aqua-ghostly If this is your threat model no OS will fix it. You would need to rely on some serious tradecraft.
Ilgar IMO, best workaround would be to set duress password to open decoy profile or at least main profile (configured as decoy) and silently wipe esims / private space / secondary profiles for plausible deniability.