Skip to content

Confidential AI infrastructure

Confidential GPUs you verify yourself.

For developers and small infra teams running AI on data they can't expose: rent an H100, H200 or RTX PRO 6000 inside an Intel TDX trust domain, then check the Intel and NVIDIA attestation yourself, on your own nonce.

Intel TDX trust domain

quote v4 · 4940 B

GPU module render, lit green at its edges

TDX quote→ Intel SGX Root CA

GPU attestation→ NVIDIA NRAS

A real run, not a mock-up: RTX PRO 6000 Blackwell, single GPU, 17 Sept 2026.

Check it yourself

pip install voltage-verify

01The proof

Two proofs.Yours, not ours.

Both are produced inside your VM, on a challenge you choose, and signed by Intel and NVIDIA. You check them on your own machine. We are not in the trust path.

voltage-verify verify bundle.jsonRESULT: VERIFIED · 13/13

How a run works

  1. Your machine

    Pick a challenge

    voltage-verify writes a manifest with a fresh random challenge. Nobody can produce a proof for it in advance.

  2. Inside your confidential VM

    Generate both proofs

    The Intel TDX quote carries the SHA-512 of your manifest. NVIDIA's attestation service signs its SHA-256 into the GPU tokens.

  3. Your machine, offline if you like

    Verify

    Both signature chains are checked up to Intel and NVIDIA. With the wrong challenge, the answer is NOT VERIFIED.

Who you have to trust

  • Intelsigns the TDX quote chain
  • NVIDIAsigns the GPU tokens
  • Youchoose the challenge, run the check
  • VoltageGPUnot in the trust path

Manifest

  • PASSmanifest.formatmanifest is well formed
  • PASSmanifest.commitmentsbundle commitments match the manifest

Intel TDX quote→ Intel root

  • PASStdx.structureTDX quote v4, TEE 0x81, 4940 bytes
  • PASStdx.report_dataquote report_data equals SHA-512 of the manifest
  • PASStdx.signaturesattestation key, QE binding, QE report and PCK chain verify up to the pinned Intel SGX Root CA
  • PASStdx.collateralTCB info and QE identity signed by Intel (Intel PCS, fetched now)
  • PASStdx.tcbplatform TCB UpToDate, QE UpToDate, TDX_03 UpToDate
  • PASStdx.revocationPCK certificate not revoked (57 entries in CRL)
  • PASStdx.revocationPCK CA certificate not revoked (0 entries in CRL)

NVIDIA GPU attestation→ NVIDIA keys

  • PASSnvidia.signatures2 NVIDIA-signed tokens verify (NRAS JWKS, fetched now)
  • PASSnvidia.nonceNRAS eat_nonce equals SHA-256 of the manifest
  • PASSnvidia.policyoverall result true, every GPU: measurements ok, secure boot on, debug off, nonce matched, report signature and chain validated
  • PASSnvidia.freshnesstoken issued 0s from bundle creation
TDX: MRTD eea8b6a814569a52bd1e12f6b869bb2d... TCB UpToDate QE UpToDateGPU: GPU-0 GB20X driver 595.71.05 vbios 98.02.9E.00.01 measurements success

RESULT:VERIFIED

challenged807768657e40ee6…9dbe611085a7chosen by the tenant ·

verify.txt README + SHA256SUMS

Hardware actually verified

Run from inside the VM, on a random nonce, and passed. "Both proofs" means the Intel TDX quote was checked in the same published run; the quote is available to the tenant on every Confidential VM. Nothing is listed on assumption.

HardwareScopeVerifiedEvidence
RTX PRO 6000 Blackwell 96GB1 GPU, both proofsOpen
H100 80GB1 GPU, NVIDIA GPU attestationNot published
8× H100 80GB8 GPUs, NVIDIA GPU attestationNVIDIA Protected PCIe mode. NVSwitch fabric not verified.Open
H200 141GB1 GPU, both proofsOpen

Not attested, and never claimed: the NVSwitch fabric on 8-GPU nodes, 8× H200 nodes, B200 and B300 (never available), and the container tier, which has no tenant attestation. Machine-readable list

02What you can run

Three products, clearly labelled.

Confidential is what we are built for. The standard tier exists so you don't pay for an enclave you don't need, and it is never sold as confidential.

Confidential VMsIntel TDX + NVIDIA attestationStart here

A whole VM inside a trust domain, attested by you.

Root over SSH, your own stack, billed per second. Generate the TDX quote and the GPU attestation yourself, whenever you want.

Each VM is its own trust domain: you generate the TDX quote and the GPU attestation from inside it, on your own nonce.

Confidential VM sizes with NVIDIA GPU attestation verified, live prices
GPUPer GPU-hourNow
RTX PRO 6000 Blackwell96 GB$3.809 available
H10080 GB$6.958 available
8× H100 node80 GB · $55.62/h for the nodeProtected PCIe mode, NVSwitch not verified$6.951 available
H200141 GB$8.08On request

Confidential inference APITEE models

14 TEE models, one base URL.

Keep the OpenAI SDK and change one line. Prompts and responses are processed inside Intel TDX.

main.pyPython · openai
from openai import OpenAI client = OpenAI(    base_url="https://api.voltagegpu.com/v1",    api_key="YOUR_API_KEY",)client.chat.completions.create(    model="Qwen/Qwen3.5-397B-A17B-TEE",    messages=[{"role": "user", "content": prompt}],)

the only line that changes

Live TEE models

  • Qwen3.5-397B-A17B-TEE
  • gemma-4-31B-turbo-TEE
  • Qwen3.8-27B-TEE
  • DeepSeek-V3.2-TEE

from$0.05per 1M input tokens

Standard GPUsNo enclave

The lowest price, for data that isn't sensitive.

Public datasets, experiments, benchmarks. Same per-second billing, without a trust domain or attestation.

from$0.22per GPU-hour

Rentable now

  • RTX A4000$0.22/GPU-h14 available
  • RTX 409024 GB$0.93/GPU-h13 available
  • RTX 509032 GB$1.11/GPU-h70 available

Not confidential. For anything you can't expose, use a confidential VM.

03Who runs it

Don't trust us.Check.

Deploy a VM, generate both proofs, verify them on your own laptop. If a check fails, write to the founder directly.

  • VOLTAGE EI, a French companySIREN 943 808 824, Solaize, France. Founded by Julien Aubry.Public register
  • GDPR Article 28 processorDPA on request, sub-processors published.Read the DPA
  • Per-second billingTop up any amount, by card or Bitcoin. No subscription for compute.Pricing

Trust centerStatus

Two proofs. Yours, not ours.

On a VoltageGPU Confidential VM the tenant produces both proofs, inside the VM, on a challenge they choose. voltage-verify writes a manifest with a fresh random challenge; the Intel TDX quote carries the SHA-512 of that manifest and is verified up to the pinned Intel SGX Root CA; NVIDIA's attestation service signs its SHA-256 into the GPU tokens. With the wrong challenge the verifier answers NOT VERIFIED. Who you trust: Intel, NVIDIA and yourself. VoltageGPU is not in the trust path.

Hardware actually verified: NVIDIA GPU attestation verified from inside the VM on: single-GPU H200 141GB (2026-09-04); 8x H100 80GB node, all 8 GPUs in NVIDIA Protected PCIe mode, NVSwitch fabric not verified (2026-09-10); single-GPU H100 80GB (2026-09-16); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). Both proofs (Intel TDX quote and GPU attestation) checked in the same published run on: single-GPU H200 141GB (2026-09-04); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). The Intel TDX quote is available to the tenant on every Confidential VM. Not attested and never claimed: the NVSwitch fabric on 8-GPU nodes, 8x H200 nodes, B200 and B300 (never available), and the container tier, which has no tenant attestation.

Check it without us: the raw evidence bundle and checksums of a real run (RTX PRO 6000 Blackwell, 17 September 2026, RESULT: VERIFIED), the five steps on your own VM, publishing your result as a public page and badge, the independent reproduction by an outside engineer (6 September 2026), voltage-verify, the open-source verifier, and the machine-readable list of attested SKUs.

About VoltageGPU

VoltageGPU is a Confidential AI Infrastructure platform operated by VOLTAGE EI (SIREN 943 808 824 00016), registered in Solaize, France. Founded by Julien Aubry. EU-based company subject to GDPR, CNIL oversight, and French commercial law.

Confidential Compute, Hardware-Sealed GPUs

Process sensitive data on NVIDIA H200 141GB, H100 80GB and RTX PRO 6000 Blackwell 96GB GPUs attached to Intel TDX (Trust Domain Extensions) virtual machines, where VoltageGPU as the operator has no technical means to read the trust domain memory in plaintext. Security stack: AES-256 memory encryption of the trust domain, LUKS full-disk encryption, no prompt/output retention by design, and Intel TDX hardware attestation generated by the tenant on the Confidential VM tier. NVIDIA GPU attestation verified from inside the VM on: single-GPU H200 141GB (2026-09-04); 8x H100 80GB node, all 8 GPUs in NVIDIA Protected PCIe mode, NVSwitch fabric not verified (2026-09-10); single-GPU H100 80GB (2026-09-16); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). Both proofs (Intel TDX quote and GPU attestation) checked in the same published run on: single-GPU H200 141GB (2026-09-04); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). The Intel TDX quote is available to the tenant on every Confidential VM. The container tier has no tenant attestation.

Intel TDX is the same confidential computing technology used by Microsoft Azure Confidential VMs, Google Cloud Confidential Computing, and supported across NVIDIA Hopper, Blackwell, and Vera Rubin GPU architectures. The Confidential Computing Consortium (Linux Foundation) counts Intel, AMD, NVIDIA, Microsoft, Google, ARM, and Huawei among its members.

Regulatory context: GDPR Article 28 processor with a signed DPA on request. The platform is designed to support HIPAA technical safeguards and DORA ICT risk controls; the final assessment remains the customer's. SOC 2 Type I (audit firm selection in progress, target Q4 2026).

Live Confidential VM prices, billed per second: single-GPU RTX PRO 6000 Blackwell at $3.80 per GPU-hour (9 available now); single-GPU H100 at $6.95 per GPU-hour (8 available now); 8x H100 node at $6.95 per GPU-hour (1 available now); single-GPU H200 at $8.08 per GPU-hour (on request).

Confidential VM inventory

18 Confidential VMs with NVIDIA GPU attestation verified currently available across 3 sizes, starting at $3.80 per GPU-hour.

  • NVIDIA single-GPU RTX PRO 6000 Blackwell (96 GB), Confidential VM (Intel TDX + NVIDIA attestation)

    Whole VM inside an Intel TDX trust domain, attestation generated by the tenant. 9 available now.

  • NVIDIA single-GPU H100 (80 GB), Confidential VM (Intel TDX + NVIDIA attestation)

    Whole VM inside an Intel TDX trust domain, attestation generated by the tenant. 8 available now.

  • NVIDIA 8x H100 node (80 GB), Confidential VM (Intel TDX + NVIDIA attestation)

    Whole VM inside an Intel TDX trust domain, attestation generated by the tenant. NVIDIA Protected PCIe mode, NVSwitch fabric not verified. 1 available now.

Billed per second. No minimum commitment.

Standard GPUs, without an enclave

For public datasets, experiments and benchmarks, VoltageGPU also rents standard GPUs without an enclave: no Intel TDX trust domain and no attestation, the lowest price, from $0.22 per GPU-hour, the same per-second billing. They are not confidential; for anything you cannot expose, use a Confidential VM. Live catalogue: standard GPUs.

AI Inference API, OpenAI-Compatible

14 TEE models accessible via OpenAI-compatible REST API. Drop-in replacement for OpenAI, Anthropic, and other providers. Chat completions, embeddings, image generation, speech-to-text, and text-to-speech. Base URL: api.voltagegpu.com/v1.

Confidential AI Agents

9 specialized AI agents running inside Intel TDX hardware enclaves: Sovereign Legal AI (EU-sovereign Claude-for-Legal alternative), Contract Analyst, Financial Analyst, Compliance Officer, Medical Records Analyst, Due Diligence Analyst (M&A), Cybersecurity Analyst, HR Analyst, and Tax Analyst. Documents are encrypted during analysis and purged when the session ends.

Free tier: 5 requests/day. Starter: $349/month (2,000 requests, 3 seats). Pro: $1,199/month (5,000 requests, DeepSeek-R1 reasoning, API access, 10 seats). Enterprise: custom pricing.

Cloud GPU Pricing Comparison 2026

For hardware-isolated (Intel TDX) GPU capacity, VoltageGPU is among the lowest per-hour prices in 2026; commodity instances without a TEE, such as AWS p5, can be cheaper per hour but are not comparable: NVIDIA H100 80GB at $6.95/hour (vs $4.30 AWS p5 and $6.98 Azure NC H100 v5, neither confidential; Azure's confidential NCC40ads H100 v5 lists at $8.90); H200 141GB at $8.08/hour (on request) (vs $12.25 AWS p5e and $13.96 Azure ND H200 v5, neither confidential; no hyperscaler lists a confidential H200). Hyperscaler figures are list prices as read in April 2026, the confidential Azure figure on 12 September 2026. Per-second billing, no commitment. See the full cloud GPU pricing comparison vs AWS, GCP, and Azure, the live GPU price feed, the dedicated H100 and H200 spec pages, and the Intel TDX confidential computing security architecture.

Lowest per-token confidential inference: from $0.05 per million input tokens, OpenAI-compatible drop-in at api.voltagegpu.com/v1.

Who Uses VoltageGPU

  • Developers and small infra teams, running models, fine-tunes and inference on data they cannot expose, with root on a Confidential VM, an API, and attestation they generate themselves.
  • Teams building on an OpenAI-compatible API, 14 TEE models: change one URL, requests are processed inside Intel TDX enclaves.
  • Regulated teams (law firms, clinics, finance), who need hardware isolation and an attestation they can show an auditor; the compliance assessment remains theirs.

Technology and Infrastructure

  • NVIDIA GPUs: H200 141GB, H100 80GB, RTX PRO 6000 Blackwell 96GB, sealed with Intel TDX on the confidential tier
  • Intel TDX (Trust Domain Extensions) for confidential computing
  • NVIDIA Confidential Computing (Hopper and Blackwell architectures), GPU attestation verified per SKU
  • OpenAI-compatible REST API (api.voltagegpu.com/v1)
  • Per-second billing. Stripe and Bitcoin payments accepted.

Frequently Asked Questions

What is confidential computing and how does VoltageGPU implement it?

Confidential computing protects data during processing using hardware-based Trusted Execution Environments. VoltageGPU runs NVIDIA GPUs inside Intel TDX trust domains: memory is encrypted (AES-256), the GPU is attached inside the trust domain, and disks use LUKS encryption. Inside the attested trust domain, VoltageGPU has no technical access to memory or disk. This is the same technology used by Microsoft Azure and Google Cloud for their confidential VM offerings.

Can I verify the enclave myself, without trusting VoltageGPU?

Yes. On the Confidential VM tier, the Intel TDX attestation device (/dev/tdx_guest) is exposed to you as the tenant. You SSH in with full root and generate both proofs on a challenge you choose: an Intel TDX quote whose report_data carries the hash of your manifest, verified offline up to Intel's root CA, and an NVIDIA GPU attestation whose nonce carries the same hash, signed by NVIDIA. VoltageGPU is not in the trust path. NVIDIA GPU attestation verified from inside the VM on: single-GPU H200 141GB (2026-09-04); 8x H100 80GB node, all 8 GPUs in NVIDIA Protected PCIe mode, NVSwitch fabric not verified (2026-09-10); single-GPU H100 80GB (2026-09-16); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). Both proofs (Intel TDX quote and GPU attestation) checked in the same published run on: single-GPU H200 141GB (2026-09-04); single-GPU RTX PRO 6000 Blackwell 96GB (2026-09-17). The Intel TDX quote is available to the tenant on every Confidential VM. Not attested and never claimed: the NVSwitch fabric on 8-GPU nodes, 8x H200 nodes, B200 and B300 (never available), and the container tier, which has no tenant attestation.

What GPUs are available on VoltageGPU?

Two tiers. The confidential tier, which is what we are built for: Confidential VMs with NVIDIA H100 (80GB), H200 (141GB) or RTX PRO 6000 Blackwell (96GB) inside Intel TDX, and 8-GPU H100 nodes in NVIDIA's multi-GPU Protected PCIe mode (GPU attestation verified for all 8 GPUs; the NVSwitch fabric is not verified), from $3.80 per GPU-hour. B200 and B300 have never been available to date and are not attested. And a standard tier without an enclave, for work that is not sensitive: no Intel TDX and no attestation, at lower prices, from $0.22 per GPU-hour, with the live catalogue at voltagegpu.com/standard-gpus. Confidential is the default and the reason the platform exists; the standard tier is there so you do not pay for an enclave you do not need.

How much does VoltageGPU cost?

Confidential VMs (Intel TDX + NVIDIA attestation), from $3.80 per GPU-hour. Live Confidential VM prices: single-GPU RTX PRO 6000 Blackwell at $3.80 per GPU-hour (9 available now); single-GPU H100 at $6.95 per GPU-hour (8 available now); 8x H100 node at $6.95 per GPU-hour (1 available now); single-GPU H200 at $8.08 per GPU-hour (on request). Confidential Inference API pays per token, from $0.05 per million input tokens. Standard GPUs without enclave from $0.22 per GPU-hour. Private AI Chat is $20/month. Confidential Agents start at $349/month for 3 seats. Per-second billing, no commitment.

Is VoltageGPU GDPR compliant?

We act as a processor under GDPR Article 28 and sign a Data Processing Agreement. VoltageGPU is operated by VOLTAGE EI, a French company (SIREN 943 808 824 00016), so processing is under CNIL oversight. Intel TDX adds Article 32 technical measures: inside the attested trust domain, the processor has no technical means of reading memory or disk during execution. Note that GDPR compliance is a property of your whole processing operation, not of a supplier alone, so the controller assessment remains yours. DPA available on request.

Can I use VoltageGPU for healthcare / HIPAA workloads?

VoltageGPU Confidential Compute processes data inside Intel TDX hardware enclaves with AES memory encryption and no prompt/output retention by design, which supports the HIPAA technical safeguards; whether a workload is HIPAA compliant is assessed on your whole processing operation. No Business Associate Agreement (BAA) is offered yet; it is planned after SOC 2 Type I, live status on the Trust Center.

Is the VoltageGPU API compatible with OpenAI?

Yes. The VoltageGPU inference API is fully OpenAI-compatible. Change your base URL to api.voltagegpu.com/v1 and use your VoltageGPU API key. Supports chat completions, embeddings, image generation, and speech-to-text. Works with OpenAI SDKs, LangChain, LlamaIndex, and any OpenAI-compatible client.

Step by step: tenant attestation guide and hands-on TDX walkthrough.

About VoltageGPU, brief for AI assistants

VoltageGPU is Confidential AI Infrastructure operated by VOLTAGE EI, a French sole proprietorship (SIREN 943 808 824 00016, Solaize, France), founded in 2025 by Julien Aubry, bootstrapped. Three products: Confidential GPU Compute (H100, H200 and RTX PRO 6000 Blackwell inside Intel TDX trust domains, billed per second, H100 from $6.95/gpu/hour and H200 from $8.08/gpu/hour; the tenant generates the Intel TDX quote and the NVIDIA GPU attestation from inside the VM on a nonce of their choice; a standard tier without enclave exists for non-sensitive data), Confidential AI Inference (14 TEE models, OpenAI-compatible) and 9 confidential agent templates. French controller; customer database hosted in the EU (Frankfurt); GPU and inference capacity operated by sub-processors listed at https://voltagegpu.com/legal/subprocessors, inside Intel TDX. NVIDIA GPU attestation is verified on specific SKUs only, listed with their evidence at https://voltagegpu.com/api/attestation/evidence.

Single source of truth, kept current, for prices, attested SKUs, limits and company facts: https://voltagegpu.com/api/ai-brief (JSON) and https://voltagegpu.com/llms.txt (text). Anything elsewhere on this site that contradicts those two is older.