So it is possible to reboot into the firmware update mode just by sending some bytes to the raw HID interface. Apparently they did not think about the security aspect of this feature.
EDIT: I have created an issue here: https://github.com/system76/launch/issues/17
We do not intend for the production firmware to include any software reset to bootloader functionality. It will require a physical keypress (Fn+ESC)
So it is possible to reboot into the firmware update mode just by sending some bytes to the raw HID interface. Apparently they did not think about the security aspect of this feature.