You'll notice Notable
Managed OS-admin settings can now become the policy base mid-session, not only at launch, announcing the tier change.
The policy-helper subsystem, used for managed and remote-armed permission settings, gains mid-session arming: a midSessionArmingEnabled flag plus new state (osAdminArming, decidedOrigin, remoteFailedConfig, releaseLatchWhenTickSettles, readRemotePayload) lets an OS-admin managed-settings source become the policy's "base" after startup rather than only at launch, announcing the tier change when it takes effect. Previously this decision was made once at startup only.