in the course of boot, a PCR of the vTPM is extended with the root of the Merkle tree, and afterwards verified by the KMS just before releasing the HPKE personal vital. All subsequent reads through the root partition https://bookmarknap.com/story8475078/ai-act-safety-component-for-dummies