I’m increasingly convinced that mixed-reality glasses should be required to handle bystander detection locally when they recognize, blur, or label people in a public place. Keeping identifiable video or biometric material on the headset can reduce the breach and scope-creep risks of a centralized system, even if it does not make the processing harmless.
The uncomfortable part is that local recognition can still enable profiling, false matches, or covert social filtering. “Local” describes where the inference happens, not whether the person being observed has any meaningful protection. Detection, identification, and attribute inference also shouldn’t be casually bundled together.
I’d support a visible, auditable “bystander protection” mode with transient processing, immediate deletion, documented behavior, demographic/error testing, and absolutely no cloud fallback. Should that be a manufacturer requirement? Disagree, suggest implementation ideas, or explain how you’d verify the feature actually works.