Edge Hardware & Model Attestation
Integrity and provenance of edge compute, firmware, models and trusted execution.
Domain controls
The following identifiers, titles, objectives and implementation expectations reproduce the canonical public PAI-SF™ v1.0 Control Catalogue. Evidence requirements, assurance expectations, dependencies, exclusions and conformance relevance remain available in the full catalogue.
Objective: Verify the model/firmware executing at the edge is the authorized version. Requirement: Secure boot with hardware root of trust; runtime attestation at configurable interval; defined safety response (not merely a log entry) on attestation failure.
Objective: Verify physical hardware components have not been substituted or tampered with post-manufacture. Requirement: Hardware bill of materials with cryptographic provenance markers; physical tamper-evidence mechanisms.
Objective: Protect attestation/signing keys from extraction or misuse. Requirement: Keys held in hardware security module or secure element, never exposed to general-purpose compute.