Patent attributes
A method for secure data protection includes storing secured data, associated with a computer application, using a security co-processor. The secured data is associated with a platform state policy that indicates an expected platform state. The secured data is associated with a version counter policy that indicates an expected version counter. A platform state of a computing platform is stored in the security co-processor. A version counter of the platform state is stored in the security co-processor. A request for the secured data is received from the requester. The platform state is determined to be in a known good state based on the platform state policy, the version counter policy, the platform state, the expected platform state, the version counter, and the expected version counter. The secured data is provided for the requester based on the determination.