Skip to content

SecureDNA

📋Page Status
Page Type:ContentStyle Guide →Standard knowledge base article
Quality:60 (Good)⚠️
Importance:50 (Useful)
Last edited:2026-02-05 (1 day ago)
Words:1.1k
Structure:
📊 2📈 0🔗 4📚 1514%Score: 12/15
Issues (2):
  • QualityRated 60 but structure suggests 80 (underrated by 20 points)
  • Links1 link could use <R> components
DimensionAssessmentEvidence
Focus AreaDNA synthesis screening technologyFree, privacy-preserving screening for synthesis providers worldwide1
FoundedNovember 2022 (Swiss Stiftung)Project originated 2019 at MIT Media Lab; incorporated in Zug, now Basel2
Key InnovationDOPRF cryptographic protocolScreens to 30bp while keeping both orders and hazard database confidential3
DeploymentOperational, globalValidated on 67M nucleotides from US, European, and Chinese providers4
Regulatory PositionAlready exceeds 2026 requirementsOSTP framework requires 50nt by October 2026; SecureDNA screens at 30bp5
Key ConcernAdoption metrics not publicNumber of onboarded providers not disclosed4

SecureDNA is a Swiss nonprofit foundation (Stiftung) that provides free DNA synthesis screening software to prevent the ordering of dangerous pathogen sequences. Co-founded by Kevin Esvelt and Turing Award winner Andrew Yao, the system uses a novel cryptographic protocol that allows screening without revealing either the customer’s order or the contents of the hazard database—addressing the key tension between biosecurity and commercial confidentiality.1

The system screens orders down to 30 base pairs (bp and nt are used interchangeably in screening contexts, referring to the contiguous sequence window size), far exceeding current and planned US regulatory requirements (the OSTP framework requires 50 nucleotide minimum screening by October 2026). It generates millions of predicted functional variants of each known hazard to prevent evasion through sequence redesign, and uses patented reverse screening against non-hazard databases to achieve approximately zero false positives.3

SecureDNA is legally separate from but closely related to SecureBio—both were co-founded by Kevin Esvelt, but SecureDNA is specifically focused on the synthesis screening chokepoint while SecureBio works on the broader Delay/Detect/Defend framework. See the Biosecurity Interventions overview for how synthesis screening fits within the broader portfolio.

SecureDNA uses Distributed Oblivious Pseudorandom Functions (DOPRF), a cryptographic protocol that ensures neither party learns the other’s secrets during screening:36

  1. Windowing: Each DNA order is broken into overlapping subsequences of 30 base pairs (also screens 20 amino acid peptides)
  2. Hashing and Blinding: Each subsequence is cryptographically hashed and “blinded by being raised to an arbitrary secret power”
  3. Distributed Key Server Encryption: The blinded hash passes through multiple independent keyservers, each applying an additional encryption layer. No single server can reconstruct the original sequence
  4. Unblinding and Comparison: Results are unblinded on-premises at the provider and compared against the encrypted hazard database

The hazard database is centrally maintained and rapidly updated when new threats are identified. Providers do not maintain local installations—they connect via REST API or web UI.1

The hazard database contains all known pathogens, BSAT and CCL listed agents, Australia Group/US ITAR/Chinese/EU regulated sequences, potential pandemic pathogens, and emerging threats. The system also generates millions of predicted functional variants of each hazard, specifically to prevent evasion through sequence mutation or AI-guided redesign.3

The project originated in 2019 as an academic collaboration at MIT Media Lab’s Sculpting Evolution group. The team deliberately avoided involving government employees or relying on government funding to maintain political neutrality and enable international adoption.2

SecureDNA Stiftung was incorporated on November 28, 2022, in Zug, Switzerland (CHE-269.863.420). The choice of Switzerland was deliberate—providing a neutral international jurisdiction. The registered office later moved to Basel in May 2024.2

An independent security audit by Sherman et al. (to appear at NDSS 2026) identified a vulnerability in SecureDNA’s custom SCEP authentication protocol: it achieved only one-way authentication, meaning the hazard database and keyservers “never learn with whom they communicate.” This could theoretically allow a malicious keyserver to bypass rate limits. SecureDNA v1.1.0 implemented the proposed SCEP+ protocol fix—requiring approximately five lines of code—which was formally verified to achieve mutual authentication.7

Foundation Council
AY
Andrew Yao
Foundation Council Member
BM
Benjamin Mueller
Foundation Council President
RE
Raphael Egger
Foundation Council Member

Management: Jens Berlips (Project Manager), Dr. Leonard Foner (Software Architect and Security Lead), Kirsten Engel (Global Strategic Partnerships).8

Advisory board includes world-class cryptographers: Adi Shamir and Ron Rivest (RSA co-inventors), Vinod Vaikuntanathan (fully homomorphic encryption pioneer, Godel Prize winner), Ivan Damgård (Merkle-Damgård construction co-inventor), and Yu Yu (Shanghai Jiao Tong University). The 2024 technical paper had 63 authors from MIT, Aarhus University, Tsinghua University, Weizmann Institute, and others.86

The codebase is approximately 64,000 lines of Rust across 300 files.7

SecureDNA does not publicly disclose specific adoption numbers. Known deployment details:4

  • Validation: 67 million base pairs of real-world DNA from providers in the US, Europe, and China
  • Geographic reach: “Diverse implementation” across multinational corporations, academic institutions, and specialized providers across North America, Europe, and Asia
  • Capacity: Claims ability to screen all gene synthesis orders in the world
  • Speed: Thousands of base pairs per second

SecureDNA is funded by “several generous donations from philanthropists in the United States, Europe, China, and elsewhere.” The team deliberately avoided government funding.9

Open Philanthropy is listed as their only philanthropic collaborator. Indirect support flowed through grants to SecureBio (≈$9.4M total), which provided operational support during SecureDNA’s development.9 An anonymous Chinese philanthropist donated to team members at Tsinghua University and Shanghai Jiao Tong University.2

RequirementOSTP FrameworkSecureDNA
Initial screening window200nt30bp (≈6.7x smaller window)
October 2026 window50nt30bp (already exceeds)
Sequence-based screeningRequiredYes, plus millions of functional variants
Customer verificationRequiredAPI integration + Exemption Certification System
Verifiable complianceRequired by May 2025 EOCryptographic proof of screening

The Trump administration’s May 2025 Executive Order mandating “verifiable” screening mechanisms directly aligns with SecureDNA’s cryptographic verification capabilities—providing “mathematically secure, unalterable proof of screening compliance.”5

Despite its technical sophistication, SecureDNA faces the same fundamental challenges as all screening approaches:

  • Fragment assembly bypass: Edison, Toner, and Esvelt (2026) demonstrated that short unregulated DNA fragments can be assembled to bypass screening entirely10
  • AI-designed evasion: Microsoft’s “Paraphrase Project” showed AI protein design tools can generate functional toxin variants that evade homology-based screening11
  • Benchtop synthesizers: Desktop DNA synthesis devices could bypass centralized screening altogether12
  • Adoption gap: ≈20% of global synthesis capacity operates outside voluntary screening frameworks13
Key Questions (4)
  • Can SecureDNA achieve near-universal adoption among DNA synthesis providers before benchtop synthesizers proliferate?
  • Will function-based screening (predicting what a protein does, not just what it looks like) become necessary as AI protein design tools improve?
  • How effective is the cryptographic privacy guarantee at encouraging adoption by providers who resist screening on IP grounds?
  • Will the regulatory vacuum following the Trump EO's rescission of the Biden framework help or hinder screening adoption?
  1. SecureDNA Official Site 2 3

  2. MIT Media Lab — Secure DNA Project; Moneyhouse — SecureDNA Stiftung 2 3 4

  3. SecureDNA Features 2 3 4

  4. SecureDNA Impact 2 3

  5. SecureDNA and the Executive Order on Biological Research Safety; SecureDNA and the OSTP Framework 2

  6. arXiv:2403.14023 — A system capable of verifiably and privately screening global DNA synthesis 2

  7. arXiv:2512.09233 — Security audit of SecureDNA 2

  8. SecureDNA Team 2

  9. SecureDNA FAQ 2

  10. Edison, Toner & Esvelt 2026 — Nature Communications

  11. Microsoft — The Paraphrase Project

  12. IFP — Securing Benchtop DNA Synthesizers

  13. IGSC market coverage