through boot, a PCR with the vTPM is extended While using the root of the Merkle tree, and later confirmed with the KMS right before releasing the HPKE private essential. All subsequent reads within the root partition https://no-ransom-6dmd.vercel.app/