O-0180

Lucid Computing

A company offering attested, confidential-computing AI clusters; it hosts the Sovereignty Certificates location specification and runs a verification research programme.

Source reviewed 2026-10-08Provider-reported evidence

01 / The mechanism and its boundary

What is being described

Lucid Computing describes its offering as "Verifiable AI. Proven in hardware.": privacy-preserving, verifiable compute clusters built on trusted execution environments S-1406. Its verification work includes:

  • Location certificates. Lucid hosts, in its GitHub organization, the draft Sovereignty Certificates specification, which packages ping-based chip location verification as short-lived certificates S-1404; its homepage links to the effort S-1406. See Lucid sovereignty (location) certificates.
  • Developer platform. Its documentation lists a "Data Sovereignty & Localization" auditor, described as "Ensuring data remains within approved geographic jurisdictions" S-1407.
  • Traffic shaping. A Lucid design brief proposes capping the external traffic of each pod of accelerators, on the grounds that inference sends little external traffic while training moves large volumes between machines S-1301. The brief says the design is not yet implemented or red-teamed S-1301. See Bandwidth limits and compartmentalization.
  • Research cluster. Lucid reports that it builds and operates a bare-metal GPU research cluster on behalf of the Verifiable Compute Foundation, which decides who gets access S-1701 S-1702. VCF reports two H100 nodes operational in a beta launch S-0091. Lucid's cluster page announces a community opening in November S-1702.
  • Red-teaming and standards. Lucid reports running red-teaming programmes with national security agencies and government research institutes, in which the teams attacking its architecture are not the teams that built it S-1701. It reports building a testbed inside an unnamed government-funded research institute, whose first configuration retrofits two eight-GPU H100 servers to test claims about where compute runs, how it is used and which model is loaded S-3363. Lucid says the institute sets the test plan S-3363. It lists standards in development for compute identity, attested audits and hardware-rooted compute accounting S-1701.

Organization website ↗

Connections in the research map

Related research

Sources and provenance

  1. S-1406 / Tier B

    Lucid Computing: Verifiable AI. Proven in hardware. ↗

    · 2026 · Lucid Computing

    Supports: self-description: verifiable, confidential-computing clusters; links to Sovereignty Certificates

    Locator: homepage

    Version and catalogue details
  2. S-1404 / Tier B

    Sovereignty Certificates: draft specification, version 0.1.0 ↗

    Sovereignty Certificates Working Group · 2025 · GitHub (Lucid-Computing/sovereignty-certificate-specification)

    Supports: Sovereignty Certificates draft specification hosted in Lucid's GitHub organization; short-lived location certificates

    Locator: README

    Version and catalogue details
  3. S-1407 / Tier B

    Lucid Developer Platform documentation ↗

    · 2026 · Lucid Computing

    Supports: developer platform: data-sovereignty auditor

    Version and catalogue details
  4. S-1301 / Tier C

    Traffic Shaping for Workload Classification ↗

    Lucid Computing · 2026 · Lucid Computing (Substack)

    Supports: traffic-shaping design brief; not yet implemented or red-teamed

    Version and catalogue details
  5. S-1701 / Tier B

    Lucid Labs: the verification flywheel ↗

    · 2026 · Lucid Computing

    Supports: research cluster with the Verifiable Compute Foundation; red-teaming programmes; standards in development

    Locator: overview page

    Version and catalogue details
  6. S-1702 / Tier B

    Experiments: Lucid Labs ↗

    · 2026 · Lucid Computing

    Supports: cluster operated on the Verifiable Compute Foundation's behalf; community opening announced for November

    Locator: experimentation page

    Version and catalogue details
  7. S-0091 / Tier B

    Verifiable Compute Foundation ↗

    · 2026 · Verifiable Compute Foundation

    Supports: VCF reports two H100 nodes operational in beta; Lucid operates its research cluster

    Locator: For AI verification researchers

    Version and catalogue details
  8. S-3363 / Tier C

    Building an Adversarial Testbed for AI Verification in Europe ↗

    Lucid Computing · 2026 · Lucid Computing (Substack)

    Supports: adversarial testbed in a government-funded research institute; two H100 servers; three claims; host sets the test plan

    Version and catalogue details
Source review date
2026-10-08
Drafted by (source map)
ai
Review handles (source map)
codex-review