I am looking to use HEADS in combination with this guide: Install Qubes OS with boot partition and a detached LUKS header on USB to essentially have the Qubes boot partition on a USB security dongle like Nitrokey Storage (I personally don’t need a detached LUKS header but don’t mind it).
The purpose of this for me is to achieve reasonable security when dualbooting and encrypt the boot partition.
I may have made it too complicated in my brain, do I just do it? Is there anything to consider? Anyone have experiences with it? HEADS would run on the actual motherboard, not the USB, right? Am I missing something obvious? Is there anything extra to configure for this set-up that is not explicitly clearly handholdingly covered by the official HEADS installation guide or the guide made by @apparatus ?
I am still learning, that much is probably obvious, and yes I may brick my system in the process of flashing HEADS by not knowing what I’m doing but I like to live dangerously.