Kettle generates hardware-attested provenance documents inside reproducible confidential VMs so that a single signature check against the TEE vendor root plus digest comparisons verifies that a binary matches its claimed build inputs.
Document 70366
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2026 1verdicts
UNVERDICTED 1representative citing papers
citing papers explorer
-
Kettle: Attested builds for verifiable software provenance
Kettle generates hardware-attested provenance documents inside reproducible confidential VMs so that a single signature check against the TEE vendor root plus digest comparisons verifies that a binary matches its claimed build inputs.