Host-Acceptance Attestation Inversion for Removable Sovereign AI Accelerator.
Removable accelerator verifies the host against operator policy before unsealing state. 20 claims.
A method of host-acceptance attestation for a removable sovereign AI accelerator hardware unit. On insertion of the unit into a candidate host, the unit transmits a challenge nonce signed under the unit's operator-bound key. The host returns an attestation response including the host's trusted-boot measurements, currently-loaded operating-system hash, and TPM quote. The unit evaluates the response against an operator-signed host-acceptance policy stored on the unit. On positive evaluation the unit unseals the operator's SIOS state bundle for use on the host; on negative evaluation the unit refuses and emits a structured rejection record. The evaluation is performed without any network call to any third party. Operator survives host compromise: move the SoC to a fresh host and resume in seconds with no state loss. Second of the Mickai Sovereign AI SoC quartet. Filed 19 May 2026 as GB2611699.6.