People stopped using dedicated TPM about 10 years ago exactly because it's trivial to sniff it.
Nowadays you use the fTPM built inside the CPU. And if you don't trust the CPU maker, well, you have bigger problems.