Security
A fake chip can claim anything. It still can't sign like one.
If software could impersonate a security chip, one attacker could look like thousands of devices and everything else here would be theatre. It can't: no genuine manufacturer signature, no pass — whatever the device calls itself.
Which devices count
You choose the bar. We enforce the signature.
Some customers run in the cloud and want their own instances to count, so we label what kind of chip we're looking at and let your policy decide. The label is a convenience; the manufacturer signature is the defense, and it runs regardless of what the chip claims to be.
hardware
groupDiscrete TPM chips soldered to motherboards. Highest assurance.
HardwareDiscreteInfineon
Infineon OPTIGA RSA / ECC, IFX TPM EK Root CA
HardwareDiscreteStMicro
STMicro ST TPM, GlobalSign Trusted Computing CA
HardwareDiscreteNuvoton
NTC TPM EK Root CA, Nuvoton TPM Root CA 1xxx/2xxx
HardwareDiscreteOther
Vendor unknown but chain validates against a pinned vendor root.
firmware-tpm
groupIn-CPU TPMs. Cannot be swapped without replacing the CPU.
FirmwareTpmIntelPtt
Intel Platform Trust Technology, ODCA-backed.
FirmwareTpmAmdFtpm
AMD fTPM. Voltage-glitch risk on Zen 2/3 (faulTPM).
FirmwareTpmPluton
Microsoft Pluton, post-2022 OEMs.
cloud-vtpm
groupVirtual TPMs running inside cloud hypervisors. Rejected by strict policy; cross-validated under cloud-permissive.
CloudVtpmAwsNitro
AWS NitroTPM. Cross-validate via Nitro doc + EC2 IID.
CloudVtpmAzure
Azure vTPM. Cross-validate via IMDS attested data + DigiCert G2.
CloudVtpmGcp
GCP Shielded VM. Cross-validate via instance-identity JWT.
CloudVtpmHyperV
Generic Hyper-V vTPM (non-Pluton 2014).
emulated
groupSoftware emulators. Always rejected outside dev policy.
EmulatedSwtpm
Userspace swtpm. IBM manufacturer 0x49424D00. Chains to swtpm-localca.
mobile-hardware
groupMobile devices with hardware-backed key attestation.
MobileAndroidStrongbox
StrongBox secure element. attestationSecurityLevel = StrongBox.
MobileAndroidTee
Android TEE-backed attestation.
MobileAppleSecureEnclave
Apple Secure Enclave key attestation.
MobileAppleAppAttest
DCAppAttestService. iOS App Attest.
mobile-software
groupMobile attestation that didn't reach hardware-backing. Reduced assurance.
MobileAndroidSoftware
Android attestationSecurityLevel = Software.
Reject the fakes before they cost you anything.
Free up to 1,000 active devices a month, no card.