Apple T2 Security enclave concerns
Concerned with my 2019 Intel MacBook Pro with the T2 Chip as someone can physically unlock it just by going to recovery and opening terminal, and typing in a command, I assume it's "resetpassword" and the password can be reset and accessed, Now, I CAN set up a firmware password to prevent something like this, but sometimes it may not be ideal for my environment, and/or I assume that it can be bypassed one way or another, Any suggestions?
MacBook Pro 15″, macOS 15.8