blog.cloudflare.com 1 Oct 2026, 13:00 UTC

Cloudflare Workers Opens Access to Post Quantum ML KEM and ML DSA

Cloudflare Workers Opens Access to Post Quantum ML KEM and ML DSA
CyberSIXT Evidence Panel Source marked as original reporting

CLOUDFLARE has begun enabling post-quantum cryptographic primitives in Cloudflare Workers through Web Crypto, giving developers first‑class access to ML-KEM and ML-DSA algorithms. The public API additions are opt‑in via the webcrypto_modern_algorithms compatibility flag, and include ML-KEM for key encapsulation (ML-KEM-768 and ML-KEM-1024) and ML-DSA for signatures (ML-DSA-44, ML-DSA-65, ML-DSA-87).

The change also introduces helper methods such as encapsulateBits(), decapsulateBits(), encapsulateKey(), decapsulateKey(), and getPublicKey(), plus JWK import/export support for these algorithms. This enables developers to experiment with post‑quantum primitives inside Workers without bundling their own crypto, while not yet offering a full migration path.

In practice, the implementation relies on the workerd Open Source runtime (built on V8) with BoringSSL primitives, and the initial support covers ML-KEM-768 as a KEM and ML-DSA-44 as a signature algorithm. Other supported variants include ML-KEM-1024, ML-DSA-65, and ML-DSA-87; ML-KEM-512 is not exposed because it isn’t provided by the underlying BoringSSL version.

The article notes that these primitives are still opt‑in and part of a broader Web Crypto modern algorithms proposal, with continued testing and library integration expected. For developers, the guidance is to experiment by using the native Web Crypto hooks (for example, generating ML-DSA keys and signing JWTs via JOSE mappings) and to verify interoperability through libraries that map ML-DSA variants to Web Crypto.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline