top | item 23050814

(no title)

mr_puzzled | 5 years ago

> So we should give all this data to the foreign companies instead of our own elected govt?

Or give the data to no one and do contact tracing in a privacy preserving way like the one apple and google designed? https://covid19-static.cdn-apple.com/applications/covid19/cu...

discuss

order

eklavya|5 years ago

I might be misunderstand it but reading the document I couldn't see that this doesn't involve providing any data. I don't see a way how this could work without sharing data with authorities. The document seems to imply that the data WILL be shared with public health authorities (govt). So I don't see how this is better.

> • Each user will have to make an explicit choice to turn on the technology. It can also be turned off by the user at any time.

Ok, I can give you this one, for people who are mandated by law to have this installed, uninstalling is not an option.

> • This system does not collect location data from your device, and does not share the identities of other users to each other, Google or Apple. The user controls all data they want to share, and the decision to share it.

Yeah, but they have to share it to get any meaningful data, right?

> • Bluetooth privacy-preserving beacons rotate every 10-20 minutes, to help prevent tracking.

Don't know whether the app has this one.

> • Exposure notification is only done on device and under the user's control. In addition people who test positive are not identified by the system to other users, or to Apple or Google.

I would be damned if the govt app was exposing identities either.

> • The system is only used for contact tracing by public health authorities apps.

Sure, that's the whole purpose of the govt app too.

> • Google and Apple can disable the exposure notification system on a regional basis when it is no longer needed.

Not related to privacy I think.

blackoil|5 years ago

Read section "Where is the data stored and who has access to it?"

All data is stored on phone only, till the point someone is marked as Covid+. Then only the beacon tokens are uploaded to a central whitelist, wherein every phone can download and verify if they came in contact. In case of the contact data only for that day is shared.

Primary difference govt. can know only limited data of people who are +ve or came in contact not a perpetual continuous tracking of every mobile.