USENIX Security2024Top-tier venue
"I Don't Know If We're Doing Good. I Don't Know If We're Doing Bad": Investigating How Practitioners Scope, Motivate, and Conduct Privacy Work When Developing AI Products
Hao-Ping (Hank) Lee, Lan Gao, Stephanie S. Yang, Jodi Forlizzi, Sauvik Das
Abstract
How do practitioners who develop consumer AI products scope, motivate, and conduct privacy work? Respecting privacy is a key principle for developing ethical, human-centered AI systems, but we cannot hope to better support practitioners without answers to that question. We interviewed 35 industry AI practitioners to bridge that gap. We found that practitioners viewed privacy as actions taken against pre-defined intrusions that can be exacerbated by the capabilities and requirements of AI, but few were aware of AI-specific privacy intrusions documented in prior literature. We found that their privacy work was rigidly defined and situated, guided by compliance with privacy regulations and policies, and generally demotivated beyond meeting minimum requirements. Finally, we found that the methods, tools, and resources they used in their privacy work generally did not help address the unique privacy risks introduced or exacerbated by their use of AI in their products. Collectively, these findings reveal the need and opportunity to create tools, resources, and support structures to improve practitioners' awareness of AI-specific privacy risks, motivations to do AI privacy work, and ability to address privacy harms introduced or exacerbated by their use of AI in consumer products. To answer our research questions, we conducted semistructured interviews with N = 35 industry practitioners from 25 companies who engaged in privacy work for a consumerfacing AI product in some capacity. One of these interviews was a group interview with five practitioners who worked closely on a set of products. In our study, we define consumerfacing AI products as products that employ AI technologies that train on data from or about end-users and/or make inferences on data from or about end-users.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext d659effc-9a64-4839-9411-d8235dc2b70bCited by top-tier papers6
- Deepfakes, Phrenology, Surveillance, and More! A Taxonomy of AI Privacy RisksHao-Ping (Hank) Lee, Yu-Ju Yang, Thomas Serban Von Davier, Jodi Forlizzi et al.CHI 2024 · 73 citations
- Power and Play: Investigating "License to Critique" in Teams' AI Ethics DiscussionsDavid Gray Widder, Laura Dabbish, James D. Herbsleb, Nikolas MartelaroCSCW 2024 · 13 citations
- AI Mismatches: Identifying Potential Algorithmic Harms Before AI DevelopmentDevansh Saxena, Ji-Youn Jung, Jodi Forlizzi, Kenneth Holstein et al.CHI 2025 · 12 citations
- Investigating Novice Researchers' Perceptions of Research Privacy Within LLM-Assisted WorkflowsShuning Zhang, Changxi Wen, Eve He, Ying Ma et al.CCS 2026 · 1 citation
- Privy: Envisioning and Mitigating Privacy Risks for Consumer-facing AI Product ConceptsHao-Ping (Hank) Lee, Yu-Ju Yang, Matthew Bilik, Isadora Krsek et al.CHI 2026 · 1 citation
Builds on13
- Membership Inference Attacks Against Machine Learning ModelsReza Shokri, Marco Stronati, Congzheng Song, Vitaly ShmatikovS&P 2017 · 5,137 citations
- Extracting Training Data from Large Language ModelsNicholas Carlini, Florian Tramèr, Eric Wallace, Matthew Jagielski et al.USENIX Security 2021 · 2,866 citations
- Co-Designing Checklists to Understand Organizational Challenges and Opportunities around Fairness in AIMichael A. Madaio, Luke Stark, Jennifer Wortman Vaughan, Hanna M. WallachCHI 2020 · 428 citations
- A Stitch in Time: Supporting Android Developers in WritingSecure CodeDuc Cuong Nguyen, Dominik Wermke, Yasemin Acar, Michael Backes et al.CCS 2017 · 125 citations
- Understanding Privacy-Related Questions on Stack OverflowMohammad Tahaei, Kami Vaniea, Naomi SaphraCHI 2020 · 93 citations
Related papers
- Designing Responsible AI: Adaptations of UX Practice to Meet Responsible AI ChallengesQiaosi Wang, Michael Madaio, Shaun K. Kane, Shivani Kapania et al.CHI 2023 · 90 citations
- WeAudit: Scaffolding User Auditors and AI Practitioners in Auditing Generative AIWesley Hanwen Deng, Claire Wang, Howard Ziyu Han, Jason I. Hong et al.CSCW 2025 · 12 citations
- "The Conduit by which Change Happens": Processes, Barriers, and Support for Interpersonal Learning about Responsible AIJaemarie Solyst, Lauren Wilcox, Michael MadaioCHI 2025 · 4 citations
- Tinker, Tailor, Configure, Customize: The Articulation Work of Contextualizing an AI Fairness ChecklistMichael A. Madaio, Jingya Chen, Hanna M. Wallach, Jennifer Wortman VaughanCSCW 2024 · 13 citations
- RAI Guidelines: Method for Generating Responsible AI Guidelines Grounded in Regulations and Usable by (Non-)Technical RolesMarios Constantinides, Edyta Paulina Bogucka, Daniele Quercia, Susanna Kallio et al.CSCW 2024 · 28 citations
