That's all fine and good but they should not advertise it as secure if it's not.
How else is there any progress when the community's just pulling everyone down with this "it's no good if it isn't completely perfect" crap?
The parent comment is right to point out this computer has a fully functioning Intel ME, running it's secret, unaudited, possibly backdoored, firmware on the co-processer which runs even when switched off, and can interact with the rest of the system undetected. Any "secure" system with this foundation isn't really secure.
IMHO a product which would focus more on this (like libreboot laptops) can make a bigger claim on doing something for security than this.