+CONFIG_LOCK_DOWN_KERNEL | y | clipos | self_protection || OK
+CONFIG_SECURITY_DMESG_RESTRICT | y | clipos | self_protection || FAIL: "is not set"
+CONFIG_DEBUG_VIRTUAL | y | clipos | self_protection || FAIL: "is not set"
+CONFIG_STATIC_USERMODEHELPER | y | clipos | self_protection || FAIL: "is not set"
+CONFIG_SLAB_MERGE_DEFAULT | is not set | clipos | self_protection || FAIL: "y"
+CONFIG_GCC_PLUGIN_RANDSTRUCT_PERFORMANCE| is not set | clipos | self_protection ||FAIL: CONFIG_GCC_PLUGIN_RANDSTRUCT is needed
+CONFIG_GCC_PLUGIN_STACKLEAK | y | clipos | self_protection || FAIL: not found
+CONFIG_STACKLEAK_METRICS | is not set | clipos | self_protection ||FAIL: CONFIG_GCC_PLUGIN_STACKLEAK is needed
+CONFIG_STACKLEAK_RUNTIME_DISABLE | is not set | clipos | self_protection ||FAIL: CONFIG_GCC_PLUGIN_STACKLEAK is needed
+CONFIG_RANDOM_TRUST_CPU | is not set | clipos | self_protection || OK: not found
+CONFIG_MICROCODE | y | clipos | self_protection || OK
+CONFIG_IOMMU_SUPPORT | y | clipos | self_protection || OK
+CONFIG_INTEL_IOMMU | y | clipos | self_protection || OK
+CONFIG_INTEL_IOMMU_SVM | y | clipos | self_protection || OK
+CONFIG_INTEL_IOMMU_DEFAULT_ON | y | clipos | self_protection || FAIL: "is not set"
+CONFIG_AMD_IOMMU | y | my | self_protection || OK
+CONFIG_AMD_IOMMU_V2 | y | my | self_protection || FAIL: "m"