So the keys are generated correctly and made permanent, and assuming no hacks or ways to pull them, all good. But remember that bit about chip to cloud? Remember the furor that made Intel back down from unique serial numbers for the P4 chips? Now you have a unique serial number for your PC that you can’t see, you can’t change, and since it is the basis for security attestation on the web, at least if Microsoft gets it’s way, anything you do to hide it will lock you out of services. So now we have the return of the unique tracking number that is permanent, hidden, and unblockable. Will this even fly in light of EU cookie/tracking requirements? I have no idea but it is worth digging into.