...ok. Thanks for the suggestion. I certainly don't mean to indicate anything other than being serious about user privacy. I'm sorry that I come across as being cavalier-- I just meant to show both that I will be the only person who ever has control of this data, for all of eternity, and that on top of that it's unclear to me what the magnitude of the absolute worst case scenario is: even assuming it's possible to find out who one of the users actually is (which, as I said earlier, I will be doing under no circumstances), about all I can say is that I know what URLs they visited between yesterday and Friday morning.
But yeah-- I will at no point manually read more than an incidental number of any particular user's history entries and snapshots (by incidental I mean that if I observe some sort of pattern I will probably look at the urls in the pattern, but not even look at the rest of the user's data stream other than via algorithm).
I will update the wording of the blog right now-- thanks for the concern. I don't want people to not download it because they think I'm trying to do something sketchy.