FAQs
Straight answers to the technical and practical questions CISOs actually ask.
Browse by category, or search for exactly what you need.
Search
How is QVision different from a certificate scanner?
Certificate scanners find TLS certificates. QVision discovers your full cryptographic footprint — algorithms, keys, protocols, and configurations — across network, endpoint, source code, and runtime, then maps it to the business services it protects.
What layers does QVision scan — network, endpoint, source code, runtime?
What is a CBOM, and what format does it ship in?
What deployment models are supported?
What does a PQStation pilot or PoC actually involve?
A QVision Scoped Pilot is a fixed-scope, eight-week engagement covering one business unit or environment. QVision deploys sensors, discovers your cryptographic estate, and delivers a real CBOM, a risk-scored findings report, and a prioritized migration roadmap — a working pilot on your own infrastructure, not a sales demo.
How long does a full PQC migration take?
What's the difference between QVision (product) and QAlly (advisory)?
Does any data ever leave our environment?
No. QVision is air-gapped by design. The server, dashboard, and every finding it produces run and stay entirely inside your perimeter — there’s no outbound telemetry, no call-home, and no SaaS backend to route around.
Does QVision ever access our private keys?
Is QVision independently audited or certified?
What is post-quantum cryptography migration?
Post-quantum cryptography migration is the process of replacing encryption algorithms vulnerable to quantum computers — like RSA and ECC — with quantum-resistant alternatives standardized by NIST, before those algorithms can be broken.
What is "harvest now, decrypt later"?
What is a Cryptographic Bill of Materials (CBOM)?
Search
How is QVision different from a certificate scanner?
Certificate scanners find TLS certificates. QVision discovers your full cryptographic footprint — algorithms, keys, protocols, and configurations — across network, endpoint, source code, and runtime, then maps it to the business services it protects.
What layers does QVision scan — network, endpoint, source code, runtime?
What is a CBOM, and what format does it ship in?
What deployment models are supported?
What does a PQStation pilot or PoC actually involve?
A QVision Scoped Pilot is a fixed-scope, eight-week engagement covering one business unit or environment. QVision deploys sensors, discovers your cryptographic estate, and delivers a real CBOM, a risk-scored findings report, and a prioritized migration roadmap — a working pilot on your own infrastructure, not a sales demo.
How long does a full PQC migration take?
What's the difference between QVision (product) and QAlly (advisory)?
Does any data ever leave our environment?
No. QVision is air-gapped by design. The server, dashboard, and every finding it produces run and stay entirely inside your perimeter — there’s no outbound telemetry, no call-home, and no SaaS backend to route around.
Does QVision ever access our private keys?
Is QVision independently audited or certified?
What is post-quantum cryptography migration?
Post-quantum cryptography migration is the process of replacing encryption algorithms vulnerable to quantum computers — like RSA and ECC — with quantum-resistant alternatives standardized by NIST, before those algorithms can be broken.