I’m only marginally aware of how these systems work, can someone more knowledgeable tell me the difference between Google’s implementation of this restriction and the restrictions already present on GrapheneOS? Is it correct to say that both are implemented for security reasons?