Encryption of app vms?

I’m not clear on what you want that isn’t included in
secondary-storage
As you know, the docs are a a collaborative effort, so feel free to
clarify/add matter if you think it is missing.

I need to test and maybe sleep on that, but I have preliminary questions :

  • can’t I mess things up by creating a new volume in the main “vm-pool”, and registering that with Qubes ?

No - they appear in Qubes manager.
I cant speak for the GUI tools but the command line tools fail
gracefully if the backing volumes are not available.