Records you can prove.
Sealed quantum-safe, forever.
Entropa is a private, post-quantum records vault — irreversible by design.
Deployed privately for your organization, Entropa seals any regulated record — medical, financial, PCI, legal — in a post-quantum vault: post-quantum encrypted end-to-end, hash-anchored, and independently attested, so it's a tamper-evident proof anyone can re-verify and irreversible for the decades your records must survive. Not a blockchain, not a token — a private vault, run for you. Built entirely in Rust.
Backed by the Google for Startups Cloud Program. Entropa runs on hardened Google Cloud infrastructure — dedicated, region-redundant, and operated to enterprise security standards. See the approval →
Sealed before it ever leaves you.
Every record is encrypted on your side with ML-KEM and travels over a post-quantum tunnel — we, and the cloud, only ever hold ciphertext and hashes. Whatever you vault — medical, financial, PCI, legal — is quantum-safe from the first byte, defeating "harvest now, decrypt later" for the decades your records must survive.
On arrival, each record is hash-linked, PQC-signed, and independently attested — a tamper-evident, irreversible proof anyone can re-verify. And it stays post-quantum at rest: every payload sealed with AES-256-GCM under ML-KEM-1024 (NIST Level 5) wrapped keys — so your records are quantum-safe in transit and at rest. Not even we, or the cloud, can read them.
Why not just a database — or a blockchain?
A database is only as trustworthy as whoever controls it; its history can be quietly rewritten. A conventional blockchain fixes tamper-evidence but exposes your data to the world, drags in tokens and volatility, and signs with classical cryptography a quantum computer will one day break. Entropa takes a third path.
Entropa is a private vault — a permissioned, append-only record log you deploy privately. Each record is hash-linked and PQC-signed the instant it lands, then independently attested — co-signed by a separate cryptographic service (the Attestation Authority, not a person) — and anchored to a trusted external timestamp, so its order and content are provable to any auditor: tamper-evident, no external exposure, no token — and every signature is post-quantum from the first byte.
A conventional blockchain
- Exposed — records visible to everyone
- Tokens, fees, volatility, regulatory ambiguity
- Classical crypto — quantum-vulnerable
Entropa Private
- Private & permissioned — your data stays yours
- No token — a managed, invoiced service
- Post-quantum to the core — ML-DSA, ML-KEM, SLH-DSA
Why it holds up under scrutiny
Post-quantum from byte one
Long-lived records must outlive the arrival of quantum computers — adversaries already "harvest now, decrypt later." Every signature and key exchange is NIST post-quantum (ML-DSA / ML-KEM / SLH-DSA, FIPS 203/204/205) — and our SLH-DSA is validated byte-for-byte against the NIST test vectors. No classical asymmetric crypto exists anywhere in the stack.
Independently attested
Every checkpoint is attested by an independent Attestation Authority — a separate cryptographic service, run apart from both you and us (not a person) — and anchored to a trusted external timestamp, so no one, not even the operator, can silently rewrite or backdate history. What an auditor verifies is provable, not "trust us."
Immutable & append-only
Records are hash-linked and PQC-signed the instant they land — nothing can be altered, reordered, or backdated without breaking the chain. Corrections are new, superseding entries, so the full history stays intact and provable for decades.
Post-quantum in transit & at rest
Every link is an ML-KEM key exchange wrapped in ChaCha20-Poly1305 — the wire is post-quantum, end to end. And every stored payload is sealed with AES-256-GCM under ML-KEM-1024-encapsulated keys — quantum-safe on the wire and on disk, defeating "harvest now, decrypt later."
Deterministic & auditable
Every proof is a pure function of its inputs — anyone recomputes byte-identical hashes and signatures, so verification is deterministic and can't be fudged. The discipline that makes it safe makes it provable: each test is a proof. The record IS the audit trail.
Compliance-ready foundation
Deployed in a private VPC on hardened cloud infrastructure — post-quantum encryption at rest and in use, least-privilege access, continuous controls monitoring. Designed to the SOC 2 / ISO 27001 controls, with HIPAA and 21 CFR Part 11 scoping for regulated verticals.
Rust core, AI-driven
The security-critical core — PQC, the record log, attestation, anchoring — is built entirely in Rust for memory-safety and speed. A Java / Spring enterprise layer on Cloud Run adds the GRC integrations and an AI compliance layer (Vertex AI) — evidence extraction and audit intelligence grounded on your immutable records, never hallucinated.
Key-loss failsafe
Your recovery secret is split across your own custodians (Shamir k-of-n) — no single party, not even us, can recover it alone; a quorum of your people can. A lost device never loses the key (it lives in your HSM). Legal-tier records can be locked so not even we can ever read them.
Prove every diagnosis was supported by the record.
Risk-adjustment (HCC) coding lives or dies on one question: was each diagnosis supported by the medical record? Entropa binds every coded diagnosis to the cryptographic hash of the exact source record — with a PQC-signed, timestamped chain of custody from retrieval to code.
So in a RADV audit or a False Claims inquiry, you can show — mathematically, not "trust our process" — that a code was supported by that record, on that date, and never altered. It layers under your existing coding platform; it doesn't replace it.
Use cases
For private businesses that need quantum-safe, tamper-evident, audit-ready records — cryptographic proof that their books, logs, and evidence were never altered, held for the decades regulators require.
Compliance audit trails
Immutable, tamper-evident evidence for SOX, SOC 2, GDPR, and internal audit — prove your controls and their full history were never altered, on demand.
Financial records of record
Banks and fintech: quantum-safe, immutable transaction, settlement, and reconciliation records — long-retention integrity, safe against "harvest now, decrypt later."
Legal & contract integrity
Contracts, signatures, notarizations, and chain of custody — tamper-evident, admissible, and cryptographically verifiable decades later.
Healthcare record integrity
HIPAA-aligned immutable audit trails of who accessed or changed what — a defensible, quantum-safe evidence trail retained 25+ years.
IP & R&D provenance
Timestamped, immutable proof-of-existence for inventions, designs, and trade secrets — priority you can prove in a dispute, years later.
Immutable security & access logs
Tamper-proof SIEM and access logs for forensics and compliance — an audit trail no attacker or insider can quietly rewrite.