Stored Run Record

Run #1107

Completed Jul 28, 2026, 20:00:27 UTC UTC

Artifact-backed

The run preserves its sanitized policy and targets, parsed decisions, route and gate indexes, plus content-addressed raw evidence artifacts.

Total checks
6
Verified
2
Incomplete
0
Failed
0
Unavailable
4

Recorded Decisions

Checks in this run

Run JSON

Tinfoil

gemma4-31b

Gemma 4 31B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 178 f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "type": "tinfoil",
  "url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
  "host": "gemma4-31b-1.inf10.tinfoil.sh",
  "model": "gemma4-31b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gemma4-31b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "model": "gemma4-31b",
  "status": "unreachable",
  "ts": "2026-07-28T20:00:26.409804790+00:00",
  "latency_ms": 582,
  "error": "Network error: Tinfoil attestation request to gemma4-31b-1.inf10.tinfoil.sh: error sending request for url (https://gemma4-31b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ef4108794e425358928574ca1f8feb760727096ac0021da057be9e626834f834",
    "parsed_evidence_digest": "36f36326fa90452f01476b3e2bacfc89892cb723129778f023d9121bacf0bb69",
    "artifact_set_digest": "27543dbe14082f528a0a8fb14a47cd2b9e67bbb24ae5f44601a21a6bddea542e"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-28T20:00:26.991649333+00:00",
      "source_url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
      "sha256": "f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4",
      "size_bytes": 178,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gemma4",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-120b

GPT-OSS 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 182 7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
  "host": "gpt-oss-120b-1.inf10.tinfoil.sh",
  "model": "gpt-oss-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "model": "gpt-oss-120b",
  "status": "unreachable",
  "ts": "2026-07-28T20:00:26.991917897+00:00",
  "latency_ms": 322,
  "error": "Network error: Tinfoil attestation request to gpt-oss-120b-1.inf10.tinfoil.sh: error sending request for url (https://gpt-oss-120b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "c9c439c312772844b063bb05f9a249d11df2a973d26c9a9e42110131ca05652c",
    "parsed_evidence_digest": "b3b1f0c2850936413873ac7cfedb2a6ef9cf3b5da8021b2447685ba7c09b817e",
    "artifact_set_digest": "b56d1e3918c51aca0b382a0f6843dfd87abe58782a716041380af9a6dfafd566"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-28T20:00:27.313783381+00:00",
      "source_url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
      "sha256": "7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6",
      "size_bytes": 182,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-120b",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-safeguard-120b

GPT-OSS Safeguard 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 226 893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
  "host": "gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev",
  "model": "gpt-oss-safeguard-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-safeguard-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "model": "gpt-oss-safeguard-120b",
  "status": "unreachable",
  "ts": "2026-07-28T20:00:27.314223728+00:00",
  "latency_ms": 60,
  "error": "Network error: Tinfoil attestation request to gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev: error sending request for url (https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "45f9268efa532b4108ef53474486a66295e954252959f4f84c41ec9fb4d9b2c9",
    "parsed_evidence_digest": "1719c4133b9a10dc60100e4789e95991833f9a387166baf3030b13a762f52a4b",
    "artifact_set_digest": "120e821313c6228dea7b4f3806c95c6e94f6486898436b90b5818fad4a847090"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-28T20:00:27.373915224+00:00",
      "source_url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
      "sha256": "893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3",
      "size_bytes": 226,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-safeguard",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

kimi-k2-6

Kimi K2.6

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 172 56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "type": "tinfoil",
  "url": "https://kimi-k2-6.inf13.tinfoil.sh/",
  "host": "kimi-k2-6.inf13.tinfoil.sh",
  "model": "kimi-k2-6",
  "metadata": {
    "repo": "tinfoilsh/confidential-kimi-k2-6-b200"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "model": "kimi-k2-6",
  "status": "unreachable",
  "ts": "2026-07-28T20:00:26.082886042+00:00",
  "latency_ms": 326,
  "error": "Network error: Tinfoil attestation request to kimi-k2-6.inf13.tinfoil.sh: error sending request for url (https://kimi-k2-6.inf13.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f2230f8eac45ce447a029569e565a5dfebe5085a747b08aa5673f73ca0b6a6a",
    "parsed_evidence_digest": "c2f7937f9df975538ce01f68018fe0336e57c6e4fde4dfab68d69016a4fbce43",
    "artifact_set_digest": "e880d6e1f32ffc1d14df2237f7d964358896811a2089b54b1a4260bd0aa3ca8b"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-28T20:00:26.409450415+00:00",
      "source_url": "https://kimi-k2-6.inf13.tinfoil.sh/",
      "sha256": "56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea",
      "size_bytes": 172,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-kimi-k2-6",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

llama3-3-70b

Llama 3.3 70B

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2 Open
provider-attestation-response application/json 605 61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9 Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b Open
source-provenance-response application/json; charset=utf-8 5,998 a9585ad52ea077c1f193ce2d64271ae6f2c5caf0def6014dc8ac7670ad06a385 Open
source-provenance-response application/json; charset=utf-8 14,576 e64a0c163e6deca4a9efe6918ba4ed276586efcce37ba73430662ce05ccd75d1 Open
tls-leaf-certificate application/pkix-cert 1,471 b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "type": "tinfoil",
  "url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
  "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
  "model": "llama3-3-70b",
  "metadata": {
    "repo": "tinfoilsh/confidential-llama3-3-70b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "model": "llama3-3-70b",
  "status": "verified",
  "ts": "2026-07-28T20:00:22.685896939+00:00",
  "latency_ms": 3396,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde68840e1d011d09c176637d27a2c2b62406d2d0795f88c0c452b4a9d561d3bbaaea3d",
    "measurement": "be51bfed5496d1e0a57bc3fc39cb10a35631c7654e6a5fd5f0607ae938f4f10fc44c2ede894d0435253395338ba22131",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2"
  },
  "images_verified": true,
  "tls_fingerprint": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde6884",
  "tls_matches": true,
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.25",
  "release_digest": "8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
  "sigstore_repo": "tinfoilsh/confidential-llama3-3-70b",
  "config_images": [
    "vllm/vllm-openai:v0.22.0@sha256:0fec7ec5f3e6bc168e54899935fb0557da908a4832a1dbc88e2debcf2f889416"
  ],
  "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
  "trust_tier": "hw-verified-tls",
  "route": {
    "route_binding": "verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "verified",
      "detail": "A live TLS handshake proves possession of the quote-bound private key."
    },
    "channel": {
      "state": "verified",
      "detail": "The application channel key is bound to attested evidence."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "verified",
      "detail": "A request-bound route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ffdbe1888c9b018da94094537c21e3f86676a8687dffbebdff585b35b5e85c29",
    "parsed_evidence_digest": "0b247f586a273c4a0b069706d429cc6efbb0c99b512a5d3527c4102309207179",
    "artifact_set_digest": "a4e11e26c68d39aa8a943c21b64cc057f57671885049a47cd46eba5b1e59a782"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-28T20:00:23.216216422+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
      "sha256": "61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:38 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-28T20:00:23.383662718+00:00",
      "sha256": "8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-28T20:00:23.384952990+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-28T20:00:23.969407841+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
      "sha256": "b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3",
      "size_bytes": 1471,
      "encoding": "binary",
      "metadata": {
        "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-28T20:00:24.228093692+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/releases/latest",
      "sha256": "a9585ad52ea077c1f193ce2d64271ae6f2c5caf0def6014dc8ac7670ad06a385",
      "size_bytes": 5998,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:24 GMT",
        "etag": "W/\"bc90434ab0ce652de919563818d5774eb1ec74b42c46b4d7cf318f164eb2b1cb\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Fri, 05 Jun 2026 21:21:37 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-28T20:00:24.866762601+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/attestations/sha256:8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
      "sha256": "e64a0c163e6deca4a9efe6918ba4ed276586efcce37ba73430662ce05ccd75d1",
      "size_bytes": 14576,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:24 GMT",
        "etag": "W/\"2db9901c66a05a56734594acfac9df8ce7c74cf0c7bd9da605aec32edfa46198\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}

Tinfoil

Router

Router

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2 Open
provider-attestation-response application/json 605 85d8f0f297bfcc95204228b02a701a567ec55dedab76bc816d058a580b5667bf Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 4be76b6b71726ac68649e79a4b3ce15fa449aeae4f136a2a0caead1efb683e4d Open
source-provenance-response application/json; charset=utf-8 6,017 0e40ba2a07a229aa51ac170a934a9d38971fb425bcd6bb14d64d92b079e54cd7 Open
source-provenance-response application/json; charset=utf-8 14,526 baf61f6798d2380e98a28968960dbe6822a9171cbbfd228caf8c15873f02c167 Open
tls-leaf-certificate application/pkix-cert 891 c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "type": "tinfoil",
  "url": "https://inference.tinfoil.sh/",
  "host": "inference.tinfoil.sh",
  "model": null,
  "metadata": {
    "channel": "gateway",
    "repo": "tinfoilsh/confidential-model-router"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "status": "verified",
  "ts": "2026-07-28T20:00:18.167398141+00:00",
  "latency_ms": 4518,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "6c1c9bccf7f3dd4379b6a767a897b856807342cf2072d961a0875665cda4174cd56dd8f8c43a6f5cae15d1140752bb788399c1610785a2940d57e5eed037a871",
    "measurement": "f487f080a82d5af116328ba5907a4ed22cb7b500cfe927182e7a241a6c3ce2b8506f4d7e5b69d6df22072bada797db13",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2"
  },
  "images_verified": true,
  "tls_fingerprint": "1c53d211618948cbdde5cf3d8e3c3fa70f78624e57f90190abe4ef804270ebcb",
  "tls_matches": false,
  "version": "v0.0.131",
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.131",
  "release_digest": "58a0557d0482b10ce29db052586968ef72d84d84e329b1ec0f6988bfd12f2d0a",
  "sigstore_repo": "tinfoilsh/confidential-model-router",
  "config_images": [
    "ghcr.io/tinfoilsh/confidential-model-router@sha256:59e225ae439af0e30ef6c20887363d69ac1d4c16905ead26cc5e6fd107576e05"
  ],
  "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
  "trust_tier": "tee-only",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "not-applicable",
      "detail": "This gateway target does not claim a quote-bound client channel."
    },
    "channel": {
      "state": "not-applicable",
      "detail": "Gateway TLS termination is expected for this target."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "not-applicable",
      "detail": "This target is the gateway workload, not a storefront-to-model route."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f27670b0e8619a36538c9ee5e2fe769e1cd901e567ad0c00d9cb906fd9a5242",
    "parsed_evidence_digest": "c0dde546635bfe475f4e4ba8daec668608804ac731d9efb5da3271745e0eac17",
    "artifact_set_digest": "4f2e203aefd118f98086b1c7db44ed1cf444e29b6692078013dbeb45d82487a1"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-28T20:00:18.673086387+00:00",
      "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
      "sha256": "85d8f0f297bfcc95204228b02a701a567ec55dedab76bc816d058a580b5667bf",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:18 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-28T20:00:18.839197117+00:00",
      "sha256": "4be76b6b71726ac68649e79a4b3ce15fa449aeae4f136a2a0caead1efb683e4d",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-28T20:00:19.449396194+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "5abf3306b5e21eb4619df0843d7f0036cf5871811576fcc000512c5f3770dce2",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-28T20:00:20.367162050+00:00",
      "source_url": "https://inference.tinfoil.sh/",
      "sha256": "c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3",
      "size_bytes": 891,
      "encoding": "binary",
      "metadata": {
        "host": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-28T20:00:20.627872521+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/releases/latest",
      "sha256": "0e40ba2a07a229aa51ac170a934a9d38971fb425bcd6bb14d64d92b079e54cd7",
      "size_bytes": 6017,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:20 GMT",
        "etag": "W/\"17b29b1f1cc0c93480caede9d1503d0934004151914fb9ac21e3677e3decefe1\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Sat, 25 Jul 2026 21:00:53 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-28T20:00:21.276539193+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/attestations/sha256:58a0557d0482b10ce29db052586968ef72d84d84e329b1ec0f6988bfd12f2d0a",
      "sha256": "baf61f6798d2380e98a28968960dbe6822a9171cbbfd228caf8c15873f02c167",
      "size_bytes": 14526,
      "encoding": "binary",
      "metadata": {
        "date": "Tue, 28 Jul 2026 20:00:21 GMT",
        "etag": "W/\"1b3407e507653c66e233c126ed928b8748094dae253b3bc5779b2ab2e689c844\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}