Confidential inferencing is hosted in Confidential VMs with a hardened and totally attested TCB. just like other software service, this TCB evolves after some time resulting from updates and bug fixes.
details https://amaanaosc171814.like-blogs.com/30261875/what-does-confidential-ai-nvidia-mean