I switched a workstation to Secureblue for the very specific security priorities targeted by that project, but I think for the majority of users, the main reason for not switching to atomic is one you mentioned: why fix what isn't broken? The main selling point promoted to potential new users seems to be that updates don't break anything, but I can't remember a single time since Debian Sarge that an update broke anything for me, and I actually find the rpm-ostree package layering and updating process to be far more of a headache than otherwise.
Unless it's prepackaged like a steam deck, moving from the traditional way of doing things to atomic is a major change. Like any major change, people need a good reason to make it, and I think right now the only compelling ones are either hyper-specific (switching to okd and needing to build it on coreos, wanting to move to a specific atomic project, etc.), or just general curiosity.
Courts have ruled that cops can damage property in the course of their duties with no accountability or compensation required, so they'd probably just bulldoze it out of the way and destroy it. And then insurance would say they don't cover official acts of cops, and then the cops would send a bill for damaging their bulldozer.
There's probably more fun and effective ways to go bankrupt obstructing ICE.
I throw dust jackets away immediately, because I think they're an abomination and books look and feel better without them. And then I dog-ear the pages because it gives them character.
Unless "read-only" is being enforced by hardware (reading from optical media, etc), a compromised sudo user can circumvent anything, and write anywhere. A read-only flag or the root filesystem being mounted from somehwere else are just trivial extra steps in the way.
Improved security != extremely secure, is all I'm saying. There are a lot of things that go into making a system extremely secure, and while an immutable root filesystem may be one of them, it doesn't do the job all on its own as advertised in this post.
The root filesystem is being read from somewhere, and if it's being read from, it can be written to. Having an extra step or two in the way doesn't make it "extremely secure".
They do actually want to ban Buck Angel from using the men's room, and this is the point I always use to illustrate the real hatred underlying this issue. They want people like Buck to be forced into the choice between facing arrest for using one bathroom, or facing violence for using the other. That's the only point of these measures - to make violence and legal threat the only two options available.
The goal is to ban trans people from existing in public.
Training and familiarization helped me a lot with that exact feeling. I had the same feeling about circular/table saws. My dad was a carpenter, and those things freaked me the hell out - one tiny mistake could have devastating consequences, and that was all I could think about when I was around them. But with careful instruction and exposure, learing to use and be more comfortable with them, that feeling was gradually replaced by calm and confidence, and they changed in my mind from these objects of terror into valuable tools. There was still fear, but it was a healthy, respectful fear.
I went through the exact same process with guns as well. Some classes with a good instructor, giving you a chance to get more comfortable and familiar before you bring a gun into your home, could help a lot.
I have a 43-inch Insignia N10 that works great in exactly that role. Dumb TV with HDMI inputs, audio outputs, and that's about it. Best Buy's in-house brand, it was like 120 bucks about a year ago, when my Vizio TV from 2003 finally died in a way I couldn't fix :(
The built-in speakers aren't great, definitely recommend hooking it up to something else.
I switched a workstation to Secureblue for the very specific security priorities targeted by that project, but I think for the majority of users, the main reason for not switching to atomic is one you mentioned: why fix what isn't broken? The main selling point promoted to potential new users seems to be that updates don't break anything, but I can't remember a single time since Debian Sarge that an update broke anything for me, and I actually find the rpm-ostree package layering and updating process to be far more of a headache than otherwise.
Unless it's prepackaged like a steam deck, moving from the traditional way of doing things to atomic is a major change. Like any major change, people need a good reason to make it, and I think right now the only compelling ones are either hyper-specific (switching to okd and needing to build it on coreos, wanting to move to a specific atomic project, etc.), or just general curiosity.