rule that produced it.
A level and reason grounded in the available evidence.
Why it matters and the next action to consider.
Identify the owner and plan a standards-aligned migration path when supported by the dependent systems.
PQC migration begins with understanding where vulnerable public-key cryptography exists, which systems depend on it and what evidence supports each observation.
Cipher Discovery helps build the inventory needed to prioritize migration. It does not claim that an automated scan makes an organization quantum-safe.
Use the guides to understand the evidence model, turn findings into migration records and exchange observed public cryptography in CycloneDX.
These capabilities describe the direction of the product. They are not represented as available before they ship.
Inspect HTTPS, SMTP STARTTLS, IMAPS, POP3S and LDAPS with fixed service profiles and exact evidence.
Scan supported APIs, package declarations and configuration locally; retain metadata only after explicit import.
Maintain normalized assets, evidence, ownership and source-separated dependency impact.
Export public observations, import existing CBOMs, preserve provenance and compare source versions.
Map public-key dependencies to explainable migration relevance.
Turn retained observations and imported declarations into an explainable ownership-aware action queue and evidence pack.
Compare an expected public certificate profile with a newer external observation.
Detect cryptographic change and inventory drift over time.
Collect cryptographic metadata from approved cloud integrations.
Run a conservative public TLS scan and inspect the evidence behind every reported property.