{
  "title": "Quantum-resistant cryptocurrency list: what signs ordinary user transactions on mainnet",
  "article": "https://synxcrypto.com/summaries/28-quantum-resistant-cryptocurrencies-list.php#list-table",
  "reviewed": "2026-09-23",
  "license": "CC BY 4.0",
  "scope": "One rule: a project counts only if the signature that moves ordinary user funds on mainnet is post-quantum. Primary sources for every row are listed on the page. Published by the team that builds SynX.",
  "columns": [
    "Project",
    "Signs user funds with",
    "Post-quantum status",
    "Live since",
    "What to know"
  ],
  "rows": [
    [
      "QRL",
      "XMSS (hash-based, stateful)",
      "By default",
      "Jun 2018",
      "Reusing a key state voids security. QRL 2.0 (ML-DSA-87) is still on testnet."
    ],
    [
      "Mochimo",
      "WOTS+ (hash-based, one-time)",
      "By default",
      "Jun 2018",
      "Every spend moves the balance to a fresh key."
    ],
    [
      "Abelian",
      "Custom lattice schemes inspired by Dilithium and Kyber",
      "By default",
      "Apr 2022",
      "Custom constructions, not the NIST standards verbatim."
    ],
    [
      "Cellframe",
      "CRYSTALS-Dilithium (Falcon also available)",
      "By default, per node documentation",
      "2023",
      "Default inferred from the node’s documented examples."
    ],
    [
      "SynX (ours)",
      "SPHINCS+-SHAKE-128s (hash-based, stateless); Kyber-768 for key encapsulation",
      "By default",
      "Mar 2026",
      "Source code closed until the first halving, so independent code review is not yet possible."
    ],
    [
      "Algorand",
      "Ed25519 by default; Falcon-1024 accounts",
      "Opt-in accounts live",
      "Aug 2026 (state proofs since 2022)",
      "New accounts still default to Ed25519; consensus keys are classical."
    ],
    [
      "Nervos CKB",
      "secp256k1 by default; SPHINCS+ lock script",
      "Opt-in accounts live",
      "2025",
      "Protection requires a new SPHINCS+ address and moving funds."
    ],
    [
      "Starknet",
      "ECDSA on the STARK curve",
      "Proofs only",
      "—",
      "Hash-based STARK proofs; account signatures are elliptic-curve."
    ],
    [
      "Ethereum",
      "ECDSA secp256k1",
      "Roadmap",
      "—",
      "Core post-quantum milestones targeted around 2029; EIPs are drafts."
    ],
    [
      "Bitcoin",
      "ECDSA and Schnorr, secp256k1",
      "Proposals in draft",
      "—",
      "BIP 360 and BIP 361 merged as drafts in 2026; not activated."
    ],
    [
      "Aptos",
      "Ed25519",
      "Devnet only",
      "—",
      "SLH-DSA accounts (AIP-137) accepted; feature switched off on mainnet."
    ],
    [
      "Sui",
      "Ed25519 and others",
      "Roadmap",
      "—",
      "SLH-DSA vaults targeted for 2026; ML-DSA-65 accounts for 2027."
    ],
    [
      "Tezos",
      "Ed25519, secp256k1, P-256, BLS",
      "Built in, switched off",
      "—",
      "ML-DSA-44 “tz5” accounts exist but are disabled on mainnet."
    ],
    [
      "QANplatform",
      "ECDSA (QANX is an ERC-20/BEP-20 token)",
      "Testnet only",
      "—",
      "No public layer-1 mainnet date announced."
    ],
    [
      "Zcash",
      "ECDSA, RedJubjub, RedPallas",
      "Research",
      "—",
      "ZIP 2005 proposes quantum recoverability, not quantum security."
    ],
    [
      "Solana",
      "Ed25519",
      "None in the protocol",
      "—",
      "A third-party, unaudited Winternitz vault program exists."
    ],
    [
      "Cardano",
      "Ed25519",
      "None",
      "—",
      "No post-quantum signature proposal in the CIP index."
    ],
    [
      "XRP Ledger",
      "secp256k1 or Ed25519",
      "None",
      "—",
      "Documentation says there are no immediate plans."
    ],
    [
      "Hedera",
      "ECDSA secp256k1 or Ed25519",
      "None",
      "—",
      "—"
    ],
    [
      "Polkadot",
      "sr25519, Ed25519 or ECDSA",
      "None",
      "—",
      "—"
    ],
    [
      "Litecoin",
      "ECDSA secp256k1",
      "None",
      "—",
      "MWEB’s quantum clause protects supply, not ownership."
    ],
    [
      "Monero",
      "CLSAG ring signatures (elliptic-curve)",
      "None",
      "—",
      "Security rests on discrete-logarithm assumptions."
    ],
    [
      "IOTA",
      "Ed25519 (also secp256k1, secp256r1)",
      "Regressed",
      "—",
      "Launched with Winternitz signatures; replaced by Ed25519 in 2021."
    ]
  ]
}