But good point, there would need to be a “security” switch or else, that you select and that actually hardens the browser.
Vanilla should always work, and I agree I sometimes need a vanilla profile.
Firefox profiles are also horribly integrated into firefox. Like there is no GUI way to switch them, without entering “about config”. People think Firefox has no profiles and think thats a Chrome thing, which is fucked up as Chrome copied that
Fedora packages a Flatpak Firefox themselves, based off the RPM. So its good too, but lacks codecs with currently no way to enable them so yeah. They would need am extension of some sort hosted on Flathub. So simply using Firefox Flatpak from Flathub makes more sense.
I got a Nitrokey for Heads but for some reason it never arrived? I can say these things are very expensive. And Heads uses PGP and not others.