As a continuation of https://github.com/riscv-non-isa/riscv-brs/issues/82: - Require signed capsules - Require validation before any destructive operations - Require bad update handling (bad flash, power outage, that sort of thing) These could be predicated on secure boot, hypothetically.
As a continuation of #82:
These could be predicated on secure boot, hypothetically.