... a bootloader that can reliably and accurately report on the kernels and OSs it finds on ...
... your bootloader for a signed hash of itself and verify that the signature of the hash ...