It is a flaw in the TrueCrypt driver, which, as a driver, runs with special privileges and access normal apps don't have. Drivers require elevation to install and I believe there is a separate install verification dialog for some types of drivers thus Windows has already done its job of protecting you the best it can.

Only the RADIO firmware has to be intact. In theory you can still modify whatever else you want. But the fear here is that companies may take the path of least resistance to meet compliance, which may result in all the router software getting locked down, instead of that specific piece of it.

Well they can collect data while the app is running, but as I understand it the app can't do anything when you Force Stop it until you restart it, or you reboot in which case it can once again be woken up by any events it is listening for (including the reboot).

You can also Greenify it (I am rooted, though I understand Greenify still works unrooted I don't know how well) and that should have a similar effect every time you turn off your phone if the app isn't in the foreground.

