Encryption claims are easy to make and hard to check, so the question worth asking a vendor is not whether they encrypt but where the guarantee stops. A provider that collects in one place, enriches in another, and hands delivery to a third party can speak for the legs it operates and no more. The legs it does not own are where a session quietly falls back to whatever the intermediary negotiated.
Every hop between an event and your systems belongs to us: the edge node that heard it, the links between our own regions, and the point of presence that serves you. That is what makes "post-quantum on every hop" a statement about the whole path rather than about the last mile, and it is the same structural argument that makes a latency figure measurable and a provenance chain unbroken.
The choice inside each hop is deliberately conservative. Sessions negotiate a hybrid key exchange rather than a post-quantum scheme alone, because lattice cryptography is newer than the traffic it protects, and the classic curve it is paired with has had decades of attack behind it. Neither is trusted by itself. Combined with forward secrecy, what an eavesdropper stores today stays noise regardless of which half gives way first.