Stored Run Record

Run #1887

Completed Aug 30, 2026, 08:00:22 UTC UTC

Artifact-backed

The run preserves its sanitized policy and targets, parsed decisions, route and gate indexes, plus content-addressed raw evidence artifacts.

Total checks
9
Verified
0
Incomplete
0
Failed
9
Unavailable
0

Recorded Decisions

Checks in this run

Run JSON

Privatemode

deepseek-ocr-2

Deepseek Ocr 2

failed

Captured evidence

KindTypeBytesSHA-256Artifact
independent-verifier-stderr text/plain 127 080177ad3753dc668d7fda270774224a55231d079c188d5ef71f4a90140dd128 Open
independent-verifier-stdout text/plain 0 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 Open
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-deepseek-ocr-2",
  "label": "Deepseek Ocr 2",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "deepseek-ocr-2",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-deepseek-ocr-2",
  "label": "Deepseek Ocr 2",
  "model": "deepseek-ocr-2",
  "status": "failed",
  "ts": "2026-08-30T08:00:19.559326229+00:00",
  "latency_ms": 1881,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "e52f0f6855174e8917125d218d04ab574d0affe03b3bb9d2a39cadad810019ee",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "e4306fd5b1873e26f5f49f66c2d2e27628d5015aaab86bf56c47efc8fa4cafc7"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:19.796926904+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:20 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "independent-verifier-stdout",
      "media_type": "text/plain",
      "collected_at": "2026-08-30T08:00:21.438407155+00:00",
      "sha256": "e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855",
      "size_bytes": 0,
      "encoding": "binary",
      "metadata": {
        "exit_status": "exit status: 1"
      }
    },
    {
      "kind": "independent-verifier-stderr",
      "media_type": "text/plain",
      "collected_at": "2026-08-30T08:00:21.438430469+00:00",
      "sha256": "080177ad3753dc668d7fda270774224a55231d079c188d5ef71f4a90140dd128",
      "size_bytes": 127,
      "encoding": "binary",
      "metadata": {
        "exit_status": "exit status: 1"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:21.439472043+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-deepseek-ocr-2",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

glm-5.2

Glm 5.2

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-glm-5-2",
  "label": "Glm 5.2",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "glm-5.2",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-glm-5-2",
  "label": "Glm 5.2",
  "model": "glm-5.2",
  "status": "failed",
  "ts": "2026-08-30T08:00:21.441308109+00:00",
  "latency_ms": 149,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "27d184e46c4b638b0d173db72bbccb57045a80d0c34d97a26c304e20a7706c3c",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:21.589815060+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:22 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:21.590516806+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-glm-5-2",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

glm-latest

Glm Latest

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-glm-latest",
  "label": "Glm Latest",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "glm-latest",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-glm-latest",
  "label": "Glm Latest",
  "model": "glm-latest",
  "status": "failed",
  "ts": "2026-08-30T08:00:21.590842718+00:00",
  "latency_ms": 125,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "fc78b76e059aa1c1189009ed341db421984c45b52971fb899c9181b5fe23756e",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:21.715294647+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:22 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:21.716063760+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-glm-latest",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

gpt-oss-120b

Gpt Oss 120b

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-gpt-oss-120b",
  "label": "Gpt Oss 120b",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "gpt-oss-120b",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-gpt-oss-120b",
  "label": "Gpt Oss 120b",
  "model": "gpt-oss-120b",
  "status": "failed",
  "ts": "2026-08-30T08:00:21.716466205+00:00",
  "latency_ms": 128,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "026ec7c501b4e6e8b4cf73f5da2d04198e4ccd5632b942c1553c669d7fba4d87",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:21.843748054+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:22 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:21.845121312+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-gpt-oss-120b",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

gpt-oss-latest

Gpt Oss Latest

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-gpt-oss-latest",
  "label": "Gpt Oss Latest",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "gpt-oss-latest",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-gpt-oss-latest",
  "label": "Gpt Oss Latest",
  "model": "gpt-oss-latest",
  "status": "failed",
  "ts": "2026-08-30T08:00:21.845435782+00:00",
  "latency_ms": 122,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "968bfa9ba0053eef33ff595bdd0efb1e874039f6b4bc12254bfa8d2254f8ab2c",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:21.965420968+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:22 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:21.967034225+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-gpt-oss-latest",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

kimi-k2.6

Kimi K2.6

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-kimi-k2-6",
  "label": "Kimi K2.6",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "kimi-k2.6",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-kimi-k2-6",
  "label": "Kimi K2.6",
  "model": "kimi-k2.6",
  "status": "failed",
  "ts": "2026-08-30T08:00:21.967544733+00:00",
  "latency_ms": 134,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "6c73cce717bf9f128c0341a676c87bb7ca35e493af74354aaa855736f01cecd4",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:22.101372918+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:23 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:22.102110282+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-kimi-k2-6",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

qwen3-embedding-4b

Qwen3 Embedding 4b

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-qwen3-embedding-4b",
  "label": "Qwen3 Embedding 4b",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "qwen3-embedding-4b",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-qwen3-embedding-4b",
  "label": "Qwen3 Embedding 4b",
  "model": "qwen3-embedding-4b",
  "status": "failed",
  "ts": "2026-08-30T08:00:22.102360160+00:00",
  "latency_ms": 122,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "b4d1e1ff987f3c2da406a3a46c73c6e3eb82c5f43922bdc1528f7fac7cb9a2bd",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:22.223143094+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:23 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:22.224161745+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-qwen3-embedding-4b",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

voxtral-mini-3b

Voxtral Mini 3b

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-voxtral-mini-3b",
  "label": "Voxtral Mini 3b",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "voxtral-mini-3b",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-voxtral-mini-3b",
  "label": "Voxtral Mini 3b",
  "model": "voxtral-mini-3b",
  "status": "failed",
  "ts": "2026-08-30T08:00:22.224573458+00:00",
  "latency_ms": 118,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "856d409031b03d7f9d744679b353cbcb80fa2d25143ae3c649c70f8dca07e0d4",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:22.342073200+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:23 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:22.342750421+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-voxtral-mini-3b",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}

Privatemode

whisper-large-v3

Whisper Large V3

failed

Captured evidence

KindTypeBytesSHA-256Artifact
provider-manifest-response binary/octet-stream 6,088 1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb Open
verification-error text/plain; charset=utf-8 337 c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032 Open
Sanitized target
{
  "provider": "privatemode",
  "id": "privatemode-whisper-large-v3",
  "label": "Whisper Large V3",
  "type": "privatemode",
  "url": "http://localhost:58080/",
  "host": null,
  "model": "whisper-large-v3",
  "metadata": {
    "proxy_url": "http://localhost:58080"
  }
}
Parsed decision JSON
{
  "provider": "privatemode",
  "id": "privatemode-whisper-large-v3",
  "label": "Whisper Large V3",
  "model": "whisper-large-v3",
  "status": "failed",
  "ts": "2026-08-30T08:00:22.343003145+00:00",
  "latency_ms": 129,
  "error": "Trust decision failed: Independent Privatemode Contrast verification failed: Contrast verifier exited with exit status: 1: Error: getting manifests: getting manifests: rpc error: code = Unavailable desc = name resolver error: produced zero addresses; proxy http://localhost:58080/v1/models is not sufficient for a verified trust decision",
  "manifest_pinned_measurements": [
    "manifest-sha256:1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
    "SNP/Genoa:ea6a66550b8b0117ba8dd0a8",
    "TDX:a7568bf0b3630aa33402bfec"
  ],
  "manifest_workloads": [
    "coordinator",
    "deepseek-ocr-2",
    "glm-5-2",
    "gpt-oss-120b",
    "kimi-k2-6",
    "whisper-qwen3-voxtral"
  ],
  "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
  "trust_tier": "none",
  "route": {
    "route_binding": "not-verified",
    "workload_operator": {
      "organization": "edgeless-systems",
      "confidence": "declared",
      "evidence": "Privatemode architecture."
    },
    "tee_platform": {
      "organization": "contrast",
      "confidence": "verified",
      "evidence": "Privatemode architecture and active Contrast manifest evidence."
    },
    "cloud_host": {
      "organization": "scaleway",
      "confidence": "declared",
      "evidence": "Privatemode architecture documentation."
    }
  },
  "gates": {
    "hardware": {
      "state": "failed",
      "detail": "Required hardware evidence was not verified."
    },
    "tcb": {
      "state": "failed",
      "detail": "TCB policy did not produce verified evidence."
    },
    "freshness": {
      "state": "not-proven",
      "detail": "No verifier-owned challenge binding was exposed."
    },
    "channel": {
      "state": "not-proven",
      "detail": "No attested application channel binding was verified."
    },
    "workload": {
      "state": "verified",
      "detail": "Measured workload evidence matched the configured expectation."
    },
    "source_provenance": {
      "state": "not-proven",
      "detail": "Registry existence alone is not source provenance."
    },
    "route": {
      "state": "not-proven",
      "detail": "No request-bound storefront-to-backend route receipt was verified."
    }
  },
  "evidence_meta": {
    "verifier_version": "0.2.2",
    "policy_hash": "12d41db2274558f7ee7c9ab100b1a897f49bc901b1ae5c1b0d35aa2deca7813d",
    "target_hash": "438aafe83b34a5ced795f901bd8e124ad7ffd566ab04943b43c93afe4534a092",
    "parsed_evidence_digest": "23d4730c37f48bcd3eee5457290ef9400df8320b104dc97c4558b9f971362d78",
    "artifact_set_digest": "cf766b4fd69e0ed5841b4152b990e795bcc8d383843bbed18711d11b7ee8750e"
  },
  "evidence_artifacts": [
    {
      "kind": "provider-manifest-response",
      "media_type": "binary/octet-stream",
      "collected_at": "2026-08-30T08:00:22.471277958+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "1d65f5646afdab15809d75f3682c606488416743e4240eef40747ade241eb7fb",
      "size_bytes": 6088,
      "encoding": "binary",
      "metadata": {
        "date": "Sun, 30 Aug 2026 08:00:23 GMT",
        "etag": "\"91fbebc559c3c6d43bb474ada1544e04\"",
        "http_method": "GET",
        "http_status": "200",
        "last_modified": "Thu, 27 Aug 2026 12:29:23 GMT"
      }
    },
    {
      "kind": "verification-error",
      "media_type": "text/plain; charset=utf-8",
      "collected_at": "2026-08-30T08:00:22.472027024+00:00",
      "source_url": "https://cdn.confidential.cloud/privatemode/v2/manifest.json",
      "sha256": "c6f6c697ad5ae975e82c773df5a0384d92c46e385d897bab3d0b3466f123d032",
      "size_bytes": 337,
      "encoding": "utf-8",
      "metadata": {
        "check_id": "privatemode-whisper-large-v3",
        "provider": "privatemode",
        "status": "failed"
      }
    }
  ]
}