The cybersecurity landscape is taking a significant step towards transparency with the launch of OpenCryptography.com by SandboxAQ. This pioneering, AI-driven security firm has created the first public database designed to map cryptographic assets, weaknesses, and associated risks across the entire digital ecosystem. This free resource aims to demystify complex cryptographic data, empowering organizations to move from discovery to decisive action in strengthening their cyber defenses.
Quick Intel
SandboxAQ launched OpenCryptography.com, the first free public database for mapping cryptographic assets and vulnerabilities.
The platform translates raw cryptographic data into clear, actionable risk signals for security teams.
It provides unprecedented visibility into real-world cryptographic deployments to help identify and prioritize exploitable weaknesses.
The initiative directly supports the global push for post-quantum cryptography (PQC) migration mandated by agencies like CISA, NSA, and NIST.
The database already contains nearly one billion entries from open-source repositories, containers, and OS distributions.
Initial release focuses on Docker containers, with plans to expand data sources and add community collaboration tools.
OpenCryptography.com is designed to end cryptographic blind spots by providing a continuously updated inventory of cryptographic assets from widely used software and infrastructure. For over a year, SandboxAQ has conducted intensive research to assemble this resource, which now holds almost one billion entries. The launch will make thousands of these entries public, allowing users to pinpoint specific weaknesses, track risk evolution over time, and monitor the adoption of next-generation cryptographic algorithms.
The launch comes at a critical time, as global regulators are emphasizing the urgent need for organizations to modernize their cryptographic foundations. The database provides the open, transparent tools called for by agencies to reduce supply chain risk. As a joint statement from CISA, NSA, and NIST noted, "It is imperative for all organizations, especially critical infrastructure, to begin preparing now for migration to post-quantum cryptography."
This initiative is built on the conviction that community effort is essential for strengthening global digital trust. By making this data available to everyone, SandboxAQ aims to empower developers, researchers, and enterprises to collectively improve the internet's security posture. "Open source is vital to building the trustworthiness and resilience our cryptographic systems demand. Sharing cryptographic asset data empowers developers, researchers, and enterprises to strengthen defenses against both current and emerging threats to cryptography," said Michele Mosca, co-founder of the Institute for Quantum Computing (IQC) at the University of Waterloo.
OpenCryptography.com represents a fundamental shift in how the industry approaches cryptographic risk management. By providing free, transparent access to critical data, it equips the global community with the tools needed to accelerate post-quantum readiness and build a more secure digital future.
SandboxAQ is a B2B company delivering solutions at the intersection of AI and quantum techniques. The company's Large Quantitative Models (LQMs) deliver critical advances in life sciences, financial services, navigation, and other sectors. The company emerged from Alphabet Inc. as an independent, growth-backed company funded by leading investors including funds and accounts advised by T. Rowe Price Associates, Inc., IQT, US Innovative Technology Fund, S32, Hillspire Capital, Breyer Capital, Marc Benioff, Thomas Tull, Paladin Capital Group, and others.