Measure-Observe-Remeasure: An Interactive Paradigm for Differentially-Private Exploratory Analysis
Priyanka Nanayakkara, Hyeok Kim, Yifan Wu, Ali Sarvghad, Narges Mahyar, Gerome Miklau, Jessica Hullman
摘要
Differential privacy (DP) has the potential to enable privacy-preserving analysis on sensitive data, but requires analysts to judiciously spend a limited "privacy loss budget" ϵ across queries. Analysts conducting exploratory analyses do not, however, know all queries in advance and seldom have DP expertise. Thus, they are limited in their ability to specify ϵ allotments across queries prior to an analysis. To support analysts in spending ϵ efficiently, we propose a new interactive analysis paradigm, MEASURE-OBSERVE-REMEASURE, where analysts "measure" the database with a limited amount of ϵ, observe estimates and their errors, and remeasure with more ϵ as needed.
We instantiate the paradigm in an interactive visualization interface which allows analysts to spend increasing amounts of ϵ under a total budget. To observe how analysts interact with the MEASURE-OBSERVE-REMEASURE paradigm via the interface, we conduct a user study that compares the utility of ϵ allocations and findings from sensitive data participants make to the allocations and findings expected of a rational agent who faces the same decision task. We find that participants are able to use the workflow relatively successfully, including using budget allocation strategies that maximize over half of the available utility stemming from ϵ allocation. Their loss in performance relative to a rational agent appears to be driven more by their inability to access information and report it than to allocate ϵ.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper2
- "Having Confidence in My Confidence Intervals": How Data Users Engage with Privacy-Protected Wikipedia DataHarold Triedman, Jayshree Sarathy, Priyanka Nanayakkara, Rachel Cummings 等CHI 2026 · 被引用 2 次
- Accuracy-First Rényi Differential Privacy and Post-Processing ImmunityOssi Räisä, Antti Koskela, Antti HonkelaICML 2026
它引用的顶会 Paper3
- Don't Look at the Data! How Differential Privacy Reconfigures the Practices of Data ScienceJayshree Sarathy, Sophia Song, Audrey Haque, Tania Schlatter 等CHI 2023 · 被引用 24 次
- DPVisCreator: Incorporating Pattern Constraints to Privacy-preserving Visualizations via Differential PrivacyJiehui Zhou, Xumeng Wang, Jason K. Wong, Huanliang Wang 等IEEE VIS 2022 · 被引用 16 次
- The Rational Agent Benchmark for Data VisualizationYifan Wu, Ziyang Guo, Michalis Mamakos, Jason D. Hartline 等IEEE VIS 2023 · 被引用 8 次
相关 Paper
- Cache Me If You Can: Accuracy-Aware Inference Engine for Differentially Private Data ExplorationMiti Mazmudar, Thomas Humphries, Jiaxiang Liu, Matthew Rafuse 等VLDB 2023 · 被引用 15 次
- Defogger: A Visual Analysis Approach for Data Exploration of Sensitive Data Protected by Differential PrivacyXumeng Wang, Shuangcheng Jiao, Chris BryanIEEE VIS 2024 · 被引用 3 次
- Budget Sharing for Multi-Analyst Differential PrivacyDavid Pujol, Yikai Wu, Brandon Fain, Ashwin MachanavajjhalaVLDB 2021 · 被引用 7 次
- Multi-Analyst Differential Privacy for Online Query AnsweringDavid Pujol, Albert Sun, Brandon Fain, Ashwin MachanavajjhalaVLDB 2023 · 被引用 6 次
- DProvDB: Differentially Private Query Processing with Multi-Analyst ProvenanceShufan Zhang, Xi HeSIGMOD 2024 · 被引用 10 次
