device attestation should not exist, it is that simple 
@halcy validating the integrity of a device is fine and has multiple benefits as explained here when using the open Hardware Attestation API for an OS and device pair to verify themselves. The bit that shouldn't exist is app distributors using it to enforce locked and closed market protection systems. Individual app developers can and should have already self regulated by using the existing open standard if they needed it, not adbicating responsibility to a centralised mechanism.
Auditor overview

Overview of the Auditor Android app and associated service.

attestation.app