Quantum-Safe Without Wallet Migration? The Unverified Promise of AmericanFortress
CobieLion
A startup claims to have solved one of cryptography’s hardest problems. AmericanFortress says it has a quantum-safe encryption scheme that protects Bitcoin, Ethereum, and Solana wallets without requiring users to migrate funds or change addresses. It’s a pitch that sounds too good to be true. And in crypto, that usually means it is.
I have spent years auditing cryptographic protocols for market surveillance. My PhD focused on post-quantum signature schemes. I know exactly how hard it is to make a key-agreement mechanism backwards-compatible with elliptic-curve-based addresses. The claim from AmericanFortress is either a revolutionary breakthrough or a complete fabrication. Right now, there is zero evidence for the former.
First, the context. The quantum threat is real but distant. Shor’s algorithm can break ECDSA, the backbone of Bitcoin and Ethereum. But the quantum computer needed to run it on 256-bit curves does not exist today. Consensus estimates put the timeline at 10 to 20 years. The National Institute of Standards and Technology has already standardized post-quantum signatures like CRYSTALS-Dilithium and Falcon. These work. But they produce different public key sizes and formats. That means they are incompatible with existing crypto addresses derived from Secp256k1 hashes.
Every serious quantum-safe migration plan—for Bitcoin, Ethereum, or Solana—requires a hard fork or a new address format. Algorand built native quantum resistance from the start. QANplatform requires new wallets. There is no known way to keep the same address while switching the underlying public-key algorithm to a post-quantum one. That is the basic cryptographic fact that AmericanFortress claims to have circumvented without any explanation.
Now, the core analysis. What do we actually know about AmericanFortress? Next to nothing. The announcement provides no technical white paper. No code repository. No audit by Trail of Bits or Quantstamp. No team bios. No academic publication. Not even a detailed blog post describing the mathematics behind the claim. The only "evidence" is a press release picked up by a few obscure crypto news sites. Due diligence is just paranoia with a spreadsheet. Here, we don’t even have a spreadsheet.
Let me be more specific. The core claim is that the scheme requires no fund migration and no address change. To achieve that, one would need a cryptographic primitive that allows the original elliptic-curve public key hash to be used as a valid post-quantum public key identifier. There are theoretical approaches—such as using zero-knowledge proofs to prove knowledge of a post-quantum key that corresponds to the hash—but they involve massive on-chain overhead or trusted setups. Alternatively, one could use a hybrid scheme where the old address is mapped to a new key via a smart contract. That would require action by every user. None of these work without migration or address change.
If AmericanFortress had a genuine solution, they would publish a minimal proof-of-concept on GitHub. They would submit it to a cryptography conference like CRYPTO or Eurocrypt. They would hire auditors to examine the security assumptions. They have done none of this. The only logical conclusion is that the project is either pre-mature vaporware or an outright scam designed to attract attention and later a token sale. The pattern is classic. Announce a paradigm-shifting technology. Refuse to release details. Build hype. Then launch a fundraising round before anyone can verify.
I have seen this movie before. In 2021, during the Luna collapse, I reverse-engineered the Vyper contract vulnerabilities. I learned that the best defense is to ignore claims until they are backed by open-source code. After FTX, I cross-referenced reserve claims with on-chain movements. I found inconsistencies that auditors missed. The common thread is that transparency is the only guardrail. AmericanFortress offers none. Due diligence is just paranoia with a spreadsheet. But there is no spreadsheet here.
Now, the contrarian angle. You might think I am being too harsh. Perhaps the team is simply waiting for a patent filing before publishing. Perhaps they are legitimately worried about IP theft. That is possible. But in cryptography, publishing a paper is how you establish priority. Secrecy is the enemy of trust. The real blind spot in the crypto industry is not quantum computers—it is the willingness to believe unsubstantiated claims. Projects that promise "no migration" prey on user laziness. They offer a free lunch. The contrarian truth is that even if the scheme were real, the timeline for quantum threat is too long to justify any immediate action. The immediate risk is not a quantum attack on your wallet. It is a phishing attack from a project that leverages quantum FUD to steal your keys.
Let’s stress-test the worst-case scenario. Assume AmericanFortress is planning to issue a token. The smart contract will likely be proprietary. A backdoor could allow the team to drain any wallet that uses their "quantum-safe" upgrade. Without open-source code and an audit, you are trusting anonymous developers with your private keys. FTX was a lie in plain sight—centralized control masked as innovation. AmericanFortress is following the same playbook, but with a cryptographic twist.
The market reaction so far has been zero. No major wallet provider has announced integration. No exchanges have listed a related token. The news has not moved any price. That is a strong signal that the institutional layer is not buying it. Neither should you.
What about the competition? Projects like Quantum Resistant Ledger and QANplatform have working testnets and source code. They do not promise zero-migration because they cannot. They are honest about the trade-offs. AmericanFortress ignores those trade-offs. That is not innovation. That is marketing.
So, where does this leave us? The only signal worth tracking is the release of a technical white paper or a GitHub repository. If AmericanFortress publishes a formal cryptographic construction—with a security proof and an implementation—I will analyze it the same way I analyze any protocol. Until then, the rational response is to ignore the announcement completely. Do not connect your wallet to any related dApp. Do not share your seed phrase for a "quantum security check." The safest action is inaction.
Takeaway: The quantum threat is real, but the solution is not here today. AmericanFortress offers no evidence, no code, no team. Due diligence is just paranoia with a spreadsheet. Be paranoid. Watch for a peer-reviewed paper. Until then, the market should treat this as the noise it is.