How does this philosophy handle identifiers like file names, folder structures, and especially database indexes? Seems like the server is going to need to have some knowledge of these. Unless everything is done within a secure enclave?
For indexing, unpredictable data can be hashed (with a salt unique to the field). Both predictable and unpredictable data need get deterministically encrypted - usually with IV being an SHA-2 or SHA-3 hash of the data. This works for exact searches only, of course.
As for the trust, we generally trust the CPU manufacturers, including their implementation of encryption like the AES instructions.