>If you trust the OS kernel and features to keep things separated, there's no reason to run Qubes in the first place.
Yeah i see the argument - thats why I would still call Qubes very secure as is - but i personally prefer defense in depth. Mainly it would be helpful on machines with limited ram that can only run a few domains at once.