"Engineers, with permission from Microsoft’s privacy governance team, can obtain users' documents that trigger crashes in applications, so they can work out what's going wrong, from people's machines running in "full" mode."

So what exactly is in place to stop an engineer from putting in a forged request to access a users files, and stealing important stuff? Microsoft’s privacy governance team? How do they set about checking the files are really necessary? How do they ensure the data are discarded after the problem has been sorted?

Why not ask the user for a file that triggered a crash of a program? Is that not actually far less work than going through some internal privacy governance team? It would also look MUCH more customer friendly. And of course the user has the chance to say that the data is confidential and they can go suck a neutron star.

Somehow I think "full" mode is out of the question for many, if not most professional users.

