How does the GrapheneOS threat model account for baseband or firmware-level supply chain risks on Lenovo/Motorola hardware, given their historical consumer security incidents like Superfish? Is the open-source attestation sufficient to mitigate hardware-level tampering?