Stored Run Record

Run #1080

Completed Jul 27, 2026, 17:00:31 UTC UTC

Artifact-backed

The run preserves its sanitized policy and targets, parsed decisions, route and gate indexes, plus content-addressed raw evidence artifacts.

Total checks
6
Verified
2
Incomplete
0
Failed
0
Unavailable
4

Recorded Decisions

Checks in this run

Run JSON

Tinfoil

gemma4-31b

Gemma 4 31B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 178 f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "type": "tinfoil",
  "url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
  "host": "gemma4-31b-1.inf10.tinfoil.sh",
  "model": "gemma4-31b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gemma4-31b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "model": "gemma4-31b",
  "status": "unreachable",
  "ts": "2026-07-27T17:00:30.691908883+00:00",
  "latency_ms": 329,
  "error": "Network error: Tinfoil attestation request to gemma4-31b-1.inf10.tinfoil.sh: error sending request for url (https://gemma4-31b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ef4108794e425358928574ca1f8feb760727096ac0021da057be9e626834f834",
    "parsed_evidence_digest": "36f36326fa90452f01476b3e2bacfc89892cb723129778f023d9121bacf0bb69",
    "artifact_set_digest": "27543dbe14082f528a0a8fb14a47cd2b9e67bbb24ae5f44601a21a6bddea542e"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-27T17:00:31.020945646+00:00",
      "source_url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
      "sha256": "f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4",
      "size_bytes": 178,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gemma4",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-120b

GPT-OSS 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 182 7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
  "host": "gpt-oss-120b-1.inf10.tinfoil.sh",
  "model": "gpt-oss-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "model": "gpt-oss-120b",
  "status": "unreachable",
  "ts": "2026-07-27T17:00:31.021255026+00:00",
  "latency_ms": 336,
  "error": "Network error: Tinfoil attestation request to gpt-oss-120b-1.inf10.tinfoil.sh: error sending request for url (https://gpt-oss-120b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "c9c439c312772844b063bb05f9a249d11df2a973d26c9a9e42110131ca05652c",
    "parsed_evidence_digest": "b3b1f0c2850936413873ac7cfedb2a6ef9cf3b5da8021b2447685ba7c09b817e",
    "artifact_set_digest": "b56d1e3918c51aca0b382a0f6843dfd87abe58782a716041380af9a6dfafd566"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-27T17:00:31.357797544+00:00",
      "source_url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
      "sha256": "7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6",
      "size_bytes": 182,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-120b",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-safeguard-120b

GPT-OSS Safeguard 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 226 893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
  "host": "gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev",
  "model": "gpt-oss-safeguard-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-safeguard-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "model": "gpt-oss-safeguard-120b",
  "status": "unreachable",
  "ts": "2026-07-27T17:00:31.358151548+00:00",
  "latency_ms": 62,
  "error": "Network error: Tinfoil attestation request to gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev: error sending request for url (https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "45f9268efa532b4108ef53474486a66295e954252959f4f84c41ec9fb4d9b2c9",
    "parsed_evidence_digest": "1719c4133b9a10dc60100e4789e95991833f9a387166baf3030b13a762f52a4b",
    "artifact_set_digest": "120e821313c6228dea7b4f3806c95c6e94f6486898436b90b5818fad4a847090"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-27T17:00:31.420420880+00:00",
      "source_url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
      "sha256": "893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3",
      "size_bytes": 226,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-safeguard",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

kimi-k2-6

Kimi K2.6

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 172 56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "type": "tinfoil",
  "url": "https://kimi-k2-6.inf13.tinfoil.sh/",
  "host": "kimi-k2-6.inf13.tinfoil.sh",
  "model": "kimi-k2-6",
  "metadata": {
    "repo": "tinfoilsh/confidential-kimi-k2-6-b200"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "model": "kimi-k2-6",
  "status": "unreachable",
  "ts": "2026-07-27T17:00:30.372316773+00:00",
  "latency_ms": 319,
  "error": "Network error: Tinfoil attestation request to kimi-k2-6.inf13.tinfoil.sh: error sending request for url (https://kimi-k2-6.inf13.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f2230f8eac45ce447a029569e565a5dfebe5085a747b08aa5673f73ca0b6a6a",
    "parsed_evidence_digest": "c2f7937f9df975538ce01f68018fe0336e57c6e4fde4dfab68d69016a4fbce43",
    "artifact_set_digest": "e880d6e1f32ffc1d14df2237f7d964358896811a2089b54b1a4260bd0aa3ca8b"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-27T17:00:30.691549528+00:00",
      "source_url": "https://kimi-k2-6.inf13.tinfoil.sh/",
      "sha256": "56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea",
      "size_bytes": 172,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-kimi-k2-6",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

llama3-3-70b

Llama 3.3 70B

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e Open
provider-attestation-response application/json 605 61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9 Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b Open
source-provenance-response application/json; charset=utf-8 14,576 7ecaf6f224abb45c7645b29c8edab7e1350f9dbb352583b49e5030ee70a21df0 Open
source-provenance-response application/json; charset=utf-8 5,998 d8f9023408a63258ef7cfb048c178fa0cd1cc70cb38b4b3ca552c8c0e906a652 Open
tls-leaf-certificate application/pkix-cert 1,471 b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "type": "tinfoil",
  "url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
  "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
  "model": "llama3-3-70b",
  "metadata": {
    "repo": "tinfoilsh/confidential-llama3-3-70b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "model": "llama3-3-70b",
  "status": "verified",
  "ts": "2026-07-27T17:00:26.637747088+00:00",
  "latency_ms": 3734,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde68840e1d011d09c176637d27a2c2b62406d2d0795f88c0c452b4a9d561d3bbaaea3d",
    "measurement": "be51bfed5496d1e0a57bc3fc39cb10a35631c7654e6a5fd5f0607ae938f4f10fc44c2ede894d0435253395338ba22131",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e"
  },
  "images_verified": true,
  "tls_fingerprint": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde6884",
  "tls_matches": true,
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.25",
  "release_digest": "8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
  "sigstore_repo": "tinfoilsh/confidential-llama3-3-70b",
  "config_images": [
    "vllm/vllm-openai:v0.22.0@sha256:0fec7ec5f3e6bc168e54899935fb0557da908a4832a1dbc88e2debcf2f889416"
  ],
  "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
  "trust_tier": "hw-verified-tls",
  "route": {
    "route_binding": "verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "verified",
      "detail": "A live TLS handshake proves possession of the quote-bound private key."
    },
    "channel": {
      "state": "verified",
      "detail": "The application channel key is bound to attested evidence."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "verified",
      "detail": "A request-bound route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ffdbe1888c9b018da94094537c21e3f86676a8687dffbebdff585b35b5e85c29",
    "parsed_evidence_digest": "c0301c8720d47e458e304d4a1152b680b4667831104d24cc307d7466ebf93d62",
    "artifact_set_digest": "e357c57d2447036e8372bfa33c9860e70f3e218101f1cde7d11e3c1bcdf1f462"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-27T17:00:27.176331607+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
      "sha256": "61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:42 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-27T17:00:27.337416300+00:00",
      "sha256": "8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-27T17:00:27.338620910+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-27T17:00:27.871900234+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
      "sha256": "b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3",
      "size_bytes": 1471,
      "encoding": "binary",
      "metadata": {
        "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-27T17:00:28.133923162+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/releases/latest",
      "sha256": "d8f9023408a63258ef7cfb048c178fa0cd1cc70cb38b4b3ca552c8c0e906a652",
      "size_bytes": 5998,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:28 GMT",
        "etag": "W/\"cfff096a64a8aaf64522b7dd61d0426d882aa52ae4fb2dfb6dd573fbacc37ac2\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Fri, 05 Jun 2026 21:21:37 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-27T17:00:28.756678322+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/attestations/sha256:8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
      "sha256": "7ecaf6f224abb45c7645b29c8edab7e1350f9dbb352583b49e5030ee70a21df0",
      "size_bytes": 14576,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:28 GMT",
        "etag": "W/\"18071939e33b75a2875c7a63b5397748b203b8a8e1938eccbb68b0acd8818dae\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}

Tinfoil

Router

Router

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e Open
provider-attestation-response application/json 605 85d8f0f297bfcc95204228b02a701a567ec55dedab76bc816d058a580b5667bf Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 4be76b6b71726ac68649e79a4b3ce15fa449aeae4f136a2a0caead1efb683e4d Open
source-provenance-response application/json; charset=utf-8 14,528 725f7ae72f036c18ceb39340a54edc81cb042fd035438428e3a4f693e77ac3da Open
source-provenance-response application/json; charset=utf-8 6,016 b6a0f6d7a8a29a10bcd04690218b0136b207056d615434210b381d6a9622343e Open
tls-leaf-certificate application/pkix-cert 891 c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "type": "tinfoil",
  "url": "https://inference.tinfoil.sh/",
  "host": "inference.tinfoil.sh",
  "model": null,
  "metadata": {
    "channel": "gateway",
    "repo": "tinfoilsh/confidential-model-router"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "status": "verified",
  "ts": "2026-07-27T17:00:22.530681136+00:00",
  "latency_ms": 4107,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "6c1c9bccf7f3dd4379b6a767a897b856807342cf2072d961a0875665cda4174cd56dd8f8c43a6f5cae15d1140752bb788399c1610785a2940d57e5eed037a871",
    "measurement": "f487f080a82d5af116328ba5907a4ed22cb7b500cfe927182e7a241a6c3ce2b8506f4d7e5b69d6df22072bada797db13",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e"
  },
  "images_verified": true,
  "tls_fingerprint": "1c53d211618948cbdde5cf3d8e3c3fa70f78624e57f90190abe4ef804270ebcb",
  "tls_matches": false,
  "version": "v0.0.131",
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.131",
  "release_digest": "58a0557d0482b10ce29db052586968ef72d84d84e329b1ec0f6988bfd12f2d0a",
  "sigstore_repo": "tinfoilsh/confidential-model-router",
  "config_images": [
    "ghcr.io/tinfoilsh/confidential-model-router@sha256:59e225ae439af0e30ef6c20887363d69ac1d4c16905ead26cc5e6fd107576e05"
  ],
  "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
  "trust_tier": "tee-only",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "not-applicable",
      "detail": "This gateway target does not claim a quote-bound client channel."
    },
    "channel": {
      "state": "not-applicable",
      "detail": "Gateway TLS termination is expected for this target."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "not-applicable",
      "detail": "This target is the gateway workload, not a storefront-to-model route."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f27670b0e8619a36538c9ee5e2fe769e1cd901e567ad0c00d9cb906fd9a5242",
    "parsed_evidence_digest": "d8b919cb91ad2844228c86077094895f654c9ed366c640d6a593d8091043108a",
    "artifact_set_digest": "39bd7ff03eb3e3cdf1181c5b83c7a34d88db28e6329b71aed955e7102a17e792"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-27T17:00:23.013701867+00:00",
      "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
      "sha256": "85d8f0f297bfcc95204228b02a701a567ec55dedab76bc816d058a580b5667bf",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:23 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-27T17:00:23.173392343+00:00",
      "sha256": "4be76b6b71726ac68649e79a4b3ce15fa449aeae4f136a2a0caead1efb683e4d",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-27T17:00:23.733197404+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "dc0ef0cdf98d7b1066bbf6d23f28cc70d410679d07afcd59a2cd99a672398c2e",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-27T17:00:24.668545478+00:00",
      "source_url": "https://inference.tinfoil.sh/",
      "sha256": "c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3",
      "size_bytes": 891,
      "encoding": "binary",
      "metadata": {
        "host": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-27T17:00:24.914113168+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/releases/latest",
      "sha256": "b6a0f6d7a8a29a10bcd04690218b0136b207056d615434210b381d6a9622343e",
      "size_bytes": 6016,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:24 GMT",
        "etag": "W/\"8515fd599ca7cc7c336618ab6b379b7be366ea2f6fb957cb1c18016cbd4c81d5\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Sat, 25 Jul 2026 21:00:53 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-27T17:00:25.575194869+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/attestations/sha256:58a0557d0482b10ce29db052586968ef72d84d84e329b1ec0f6988bfd12f2d0a",
      "sha256": "725f7ae72f036c18ceb39340a54edc81cb042fd035438428e3a4f693e77ac3da",
      "size_bytes": 14528,
      "encoding": "binary",
      "metadata": {
        "date": "Mon, 27 Jul 2026 17:00:25 GMT",
        "etag": "W/\"37e71a5b474706934b6a21316b526d8cbe925d799397611922217ae982039ca4\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}