Notes: Remote Attestation with Constrained Disclosure

Last updated Papers Attestable computing

Remote Attestation with Constrained Disclosure (2023) proposes a selective log disclosure mechanism for TPM-based attestation. It uses non-interactive zero-knowledge (NIZK) proofs over IMA logs to let systems prove integrity without revealing full software inventories.

The selective disclosure primitives introduced here are interesting beyond privacy—for example, for fine-grained trust delegation across supply chains.