Stored Run Record

Run #1116

Completed Jul 29, 2026, 05:00:29 UTC UTC

Artifact-backed

The run preserves its sanitized policy and targets, parsed decisions, route and gate indexes, plus content-addressed raw evidence artifacts.

Total checks
6
Verified
2
Incomplete
0
Failed
0
Unavailable
4

Recorded Decisions

Checks in this run

Run JSON

Tinfoil

gemma4-31b

Gemma 4 31B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 178 f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "type": "tinfoil",
  "url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
  "host": "gemma4-31b-1.inf10.tinfoil.sh",
  "model": "gemma4-31b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gemma4-31b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gemma4",
  "label": "Gemma 4 31B",
  "model": "gemma4-31b",
  "status": "unreachable",
  "ts": "2026-07-29T05:00:28.986724166+00:00",
  "latency_ms": 336,
  "error": "Network error: Tinfoil attestation request to gemma4-31b-1.inf10.tinfoil.sh: error sending request for url (https://gemma4-31b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ef4108794e425358928574ca1f8feb760727096ac0021da057be9e626834f834",
    "parsed_evidence_digest": "36f36326fa90452f01476b3e2bacfc89892cb723129778f023d9121bacf0bb69",
    "artifact_set_digest": "27543dbe14082f528a0a8fb14a47cd2b9e67bbb24ae5f44601a21a6bddea542e"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-29T05:00:29.323192075+00:00",
      "source_url": "https://gemma4-31b-1.inf10.tinfoil.sh/",
      "sha256": "f63e8fa50b5c9cf468d85c09581d83c4a4a618b2ab132ce45928a8215e869aa4",
      "size_bytes": 178,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gemma4",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-120b

GPT-OSS 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 182 7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
  "host": "gpt-oss-120b-1.inf10.tinfoil.sh",
  "model": "gpt-oss-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-120b",
  "label": "GPT-OSS 120B",
  "model": "gpt-oss-120b",
  "status": "unreachable",
  "ts": "2026-07-29T05:00:29.323632442+00:00",
  "latency_ms": 336,
  "error": "Network error: Tinfoil attestation request to gpt-oss-120b-1.inf10.tinfoil.sh: error sending request for url (https://gpt-oss-120b-1.inf10.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "c9c439c312772844b063bb05f9a249d11df2a973d26c9a9e42110131ca05652c",
    "parsed_evidence_digest": "b3b1f0c2850936413873ac7cfedb2a6ef9cf3b5da8021b2447685ba7c09b817e",
    "artifact_set_digest": "b56d1e3918c51aca0b382a0f6843dfd87abe58782a716041380af9a6dfafd566"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-29T05:00:29.659869668+00:00",
      "source_url": "https://gpt-oss-120b-1.inf10.tinfoil.sh/",
      "sha256": "7f1b0bef4e696392bf0955c1356cc7ed8437edcf7f60ddf5d8819e3bda7af0f6",
      "size_bytes": 182,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-120b",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

gpt-oss-safeguard-120b

GPT-OSS Safeguard 120B

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 226 893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "type": "tinfoil",
  "url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
  "host": "gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev",
  "model": "gpt-oss-safeguard-120b",
  "metadata": {
    "repo": "tinfoilsh/confidential-gpt-oss-safeguard-120b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-gpt-oss-safeguard",
  "label": "GPT-OSS Safeguard 120B",
  "model": "gpt-oss-safeguard-120b",
  "status": "unreachable",
  "ts": "2026-07-29T05:00:29.660342416+00:00",
  "latency_ms": 61,
  "error": "Network error: Tinfoil attestation request to gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev: error sending request for url (https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "45f9268efa532b4108ef53474486a66295e954252959f4f84c41ec9fb4d9b2c9",
    "parsed_evidence_digest": "1719c4133b9a10dc60100e4789e95991833f9a387166baf3030b13a762f52a4b",
    "artifact_set_digest": "120e821313c6228dea7b4f3806c95c6e94f6486898436b90b5818fad4a847090"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-29T05:00:29.721692896+00:00",
      "source_url": "https://gpt-oss-safeguard-120b.tinfoil.containers.tinfoil.dev/",
      "sha256": "893f3ebf08d71f42add03333df7f462d4dd8fed22366da22db18e4d90513e5f3",
      "size_bytes": 226,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-gpt-oss-safeguard",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

kimi-k2-6

Kimi K2.6

unreachable

Captured evidence

KindTypeBytesSHA-256Artifact
verification-error text/plain; charset=utf-8 172 56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "type": "tinfoil",
  "url": "https://kimi-k2-6.inf13.tinfoil.sh/",
  "host": "kimi-k2-6.inf13.tinfoil.sh",
  "model": "kimi-k2-6",
  "metadata": {
    "repo": "tinfoilsh/confidential-kimi-k2-6-b200"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-kimi-k2-6",
  "label": "Kimi K2.6",
  "model": "kimi-k2-6",
  "status": "unreachable",
  "ts": "2026-07-29T05:00:28.652407313+00:00",
  "latency_ms": 334,
  "error": "Network error: Tinfoil attestation request to kimi-k2-6.inf13.tinfoil.sh: error sending request for url (https://kimi-k2-6.inf13.tinfoil.sh/.well-known/tinfoil-attestation)",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "declared",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "not-proven",
      "detail": "No current hardware evidence was available."
    },
    "tcb": {
      "state": "not-proven",
      "detail": "TCB policy could not be evaluated."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "not-proven",
      "detail": "No expected workload measurement was verified."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f2230f8eac45ce447a029569e565a5dfebe5085a747b08aa5673f73ca0b6a6a",
    "parsed_evidence_digest": "c2f7937f9df975538ce01f68018fe0336e57c6e4fde4dfab68d69016a4fbce43",
    "artifact_set_digest": "e880d6e1f32ffc1d14df2237f7d964358896811a2089b54b1a4260bd0aa3ca8b"
  },
  "evidence_artifacts": [
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-07-29T05:00:28.986243894+00:00",
      "source_url": "https://kimi-k2-6.inf13.tinfoil.sh/",
      "sha256": "56bf93b0ca2e26adbe1494a33b034fc67d752354c6e50eef01e9bcc4c6aa6cea",
      "size_bytes": 172,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "tinfoil-kimi-k2-6",
        "provider": "tinfoil",
        "status": "unreachable"
      }
    }
  ]
}

Tinfoil

llama3-3-70b

Llama 3.3 70B

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7 Open
provider-attestation-response application/json 605 61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9 Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b Open
source-provenance-response application/json; charset=utf-8 14,582 5d53765d514883e6f2529ea7c05f10132dda8c9198c590397889ec232734292e Open
source-provenance-response application/json; charset=utf-8 5,998 973cb315848ad194ab46c7f13884f17a3edf4a4236d8b0d0302f7b2d6bb6c31e Open
tls-leaf-certificate application/pkix-cert 1,471 b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "type": "tinfoil",
  "url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
  "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
  "model": "llama3-3-70b",
  "metadata": {
    "repo": "tinfoilsh/confidential-llama3-3-70b"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-llama",
  "label": "Llama 3.3 70B",
  "model": "llama3-3-70b",
  "status": "verified",
  "ts": "2026-07-29T05:00:25.236240257+00:00",
  "latency_ms": 3416,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde68840e1d011d09c176637d27a2c2b62406d2d0795f88c0c452b4a9d561d3bbaaea3d",
    "measurement": "be51bfed5496d1e0a57bc3fc39cb10a35631c7654e6a5fd5f0607ae938f4f10fc44c2ede894d0435253395338ba22131",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7"
  },
  "images_verified": true,
  "tls_fingerprint": "281ad7bea31b1c428d5100ee142478e76ab48f091b84e4f9505df75b1cde6884",
  "tls_matches": true,
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.25",
  "release_digest": "8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
  "sigstore_repo": "tinfoilsh/confidential-llama3-3-70b",
  "config_images": [
    "vllm/vllm-openai:v0.22.0@sha256:0fec7ec5f3e6bc168e54899935fb0557da908a4832a1dbc88e2debcf2f889416"
  ],
  "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
  "trust_tier": "hw-verified-tls",
  "route": {
    "route_binding": "verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "verified",
      "detail": "A live TLS handshake proves possession of the quote-bound private key."
    },
    "channel": {
      "state": "verified",
      "detail": "The application channel key is bound to attested evidence."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "verified",
      "detail": "A request-bound route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "ffdbe1888c9b018da94094537c21e3f86676a8687dffbebdff585b35b5e85c29",
    "parsed_evidence_digest": "7d93f241b0f9f01c1d53b49a85e52a65080b2c4362b12a05ac5a0fd2a3cea6d1",
    "artifact_set_digest": "83380e38e55a2b82576e2c156e6bff8e0f87685b4856795ef17dfa06e2b1b1ec"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-29T05:00:25.794681717+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/.well-known/tinfoil-attestation",
      "sha256": "61e16470bcb42e88e58af563f1ac0e1a06c575a2dd76a27091cd7b5d2bd7daa9",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:41 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-29T05:00:25.964579014+00:00",
      "sha256": "8ff5072809775d77dc0faa4c4a505c934e0cb8d9bbbbd8af494aed9d8f1f236b",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-29T05:00:25.966643588+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "llama3-3-70b.tinfoil.containers.tinfoil.dev",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-29T05:00:26.533847755+00:00",
      "source_url": "https://llama3-3-70b.tinfoil.containers.tinfoil.dev/",
      "sha256": "b27b73f22e0f0cb2e1ba13f5c2bae41741272991d8857c39ac31ea4e618710b3",
      "size_bytes": 1471,
      "encoding": "binary",
      "metadata": {
        "host": "llama3-3-70b.tinfoil.containers.tinfoil.dev"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-29T05:00:26.790642787+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/releases/latest",
      "sha256": "973cb315848ad194ab46c7f13884f17a3edf4a4236d8b0d0302f7b2d6bb6c31e",
      "size_bytes": 5998,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:26 GMT",
        "etag": "W/\"390940e9030b780f0744796f193807767ee52dc85eb4beb357987aae912a383f\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Fri, 05 Jun 2026 21:21:37 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-29T05:00:27.423451247+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-llama3-3-70b/attestations/sha256:8a974719331bc6e5ed638b5f95a769a650123a5699ec5bce5dc5a2dced1537d1",
      "sha256": "5d53765d514883e6f2529ea7c05f10132dda8c9198c590397889ec232734292e",
      "size_bytes": 14582,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:27 GMT",
        "etag": "W/\"e926f7fa990c87893f235e9c79c2b0d4e2560a0c02270510c2e981b12bad849f\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}

Tinfoil

Router

Router

verified

Captured evidence

KindTypeBytesSHA-256Artifact
amd-vcek-certificate application/pkix-cert 1,347 dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7 Open
provider-attestation-response application/json 605 45d31c397c4188f8748de0e075787673072e38ef5b6dd76857c8d5ad92972416 Open
sev-snp-report application/vnd.amd.sev-snp.report 1,184 aa69e07b7c0759a5b3b0c0018311036ab1893c268e9d6bce1cde0fb2d12992c8 Open
source-provenance-response application/json; charset=utf-8 6,014 286b72428da9e970de01d439c715af99cf1aa87441173cfe5ca334075a6f6aa5 Open
source-provenance-response application/json; charset=utf-8 14,132 a2c235fd38147b1ef9f88c7bb1bcec4d54edc91b87985d1ba8abac1e96fcca50 Open
tls-leaf-certificate application/pkix-cert 891 c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3 Open
Sanitized target
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "type": "tinfoil",
  "url": "https://inference.tinfoil.sh/",
  "host": "inference.tinfoil.sh",
  "model": null,
  "metadata": {
    "channel": "gateway",
    "repo": "tinfoilsh/confidential-model-router"
  }
}
Parsed decision JSON
{
  "provider": "tinfoil",
  "id": "tinfoil-router",
  "label": "Router",
  "status": "verified",
  "ts": "2026-07-29T05:00:16.484358272+00:00",
  "latency_ms": 8751,
  "snp": {
    "chip_id": "1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44",
    "report_data": "30a3e30a423a8d63ac6ce0e53a18bb199fc3b4ca737ccbf45c67d1d5fd475637b168a38498a82e25fbd07a047d8b05e5aa45dc50ea559453647590871e095163",
    "measurement": "3dcc59ab8bc5c8e8f0524df8bd52f8e709446fdcd8d2086e34b0fbb6e93359695fc6f59477641eea83e611adafc347ed",
    "family_id": "00000000000000000000000000000000",
    "image_id": "00000000000000000000000000000000",
    "generation": "Genoa",
    "current_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "reported_tcb": "bl=10 tee=0 snp=23 ucode=84",
    "policy_bits": 196608,
    "platform_smt": true,
    "platform_tsme": true,
    "debug_allowed": false,
    "vcek_fingerprint": "dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7"
  },
  "images_verified": true,
  "tls_fingerprint": "1c53d211618948cbdde5cf3d8e3c3fa70f78624e57f90190abe4ef804270ebcb",
  "tls_matches": false,
  "version": "v0.0.133",
  "sigstore_match": true,
  "sigstore_bundle_verified": true,
  "sigstore_tag": "v0.0.133",
  "release_digest": "fd9e50ea4a4d97d9797f78cb088240c129e02b6902acab277d8283bbd77d9a21",
  "sigstore_repo": "tinfoilsh/confidential-model-router",
  "config_images": [
    "ghcr.io/tinfoilsh/confidential-model-router@sha256:a204e4b55bec9d0a7ad025c958442fec41cfddcf2363ad1ea3eb34f69d002887"
  ],
  "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
  "trust_tier": "tee-only",
  "route": {
    "route_binding": "not-verified",
    "router": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil router endpoint."
    },
    "workload_operator": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Configured direct Tinfoil workload endpoint."
    },
    "tee_platform": {
      "organization": "tinfoil",
      "confidence": "verified",
      "evidence": "Tinfoil target and deployment evidence."
    }
  },
  "gates": {
    "hardware": {
      "state": "verified",
      "detail": "Vendor-rooted hardware evidence was verified."
    },
    "tcb": {
      "state": "verified",
      "detail": "The quote passed the configured TCB policy."
    },
    "freshness": {
      "state": "not-applicable",
      "detail": "This gateway target does not claim a quote-bound client channel."
    },
    "channel": {
      "state": "not-applicable",
      "detail": "Gateway TLS termination is expected for this target."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "verified",
      "detail": "Signed source/release provenance matched the measured workload."
    },
    "route": {
      "state": "not-applicable",
      "detail": "This target is the gateway workload, not a storefront-to-model route."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "3f27670b0e8619a36538c9ee5e2fe769e1cd901e567ad0c00d9cb906fd9a5242",
    "parsed_evidence_digest": "01fb9b310a347db500e16ca30be2e7b8aa9b0249ba69698e97f8a49a2ca8eaef",
    "artifact_set_digest": "6866c64bc1102e2f1ce10dd4b7970b10dc8e4a3171f696212d3b0f68aad60923"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-attestation-response",
      "media_type": "application/json",
      "collected_at": "2026-07-29T05:00:16.992230226+00:00",
      "source_url": "https://inference.tinfoil.sh/.well-known/tinfoil-attestation",
      "sha256": "45d31c397c4188f8748de0e075787673072e38ef5b6dd76857c8d5ad92972416",
      "size_bytes": 605,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:15 GMT",
        "http_method": "GET",
        "http_status": "200"
      }
    },
    {
      "kind": "sev-snp-report",
      "media_type": "application/vnd.amd.sev-snp.report",
      "collected_at": "2026-07-29T05:00:17.160246112+00:00",
      "sha256": "aa69e07b7c0759a5b3b0c0018311036ab1893c268e9d6bce1cde0fb2d12992c8",
      "size_bytes": 1184,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "amd-vcek-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-29T05:00:17.808516881+00:00",
      "source_url": "https://kdsintf.amd.com/vcek/v1/Genoa/1af1aa6c1f56037a05849a59b8815cf909583f9ba9ef2f053218c437f33ba183e4e415b039b37f8205250ad15f8b88a0a3add9f4c081c0779a48ed2214378e44?blSPL=10&teeSPL=0&snpSPL=23&ucodeSPL=84",
      "sha256": "dbf6b04eadd1115270d994c1bad55bca7dee4ddd13eb5cfddf4307b018c681f7",
      "size_bytes": 1347,
      "encoding": "binary",
      "metadata": {
        "backend_id": "inference.tinfoil.sh",
        "product": "Genoa",
        "source": "amd-kds"
      }
    },
    {
      "kind": "tls-leaf-certificate",
      "media_type": "application/pkix-cert",
      "collected_at": "2026-07-29T05:00:18.852274774+00:00",
      "source_url": "https://inference.tinfoil.sh/",
      "sha256": "c7a815c9c4212098226ac3a8f69e14ac20fcee666f496298bbb7945216719aa3",
      "size_bytes": 891,
      "encoding": "binary",
      "metadata": {
        "host": "inference.tinfoil.sh"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-29T05:00:19.130931536+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/releases/latest",
      "sha256": "286b72428da9e970de01d439c715af99cf1aa87441173cfe5ca334075a6f6aa5",
      "size_bytes": 6014,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:19 GMT",
        "etag": "W/\"8354879fa04d2d101f66b49187e95287f985669bdaa5b3b9ed14db721ce2b326\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Wed, 29 Jul 2026 04:10:09 GMT"
      }
    },
    {
      "kind": "source-provenance-response",
      "media_type": "application/json; charset=utf-8",
      "collected_at": "2026-07-29T05:00:19.769258723+00:00",
      "source_url": "https://api.github.com/repos/tinfoilsh/confidential-model-router/attestations/sha256:fd9e50ea4a4d97d9797f78cb088240c129e02b6902acab277d8283bbd77d9a21",
      "sha256": "a2c235fd38147b1ef9f88c7bb1bcec4d54edc91b87985d1ba8abac1e96fcca50",
      "size_bytes": 14132,
      "encoding": "binary",
      "metadata": {
        "date": "Wed, 29 Jul 2026 05:00:19 GMT",
        "etag": "W/\"1826d70668d1f6ea8c993b22bc896eaf344c287f75a7292c214770818ea72b92\"",
        "http_method": "GET",
        "http_status": "200"
      }
    }
  ]
}