A set of hardware and software that we can’t prove is safe. We want to minimise this, but the smaller this is the more layers of abstraction we have to layer on top, which typically hurts performance.