If this is intended to be a secure enclave, then it need to be pretty much a black box with a mininal interface to the outside world. Changing what is inside the box should be possible at any time then. On the other hand, why does it even matter that you know the CPU instruction set that's used inside the box when you can't ever have direct access to it?