Multi-Analyst Differential Privacy for Online Query Answering
David Pujol, Albert Sun, Brandon Fain, Ashwin Machanavajjhala
Abstract
Most differentially private mechanisms are designed for the use of a single analyst. In reality, however, there are often multiple stakeholders with different and possibly conflicting priorities that must share the same privacy loss budget. This motivates the problem of equitable budget-sharing for multi-analyst differential privacy. Our previous work defined desiderata that any mechanism in this space should satisfy and introduced methods for budget-sharing in the offline case where queries are known in advance. We extend our previous work on multi-analyst differentially private query answering to the case of online query answering, where queries come in one at a time and must be answered without knowledge of the following queries. We demonstrate that the unknown ordering of queries in the online case results in a fundamental limit in the number of queries that can be answered while satisfying the desiderata. In response, we develop two mechanisms, one which satisfies the desiderata in all cases but is subject to the fundamental limitations, and another that randomizes the input order ensuring that existing online query answering mechanisms can satisfy the desiderata.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers3
- DProvDB: Differentially Private Query Processing with Multi-Analyst ProvenanceShufan Zhang, Xi HeSIGMOD 2024 · 10 citations
- ProBE: Proportioning Privacy Budget for Complex Exploratory Decision SupportNada Lahjouji, Sameera Ghayyur, Xi He, Sharad MehrotraCCS 2024 · 2 citations
- Big Bird: Resilient Privacy Budgeting Across Untrusted Web DomainsPierre Tholoniat, Alison Caulfield, Giorgio Cavicchioli, Mark Chen et al.SOSP 2026
Builds on1
Related papers
- LAPRAS : Learning-Augmented PRivate Answering for linear query Streams.Pranay Mundra, Adam Sealfon, Ziteng Sun, Quanquan LiuICML 2026
- Better than Composition: How to Answer Multiple Relational Queries under Differential PrivacyWei Dong, Dajun Sun, Ke YiSIGMOD 2023 · 16 citations
- Residual Sensitivity for Differentially Private Multi-Way JoinsWei Dong, Ke YiSIGMOD 2021 · 32 citations
- Privacy Budgeting for Growing Machine Learning DatasetsWeiting Li, Liyao Xiang, Zhou Zhou, Feng PengINFOCOM 2021 · 14 citations
- Answering Private Linear Queries Adaptively using the Common MechanismYingtai Xiao, Guanhong Wang, Danfeng Zhang, Daniel KiferVLDB 2023 · 9 citations
