Establish freshness-bound container identity and lifecycle security
Establish a deployment mechanism that binds accepted container identities to monitor-controlled freshness and derives child membership from an authorized parent transition, thereby preventing forged or stale container membership during confidential-container initialization and process creation.
References
The QEMU prototype accepts the pid and cid supplied along this cooperative launch path. It therefore validates lifecycle plumbing, not resistance to forged or stale membership. A deployment must bind accepted identities to monitor-controlled freshness and derive child membership from an authorized parent transition; \S\ref{sec:security} treats this as an open link in the current security argument.
We have not run negative tests for wrong owner or cid, stale task bindings, role or permission changes, failed PEND transactions, or clear-before-reuse. Cross-container sharing, multicore agent entry, and attestation also remain unevaluated.