With the upcoming nothing os 3.0 update coming up, I think it would be a good idea to make it require a passcode to shutdown the phone whilst it is locked.
Same should apply to use the quick settings tiles. Of course this might affect someone so this should be added as a toggle.