{
  "type": "failure-mode",
  "name": "Buying post-quantum security you do not have",
  "slug": "buying-post-quantum-security-you-do-not-have",
  "section": {
    "id": "proof-systems",
    "number": "01",
    "title": "Choosing a proof system",
    "url": "https://zkpick.com/proof-systems/"
  },
  "url": "https://zkpick.com/proof-systems/failure-modes/buying-post-quantum-security-you-do-not-have/",
  "markdown": "https://zkpick.com/md/proof-systems/failure-modes/buying-post-quantum-security-you-do-not-have.md",
  "detail": "A hash-based system is chosen for post-quantum posture, but the deployed system wraps into a pairing SNARK, or the zero-knowledge property is only computational, or the surrounding signatures and key exchange remain classical. The property does not compose the way the decision assumed.",
  "mitigation": "Separate soundness from confidentiality and check each end to end. If a long-lived secret is hidden, the hiding property must itself be statistical or post-quantum — a hash-based proof system does not supply that by itself.",
  "relatedOptions": [],
  "updated": "2026-09-12",
  "version": "1.3",
  "canonical": "https://zkpick.com/proof-systems/failure-modes/buying-post-quantum-security-you-do-not-have/",
  "license": "https://creativecommons.org/licenses/by/4.0/",
  "authors": [
    "MarketComp"
  ]
}