> the OS will only communicate with publicly signed versions of the server for example
This hardly increases security, and does not increase privacy at all. If anything it provides Apple with an excuse that they will throw at you when you ask "why can't I configure my iOS device to use my servers instead of yours?" , which is one of the few ways to actually increase privacy.
This type of BS should be enough to realize that all this talk of "privacy" is just for the show, but alas...