In terms of security features, it lacks on-the-fly external memory (flash and PSRAM) encryption and decryption as ESP32 and some newer STM32s did.
Decrypting by custom OTP bootloader and running entirely in the internal SRAM maybe sometimes limited for larger firmware.