Nowadays you use the fTPM built inside the CPU. And if you don't trust the CPU maker, well, you have bigger problems.
On Intel & AMD, both have a "hidden core" (i.e., a 4-core processor is really a 5-core processor), and they run proprietary, closed-source operating systems that literally no one outside of Intel or the NSA has any idea what they do.
We do know it has full access to the fTMP, RAM, and Network.
We also know that the NSA has a special contract to obtain Intel processors with the IME disabled... Why would they want that if the processors were trustworthy[1]?
[1] https://web.archive.org/web/20170830201623/https://hardocp.c...
Every email gets flagged as “opened,” so the flag is meaningless, and recipients can see the images without triggering a tracker.
https://www.litmus.com/blog/gmail-prefetching-images