This is the de-Googled, more secure version of the Android Open Source Project. GrapheneOS, the modified version of Android that is devoid of Google while...
If I get to add new hardware to phones, TPM would be on my list but not at the top. First might be something like POCSAG (plus build out the pager network again) so you can receive text messages without transmitting anything or revealing your location. Second, third, etc. would be in a similar vein.
Until GrapheneOS breaks away from AOSP, which they have mentioned they could potentially do so once they have a solid hardware platform, we seem to at least be in a good place where even the DoJ is upset about people using GrapheneOS.
Your TPM concern here…
…is literally addressed in your post here:
They mention all the secure enclave type of stuff needed. They have the verified boot. They have the MTP. Its all there.
Were they using GrapheneOS?
Also, keep in mind that Cellebrite slides were leaked and they show that they arent able to tap into GrapheneOS on modern Pixel devices.
https://www.androidauthority.com/cellebrite-leak-google-pixel-grapheneos-security-platform
Until GrapheneOS breaks away from AOSP, which they have mentioned they could potentially do so once they have a solid hardware platform, we seem to at least be in a good place where even the DoJ is upset about people using GrapheneOS.
https://www.theguardian.com/us-news/2026/jul/23/cop-city-protester-phone