@inference @safiuddinkhan @cyberspook @m0xee @dushman
How would google's edition of GNU/Linux have verified boot but not normal?
https://elinux.org/images/f/f8/Verified_Boot.pdf
puri.sm is even more secure, even neutralizing IME. Here's one of their features.
https://puri.sm/posts/new-pureboot-feature-scanning-root-for-tampering/
"Distributions like PureOS are not particularly secure. They are mostly a reskinned Debian and do not include substantial hardening."
https://madaidans-insecurities.github.io/linux-phones.html