EDIT:
I meant that seriously--any functionality which can update the firmware can, by definition, remove your ability to tell that it's doing other things, too. See also "Reflections on Trusting Trust".
EDIT2:
And another downvote. Some people are absurd and clearly don't understand what is a completely reasonable comment about the nature of the security here.
It's not, "How would you (somebody unskilled in these things, snarf snarf, mere mortal compared to angersock) know (anything about this)?".
It's, "How would you (consumer without access to the source code being deployed) know (given that the machine can be made to fake output to whatever is most likely to make you think it's behaving normally)?"
Jesus.