k0s should enable [pod security standards](https://kubernetes.io/docs/concepts/security/pod-security-standards/) for all the system components it manages.