Follow the latest coverage, related explainers and connected technology stories.
Microsoft explains that running AI on devices and environments owned by the customer changes the trust model because models, data, and keys operate outside the direct control of the service provider. It proposes four pillars: proving the integrity of the execution environment, verifying the origin of components, enforcing deterministic mediation over model actions, and releasing sensitive assets only after the required evidence and policies have been satisfied.