<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.vicente-lamps-pqchc" target="https://datatracker.ietf.org/doc/html/draft-vicente-lamps-pqchc-02">
   <front>
      <title>A Post-Quantum Hybrid-Commitment Certificate Extension (PQCHC)</title>
      <author initials="B." surname="Vicente" fullname="Brian Vicente">
         <organization>Sanctum SecOps LLC</organization>
      </author>
      <date month="June" day="26" year="2026" />
      <abstract>
	 <t>   This document defines a non-critical X.509 certificate extension, the
   Post-Quantum Hybrid Commitment (PQCHC), that allows a certificate
   issued with a classical or hybrid key to carry a verifiable,
   cryptographically bound commitment to a specific future post-quantum
   algorithm and a Commitment Validity Time.  The PQCHC commitment binds
   to a hash of the committed future public key and algorithm
   identifier, enabling a relying party to verify that a subsequently
   issued post-quantum certificate honors the earlier commitment.  This
   mechanism provides a crypto-agility signal for certificate-lifecycle
   automation, including ACME Renewal Information (ARI), to plan and
   verify PQC migration.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-vicente-lamps-pqchc-02" />
   
</reference>
