Cool, looking forward to your next posts!
My understanding is the 2019 hardware has secure boot -- which the 2016 hardware cannot support.
The 2016 era hardware has relatively modern firmware versions available, but the hardware security is likely different and therefore the potential hacks will be different. Lots of opportunity to explore.