A vault on Ethereum that signs with hash-based keys, the post-quantum kind NIST approved, and uses a fresh one for every move. There is never an elliptic-curve key on chain for a quantum computer to work on. Opening one takes a single small transaction, from any wallet.
A quantum computer needs a wallet’s public key. See if yours is already on chain: Ethereum, Arbitrum, Base or Bitcoin. Or .
Its post-quantum plan moves validator signatures to hash-based ones.
Plans Winternitz one-time signatures, the same family a bunker uses.
Pay-to-Merkle-Root, a new output type for the quantum era.
Bunkers. Post-quantum keys for your ETH, dollars, Bitcoin and gold on Ethereum, live now.
Sources: pq.ethereum.org, crypto.news on Zcash, BIP-360.
Put ETH, dollars, Bitcoin and gold in from any wallet. Take them out, send them to another bunker or sell them inside, all with your 24 words. Any wallet can carry your signed moves: it pays the gas and nothing else.
Like a seed phrase, made on your device. They are the bunker’s only key, and we never see them.
ETH, USDC, USDT, WBTC, PAX Gold or $BUNKER. Send them from a wallet, or buy straight into the bunker.
Each move is signed with a one-time key built from SHA-256, the hash behind Bitcoin mining, and the next key takes over. It’s the post-quantum kind of signature NIST approved.
Your words make 67 secret numbers. Each one is hashed fifteen times, and the 67 ends, hashed together, are the key. Pick a message: the signature shows one link per chain, and anyone can hash the rest of the way up to check it. Faking one would mean running SHA-256 backwards.
LM-OTS from RFC 8554 (NIST SP 800-208), SHA-256, 2,176-byte signatures. Tested against the RFC’s published test vectors.
Each move costs 0.0001 ETH, and all of it buys $BUNKER and burns it. So does the 1% fee of $BUNKER’s Uniswap pool, whose liquidity the treasury holds for good. Keep 1,000,000 $BUNKER inside your bunker and your moves are free.
Its keys are. A bunker signs with LM-OTS, a hash-based signature NIST approved for the quantum era (SP 800-208), built from SHA-256 alone, and no key ever signs twice. What sits inside moves only with those signatures. Ethereum itself and ordinary wallets still use elliptic-curve keys, which is why the bags go in the bunker.
Moving your crypto to where no public key can be attacked. The usual way is an address that has never sent anything, so its key is still hidden, but that only lasts until you move. A bunker never shows an elliptic-curve key at all: every move uses a fresh hash-only key.
No. Your bunker has its own 24-word key and works with any wallet: put things in from it, take them out to it.
The same as with any seed phrase: write them down and keep them offline. They are the only key, so nobody can reset them for you. You can also keep a copy in this browser, locked with a password.
Opening has no fee, only the gas of one transaction, and the wallet that sends a move pays its gas. Each move out, send or sale costs 0.0001 ETH from the bunker, which buys and burns $BUNKER, and holders move free.
Only the move fee, which can never go above 0.001 ETH, and once, the coin whose holders move free. Nobody can move what is in your bunker but you.
ETH and any token on Ethereum. This page lists ETH, USDC, USDT, WBTC, PAX Gold and $BUNKER, and can swap between them inside the bunker through Uniswap. Anyone can send things in to your bunker id, like an address.