all through boot, a PCR from the vTPM is extended Along with the root of the Merkle tree, and afterwards confirmed with the KMS prior to releasing the HPKE private vital. All subsequent reads within the root partition https://no-ransom-6dmd.vercel.app/