A custodian's checklist
Nine questions, five contract clauses, and a migration order. Nothing here depends on a view about timelines.
A · What to ask your provider
Question 1 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 2 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 3 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 4 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 5 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 6 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 7 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 8 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
Question 9 — to be written.
Rationale: what a good answer looks like, and what a bad one reveals.
B · What "quantum-ready" should mean in a contract
Obligation 1 — lead-in phrase naming the obligation. One sentence.
Obligation 2 — lead-in phrase naming the obligation. One sentence.
Obligation 3 — lead-in phrase naming the obligation. One sentence.
Obligation 4 — lead-in phrase naming the obligation. One sentence.
Obligation 5 — lead-in phrase naming the obligation. One sentence.
C · Migration order
| Priority | Holdings class | Why first |
|---|---|---|
| 1 | To be written. | Ordered by value at risk per unit of effort, not by size. |
| 2 | To be written. | Ordered by value at risk per unit of effort, not by size. |
| 3 | To be written. | Ordered by value at risk per unit of effort, not by size. |
| 4 | To be written. | Ordered by value at risk per unit of effort, not by size. |
| 5 | To be written. | Ordered by value at risk per unit of effort, not by size. |
This section discusses the security properties of custody architectures as a class, not the implementations of any named provider. Statements about threshold signature schemes follow from the underlying cryptography and are not assessments of any specific product, vendor, or deployment. Providers should be evaluated on their own documentation and audits.