Canadian Centre for Cyber Security — ITSM.40.001

Post-quantum encrypted backup built for what's next

The Government of Canada's PQC migration roadmap (ITSM.40.001) requires departmental migration plans by April 2026, high-priority systems migrated by end of 2031, and full migration by 2035 — explicitly recommending ML-KEM (FIPS 203), ML-DSA (FIPS 204) and SLH-DSA (FIPS 205). TitanVault already uses exactly those algorithms, hybridized with X25519 for defense in depth.

2031

ITSM.40.001 deadline for high-priority PQC migration

0

Plaintext files stored on our server

What's included

Five capabilities, one system

Signing & certificate

Sign any document and generate a PDF certificate with a public-verification QR code. The server never stores the file — only its hash and signature.

Encrypt / decrypt files

From the browser, with your own personal key. Your password is never stored on the server.

Device backup

Folder or database backups, encrypted at the source. Choose where they're stored.

Anti-ransomware protection

Before every backup, we check canaries and source entropy. If something already looks ransomware-encrypted, the backup is blocked.

Verifiable audit trail

Every event lives in a simple blockchain-style hash chain.

2FA & access control

Two-step verification, audited password changes, alerts for inactive devices.

Why now

ITSM.40.001's hard milestones

Apr 2026Departmental migration plans due
End 2031High-priority systems migrated
End 2035Full migration complete

The roadmap defines completion strictly: quantum-vulnerable algorithms must be disabled, isolated or tunnelled — not merely supplemented. It recommends the three NIST-standardized PQC algorithms (ITSP.40.111 v4): ML-KEM, ML-DSA and SLH-DSA. TitanVault's cryptography is built on exactly this set — ML-KEM-768 hybridized with X25519 for key exchange, ML-DSA-65 for signatures — so what ITSM.40.001 asks Canadian organizations to plan for by 2031, TitanVault already delivers.

Technical honesty

What TitanVault proves — and what it doesn't

ProvesByte-for-byte integrity
ProvesSigning date
Does NOT replaceAny legally-qualified electronic signature scheme in your jurisdiction

TitanVault's signature proves, with mathematical certainty, that a file is identical to what was registered on a given date. It is not a substitute for a legally-qualified electronic signature under applicable law — it's an integrity and chain-of-custody tool, meant as technical reinforcement, not a legal shortcut.

Try it

Try it before deciding anything

We can sign a sample document in front of you and send you the public verification link on the spot.