Secure boot and disk enryption are not that unusual nowdays

Secure boot doesn't provide security, just control for device manufacturers.

Physical access always means the device is pwned. You can install a keylogger or something similar.