C7 / 10.53% of index
Reporting
Can technical and executive readers understand and reuse the result?
What is reporting?
Reporting converts technical evidence into reusable views for engineers, security leaders, auditors and migration owners without losing traceability to the underlying finding.
Different stakeholders need different levels of detail. Strong reporting preserves provenance while making migration status and residual risk understandable.
Questions to ask a vendor
- Can every summary trace back to evidence?
- Are technical and executive views consistent?
- Can data be exported in open formats for governance and audit?
What this edition actually supports
Weight 2 of 19. Can technical and executive readers inspect and reuse the result?
The criterion considers understandable findings, exportable detail, provenance and decision limits. QScout scores 9 in edition 2026.7. A polished dashboard is not itself an accurate inventory: readers need access to source records and explicit unknowns. The public index publishes the matrix, CSV, product rationales and a dated source-access screen.
How to investigate this criterion
Try to reproduce the score from the raw matrix, follow a material claim to its original source and identify what is inaccessible.
Primary and original inputs: pqc-index.org · pqc-index.org · pqc-index.org. Review all dated cell source checks and the 1 October per-cell limits.
The 2026.7 cells below are public-evidence scores. A vendor page documents a claim; an artifact check tests only its stated scope. Missing product execution and inaccessible sources remain explicit unknowns. The score snapshot has not been recomputed from later pages.
Reporting scores in edition 2026.7
Equal scores share the same criterion position; the next position skips the tied places. The highest value in this column is a published rubric cell, not a measured product winner. A partial or unverified source anchor remains visible even when its numeric score is high.
| Position on criterion | Product | Reporting score | Overall score | Internal 1 October source review | Evidence |
|---|---|---|---|---|---|
| 1 | QScout Pulse GoldQtonic Quantum Corp | 9 | 8.00 | Partial or qualified supportPublic role views/framework names/API exist, but sample report is fictional and mappings are not certifications.Exact cell and citations | S27S28S29S30 |
| 2 | CBOM SecureEncryption Consulting | 8 | 7.47 | Partial or qualified supportVendor lists dashboards, KPIs and framework mapping, but no public sample report or assessed mapping accuracy.Exact cell and citations | S04S05S06 |
| 2 | QuSecure QuProtect R3QuSecure | 8 | 5.21 | Partial or qualified supportHuman/machine report outputs are documented; compliance mapping detail needs direct report review.Exact cell and citations | S13 |
| 4 | QCecuring CBOMQCecuring | 7 | 6.53 | Partial or qualified supportFramework families listed, but mapping output/accuracy not independently checked.Exact cell and citations | S19 |
| 4 | AppViewX Quantum Trust HubAppViewX | 7 | 6.37 | Claim not verified from accessible evidenceVendor report sources returned 403; report and framework scope cannot be independently checked.Exact cell and citations | S07S24 |
| 4 | Fortanix Key Insight / PQC CentralFortanix | 7 | 5.74 | Partial or qualified supportPDF assessment report is documented; archived excerpt not reproduced and framework-to-report mapping remains unverified.Exact cell and citations | S15 |
| 4 | O3 SecurityO3 Security | 7 | 5.47 | Partial or qualified supportCNSA gaps are named; actual framework-to-evidence mapping and executive report unavailable for review.Exact cell and citations | S17 |
| 4 | ISARA AdvanceISARA | 7 | 5.42 | Partial or qualified supportVendor executive/trend views are documented; exact framework mapping and report artifact not tested.Exact cell and citations | S14 |
| 9 | Keyfactor AgileSec + CommandKeyfactor | 6 | 6.53 | Narrow feature documentedVendor documents compliance dashboard/export, not a verified per-framework evidence mapping.Exact cell and citations | S08S25 |
| 9 | SandboxAQ AQtive GuardSandboxAQ | 6 | 6.21 | Narrow feature documentedWeak-key/certificate dashboard and export are documented; no compliance evidence mapping asserted.Exact cell and citations | S12 |
| 9 | IBM Guardium + Quantum SafeIBM | 6 | 5.58 | Narrow feature documentedIBM documents PDF dashboard export, no stronger report claim inferred.Exact cell and citations | S09S10S26 |
| 9 | DigiCert Quantum CentralDigiCert | 6 | 5.37 | Narrow feature documentedVendor documents filtered dashboard/inventory export; no stronger report behavior is inferred.Exact cell and citations | S18 |
| 9 | TYCHON Quantum CommandTYCHON | 6 | 5.16 | Claim not verified from accessible evidenceVendor pages returned 403; dashboard/export claim unverified.Exact cell and citations | S11 |
| 9 | CryptoNext COMPASSCryptoNext | 6 | 4.68 | Partial or qualified supportCompliance reports are named; actual standards-to-finding mapping and report output are not independently examined.Exact cell and citations | S16 |