There's a universe where TPM-based remote attestation is used to validate the state of the kernel and userland to prove to a streaming media platform that the kernel implements appropriate levels of protection before any media is served to it, but it's not this one - higher levels of Widevine-protected streamed media *are* distributed in a way that can only be decrypted by hardware, but that hardware is the GPU, not the TPM, and the TPM isn't involved at all