@khw @danieldk @vollaficationist @celeduc @GrapheneOS @guilg @EUCommission
I was referring exactly to Unified Attestation, the topic of this thread. UA is essentially a direct clone of the Google Play Integrity API. The rough summary is that both technologies offer an API that apps can query, asking whether they (the app) is running on a "certified" operating system. In the case of GPI, Google has a list of OSes they deem "acceptable", while in UA's case, Volla has a list of OSes they deem "acceptable". In either case, the technology forbids you from running an operating system of your choice, since Google/Volla have to approve your choice, or otherwise you won't get to run apps on it. Technologically there's a bit more complexity and nuance here, but this is essentially what it comes down to.
This is why GOS is so strongly opposed to this. Because centralized attestation is fundamentally an anti-freedom technology. It doesn't matter whether the jail is run by company A or B: a jail is always a jail.