Or how to protect traffic if secondary profile suddenly opened but "system vpn service" crashed? In this case all traffic are going through WIFI or mobile data without VPN and system protection does not help at all.
Also, sometimes I see that DNS traffic leak. It is not good for privacy.
Another OS provides Firewall but I want to keep GrapheneOS and do not want to switch.. but... privacy problem is more important for that vulnerable and exploit protection.