@jneen @mcc gatekeeper is an incredibly arse-backwards way to implement platform security and could only be conceived by someone who has a binary view of the world: our code=good, anybody else's code=bad.
Why shouldn't I be allowed to have security while also having the ability to run what I want? What does it take to get these organisations to understand that security isn't binary?
Very few systems exist that solve this in the correct way, with Qubes OS probably being the most mature. Sadly these come with their own set of drawbacks which makes them suboptimal to a lot of people.
There is unfortunately no incentive for platform vendors to pursue this because locking down the platform also aligns with the financial incentives of the companies so we're just going to see more of this.