Not sure how far fetched an accusation can be in this case.
If the data is accessible in plain text on a device that is clearly linked to an identifiable natural person, which is data that an attacker can easily access, the point of "just this one log file not containing the data" is pretty much mute.
Would be an interesting case.