Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Can't filter anonymous contact set by identity #3

Open
cbrettin opened this issue Apr 27, 2020 · 2 comments
Open

Can't filter anonymous contact set by identity #3

cbrettin opened this issue Apr 27, 2020 · 2 comments

Comments

@cbrettin
Copy link

Not sure if you are looking for feedback on this, but there is a rather glaring problem with your mention of missed opportunity to filter contacts before upload - it isn't actually possible to filter contacts according to known identities if they have been properly anonymised, since since by definition you can't tell which contact records belong to which person.

@vteague
Copy link
Owner

vteague commented Apr 27, 2020 via email

@Richisfree
Copy link

Totally agree with @cbrettin here. @vteague I'm sorry but are you suggesting that the definition of "haven't been properly anonymised" is recording a time stamp and the phone model in plain text? I guess you're right, the process could be "improved" if a user could keep a diary of every time they were with people they didn't want the government to know they were with and then tell the health worker they would like to exclude logs within these times. But, perhaps though it would be easier just to turn the app off as you suggested in the analysis... I really fail to see the missed opportunity here and how that presents a privacy risk that is at all comparable to the daily privacy risks we incur upon ourselves. As I type this on my browser (factory settings) github can record my screen resolution, my operating system, by browser make, model and version, my IP address and associated geolocation and of course associate this with the details I provided it when I created my account and my activity on the GitHub platform. If members of my workplace or family log onto Github they can now associate them to me via (at least) the IP address, particularly if patterns emerge of these device fingerprints and the same IP addresses. Useful info for an advertising company (eg Facebook, Instagram, Twitter, Google) or an online marketplace (ebay, amazon, gumtree) for profiling us. Honestly, the data that is being gathered by COVIDSafe by comparison is extremely innocuous. I can't support the analysis until it's put in perspective. People, if you want to protect your granny and you aren't a terrorist, an organised crime lord or a spy I highly recommend downloading the COVIDSafe app with enthusiasm.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants