DProvDB: Differentially Private Query Processing with Multi-Analyst Provenance
Shufan Zhang, Xi He
Abstract
Recent years have witnessed the adoption of differential privacy (DP) in practical database systems like PINQ, FLEX, and PrivateSQL. Such systems allow data analysts to query sensitive data while providing a rigorous and provable privacy guarantee. However, the existing design of these systems does not distinguish data analysts of different privilege levels or trust levels. This design can have an unfair apportion of the privacy budget among the data analyst if treating them as a single entity, or waste the privacy budget if considering them as non-colluding parties and answering their queries independently. In this paper, we propose DProvDB, a fine-grained privacy provenance framework for the multi-analyst scenario that tracks the privacy loss to each single data analyst. Under this framework, when given a fixed privacy budget, we build algorithms that maximize the number of queries that could be answered accurately and apportion the privacy budget according to the privilege levels of the data analysts. * This is the full version of the work being accepted for publication in Proc. of the ACM on Management of Data (SIGMOD 2024).
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext d5e62b48-58de-4496-91d1-31b34d213b8fCited by top-tier papers7
- Cohere: Managing Differential Privacy in Large Scale SystemsNicolas Küchler, Emanuel Opel, Hidde Lycklama, Alexander Viand et al.S&P 2024 · 9 citations
- Femur: A Flexible Framework for Fast and Secure Querying from Public Key-Value StoreJiaoyi Zhang, Liqiang Peng, Mo Sha, Weiran Liu et al.SIGMOD 2025 · 4 citations
- Elephants Do Not Forget: Differential Privacy with State Continuity for Privacy BudgetJiankai Jin, Chitchanok Chuengsatiansup, Toby Murray, Benjamin I. P. Rubinstein et al.CCS 2024 · 4 citations
- Privacy and Accuracy-Aware AI/ML Model DeduplicationHong Guan, Lei Yu, Lixi Zhou, Li Xiong et al.SIGMOD 2025 · 3 citations
- Sum Estimation under Personalized Local Differential PrivacyDajun Sun, Wei Dong, Yuan Qiu, Ke Yi et al.NeurIPS 2025 · 1 citation
Builds on12
- CGM: An Enhanced Mechanism for Streaming Data Collectionwith Local Differential PrivacyErgute Bao, Yin Yang, Xiaokui Xiao, Bolin DingVLDB 2021 · 47 citations
- R2T: Instance-optimal Truncation for Differentially Private Query Evaluation with Foreign KeysWei Dong, Juanru Fang, Ke Yi, Yuchao Tao et al.SIGMOD 2022 · 41 citations
- A Programming Framework for Differential Privacy with Accuracy Concentration BoundsElisabet Lobo Vesga, Alejandro Russo, Marco GaboardiS&P 2020 · 32 citations
- Residual Sensitivity for Differentially Private Multi-Way JoinsWei Dong, Ke YiSIGMOD 2021 · 32 citations
- Skellam Mixture Mechanism: a Novel Approach to Federated Learning with Differential PrivacyErgute Bao, Yizheng Zhu, Xiaokui Xiao, Yin Yang et al.VLDB 2022 · 21 citations
Related papers
- Budget Sharing for Multi-Analyst Differential PrivacyDavid Pujol, Yikai Wu, Brandon Fain, Ashwin MachanavajjhalaVLDB 2021 · 7 citations
- DP4SQL: Differentially Private SQL with Flexible Privacy PoliciesAndrew Cascio, KinChin Tong, Daniel Kifer, Zeyu Ding et al.CCS 2026
- Cache Me If You Can: Accuracy-Aware Inference Engine for Differentially Private Data ExplorationMiti Mazmudar, Thomas Humphries, Jiaxiang Liu, Matthew Rafuse et al.VLDB 2023 · 15 citations
- Multi-Analyst Differential Privacy for Online Query AnsweringDavid Pujol, Albert Sun, Brandon Fain, Ashwin MachanavajjhalaVLDB 2023 · 6 citations
- DPXPlain: Privately Explaining Aggregate Query AnswersYuchao Tao, Amir Gilad, Ashwin Machanavajjhala, Sudeepa RoyVLDB 2023 · 15 citations
