You can encrypt your /boot partition with Argon2, which allows you to have a fully encrypted disk. You can check the integrity of your kernel at boot via Libreboot GRUB using GPG. Not as much spyware as you get with modern day computers. I know there is still proprietary ECs, microcode, etc. but we should all be trying to minimize proprietary software as much as possible.
You can encrypt your /boot partition with Argon2, which allows you to have a fully encrypted disk. You can check the integrity of your kernel at boot via Libreboot GRUB using GPG. Not as much spyware as you get with modern day computers. I know there is still proprietary ECs, microcode, etc. but we should all be trying to minimize proprietary software as much as possible.