403Webshell
Server IP : 93.86.61.54  /  Your IP : 216.73.216.60
Web Server : Apache/2.4.62 (Ubuntu)
System : Linux rasin.ddns.net 6.8.0-124-generic #124~22.04.1-Ubuntu SMP PREEMPT_DYNAMIC Tue May 26 21:05:19 UTC x86_64
User : www-data ( 33)
PHP Version : 8.4.22
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/lib/fwupd/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/lib/fwupd/pending.db
SQLite format 3@  8.WJ

�
�

s
p-��Q�ytablehistoryhistoryCREATE TABLE history (device_id TEXT,update_state INTEGER DEFAULT 0,update_error TEXT,filename TEXT,display_name TEXT,plugin TEXT,device_created INTEGER DEFAULT 0,device_modified INTEGER DEFAULT 0,checksum TEXT DEFAULT NULL,flags INTEGER DEFAULT 0,metadata TEXT DEFAULT NULL,guid_default TEXT DEFAULT NULL,version_old TEXT,version_new TEXT,checksum_device TEXT DEFAULT NULL,protocol TEXT DEFAULT NULL, release_id TEXT DEFAULT NULL, appstream_id TEXT DEFAULT NULL, version_format INTEGER DEFAULT 0, install_duration INTEGER DEFAULT 0, release_flags INTEGER DEFAULT 0)�%##�tablehsi_historyhsi_historyCREATE TABLE hsi_history (timestamp TIMESTAMP DEFAULT CURRENT_TIMESTAMP,hsi_details TEXT DEFAULT NULL,hsi_score TEXT DEFAULT NULL)Y--gtableblocked_firmwareblocked_firmwareCREATE TABLE blocked_firmware (checksum TEXT)\//itableapproved_firmwareapproved_firmwareCREATE TABLE approved_firmware (checksum TEXT)�e''�	indexidx_device_idemulation_tagCREATE UNIQUE INDEX idx_device_id ON emulation_tag (device_id)Q''ctableemulation_tagemulation_tagCREATE TABLE emulation_tag (device_id TEXT)~�WtableschemaschemaCREATE TABLE schema (created timestamp TIMESTAMP DEFAULT CURRENT_TIMESTAMP,version INTEGER DEFAULT 0)
��32020-11-21 08:15:22


�5�������.' 
siResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9)pd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "not-found",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9)siResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9) : 0,
      "HsiResult" : "tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9)
�[Z��3�s+2026-01-28 08:48:38{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "H	�v3�++2026-01-09 13:25:02{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwu�3�s+2024-10-02 20:53:43{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "H
?r�?�3�E+2026-05-22 20:30:11{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel"�3�s+2026-04-20 14:05:20{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "H
�3�E+2026-04-17 09:08:14{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel"
siResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9) : 0,
      "HsiResult" : "tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9)siResult" : "not-tainted",
      "Name" : "fwupd plugins",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiLevel" : 0,
      "HsiResult" : "not-encrypted",
      "Name" : "Linux swap",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "Name" : "UEFI platform key",
      "Plugin" : "uefi_pk",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d",
        "230c8b18-8d9b-53ec-838b-6cfc0383493a"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "SPI write",
      "Plugin" : "pci_bcr",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "Name" : "TPM v2.0",
      "Plugin" : "tpm",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "Name" : "IOMMU",
      "Plugin" : "iommu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelCet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "Name" : "Intel CET Enabled",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelCet.Enabled",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.AcpiDmar",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "Name" : "Pre-boot DMA protection",
      "Plugin" : "acpi_dmar",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.AcpiDmar"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "Name" : "Suspend-to-idle",
      "Plugin" : "acpi_facp",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "Name" : "Suspend-to-ram",
      "Plugin" : "linux_sleep",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Encrypted RAM",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelSmap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "Name" : "Intel SMAP",
      "Plugin" : "cpu",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelSmap",
      "Guid" : [
        "b9a2dd81-159e-5537-a7db-e7101d164d3f",
        "30249f37-d140-5d3e-9319-186b1bd5cac3",
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v1.7.9)
:[:�3��W-2026-06-15 11:42:39{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },�3�s+2026-06-01 21:30:25{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiLevel" : 0,
      "HsiResult" : "not-tainted",
      "Name" : "Linux kernel",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 0,
      "HsiResult" : "enabled",
      "Name" : "UEFI secure boot",
      "Plugin" : "uefi_capsule",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiLevel" : 0,
      "H


    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "936f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)  "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "936f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)
����
3��W-2026-06-17 13:35:23{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },�n	3��-2026-06-15 12:19:42{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
      
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "936f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)  "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "936f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)
����3��W-2026-06-24 16:04:48{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },!�n3��-2026-06-23 15:53:19{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
      "
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "93#6f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)%  "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "93&6f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)
����3��W-2026-06-27 17:00:57{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },(�n
3��-2026-06-26 16:22:07{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
      $)
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "93*6f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20),  "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "93-6f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)
����3��W-2026-07-01 07:56:15{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },/�n3��-2026-06-30 07:56:40{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
      +0
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "9316f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)3  "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "9346f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)
����3��W-2026-07-31 14:15:14{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },6�n3��-2026-07-30 14:27:34{
  "SecurityAttributes" : [
    {
      "AppstreamId" : "org.fwupd.hsi.Fwupd.Plugins",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "fwupd plugins",
      "Summary" : "Firmware Updater Verification",
      "Description" : "Firmware Updater Verification checks that software used for updating has not been tampered with.",
      "Plugin" : "core",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Fwupd.Plugins",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Lockdown",
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Linux kernel lockdown",
      "Summary" : "Linux Kernel Lockdown",
      "Description" : "Linux Kernel Lockdown mode prevents administrator (root) accounts from accessing and changing critical parts of system software.",
      "Plugin" : "linux_lockdown",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Lockdown",
      "Flags" : [
        "success",
        "runtime-issue"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Tainted",
      "HsiResult" : "not-tainted",
      "HsiResultSuccess" : "not-tainted",
      "Name" : "Linux kernel",
      "Summary" : "Linux Kernel Verification",
      "Description" : "Linux Kernel Verification makes sure that critical system software has not been tampered with. Using device drivers which are not provided with the system can prevent this security feature from working correctly.",
      "Plugin" : "linux_tainted",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Tainted",
      "Flags" : [
        "success",
      27
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Db",
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI db",
      "Summary" : "UEFI db",
      "Description" : "The UEFI db contains the list of valid certificates that can be used to authorize what EFI binaries are allowed to run.",
      "Plugin" : "uefi_db",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Db",
      "Flags" : [
        "success",
        "runtime-issue",
        "action-config-fw"
      ],
      "Guid" : [
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Kernel.Swap",
      "HsiResult" : "not-encrypted",
      "HsiResultSuccess" : "encrypted",
      "Name" : "Linux swap",
      "Summary" : "Linux Swap",
      "Description" : "Linux Kernel Swap temporarily saves information to disk as you work. If the information is not protected, it could be accessed by someone if they obtained the disk.",
      "Plugin" : "linux_swap",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Kernel.Swap",
      "Flags" : [
        "runtime-issue",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Bios.CapsuleUpdates",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "BIOS firmware updates",
      "Summary" : "BIOS Firmware Updates",
      "Description" : "Enabling firmware updates for the BIOS allows fixing security issues.",
      "Plugin" : "uefi_esrt",
      "Version" : "1.9.6",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Bios.CapsuleUpdates",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugEnabled",
      "HsiLevel" : 1,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugEnabled",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SupportedCpu",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "Supported CPU",
      "Summary" : "Processor Security Checks",
      "Description" : "Each system should have tests to ensure firmware security.",
      "Plugin" : "core",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SupportedCpu",
      "Flags" : [
        "success",
        "action-contact-oem"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.BootserviceVars",
      "HsiLevel" : 1,
      "HsiResult" : "locked",
      "HsiResultSuccess" : "locked",
      "Name" : "UEFI bootservice variables",
      "Summary" : "UEFI Bootservice Variables",
      "Description" : "UEFI boot service variables should not be readable from runtime mode.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.9.3",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.BootserviceVars",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.Pk",
      "HsiLevel" : 1,
      "HsiResult" : "valid",
      "HsiResultSuccess" : "valid",
      "Name" : "UEFI platform key",
      "Summary" : "UEFI Platform Key",
      "Description" : "The UEFI Platform Key is used to determine if device software comes from a trusted source.",
      "Plugin" : "uefi_pk",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.Pk",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "9386f7922-3184-54b3-bbd5-f6af26ac6faa",
        "4a3ca68b-7723-48fb-803d-578cc1fec44d"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Uefi.SecureBoot",
      "HsiLevel" : 1,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "UEFI secure boot",
      "Summary" : "UEFI Secure Boot",
      "Description" : "UEFI Secure Boot prevents malicious software from being loaded when the device starts.",
      "Plugin" : "uefi_capsule",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Uefi.SecureBoot",
      "Flags" : [
        "success"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Bioswe",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "SPI write",
      "Summary" : "Firmware Write Protection",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Bioswe"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.Ble",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "SPI lock",
      "Summary" : "Firmware Write Protection Lock",
      "Description" : "Firmware Write Protection protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.Ble"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Spi.SmmBwp",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "locked",
      "Name" : "SPI BIOS region",
      "Summary" : "Firmware BIOS Region",
      "Description" : "Firmware BIOS Region protects device firmware memory from being tampered with.",
      "Plugin" : "pci_bcr",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Spi.SmmBwp"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Tpm.Version20",
      "HsiLevel" : 1,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "found",
      "Name" : "TPM v2.0",
      "Summary" : "TPM v2.0",
      "Description" : "TPM (Trusted Platform Module) is a computer chip that detects when hardware components have been tampered with.",
      "Plugin" : "tpm",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Tpm.Version20"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PlatformDebugLocked",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "locked",
      "Name" : "Platform debugging",
      "Summary" : "Platform Debugging",
      "Description" : "Platform Debugging allows device security features to be disabled. This should only be used by hardware manufacturers.",
      "Plugin" : "msr",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PlatformDebugLocked",
      "Flags" : [
        "success"
      ],
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.IntelBootguard.Enabled",
      "HsiLevel" : 2,
      "HsiResult" : "not-supported",
      "Name" : "Intel BootGuard",
      "Summary" : "Intel BootGuard",
      "Description" : "Intel BootGuard prevents unauthorized device software from operating when the device is started.",
      "Plugin" : "pci_mei",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.IntelBootguard.Enabled"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Iommu",
      "HsiLevel" : 2,
      "HsiResult" : "not-found",
      "HsiResultSuccess" : "enabled",
      "Name" : "IOMMU",
      "Summary" : "IOMMU Protection",
      "Description" : "IOMMU Protection prevents connected devices from accessing unauthorized parts of system memory.",
      "Plugin" : "iommu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Iommu",
      "Flags" : [
        "action-contact-oem",
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Cet.Enabled",
      "HsiLevel" : 3,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "supported",
      "Name" : "CET Platform",
      "Summary" : "Control-flow Enforcement Technology",
      "Description" : "Control-Flow Enforcement Technology detects and prevents certain methods for running malicious software on the device.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Cet.Enabled",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.PrebootDma",
      "HsiLevel" : 3,
      "HsiResult" : "not-valid",
      "HsiResultSuccess" : "enabled",
      "Name" : "Pre-boot DMA protection",
      "Summary" : "Pre-boot DMA Protection",
      "Description" : "Pre-boot DMA protection prevents devices from accessing system memory after being connected to the computer.",
      "Plugin" : "acpi_dmar",
      "Version" : "1.8.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.PrebootDma"
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToIdle",
      "HsiLevel" : 3,
      "HsiResult" : "not-enabled",
      "HsiResultSuccess" : "enabled",
      "Name" : "Suspend-to-idle",
      "Summary" : "Suspend To Idle",
      "Description" : "Suspend to Idle allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "acpi_facp",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToIdle",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.SuspendToRam",
      "HsiLevel" : 3,
      "HsiResult" : "enabled",
      "HsiResultSuccess" : "not-enabled",
      "Name" : "Suspend-to-ram",
      "Summary" : "Suspend To RAM",
      "Description" : "Suspend to RAM allows the device to quickly go to sleep in order to save power. While the device has been suspended, its memory could be physically removed and its information accessed.",
      "Plugin" : "linux_sleep",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.SuspendToRam",
      "Flags" : [
        "action-config-fw",
        "action-config-os"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.EncryptedRam",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "Encrypted RAM",
      "Summary" : "Encrypted RAM",
      "Description" : "Encrypted RAM makes it impossible for information that is stored in device memory to be read if the memory chip is removed and accessed.",
      "Plugin" : "cpu",
      "Version" : "1.5.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.EncryptedRam",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    },
    {
      "AppstreamId" : "org.fwupd.hsi.Smap",
      "HsiLevel" : 4,
      "HsiResult" : "not-supported",
      "HsiResultSuccess" : "enabled",
      "Name" : "SMAP",
      "Summary" : "Supervisor Mode Access Prevention",
      "Description" : "Supervisor Mode Access Prevention ensures critical parts of device memory are not accessed by less secure programs.",
      "Plugin" : "cpu",
      "Version" : "2.0.0",
      "Uri" : "https://fwupd.github.io/libfwupdplugin/hsi.html#org.fwupd.hsi.Smap",
      "Guid" : [
        "466ccad0-1a32-567f-8623-13721a6a0167",
        "3af6b7ec-d834-5b6f-b597-0231fe7923b8"
      ]
    }
  ]
}HSI:0! (v2.0.20)

Youez - 2016 - github.com/yon3zu
LinuXploit