Skip to content
Launchpad Library logo
← All glossary terms

How It Works

TEE (Trusted Execution Environment)

A walled-off area inside a computer’s own processor that runs code and holds data where the rest of the machine — including its main operating system, its owner and the company hosting it — cannot look in. On your phone it is what keeps your fingerprint and payment keys out of reach of the apps. In AI it is now sold as the reason a company can process your chat without being able to read it: the model runs inside the sealed area, and the hardware can produce a signed statement about exactly what code is running in there. The honest caveat is that you are trusting the chip maker instead of the AI company, and researchers have repeatedly broken specific TEEs — it raises the cost of snooping rather than making it impossible.

Origin · no single documented coiner

Not one person’s coinage. The technology was first widely deployed by Nokia in the early 2000s with Texas Instruments and ARM, and an oral history from Aalto University’s Secure Systems Group traces it as an engineering-led effort rather than a single strategic decision. The phrase was fixed in industry use by the Open Mobile Terminal Platform’s “Advanced Trusted Environment: OMTP TR1” (2009), then standardized from February 2011 onward by GlobalPlatform, whose specifications still define what the term means.

Read the source →