4 ms·
Does anyone know if the "differential privacy" is done on the device before send the data to Apple? Seems unlikely, but oddly couldn't get an answer from Apple.
by nxzero 10y ago
Does anyone know if the "differential privacy" is done on the device before send the data to Apple? Seems unlikely, but oddly couldn't get an answer from Apple.
- dalbin 10y agoIt looks like it is done on the device based on the framework header : https://github.com/JaviSoto/iOS10-Runtime-Headers/tree/master/PrivateFrameworks/DifferentialPrivacy.framework https://github.com/JaviSoto/iOS10-Runtime-Headers/tree/maste...
- yousry 10y agoInteresting. I thought that with DP the user data is anonymized by a random function with the value range based on the complete sample set. I also expect that the data is encrypted before transmission and I expect some kind of unique signature which is somehow stored on the device. The transmission itself is certainty logged on client and server side. If I understand this framework correct the epsilon range for the randomization can be selected by hand before the transmission and also the number of collected parameters is not limited. Why is this called "differential privacy"?
- nicky0 10y agoPerhaps named because the system is based on differences between the true value and the reported value .... and then summing the aggregate data removes these 'differences'.
- ohthehugemanate 10y agoYes, that's the whole point. Apple's servers never see the raw data.
- yihangho 10y ago"[...] software on a person’s device adds noise to data before it is transmitted to Apple. The company never gets hold of the raw data." So I guess yes?
- nicky0 10y agoWhy unlikely? Doing it anywhere but in the device would defeat the purpose of the whole system.
- mcphage 10y agoFrom the article: "In the version of differential privacy Apple is using, known as the local model, software on a person’s device adds noise to data before it is transmitted to Apple. The company never gets hold of the raw data."