If this had been ready ten years ago it would have been dangerous. Now Linux is big enough that it will merely be worrysome.
I think it would be worthwhile thinking about what an acceptable solution would look like. As long as it becomes easy to add more keys I think it's not a big deal. I'm honestly not clear how we would expect this to work. Just disabling would be ok, but what if I want to use trusted boot myself?