The mechanism is known as disabling through the HAP bit, which has been the preferred method since IME 11. This approach draws inspiration from me_cleaner, with documentation available on a wiki detailing various implementation methods. For this specific laptop model, the feature is accessible as a menu option in the UEFI/EDK2 firmware settings. Successful implementation can be verified by the absence of the HECI PCIe device, with additional analysis tools available in the coreboot repository. The HEADS variant does come with an "hard-wired" disabled IME.