In that case, it can easily be swapped around: card won't run unless it can reach an online endpoint.
E.g. to fetch some binary blob that must be loaded in firmware. Only handed out and signed when requester is known to be legit.
Not saying I'd like this, or that I endorse this, though.