Adaptive Privacy Composition for Accuracy-first Mechanisms
Ryan M. Rogers, Gennady Samorodnitsky, Zhiwei Steven Wu, Aaditya Ramdas
Abstract
In many practical applications of differential privacy, practitioners seek to provide the best privacy guarantees subject to a target level of accuracy. A recent line of work by Ligett et al. '17 and Whitehouse et al. '22 has developed such accuracy-first mechanisms by leveraging the idea of noise reduction that adds correlated noise to the sufficient statistic in a private computation and produces a sequence of increasingly accurate answers. A major advantage of noise reduction mechanisms is that the analysts only pay the privacy cost of the least noisy or most accurate answer released. Despite this appealing property in isolation, there has not been a systematic study on how to use them in conjunction with other differentially private mechanisms. A fundamental challenge is that the privacy guarantee for noise reduction mechanisms is (necessarily) formulated as ex-post privacy that bounds the privacy loss as a function of the released outcome. Furthermore, there has yet to be any study on how ex-post private mechanisms compose, which allows us to track the accumulated privacy over several mechanisms. We develop privacy filters [Rogers et al. '16, Feldman and Zrnic '21, and Whitehouse et al. '22'] that allow an analyst to adaptively switch between differentially private and ex-post private mechanisms subject to an overall differential privacy guarantee.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 8bd56de7-0736-49d3-a08d-11c45f228102Cited by top-tier papers2
- Private Hyperparameter Tuning with Ex-Post GuaranteeBadih Ghazi, Pritish Kamath, Alexander Knop, Ravi Kumar et al.NeurIPS 2025 · 4 citations
- Accuracy-First Rényi Differential Privacy and Post-Processing ImmunityOssi Räisä, Antti Koskela, Antti HonkelaICML 2026
Builds on5
- Individual Privacy Accounting via a Rényi FilterVitaly Feldman, Tijana ZrnicNeurIPS 2021 · 124 citations
- Fully-Adaptive Composition in Differential PrivacyJustin Whitehouse, Aaditya Ramdas, Ryan Rogers, Steven WuICML 2023 · 56 citations
- Composition Theorems for Interactive Differential PrivacyXin LyuNeurIPS 2022 · 29 citations
- Brownian Noise Reduction: Maximizing Privacy Subject to Accuracy ConstraintsJustin Whitehouse, Aaditya Ramdas, Zhiwei Steven Wu, Ryan M. RogersNeurIPS 2022 · 16 citations
- Concurrent Composition Theorems for Differential PrivacySalil P. Vadhan, Wanrong ZhangSTOC 2023 · 11 citations
Related papers
- Concurrent Composition for Interactive Differential Privacy with Adaptive Privacy-Loss ParametersSamuel Haney, Michael Shoemate, Grace Tian, Salil P. Vadhan et al.CCS 2023 · 4 citations
- Private Lossless Multiple ReleaseJoel Daniel Andersson, Lukas Retschmeier, Boel Nelson, Rasmus PaghICML 2025
- Meeting Utility Constraints in Differential Privacy: A Privacy-Boosting ApproachBo Jiang, Wanrong Zhang, Donghang Lu, Jian Du et al.S&P 2025
- Answering Private Linear Queries Adaptively using the Common MechanismYingtai Xiao, Guanhong Wang, Danfeng Zhang, Daniel KiferVLDB 2023 · 9 citations
- Tight on Budget?: Tight Bounds for r-Fold Approximate Differential PrivacySebastian Meiser, Esfandiar MohammadiCCS 2018 · 61 citations
