Showing posts with label personal data. Show all posts
Showing posts with label personal data. Show all posts

Wednesday, 4 April 2018

Privacy Commissioner finding from investigation into published MBS / PBS dataset

https://www.oaic.gov.au/media-and-speeches/statements/australian-privacy-commissioner-s-investigation-into-published-mbs-and-pbs-data-sets

"The Commissioner considered that the risk of re-identifying medical providers whose information was in the dataset was not sufficiently low, and that the Department’s processes for assessing the risks associated with publication were inadequate. The Commissioner’s view was that, in the course of publishing the dataset, the Department breached the Privacy Act 1988 (Cth).
In accepting an enforceable undertaking, the Commissioner acknowledged that the breaches were unintentional, and that the Department’s decision to publish the dataset was made on the understanding that the privacy interests of all relevant individuals were protected. The Commissioner noted the cooperative manner in which the Department approached the investigation, the quick and comprehensive steps it took to minimise the privacy impact of the incident once it was alerted to the risk of re-identification, and the improvements it has since put in place to enhance its data governance and release processes."
"This incident holds important lessons for custodians of valuable datasets containing personal information. Determining whether information has been appropriately de-identified requires careful, expert, and likely independent evaluation. Who the information is released to must also be considered.
Appropriate processes should sit behind any decision to release de-identified personal information. This incident offers an opportunity for Australian Government agencies to strengthen their approach to publishing data derived from personal information. Since this incident, the Australian Government has developed a Process for Publishing Sensitive Unit Record Level Public Data as Open Data, providing guidance on releasing datasets related to personal information."
"Realising the value of public data to the benefit of the community is dependent on the public’s confidence that privacy is protected. The OAIC continues to work with Australian Government agencies to enhance privacy protection in published datasets. Recently the OAIC and CSIRO’s Data61 jointly published the De-identification Decision-Making Framework (DDF). This provides guidance to Australian organisations that handle personal information on meeting their ethical responsibilities and legal obligations (such as those under the Privacy Act) when considering how datasets may be shared or released. The OAIC has also recently released an updated guide on De-identification and the Privacy Act, and a Guide to Data Analytics and the Australian Privacy Principles."


.... and some analysis and context for this https://www.themandarin.com.au/90624-health-breached-privacy-act-open-data-risk-patients-dismissed-oaic/

Friday, 2 March 2018

Amnesia, the data anonymization tool of OpenAIRE that allows to remove identifying information from data, is up and running in beta mode

https://www.openaire.eu/amnesia-is-up-and-running

"Amnesia is a flexible data anonymization tool that allows to remove identifying information from data."

"Amnesia does not only remove direct identifiers like names, SSNs, etc., but also transforms secondary identifiers like birth date and zip code so that individuals cannot be identified in the data. Amnesia supports k-anonymity and km-anonymity."

COEL Specification: a privacy-by-design framework for the collection and processing of behavioural data

"We are pleased to announce that the Classification of Everyday Living Version 1.0 from the OASIS COEL TC was approved as an OASIS Committee Specification on 25th February 2018.
Digital technologies are becoming integral to our daily lives. They promise huge benefits to society, but the resulting data creates many challenges for an individual's privacy.
The COEL Specification provides a privacy-by-design framework for the collection and processing of behavioural data. It is uniquely suited to the transparent use of dynamic data for personalised digital services, IoT applications where devices are collecting information about identifiable individuals and the coding of behavioural data in identity solutions."


https://17d7qj42wrunagbc02q1r561-wpengine.netdna-ssl.com/wp-content/uploads/2018/03/OASIS-COEL-CS-announcement.pdf


  1. A wide range of different services and processes can qualify as implementations of the COEL Specification. Examples include, but are not limited to:
    • A Data Engine could use the COEL Specification to structure and manage the dynamic personal data it is set up to receive and process;
    • A Personal Data Store could use the COEL Specification to structure the dynamic personal data it is designed to manage;
    • A Personal Electronic Device could use the COEL Specification to communicate the personal event data that it can output;
    • An Internet of Things (IoT) Device which interacts with identifiable individuals could use the COEL Specification to communicate the personal event data that it can output;
    • An Identity Authority could use the COEL Specification to deliver and check unique pseudonymised keys;
    • A Data Portability Exchange could use the COEL Specification to translate personal data stored in another format into compliant Behavioural Atom data;
    • A User Interface could use the COEL Specification to code and interpret interactions with an individual;
    • A Customer Relationship Manager (CRM) could use the COEL Specification to code, store and analyse interactions with an individual.

Tuesday, 20 February 2018

Wednesday, 31 January 2018

There’s no way to keep our personal data safe

Article from The Times

In the age of data, we all leave footprints. Sometimes that’s a metaphor. Sometimes not so much. For the past couple of months, as you may have read yesterday, literal footprints have made the perimeters and internal pathways of almost every western military base wholly public. Probably even the secret ones. Nobody meant for this to happen. It’s not even anybody’s fault. Yet there they are, in Yemen, Somalia, Afghanistan, Syria, and almost everywhere else, lit up in red.

Read the whole article

Thursday, 31 July 2014



I Know Where Your Cat Lives, A Data Experiment Featuring Public Pictures of Cats on a World Map Based on Metadata

by  at LaughingSquid.com


I Know Where Your Cat Lives is a data experiment by Owen Mundy featuring public pictures of cats on a world map based on latitude and longitude coordinates obtained in their metadata. Mundy used at supercomputer atFlorida State University to run the 1 million pictures of cats gathered from publicly available APIs through a series of clustering algorithms in order to prepare them for the site. Mundy is currently raising funds to pay for hosting via a Kickstarter crowdfunding campaign.

Tuesday, 29 July 2014

Living with Data: Stories that Make Data More Personal

"The main idea is that we need more stories that ground data in personal, everyday experience. We need personal data stories make data uses intelligible and impacts personal."
...
"So while data is making our behaviors, habits, and interests more legible to firms and governments, as consumers we haven’t yet developed the critical literacies to understand what our data is saying about us and more importantly how it is shaping our experience."
...
Great blog post and videos from Sara Watson of the Berkman centre - Harvard
http://www.saramwatson.com/blog/video-living-with-data-stories-that-make-data-more