@misc{rfc9980, series = {Request for Comments}, number = 9980, howpublished = {RFC 9980}, publisher = {RFC Editor}, doi = {10.17487/RFC9980}, url = {https://www.rfc-editor.org/info/rfc9980/}, author = {S. Kousidis and J. Roth and F. Strenzke and A. Wussler}, title = {{Post-Quantum Cryptography in OpenPGP}}, pagetotal = 222, year = 2026, month = jun, abstract = {This document defines a post-quantum public key algorithm extension for the OpenPGP protocol, extending RFC 9580. Given the generally assumed threat of a cryptographically relevant quantum computer, this extension provides a basis for long-term secure OpenPGP signatures and ciphertexts. Specifically, it defines composite public key encryption based on ML-KEM (formerly CRYSTALS-Kyber), composite public key signatures based on ML-DSA (formerly CRYSTALS-Dilithium), both in combination with Elliptic Curve Cryptography (ECC), and SLH-DSA (formerly SPHINCS+) as a standalone public key signature scheme.}, }