hardware & hsms.
Quantum-safe keys on verified hardware.
For institutions, a software key isn't enough. Lattice keys run on HSMs and secure enclaves that sign with dilithium and attest to what they're running.
hardwarehsm · tpm · enclave
attestationremote
signingml-dsa on-device
auditchain of custody
the secret never leaves silicon
The private key lives and signs inside the hardware. It never appears in memory, never crosses a network, and the hardware itself signs a statement proving what it is.