according to https://www.linux.it/~ema/posts/secure-boot-rpi/, a port of [TianoCore](https://www.tianocore.org/) UEFI firmware can be used instead of the proprietary boot blob to boot a Raspberry Pi.