Here’s a phrase that sounds like science fiction but is quickly becoming a very real business concern: “harvest now, decrypt later.”
The idea is this: sophisticated hackers and nation-state actors are quietly recording encrypted data today — your financial records, your customer information, your confidential communications — and storing it. They can’t read it right now. But they’re betting that within the next decade, quantum computers will be powerful enough to crack today’s encryption. At that point, all that stored data becomes readable.
It’s a long game. And it’s already being played.
What Cloudflare Just Did — and Why It Matters
Cloudflare, the company that quietly powers security and performance for roughly 20% of the internet, just made a significant move. They’ve added support for something called ML-DSA (Module Lattice Digital Signature Algorithm) — a post-quantum authentication standard recently standardized by NIST, the U.S. government’s technology standards body.
In plain English: Cloudflare now lets businesses protect their web server connections using cryptography that quantum computers can’t break, even in theory.
The specific protection they’ve enabled is for what’s called “origin authentication” — essentially, verifying that data traveling between Cloudflare’s global network and your actual web server is genuine and untampered with. It’s the digital equivalent of a tamper-proof seal on a package, but one that remains secure even against computers that don’t exist yet.
Why Act Now? The Threat Is Still Years Away
This is the part that trips people up. If quantum computers powerful enough to break today’s encryption are still years — possibly a decade — away, why start planning now?
Two reasons.
First, migrations take time. Updating security infrastructure across an entire organization isn’t like installing a software update. It involves auditing every system that uses encryption, replacing certificates and authentication methods, testing compatibility, and training staff. Organizations that wait until quantum computers are a proven threat will be scrambling to catch up at exactly the worst time.
Second, data stolen today can be decrypted later. If your business handles sensitive information — patient records, legal documents, financial data, trade secrets — that information is potentially being harvested right now by adversaries who are playing a long game. Waiting to act means accepting that everything encrypted today might become readable in the future.
Cloudflare isn’t moving to post-quantum security because they’re being overly cautious. They’re doing it because the timeline for “practical quantum computers” has been accelerating faster than most experts predicted.
What Does This Mean for Your Business?
If your website or web application runs behind Cloudflare (or a similar CDN and security layer), you’ll eventually want to enable post-quantum authentication on your origin connections. It’s a technical configuration change, not a rebuild of your entire system.
More broadly, now is a smart time to start thinking about:
- What data does your business store that would be damaging if exposed in 5–10 years?
- What encryption and security certificates does your business rely on?
- Do you have a security roadmap, or are you just hoping for the best?
The businesses that will be well-positioned in the quantum era aren’t the ones who scramble to react — they’re the ones quietly building quantum-safe infrastructure now, while it’s still calm and manageable.
The Opportunity Hidden Inside the Risk
Here’s the optimist’s take: businesses that get ahead of post-quantum security will have a meaningful competitive advantage. When your customers, partners, or regulators start asking “are you quantum-safe?”, the answer will already be yes. That’s a trust signal that money can’t easily buy.
The security landscape is changing fast. The businesses that treat security as a strategic investment rather than an annoying cost will be the ones still standing — and thriving — in the decade ahead.
At Uptown4, we help businesses think through their security posture, plan for emerging threats, and implement modern infrastructure that doesn’t just work today, but stays resilient into the future.
Want to talk through what a quantum-ready security strategy might look like for your business? Let’s start that conversation.

