{"id":51578784,"url":"https://github.com/systemslibrarian/crypto-lab-harvest-vault","last_synced_at":"2026-07-11T03:32:25.784Z","repository":{"id":367296562,"uuid":"1213384478","full_name":"systemslibrarian/crypto-lab-harvest-vault","owner":"systemslibrarian","description":"Browser-based harvest-now-decrypt-later (HNDL) threat demo — intercept simulation, post-quantum migration urgency, timeline visualization. Part of crypto-lab.","archived":false,"fork":false,"pushed_at":"2026-06-25T10:35:22.000Z","size":110,"stargazers_count":0,"open_issues_count":0,"forks_count":0,"subscribers_count":0,"default_branch":"main","last_synced_at":"2026-06-25T12:14:45.743Z","etag":null,"topics":["crqc","crypto-lab","cryptography","encrypted-traffic","harvest-now-decrypt-later","hndl","key-harvesting","post-quantum-cryptography","pqc-migration","quantum-threat","quantum-timeline","typescript","vite"],"latest_commit_sha":null,"homepage":"https://systemslibrarian.github.io/crypto-lab-harvest-vault/","language":"TypeScript","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/systemslibrarian.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2026-04-17T10:19:49.000Z","updated_at":"2026-06-25T10:35:27.000Z","dependencies_parsed_at":null,"dependency_job_id":null,"html_url":"https://github.com/systemslibrarian/crypto-lab-harvest-vault","commit_stats":null,"previous_names":["systemslibrarian/crypto-lab-harvest-vault"],"tags_count":null,"template":false,"template_full_name":null,"purl":"pkg:github/systemslibrarian/crypto-lab-harvest-vault","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/systemslibrarian%2Fcrypto-lab-harvest-vault","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/systemslibrarian%2Fcrypto-lab-harvest-vault/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/systemslibrarian%2Fcrypto-lab-harvest-vault/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/systemslibrarian%2Fcrypto-lab-harvest-vault/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/systemslibrarian","download_url":"https://codeload.github.com/systemslibrarian/crypto-lab-harvest-vault/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/systemslibrarian%2Fcrypto-lab-harvest-vault/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":35350133,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-05-26T15:22:16.424Z","status":"online","status_checked_at":"2026-07-11T02:00:05.354Z","response_time":104,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["crqc","crypto-lab","cryptography","encrypted-traffic","harvest-now-decrypt-later","hndl","key-harvesting","post-quantum-cryptography","pqc-migration","quantum-threat","quantum-timeline","typescript","vite"],"created_at":"2026-07-11T03:32:25.630Z","updated_at":"2026-07-11T03:32:25.775Z","avatar_url":"https://github.com/systemslibrarian.png","language":"TypeScript","funding_links":[],"categories":[],"sub_categories":[],"readme":"# crypto-lab-harvest-vault\n\n## What It Is\n\nBrowser-based interactive visualizer for the Harvest Now, Decrypt Later\n(HNDL) quantum threat - the only demo in the crypto-lab suite that does\nnot implement a cryptographic algorithm. Instead it implements a strategic\nthreat model: adversaries are collecting encrypted data today, storing it,\nand will decrypt it retroactively once quantum computers arrive.\n\nThe breach is invisible and retroactive. Organizations that wait to migrate\nto post-quantum cryptography are not safe - they have already been\ncompromised. They will learn this at Q-Day.\n\nFeatures Mosca's Theorem (X + Y \u003e Z) as an interactive risk calculator\nwith sector-specific presets, an interactive HNDL timeline from 2013\nthrough the Q-Day probability window, and a sector risk matrix across\nhealthcare, government, finance, legal, library, and enterprise.\n\n## When to Use It\n\n- Explaining to leadership why PQC migration is urgent NOW, not when\n  quantum computers arrive\n- Calculating your organization's specific Mosca risk exposure\n- Understanding why perfect forward secrecy is the best available\n  protection for communications that are already being transmitted\n- Teaching the difference between the harvest phase (now) and the\n  decrypt phase (future) - two separate events with a long gap between\n- Do NOT use as a substitute for a professional cryptographic risk\n  assessment - the Q-Day estimates are ranges, not hard dates\n\n## Live Demo\n\nhttps://systemslibrarian.github.io/crypto-lab-harvest-vault/\n\n## GitHub Pages Deployment\n\nThis project is configured for GitHub Pages via GitHub Actions.\n\n1. Push changes to the `main` branch.\n2. In GitHub repo settings, set Pages source to `GitHub Actions`.\n3. The workflow in `.github/workflows/deploy.yml` builds with Vite and deploys `dist/`.\n\nThe Vite `base` path is already set in `vite.config.ts` for this repository:\n\n`/crypto-lab-harvest-vault/`\n\n## What Can Go Wrong\n\n- **PQC migration does not protect already-harvested data.** Deploying\n  ML-KEM tomorrow does not decrypt-protect communications from last year.\n  Perfect forward secrecy is the only protection for communications that\n  have already occurred - and only if it was deployed before collection.\n- **Q-Day uncertainty is real.** The 2030+-3 estimate is a consensus center\n  of a wide distribution. Some credible researchers say 2028. Some say 2040.\n  Mosca's Theorem is robust to this uncertainty: use the optimistic estimate\n  (Z=6) and see if X+Y\u003e6. If it is, you cannot afford to be wrong.\n- **Symmetric crypto is NOT the threat.** AES-256 and SHA-512 are safe\n  against Grover's quadratic speedup. The HNDL threat targets RSA and ECC\n  key exchange - the handshake that establishes the session, not the\n  session itself. See crypto-lab-grover for the symmetric story.\n- **The storage counter is illustrative.** ~23 TB/second of RSA/ECC\n  traffic is an order-of-magnitude estimate. Nation-state storage costs\n  are real but the exact collection rate is unknown.\n\n## Real-World Usage\n\nThe HNDL threat is confirmed - NSA mass collection of encrypted traffic\nwas documented in the 2013 Snowden disclosures. State-level adversaries\nwith fiber access, BGP influence, or compromised infrastructure have been\ncollecting encrypted communications for years.\n\nNIST explicitly cites HNDL as the primary driver for urgent PQC migration:\n\"starting the transition to post-quantum cryptography now is critical to\npreventing these future breaches.\" FBI, CISA, and NIST have designated 2026\nthe Year of Quantum Security.\n\nCloudflare's internal Q-Day readiness deadline has been moved forward\nfollowing 2025-2026 resource estimate papers. They are targeting full\npost-quantum security by 2029.\n\nThe migration window is open. It will not stay open forever.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fsystemslibrarian%2Fcrypto-lab-harvest-vault","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fsystemslibrarian%2Fcrypto-lab-harvest-vault","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fsystemslibrarian%2Fcrypto-lab-harvest-vault/lists"}