Watchlist 0
IOTA · L1 · QRI 32 · BAND 3 Intentional Hybrid FAIL · Stage 1 · Washing 1.6x

IOTA is the only chain in the batch that once ran hash-based signatures and then migrated away from them. Winternitz One-Time Signatures were PQ-resistant; Ed25519 is not. The quantum-resistant heritage is real. The current mainnet is not.

inLinkedIn XPost Scorecard JSON Compare Verified 2026-04-18

Summary

IOTA is the anomaly of the batch: originally shipped hash-based Winternitz One-Time Signatures (2016-2021), migrated AWAY from them to Ed25519 in Chrysalis (2021) for ecosystem compatibility, and is now planning hash-based reintroduction in IOTA 2.0 roadmap. Rebased (May 2025) moved to Move VM on a new DPoS chain. Current mainnet is Ed25519 (Shor-vulnerable), but the crypto-migration track record is the strongest in this batch: three protocol-level hard forks with crypto scheme changes. Migration architecture score is Band 3 (Intentional) not higher because no NIST PQC (ML-DSA/SLH-DSA) is currently deployed despite the ecosystem's PQ-friendly heritage.

What the gates say

  • Hybrid: FAIL. No hybrid plan on file.
  • Evidence: PASS. Sources reconstructable by third party.
  • Primitive naming: PASS. Named primitives at every scored sub-level.

Burn-vs-rescue policy on file

undeclared

Seven dimensions

Each dimension scores 0-100 internally; the weighted roll-up produces the QRI on the left. Open a row to read the sub-score detail.

1 Cryptographic Exposure 45 / 100
1a_primitive_inventory 14 / 20

Unique crypto history: IOTA originally shipped hash-based WOTS signatures (2016-2021), migrated AWAY from them to Ed25519 in Chrysalis (2021), and planned PQ-hash reintroduction in IOTA 2.0 roadmap (unclear if shipped post-Rebased).

Primitives: Ed25519 (current, since Chrysalis 2021 and Rebased 2025) · WOTS / Winternitz One-Time Signatures (historical, 2016-2021) · BLAKE2b (hashing) · Kerl/Keccak (historical) · Poseidon (some zk integrations)
1b_shor_grover_pq_tag 16 / 20
1c_algorithm_family_diversity 6 / 20

HISTORICAL hash-based WOTS is a unique data point. Current mainnet is Ed25519 only. No NIST PQC standard deployed.

1d_nist_security_category 3 / 20

WOTS is not NIST-standardized. Hash-based schemes like SLH-DSA/XMSS are NIST-standardized but IOTA does not use them.

1e_implementation_quality 6 / 20
Evidence: github.com
2 HNDL Exposure 20 / 100
2a_active_key 4 / 20

Current Ed25519 addresses fully exposed on first tx. IOTA 2.0 planned account abstraction + signature agility (implementation status unclear post-Rebased).

2b_cold_key 6 / 20

Long-dormant Chrysalis-era Ed25519 keys from 2021+ are quantum-exposed. Pre-2021 WOTS addresses were hash-based.

2c_sig_long_term 6 / 20

DAG history includes WOTS-signed transactions (PQ-safe) and Ed25519 since Chrysalis (Shor-vulnerable).

2d_encryption_conf 4 / 20

Standard TLS. No PQC KEM documented.

3 Metadata & Privacy Exposure 30 / 100
3a_graph_visibility 7 / 20

DAG transaction graph visible. Pseudonymous.

3b_rpc_concentration 8 / 20

Rebased DPoS has limited validator set; Foundation and partners run major endpoints.

3c_bridge_correlation 7 / 20

IOTA bridges to Ethereum/BSC; some correlation risk.

3d_retroactive_deanon 8 / 20

Historical WOTS tx in pre-Chrysalis DAG are hash-based (PQ-resistant at signature layer). Post-Chrysalis Ed25519 tx retroactively de-anonymizable under Shor.

4 Migration Architecture 55 / 100
4a_crypto_agility 18 / 20

IOTA has the most extensive crypto-migration track record in this batch: WOTS -> Ed25519 (Chrysalis 2021), Ed25519 -> MoveVM (Rebased 2025). Demonstrated ability to execute breaking crypto changes.

4b_aa_key_rotation 12 / 20

Move-based IOTA Rebased inherits Sui-style AA primitives. Signature scheme agility at account layer.

4c_hard_fork_track_record 15 / 20

Successful Chrysalis + Stardust + Rebased upgrades. Foundation-coordinated hard forks with multi-year horizons.

4d_hybrid_deployment_readiness 10 / 20

IOTA 2.0 white paper discusses PQ signature schemes. Rebased Move VM could accommodate hybrid envelopes. Implementation status of published PQ plan unclear.

5 Deployment Execution 10 / 100
5a_mainnet_pqc_pct 2 / 20

Technical ambiguity: historical WOTS sigs remain verifiable in DAG but new tx are Ed25519-only. PQC-washing risk if 'IOTA is quantum-resistant' is claimed based on heritage not current state.

Evidence: wiki.iota.org
5b_pqc_code_in_consensus 2 / 20

WOTS verification logic likely retained for historical tx compatibility. No NIST PQC (SLH-DSA/ML-DSA) in client.

5c_validator_pqc_keys 0 / 20

No validator PQC keys.

5d_published_milestones 4 / 20

White paper mention; no dated production milestone found.

5e_pqc_washing_delta 2 / 20

PQC-washing risk: marketing around 'IOTA quantum resistance' often references historical WOTS, not current Ed25519 mainnet. Delta of ~1.6x plausible.

6 Supply Chain Vendor Readiness 6 / 100
6a_wallet 2 / 20
6b_bridge 2 / 20
6c_custodian 1 / 20
6d_rpc_hsm 1 / 20
7 Governance & Coordination 40 / 100
7a_validator_stake_distribution 8 / 20

Rebased DPoS limited validator set; Foundation-aligned.

7b_upgrade_cadence_under_pressure 15 / 20

Multiple successful protocol-level crypto migrations (Chrysalis, Stardust, Rebased). Strong hard-fork execution history.

7c_named_coordination_lead 10 / 20

IOTA Foundation (Dominik Schiener). Research team active on cryptography and DLT.

7d_adversarial_coordination_precedent 7 / 20

2017 Curl-P / vulnerability response showed willingness to migrate primitives quickly. Coordinator migration demonstrated adversarial coordination capability.

The X + Y vs Z inequality

X (data shelf life): 5-15 (historical WOTS addresses dormant; Ed25519 since 2021)

Y (migration time): 6-10 (Foundation has shown fast hard-fork capability)

Z10 (10% CRQC year): 2036 · Z50 (50%): 2041

Verdict: X+Y > Z (danger).

Four-scenario grid

ScenarioValue preservedPrivacy preserved
quantum never 100% 100%
arrives suddenly pre migration 15% 25%
arrives slowly post migration 90% 75%
arrives slowly mid migration 60% 50%

Peers in the L1 profile

Order-book view of the 9 chains closest to IOTA by QRI.

Public artifacts used for this scorecard

Each entry below is a sub-score citation. Clicking the link takes you to the public source. A third party should be able to reconstruct every number on this page from these URLs in 48 hours.

Cryptographic Exposure · 1a_primitive_inventory

Unique crypto history: IOTA originally shipped hash-based WOTS signatures (2016-2021), migrated AWAY from them to Ed25519 in Chrysalis (2021), and planned PQ-hash reintroduction in IOTA 2.0 roadmap (unclear if shipped post-Rebased).

Cryptographic Exposure · 1e_implementation_quality
Migration Architecture · 4a_crypto_agility

IOTA has the most extensive crypto-migration track record in this batch: WOTS -> Ed25519 (Chrysalis 2021), Ed25519 -> MoveVM (Rebased 2025). Demonstrated ability to execute breaking crypto changes.

Deployment Execution · 5a_mainnet_pqc_pct

Technical ambiguity: historical WOTS sigs remain verifiable in DAG but new tx are Ed25519-only. PQC-washing risk if 'IOTA is quantum-resistant' is claimed based on heritage not current state.

Supply chain snapshot

wallet Firefly · Nightly · Bloom Wallet 0 PQC roadmaps
bridge IOTA Bridge · LayerZero · Axelar 0 PQC roadmaps
custodian Fireblocks · BitGo · Coinbase Custody 0 PQC roadmaps
rpc_hsm IOTA Foundation nodes · Community nodes · Partner validators 0 PQC roadmaps

A chain's supply chain cannot migrate faster than its slowest dependency. Zero PQC roadmaps in any of the four categories is a structural blocker, not a lagging indicator.

Analyst notes on the scoring

IOTA is the headline surprise of this 25-chain batch. Historical WOTS deployment (2016-2021) is a genuine hash-based PQ-resistant signature scheme. The paradox is that the ecosystem migrated AWAY from hash-based PQ-resistance toward Ed25519 (Shor-vulnerable) for compatibility reasons. IOTA 2.0 white paper discusses PQ reintroduction but current mainnet is Ed25519. PQC-washing risk: 'IOTA is quantum-resistant' claims based on heritage rather than current deployment. Band 3 Intentional reflects strong track record + roadmap intent; no higher due to absent current NIST-PQC deployment.

Scorecard metadata

  • Profile: L1
  • Scored: 2026-04-18 by layerqu-v2-scoring-agent-3
  • v1 reference: chainscreen-v1-archive
  • QRI raw: 32 · after caps: 32
  • Confidence interval: ±12
  • PQC washing ratio: 1.6x
  • Burn-vs-rescue: undeclared

Caps triggered

  • Mosca (5a<20% → QRI max 60)
  • Sutor (5d count=1 — Migration Stage max 2)
  • Casado (3+ vendor tiles pqc=0 → migration_stage max 3)
  • Hybrid gate FAIL → QRI cap 60
LayerQu · IOTA scorecard v2 · reconstructs from public evidence
Methodology · Desk · API