论文标题
不适合目的:对“五个保险箱”的批判性分析
Not fit for Purpose: A critical analysis of the 'Five Safes'
论文作者
论文摘要
“五个保险箱”框架由澳大利亚,新西兰和英国的政府机构作为政策工具或体现的政策工具,旨在管理释放从个人信息中获得的数据的风险。尽管它很受欢迎,但这五个保险箱的法律或技术批判性分析很少。我们认为,五维斯的保险箱从根本上存在缺陷:避免与现有的法律保护和拨款安全概念脱节,而没有提供任何偏爱强有力的技术措施的手段,到将披露风险视为静态风险,而不是需要重复评估。这五个保险箱几乎没有信心,即使用“安全”最佳实践或为了服务公共利益而进行的数据共享。
Adopted by government agencies in Australia, New Zealand and the UK as policy instrument or as embodied into legislation, the 'Five Safes' framework aims to manage risks of releasing data derived from personal information. Despite its popularity, the Five Safes has undergone little legal or technical critical analysis. We argue that the Fives Safes is fundamentally flawed: from being disconnected from existing legal protections and appropriation of notions of safety without providing any means to prefer strong technical measures, to viewing disclosure risk as static through time and not requiring repeat assessment. The Five Safes provides little confidence that resulting data sharing is performed using 'safety' best practice or for purposes in service of public interest.