Confidential inferencing is hosted in Confidential VMs having a hardened and entirely attested TCB. just like other software services, this TCB evolves after a while due to updates and bug fixes.
details exists in 3 https://sairawyqg823757.blogkoo.com/not-known-factual-statements-about-safe-ai-49914375