Agreed.
Full disk encryption on a device you have full control of is sufficient.
Containerization helps if you install untrusted apps.
Not having root helps if you install untrusted apps (either vulnerabilities/exploitable or malicious) as root.
Containers are not security.
Don't trust containers to have the same level of isolation as a VM.
Containers are not security.
Don't trust containers to have the same level of isolation as a VM.