SafeLogic Releases CryptoComply™ Core and Mobile v4, Bringing FIPS 140-3 Validated Cryptography into the Post-Quantum Era
On June 18, 2026, SafeLogic released CryptoComply™ Core and Mobile v4, providing FIPS 140-3 validated classical cryptography and NIST CAVP validated post-quantum algorithms, supporting CNSA 2.0 and hybrid TLS 1.3, and offering different versions for Common Criteria and FIPS compliance.
Vienna, Virginia — SafeLogic, a leading enterprise focused on cryptographic posture management, announced on June 18, 2026, the general availability of CryptoComply™ Core and Mobile v4. This is the latest version of its trusted cryptographic software library, designed to help software vendors, device manufacturers, government contractors, and enterprise organizations prepare for the transition to post-quantum cryptography while maintaining the security, compliance, and operational continuity required in production environments.
As organizations face increasing pressure for cryptographic modernization—stemming from emerging quantum threats, evolving government guidelines, and new procurement requirements—many are discovering that a successful migration requires more than just adding post-quantum algorithms. It also requires validated implementations, deployment flexibility, performance optimization, policy-driven controls, and a practical path to large-scale adoption of quantum-resistant security.
CryptoComply Core and Mobile v4 are built precisely to meet these needs, offering solutions through deployment versions optimized for different customer requirements.
Dual Version Design: Common Criteria Edition and FIPS Edition
Common Criteria EditionDesigned for environments that require CAVP-tested cryptography rather than CMVP FIPS validation. In this edition, cryptographic services are provided by SafeLogic's next-generation CryptoComply FIPS Provider v4 module, with integrity tests and required self-tests enabled. This allows organizations pursuing Common Criteria certification to use CAVP-tested classical and post-quantum cryptography, including hybrid TLS 1.3 and CNSA 2.0 mandatory capabilities, with a deployment model aligned with Common Criteria requirements.
FIPS EditionDesigned for organizations that require CMVP FIPS 140-3 compliance while also adopting post-quantum cryptography. This edition combines FIPS 140-3 validated classical cryptography with post-quantum cryptographic capabilities, supporting FIPS-approved hybrid operations while maintaining the required integrity checks and self-tests.
"Organizations are no longer asking whether they should prepare for post-quantum cryptography, but rather how to deploy it in production environments," said Evgeny Gervis, CEO of SafeLogic. "With CryptoComply Core and Mobile v4, we are delivering the trusted cryptographic foundation customers need today—combining FIPS-validated classical cryptography, NIST CAVP-tested post-quantum algorithms, cryptographic agility, broad deployment coverage across more than 28 operating systems, and enterprise-grade performance into a solution designed for real-world deployment."
Bringing Post-Quantum Cryptography into Production
The transition to post-quantum cryptography represents one of the most significant security modernization efforts in decades. Organizations must balance the adoption of new quantum-resistant algorithms with the operational realities of existing applications, infrastructure, devices, and compliance obligations.
CryptoComply Core and Mobile v4 address this challenge through deployment versions that support both traditional and post-quantum cryptographic needs. Organizations can choose between a version optimized for Common Criteria and CNSA 2.0 deployments, or a version for CMVP FIPS 140-3 compliant post-quantum adoption.
The new versions include NIST CAVP-validatedimplementations of the latest standardized post-quantum cryptographic algorithms, including:
- ML-KEM (FIPS 203)
- ML-DSA (FIPS 204)
- SLH-DSA (FIPS 205)
- LMS (RFC 8554 / SP 800-208)
These validated implementations enable organizations to begin integrating post-quantum protections into products and infrastructure immediately, while preparing for future regulatory, customer, and security requirements.
Unlike experimental PQC implementations, CryptoComply libraries provide enterprise-grade cryptography backed by SafeLogic's proven validation expertise and deployment experience in highly regulated markets.
FIPS 140-3 Validation and Cryptographic Agile Architecture
CryptoComply Core v4 is a cryptographic software library compatible with OpenSSL 3.x for rapid integration, designed to accelerate FIPS 140-3 adoption while providing broad deployment flexibility across cloud, server, and embedded environments.
CryptoComply Mobile v4 extends these capabilities to iOS, iPadOS, and Android platforms, enabling mobile application developers to integrate validated cryptography with minimal code changes.
Both libraries are designed around a cryptographic agile architecture, helping organizations adapt to evolving standards, requirements, and threat models.
In the FIPS Edition, CryptoComply Core and Mobile v4 combine validated classical cryptography with validated post-quantum algorithms in a single library, enabling organizations to implement phased migration strategies without introducing unnecessary operational complexity.
Comprehensive CNSA 2.0 Support for Next-Generation Security Requirements
The Common Criteria Edition provides support for the Commercial National Security Algorithm Suite 2.0 (CNSA 2.0), helping organizations align with NSA guidance on quantum-resistant security and prepare for Common Criteria and National Security System deployments.
CNSA 2.0 establishes a framework for transitioning from traditional public-key cryptography and adopting quantum-resistant alternatives, including ML-KEM and ML-DSA. Starting in 2027, new National Security System procurements are expected to use CNSA 2.0-approved cryptography, making it increasingly important for technology providers serving government and defense-related markets to prepare.
The Common Criteria Edition includes:
- Support for approved CNSA 2.0 algorithms, including AES-256, ML-KEM-1024, ML-DSA-87, LMS, and SHA-384/512
- CNSA 2.0 mode for policy-based enforcement of CNSA 2.0-aligned algorithms only
- Automatic blocking of non-CNSA 2.0 algorithms (such as RSA and ECDSA) when policy requires strict compliance
These features help organizations streamline compliance efforts while reducing operational risks associated with cryptographic modernization.
Broad Deployment Coverage Across More Than 28 Operating Systems
Successful cryptographic modernization requires not only validated algorithms, but also deployment flexibility across the diverse software ecosystems organizations rely on today.
CryptoComply Core and Mobile v4 support more than 28 operating system environments, providing the flexibility to integrate post-quantum cryptography into cloud, enterprise, mobile, network, and embedded deployments with minimal disruption.
This heterogeneous deployment support enables organizations to standardize on a unified cryptographic foundation across cloud services, enterprise applications, network infrastructure, mobile platforms, embedded systems, and high-assurance environments.
By supporting a wide range of runtime environments and technology stacks, CryptoComply Core and Mobile v4 help organizations accelerate post-quantum adoption, reduce integration complexity, and maintain consistent cryptographic controls across their entire software portfolio.
AVX2 Optimizations for Post-Quantum Algorithms
CryptoComply Core and Mobile v4 include AVX2-optimized implementations of ML-KEM and ML-DSA on supported platforms.
AVX2 (Advanced Vector Extensions 2) is a CPU instruction set extension available on many modern Intel and AMD processors. By leveraging 256-bit SIMD operations, AVX2 enables efficient parallel processing of cryptographic workloads and can improve the performance of computationally intensive post-quantum algorithms.
CryptoComply Core and Mobile v4 use AVX2-optimized implementations of ML-KEM and ML-DSA where platform support is available. The same algorithm self-tests performed by standard implementations are also executed for AVX2 implementations.
AES-NI and AVX2 optimizations are controlled through SafeLogic's ASM and no-ASM build configurations. Builds with ASM support enabled include AES-NI acceleration and, where the underlying processor and operating system support it, AVX2 optimizations. Since AVX2 availability depends on platform capabilities, some ASM-enabled deployments may use AES-NI without AVX2 acceleration.
To meet FIPS testing requirements, SafeLogic validates both ASM and no-ASM binary configurations. This testing approach covers deployments with and without AES-NI acceleration, as well as the corresponding configurations that may include AVX2 optimizations. Per FIPS 140-3 Implementation Guidance 2.3.C, AVX2 optimizations are not considered processor algorithm accelerators (PAA) but are included for completeness.
Accelerating Common Criteria and High-Assurance Certifications
For organizations pursuing Common Criteria (CC) and NIAP-aligned certifications, CryptoComply Core and Mobile v4 provide a powerful combination of validated cryptography and future-ready security capabilities.
The Common Criteria Edition includes:
- NIST CAVP-validated post-quantum cryptography
- Full CNSA 2.0 algorithm support and CNSA 2.0 mode
- Hybrid TLS 1.3 support
- NIST ESV-certified entropy generation capabilities
These capabilities provide a solid foundation for products targeting Common Criteria, including profiles for network devices (NDcPP), secure communications, VPNs, authentication, HSMs, and other high-assurance certification environments.
By enabling vendors to begin integrating standardized PQC immediately, CryptoComply Core and Mobile v4 help reduce future remediation costs while supporting alignment with evolving government guidance and procurement requirements.
Availability
CryptoComply Core and Mobile v4 are available immediately.
Organizations interested in accelerating FIPS 140-3 validation efforts, adopting post-quantum cryptography, preparing for CNSA 2.0 requirements, or supporting Common Criteria certification programs can visit www.safelogic.com for more information.
About SafeLogic
Founded in 2012, SafeLogic is a leading provider of cryptographic software, enabling enduring privacy and trust in a rapidly changing digital world. Used by many of the world's top technology companies, SafeLogic accelerates and simplifies the adoption of FIPS 140-validated classical and post-quantum cryptography. SafeLogic provides FIPS 140-3 validated software, PQC, strong entropy sources, and cryptographic agility, backed by a world-class software delivery factory and enterprise software support.
