What is Nostr?
GrapheneOS /
npub1235…0ht5
2023-05-11 15:46:31
in reply to nevent1q…ewk3

GrapheneOS on Nostr: For 1st Auditor verification, it verifies attestation based on the root of trust ...

For 1st Auditor verification, it verifies attestation based on the root of trust which isn't particularly high security. Afterwards, it verifies based on pinned signing chain. On Pixel 6 and later this signing chain has a per-pairing HSM key instead of per batch of 100k+ devices.
Author Public Key
npub1235tem4hfn34edqh8hxfja9amty73998f0eagnuu4zm423s9e8ksdg0ht5