Abstract
<p>This book analyzes the protection of human thoughts in the age of brain-computer interfaces and demonstrates why existing data protection instruments reach their limits when human cognition itself becomes the subject of technological processing. It systematically examines which new categories of data are emerging and what risks to privacy, autonomy, and identity are associated with them. Building on this, the work examines key principles of the GDPR—such as consent, data categorization, and security—for their future viability and develops initial reform proposals. The book is aimed at lawyers, data protection experts, and researchers at the intersection of law and neurotechnology. This title is also available as Open Access.</p>