Platform capability
Device trust
Bind capture to a device identity and managed lifecycle.
Device trust
Target model from the specification. Actual product scope requires approval.
An identified endpoint
Bind device certificates and keys to organization, location and configuration. mTLS secures the channel; it does not by itself prove firmware integrity.
Lifecycle & revocation
Activation, assignment, renewal, rotation, suspension and revocation require records. Captures from revoked devices must not continue on the normal path.

Evaluation & evidence requirements
| Area | Requirement |
|---|---|
| Context binding | Organization, purpose, device, session and policy |
| Exception states | Missing data, ambiguous identity, expiry and fallback |
| Required evidence | Versioned report, scope, reviewer and limitations |
| Publication status | No product test report supplied in the website package; deployment is not inferred. |