RANNTA PQ CloudOpen Console
Menu

Operator Self-Test & Production E2E Record

Recorded engineering evidence for ML-DSA-65 verification, HybridRequired policy enforcement, fail-closed behavior and production end-to-end operation.

Release and recorded evidence

Date
2026-09-11 UTC
Release build ID
RANNTA-PQ-CLOUD-PHASE2-20260911-01
Crypto / policy tests
11 passed · 0 failed
Production E2E
PASS
Hybrid benchmark
100 / 100 valid requests
Final E2E harness commit
0ddce50395b6b9ffd6e03d4aa882e1fe50d5d4b4

Crypto and policy coverage

  • Valid and invalid ML-DSA-65 verification.
  • HybridRequired verification and replay rejection.
  • Key registration, rotation, stale-version rejection and future-version rejection.
  • Tenant isolation and malformed-request fail-closed behavior.
  • Unsupported policy-mode fail-closed behavior.
  • API authentication and policy-bound hybrid verification endpoint behavior.

Production end-to-end cases

TypeScript SDK build
PASS
Customer-side ML-DSA-65 valid
PASS
Local one-byte mutation
Rejected · PASS
Public-key registration
PASS
HybridRequired policy
PASS
Production valid request
PASS
Replay
Rejected · PASS
Production one-byte mutation
Rejected · PASS
classical_verified=false
Rejected · PASS
Usage metering
PASS
Hybrid audit logging
PASS
QA session closed
PASS

Production /v1/hybrid/verify latency

Samples
100 / 100 valid
Average
663.34 ms
p50
619.28 ms
p95
777.14 ms
p99
1067.85 ms
Method
Sequential HTTPS · operator client

Each benchmark request used a unique signed canonical payload. The production hostname was pinned to the production server with curl --resolve.

Test runtime and key sizes

Rust
1.98.1
OpenSSL
3.5.7
ML-DSA-65 public key
1952 bytes
ML-DSA-65 signature
3309 bytes
PQ private key sent to RANNTA
NO
Production service restart for test
NO

Public health sample

Requests
100 / 100
Average
639.12 ms
p50
614.96 ms
p95
757.43 ms
p99
1202.69 ms