---
title: SecurityInfoResponse.SecurityInfo.SecureBoot.ReducedSecurity
framework: devicemanagement
role: symbol
role_heading: Device Management Command
path: devicemanagement/securityinforesponse/securityinfo-data.dictionary/secureboot-data.dictionary/reducedsecurity-data.dictionary
---

# SecurityInfoResponse.SecurityInfo.SecureBoot.ReducedSecurity

Reports which security features the user disables in recoveryOS. This property is only present for a Mac with Apple silicon when SecureBootLevel is medium.

## Declaration

```data
object SecurityInfoResponse.SecurityInfo.SecureBoot.ReducedSecurity
```

## Properties

AllowsAnyAppleSignedOS: If ‘true’, allows any signed version of trusted system software from Apple to run. AllowsMDM: If ‘true’, the MDM server controls kernel extensions and software updates. AllowsUserKextApproval: If ‘true’, the user has control over kernel extensions.
