From a security engineering standpoint, I don’t buy the idea that implant calibration sessions are disposable telemetry. The traces help tune decoding, but they can also reflect motor intent and fatigue, and may expose changes in neurological state that a patient reasonably considers intensely personal. Calling them “necessary for model improvement” doesn’t settle who should control them.
Patients should be able to inspect and export the raw traces and the derived calibration records. Deletion needs more nuance: erasing a personal copy or stopping secondary-use retention is different from deleting information clinicians need for safety, recalibration, or longitudinal review. Vendors may have legitimate performance and safety reasons to retain some data, but indefinite, unauditable retention creates breach, surveillance, and lock-in risks.
Would anyone accept a neural implant whose calibration history could not be independently audited or erased?