Turns out the kernel has the ability to restrict the SMCs possible depending on the badge of the SMC cap. We should add the ability for PDs to make use of that.