Contrast integration
Privatemode is built on Contrast, which provides runtime, remote attestation, policy mechanism, and service mesh functionality for confidential container environments. The components of Privatemode, which all run within the Contrast runtime, and their integration with Contrast are described in the server-side architecture.
Attestation in Privatemode follows the Contrast attestation model, ensuring that all confidential workloads are verified before execution. This document explains how Privatemode integrates with Contrast's attestation, focusing on manifests, policies, and GPU attestation.
Contrast manifest
Contrast enforces a manifest, which defines the configuration and attestation properties for the entire Privatemode Kubernetes deployment.