On the Differential Privacy and Interactivity of Privacy Sandbox Reports
Proceedings on Privacy Enhancing Technologies (PoPETs), 2024
Vikas Sahu
Phillipp Schoppmann
Main:13 Pages
3 Figures
Bibliography:1 Pages
2 Tables
Appendix:2 Pages
Abstract
The Privacy Sandbox initiative from Google includes APIs for enabling privacy-preserving advertising functionalities as part of the effort around limiting third-party cookies. In particular, the Private Aggregation API (PAA) and the Attribution Reporting API (ARA) can be used for ad measurement while providing different guardrails for safeguarding user privacy, including a framework for satisfying differential privacy (DP). In this work, we provide an abstract model for analyzing the privacy of these APIs and show that they satisfy a formal DP guarantee under certain assumptions. Our analysis handles the case where both the queries and database can change interactively based on previous responses from the API.
View on arXivComments on this paper
