Hacker News .hnnew | past | comments | ask | show | jobs | submitlogin

Yes we do, but the load balancer also runs inside the enclave and is attested: https://github.com/tinfoilsh/confidential-model-router

In turn, that attests the model enclaves, for instance, see https://github.com/tinfoilsh/confidential-deepseek-v4-pro. The model repo/release that the model router attests is included in the attestation config, which creates a chain of trust.

Also see https://docs.tinfoil.sh/verification/attestation-architectur...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: