Mechanism · Safeguard attestation
Measurements may omit behaviour-relevant configuration or runtime changes
On this page
SignificantTheoretical argumentOpen
Every component that influences inference behaviour must be covered by the launch measurement, including feature flags, environment variables and invocation arguments. A launch measurement also does not show that a program keeps running as measured if the kernel is later compromised.
Sources: [8]