<i>It uses trusted hardware to authenticate and scrape data from HTTPS-enabled websites</i><p>It claims to do this using SGX. However, it uses a <i>"Relay"</i> - a non-SGX process - to pass network data into the SGX enclave.<p>To me that seems to make the claim of trustworthiness (in the "trustworthy computing" sense) questionable.<p>I'm not overly familiar with SGX and I've only scanned through this proposal, but I'd love someone more knowledgeable to expand my understanding.<p>It seems to me that the entire stack needs to be running in the SGX-enclave for it to gain the complete benefits?<p>Nevertheless, I think this is pretty interesting.