That way, you don't know who each update came from, and if you isolated each update, you wouldn't even know if two updates came from the same user.
I haven't taken much time to consider the ramifications, my gut says this would open you up to malicious users who could pass in malicious updates in an attempt to train unwanted behaviour in your model, but I believe this would be an issue with any federated learning approach unless you only use trusted users.
It also does away with the nice efficiency gain you get by averaging the samples based on how many examples the user had.
Of course, this is only useful when reconstructed data doesn't contain enough metadata to ID users anyway.