Note that Google SafetyNet is now (as of mid-March 2020) requiring hardware-based remote attestation in order to pass their "CTS" check. This check will fail if the bootloader is not in its default "locked" state, and cannot be feasibly bypassed by Magisk. https://github.com/topjohnwu/magisk_files/blob/master/notes....
Magisk (and even its 'hide' component) will still be useful for many purposes, but we should not be expecting it to pass all such "safety" checks.
Magisk (and even its 'hide' component) will still be useful for many purposes, but we should not be expecting it to pass all such "safety" checks.