Observatory · Timeline & roadmaps

The migration clock, traced to its sources

Every date below comes from a published government document. Compare national roadmaps without turning guidance into law—or an evidence gap into a guessed deadline.

Dataset as of 2026-09-06
Americas · White House / OMB · NSA · NIST

United States

Two separate obligation tracks: OMB memoranda bind civilian agencies, CNSA 2.0 binds National Security Systems and their suppliers. NIST IR 8547, the source of the widely quoted 2030 deprecation / 2035 disallowance dates, is still an initial public draft — those dates are proposals, not law.

Published steps12
Next dated step2026-10-22
Visual timeline

12 published milestones · 20222035

Selected jurisdiction
  1. 2022
    05-04
    NSM-10 issued
    09-07
    CNSA 2.0 advisory
    11-18
    OMB M-23-02
  2. 2024
    08-13
    FIPS 203, 204 and 205 final
    11-12
    NIST IR 8547 initial public draft
  3. 2026
    06-22
    Executive Order 14412 signed
    10-22
    Agency migration plans due
  4. 2027
    2027
    Strategy, planning and discovery
  5. 2030
    2030
    Proposed deprecation
    12-31
    Prioritised key-establishment migration
  6. 2031
    2031
    Prioritised signature migration
  7. 2035
    2035
    Full federal migration phase
  1. 2022-11-18
    mandate

    OMB M-23-02

    Civilian agencies must maintain prioritised cryptographic inventories and submit funding estimates.

    A1effectiveOMB M-23-02
    Migrating to Post-Quantum Cryptography

    Office of Management and Budget · published 2022-11-18 · reviewed 2026-09-06

  2. 2024-11-12
    policy roadmap

    NIST IR 8547 initial public draft

    Draft transition schedule proposing deprecation from 2030 and disallowance by 2035; these dates remain proposals.

    A2draftNIST IR 8547 ipd
    Transition to Post-Quantum Cryptography Standards

    NIST · published 2024-11-12 · reviewed 2026-09-06

    Initial public draft; comment period closed 10 January 2025. Its 2030/2035 dates are proposals.

  3. 2026-06-22
    mandate

    Executive Order 14412 signed

    Directs a mandated federal migration to post-quantum cryptography; published in the Federal Register on 25 June 2026.

    A1effectiveExecutive Order 14412
    Securing the Nation Against Advanced Cryptographic Attacks

    The White House · published 2026-06-22 · reviewed 2026-09-06

  4. 2027
    mandate

    Strategy, planning and discovery

    OMB M-26-15 Phase 1 runs through 2026–2027; Phase 2 pilots and early migration run through 2027–2028.

    A1effectiveOMB M-26-15
    Execution of the Migration to Post-Quantum Cryptography

    Office of Management and Budget · published 2026-06-24 · reviewed 2026-09-06

  5. 2030
    policy roadmap

    Proposed deprecation

    NIST IR 8547 (draft) would deprecate 112-bit-security classical algorithms from 2030.

    A2draftNIST IR 8547 ipd
    Transition to Post-Quantum Cryptography Standards

    NIST · published 2024-11-12 · reviewed 2026-09-06

    Initial public draft; comment period closed 10 January 2025. Its 2030/2035 dates are proposals.

  6. 2030-12-31
    mandate

    Prioritised key-establishment migration

    OMB M-26-15 Phase 3 targets PQC key establishment for high-value, high-impact and other prioritised systems by the end of 2030.

    A1effectiveOMB M-26-15
    Execution of the Migration to Post-Quantum Cryptography

    Office of Management and Budget · published 2026-06-24 · reviewed 2026-09-06

  7. 2031
    mandate

    Prioritised signature migration

    OMB M-26-15 Phase 4 targets PQC digital signatures for high-value, high-impact and other prioritised systems.

    A1effectiveOMB M-26-15
    Execution of the Migration to Post-Quantum Cryptography

    Office of Management and Budget · published 2026-06-24 · reviewed 2026-09-06

Open full United States record →