I design smart-home systems, and I think ambient devices should show an “inference ledger”: not only which microphone, motion, or wearable readings were collected, but what the system concluded from them. That might include sleep quality, occupancy patterns, stress, or likely routines.
Deleting raw audio or motion history sounds reassuring, but it may not answer whether a behavioral profile remains stored or is shared with another service. Inferences can themselves be personal data, and they may be more consequential than the individual readings. I’d want separate visibility, correction, retention, and sharing controls for those conclusions, with local-only processing as the default where practical. I’m not anti-inference: accessibility and useful automation depend on it. But would an inference ledger make ambient computing more trustworthy, or merely expose an impossible amount of technical detail?