TapRUUT is Insyde’s production-ready Platform Root of Trust — firmware resilience, standards-aligned attestation, and hardware-anchored security for PCs, servers, and data center platforms at scale.
If the layer beneath the OS can’t prove it hasn’t been tampered with, nothing built on top of it can be trusted either. TapRUUT is Insyde’s production-ready Platform Root of Trust — firmware resilience and device attestation aligned with NIST SP 800-193, across Intel, AMD, NVIDIA, and Arm-based platforms.
Hardware-anchored Built on leading PRoT silicon — ASPEED, Intel, Infineon, and Microchip Technology at launch.
NIST SP 800-193 resilience and SPDM 1.1/1.2 device attestation, not a proprietary approach.
Works end-to-end with InsydeH2O® UEFI BIOS and Supervyse® OpenBMC — one chain of trust, not three.
They persist across OS reinstalls, survive disk wipes, and run before security tooling even loads — making them some of the hardest compromises to detect and the most damaging to recover from."Root of Trust" isn't one part. It's an integration problem spanning silicon vendors, firmware layers, and management stacks that were never designed to speak the same language.
TapRUUT turns NIST SP 800-193 from a checklist into a working system: a hardware-anchored point of trust that verifies firmware integrity, detects tampering, and recovers a platform to a known-good state.It integrates natively with Insyde's own firmware stack, while remaining fully compatible with your existing OpenBMC implementation.
From silicon to fleet reporting, each layer has one job.
PRoT-capable silicon from ASPEED, Intel, Infineon, or Microchip Technology.
Measurement, verification, update, and recovery logic anchored to that hardware.
Native alignment with InsydeH2O® UEFI BIOS.
Native alignment with Supervyse® OpenBMC, or your existing OpenBMC implementation.
SPDM-based device attestation, provable to external parties.
A security posture that's auditable and reportable at scale.
Hardware-anchored security, standards-based attestation, and one architecture spanning boot and management firmware.
Support for leading PRoT silicon at launch — ASPEED, Intel, Infineon, and Microchip Technology.
Secure firmware update and recovery mechanisms built around the protect–detect–recover model.
Cryptographic attestation with SPDM 1.1 and 1.2 support — proof of firmware integrity, not just a claim.
Modern cryptographic services, including post-quantum cryptography support on compatible hardware.
Native integration with InsydeH2O® UEFI BIOS and Supervyse® OpenBMC, plus CPLD online update support.
One security model across Intel, AMD, NVIDIA, and Arm-based platforms — no fragmented posture.
The same Root of Trust approach, scaled to every platform that needs it.
A security foundation designed for the platforms carrying the industry's newest, most demanding workloads.
A consistent security model across mixed-silicon fleets, without a separate integration project per vendor.
The same Root of Trust approach, scaled down to platforms far from the data center.
Active alignment with the CHIPS Alliance–driven OpenPRoT initiative, alongside AMD, Google, Intel, and Nuvoton.