// saferouter :: public_verifier :: v1
> verify_attestation
Independently confirm a SafeRouter instance is running unmodified open-source code inside a confidential TEE. Cryptography runs in your browser — we cannot tamper with this page; it is hosted on GitHub Pages from the same repo as the gateway.
VERDICT
Verification Checks
[·] Check 1 :: Signature valid (Ed25519 over claims)
[·] Check 2 :: Identity cert binds to signing key
[·] Check 3 :: Cert chain valid (Identity → Chip → Root)
[·] Check 4 :: Nonce binding (replay protection)
[·] Check 5 :: Pinned root match (TOFU)
[·] Check 6 :: Transparency log consistent (hash chain)
[·] Check 7 :: Audit log signed by same identity