The "Privacy of Things" a new concept, a new challenge
We are familiar with Privacy within the Internet of Things. Privacy is the special considerations required to protect the information of individuals from exposure in the IoT environment. The IoT Security Institute would like to offer for consideration and extend that concept to the next evolutionary level. The “Privacy of Things.” Not simply consideration for the individual within an IoT eco-system but the “things” themselves.
Given the advancement of AI and machine learning this is not as abstract a concept as it may first appear. If data is information, and information contains facts, and some facts are considered private, should privacy considerations be extended to all things not only individuals? Put simply, if an Artificial Intelligence construct collects data, makes a determination on that data, can some of those decisions be considered to be private in nature? Some would argue, if privacy laws currently protect individuals why not in some future state should they not protect their logical extensions; machines, or “things”.
Clearly, there is a difference between an individual and a machine. Be it a smart city machine or critical infrastructure machine. Machines cannot be humiliated. Discriminated against because of their beliefs, bad habits, current state of affairs, or past indiscretions. However, in a smart world, they share some similarities. A core privacy principle is the right to protection. The right to be shielded from abuse and unnecessary exploitation. When “things” make decisions based on information gathered, be it from human, machine, or society in general, do those decisions have a right to privacy? In a smart technology context, should a Smart City, and not only its citizens have privacy rights? Rights that reflect a society’s beliefs and values?
The question here is simple. In the future more decisions will be made by non-humans. Those decisions will be based on a vast array of inputs. Some data driven, some ethically based some for purely commercial purposes. However, these decisions must have a point of origin. Some kind of reference model. Will society require their machine extensions to be privacy protected? Would such an option humanise the decision process. Make machines more like one of us? Provide protection for those “things” acting on our behalf and ensure our way of life?
Too many questions, too early in the piece. However, I will leave you with this.
The year 20XX your trusted family robot is very dear to you, and is an indispensable member of the family. This is due to its intimate knowledge of your habits and lifestyle. It can learn. It can make decisions, It makes your life easier it knows you.
Is it entitled to a right to privacy? Not for its own sake, but perhaps for yours?