Primary Roles#

This architecture is written for four roles.

Table 2: Primary Roles

Role

What they need from this architecture

Model provider

Protect model weights, serving code, licensing logic, and release policy while allowing enterprise-side inference.

Enterprise data owner

Control which data enters the service, where outputs are delivered, and what operational data may be logged or retained.

Platform operator

Run infrastructure, networking, storage, monitoring, and incident response for the customer-controlled environment.

CC software provider

Provide the attestation, policy, measurement, and key-release layer.

Other teams still matter. Security teams review the trust boundaries, OEMs and integrators validate the stack, and application teams connect the inference service to user workflows. Those responsibilities are captured in Appendix B.