Concise Reference Integrity Manifest (CoRIM)
The reference manifest includes a top-level structure that contains either a signed or an unsigned CoRIM. A CoRIM consists of one or more CoMIDs, each providing reference claims about the hardware and firmware of a device. Both the CoRIM and CoMIDs are encoded in CBOR format, with signed CoRIMs utilizing COSE signatures.