Specs seem to list UEFI Secure Boot, which has been unlockable on all of Microsoft's Surface devices
and previous ARM outings. Shipping this with a locked bootloader would be one hell of a breach from tradition (and probably undermine it's usefulness as a dev box anyways).
Regardless, the internal SOC is the same as the new ARM Thinkpad which also shipped with an unlocked bootloader. Pretty much everything suggests that this will ship unlocked.