I’m comfortable with local processing, but I’m uneasy when “harmless” ambient sensors are treated as harmless by default. A home may never upload camera footage or microphone audio, yet motion, temperature, Wi‑Fi presence, and appliance events can be combined to estimate occupancy and recurring routines: when someone sleeps, works, leaves, or has visitors. Wi‑Fi and appliance activity research makes that inference plausible even when each individual signal seems ambiguous.
Privacy controls should govern the derived behavioral profile, not merely the raw readings. My preferred safeguard is local inference with short-lived raw events, a user-visible log of conclusions and confidence, and a way to delete conclusions already made—not just the inputs. That preserves useful occupancy-aware lighting or heating without making the household’s schedule an invisible permanent record.
Do inferred routines deserve the same protection as recordings? I’d like to hear about implementations, objections, or better safeguards.