Google says it believes its products should be secure by design. In describing AAOS SDV, the company points to a set of platform and development choices intended to put that principle into practice.
According to Google, AAOS SDV was built on existing, market-proven platforms and uses virtualization technologies such as Cuttlefish. Its instances use virtual machines to run multiple instances in parallel, while the platform follows Android’s User ID (UID)-based isolation model.
The approach also draws on Android’s operational security infrastructure. Google says AAOS SDV integrates Android’s security response and vulnerability management infrastructure, and uses Android Pony EXpress (APEX) packages for services.
Google says AAOS SDV adopted Rust as the primary language for developing components. Its Mesh provisioning architecture is also described as cryptographically verifying the version and author of every communication endpoint.






