Trust
Security and CVM
Third-party infrastructure, host access, CVM, and secret handling.
Infrastructure boundary
Innomium uses vetted third-party GPU infrastructure. On standard non-CVM hosts, infrastructure operators may technically access the host. Do not put unprotected high-value secrets on a rented instance.
Confidential virtual machines
CVM filters appear only when synchronized upstream metadata explicitly verifies support. CVM can strengthen workload isolation but does not replace application security, credential scoping, patching, or encrypted storage. Unknown capability is always Not verified.