AIセキュリティポータル K Program
Private Prediction Sets
Share
Abstract
In real-world settings involving consequential decision-making, the deployment of machine learning systems generally requires both reliable uncertainty quantification and protection of individuals' privacy. We present a framework that treats these two desiderata jointly. Our framework is based on conformal prediction, a methodology that augments predictive models to return prediction sets that provide uncertainty quantification -- they provably cover the true response with a user-specified probability, such as 90%. One might hope that when used with privately-trained models, conformal prediction would yield privacy guarantees for the resulting prediction sets; unfortunately, this is not the case. To remedy this key problem, we develop a method that takes any pre-trained predictive model and outputs differentially private prediction sets. Our method follows the general approach of split conformal prediction; we use holdout data to calibrate the size of the prediction sets but preserve privacy by using a privatized quantile subroutine. This subroutine compensates for the noise introduced to preserve privacy in order to guarantee correct coverage. We evaluate the method on large-scale computer vision datasets.
Databiology Lab CORONAHACK: Collection of public COVID-19 data
J. C. Perez, C. de Blas Perez, F. L. Alvarez, J. M. C. Contreras
Published: 2020
Inductive confidence machines for regression
H. Papadopoulos, K. Proedrou, V. Vovk, A. Gammerman
Published: 2002
Algorithmic Learning in a Random World
V. Vovk, A. Gammerman, G. Shafer
Published: 2005
Distribution-free predictive inference for regression
J. Lei, M. G’Sell, A. Rinaldo, R. J. Tibshirani, L. Wasserman
Published: 2018
Calibrating noise to sensitivity in private data analysis
Cynthia Dwork, Frank McSherry, Kobbi Nissim, Adam Smith
Published: 2006
Rappor: Randomized aggregatable privacy-preserving ordinal response
Ulfar Erlingsson, V. Pihur, A. Korolova
Published: 2014
Prochlo: Strong privacy for analytics in the crowd
Andrea Bittau, Ulfar Erlingsson, Petros Maniatis, Ilya Mironov, Ananth Raghunathan, David Lie, Mitch Rudominer, Ushasree Kode, Julien Tinnes, Bernhard Seefeld
Published: 2017
Learning with privacy at scale
Differential Privacy Team Apple
Published: 2017
Collecting telemetry data privately
Ding, B., Kulkarni, J., Yekhanin, S.
Published: 2017
The US census bureau adopts differential privacy
J. M. Abowd
Published: 2018
Share