Pill #2 · Just shipped

Sign every GitHub PR with post-quantum crypto.

Drop our GitHub App on any repo. Every pull request gets a real ML-DSA-65 + Ed25519 dual-signed receipt of its diff, anchored to Base 8453, posted as a PR comment with one-click verify. Public repos always free.

Install on GitHub → Try it on a paste-a-diff demo
01

Install the app

One click. Pick the repos you want covered. Public repos free, forever.

02

Open a PR

Bot fetches the diff, issues a dual-signed receipt, posts the receipt ID and verify link as a PR comment.

03

Anyone can verify

Receipt is portable. Verify via /verify/?id=… on any device. Tamper-evident. ML-DSA-65 + Ed25519.

Pricing

TierReposReceipts/moPrice
Public OSSUnlimited public reposUnlimitedFree
TeamUp to 25 private repos5,000$19/mo
EnterpriseUnlimited private repos + SSO + on-prem signer keyUnmetered$499/mo

Every receipt is a real ML-DSA-65 (Dilithium) + Ed25519 dual signature. Anchored to a federated block hash. No mocks. No simulation.

Paste-a-diff demo

No install required. Paste any unified diff and we'll sign it with the same crypto rail the GitHub App uses.

Install on GitHub → Or try the free PQ receipt faucet