Does this also solve provable compute as a side effect? Since the compute is fully encrypted end-to-end, the host wouldn’t be able to modify the program and still give valid results?
So a caller could run a program on untrusted hardware and trust that the hardware actually ran the program?
So a caller could run a program on untrusted hardware and trust that the hardware actually ran the program?