Your readiness profile
Adjust the controls. The result updates and saves automatically.
WHY THIS PRIORITY
Fresh-address use limits immediate public-key exposure, but a migration playbook still matters.
See what a capable quantum computer would actually attack, why Bitcoin migration is slow, and what your own key setup changes.
Bitcoin does not have one uniform quantum risk. The key question is whether the public key controlling an output is already visible, followed by how quickly you could move under a network migration.
Adjust the controls. The result updates and saves automatically.
Fresh-address use limits immediate public-key exposure, but a migration playbook still matters.
At sufficient scale, Shor's algorithm threatens the elliptic-curve public-key signatures used to authorize Bitcoin spending.
Grover's algorithm reduces brute-force security margins quadratically; it does not make SHA-256 instantly disappear.
Because this is both a cryptography problem and a coordination problem. Urgency rises only when those paths converge.
Breaking Bitcoin signatures would require a large, fault-tolerant quantum computer able to run a practical attack against secp256k1. Today's uncertainty is about when or whether that engineering threshold arrives, not about whether the mathematics of Shor's algorithm is known.
Quantum-resistant signatures carry tradeoffs in signature size, verification cost, maturity, and implementation risk. Bitcoin change is deliberately conservative because a rushed cryptographic migration could create a different class of loss.
Even after new rules exist, holders, custodians, multisig groups, and lost-key outputs create a long tail. Exposed public keys and inactive holdings make the social question of deadlines or restrictions especially difficult.
The signature scheme has a known theoretical quantum attack, but theory is not the same as a machine capable of executing it at the required scale. Readiness work can be rational before a break is imminent.
Common pay-to-public-key-hash and native SegWit key-hash outputs commit to a hash of the public key. The public key is typically revealed when spent. Reuse removes that limited concealment for later outputs sent to the same key.
Inventorying address types, avoiding reuse, monitoring credible protocol work, and documenting who can authorize a move are operational hygiene. None requires pretending to know a breakthrough date.
Your export includes the selected profile, current priority, reasons, next moves, and the assumptions that keep the result honest.