It would be great if the SMEPMP extension were added as an option: https://github.com/riscvarchive/riscv-tee/blob/main/Smepmp/Proposal.adoc I unfortunately don't have time to do a PR right now myself, but this should be fairly straightforward.