Table of Contents |
---|
...
Notes from the APAC Meeting are recorded in the Table below in green text
Attendees: Nicky Hickman sankarshan Pyrou Chung
2022-10-24 SSI HARMS BGBU TF USA/EU TF Meeting
...
Time | Item | Lead | Notes |
5 min | Welcome & antitrust notice Agenda review | Nicky | Antitrust Policy Notice: Attendees are reminded to adhere to the meeting agenda and not participate in activities prohibited under antitrust and competition laws. Only members of ToIP who have signed the necessary agreements are permitted to participate in this activity beyond an observer role. |
10min | New intro's & Updates | Trev Harmon Technical director at ID2020 and have been involved w/SSI community for some years previously at Evernym. | |
40min | Harms Paper | Phil Wolff huge input to the paper and many hours commenting and improving Nicky Hickman commented that some technical folks were still struggling with utility, hopefully implementation guide and technical requirements. Phil Wolff commented that the reverse of harm is increased benefit, have not sufficiently emphasised this connection with entrepreneurial ambitions. Nearside / farside helps with this but not enough start-up / entrepreneurial culture. We have natural bias for hope and good things. Example of new market opportunities by building for the need. Talk to their professional values, this is a framing challenge Main comments needed on Part 3 of the paper. Trev Harmon has 4.5 pages of notes at ID2020 will provide actionable feedback. General impressions focused on the frameworks e.g. STS, curious as to why it was chosen and then modified. Some places where systemic to society not identity specifically. Disconnect between the harms that occur and how SSI mitigates / exacerbates some sections stronger than others. Some seem overly reductive. P19 last paragraph, connection between philosophical sides and action side especially quoting chinese or indian philosophy without any citations or support Offered several recommendations on improving connections in text to be more straight forward. good to be working on this to avoid future harms from SSI. Darrell O'Donnell lots of explanations in document not quick and fast enough. Nicky Hickman need to reduce paper and make it more useful and more accessible to different types of readers. e.g. add requirements section at the end. e.g. remove moon analogy Trev Harmon the key elements are being buried behind the frameworks Phil Wolff suggested added frameworks as appendices. Return to simpler approach,
Trev Harmon suggested that systemic issues shouldn't go away from discussion but perhaps not right in same document. Some of the harm discussion was shorter than it needed to be, some of frameworks longer than it needed to be. Phil Wolff frameworks might help for systematic modelling of harms. Concerns many aspects of organisations in public / private sector. A framework for building on what you already have, should be advantageous, maybe as a separate blog post. Should not miss opportunities to identify harm. Nicky Hickman will
Trev Harmon will join the group to contribute to this work. Neil Thomson It's a great document - leave it alone and make it as a background document. Build one or more new documents from the different perspectives/audiences who will consume it. I am outside comfort zone, there are things that are harms not because of tech or intent but because of things outside our control. In discussing Harms, it would be helpful to flag which harms are within the SSI technology and governance stacks ability promote and support harms avoidance and reduction, and which are outside of ToIP's scope (e.g., political). Phil Wolff said we wanted to point out that you are also responsible for some of the negative externalities that occur. Because includes governance stack these should be addressed by the ecosystem as a whole. e.g. harms surveillance, or by regulators in terms of compliance. Neil Thomson highlighted the Canadian CIO Council's draft standards that identifier issuers are currently defined as only governments or other government-accredited institutions such as banks. It has not yet adopted the option of individuals creating an SSI verifiable identifier through a 3rd party (Sovereign Identity vs. Self-Sovereign Identity). SSI Governance must be careful not to make the assumption that adopters will enact all technical or governance aspects of ToIP's view of SSI. sankarshan commented that the paper was ready and happy with where we were. Provides bridge of gap for rationale for design change. Also that SSI systems should not be implemented as overlay on existing designs. If anything should go in appendices then should be implementation. Pyrou commented that divergent comments in one paper. Paper in a good spot, as a non-technologist I found it difficult to read, but frameworks helped with thinking. What are harms, where they are and some modalities on how to think about them. We achieved what we set out to achieve. sankarshan technologists are missing the implementation guide & tech spec but this is not the role of the white paper. Presents enough of a robust set of knowledge so that they can support choices and explain choices in design , aligns well with phase 1 of ToIP, ie philosophy, then phase 2 is more towards the implementation. Pyrou: need to be out and moving on with other work. Final comments by 11th November. Nicky's checklist above! |
2022-10-13 BGBU APAC TF Meeting
...
Time | Item | Lead | Notes |
5 min | Welcome & antitrust notice Agenda review | Nicky | Antitrust Policy Notice: Attendees are reminded to adhere to the meeting agenda and not participate in activities prohibited under antitrust and competition laws. Only members of ToIP who have signed the necessary agreements are permitted to participate in this activity beyond an observer role. |
10mins | New intro's & updates | Turing Institute Trustworthy Identities Conference - Decentralization & Harms a constant strand, | |
25 mins | New Arc | Nicky | Considering feedback and comments on the current drat of the white paper - suggested new arc/perspective as an alternative to 'ssi harms'
Actually the far side of the moon is not dark at all, but it is different from the near side. See The far side of the Moon, photographed by Apollo 16 in 1972. It is much more crater-ridden than the near side of the Moon. Source https://en.wikipedia.org/wiki/Far_side_of_the_Moon. Not all of the far side of the moon is invisible from earth due to a phenomenon known as libration "In lunar astronomy, libration is the wagging or wavering of the Moon perceived by Earth-bound observers and caused by changes in their perspective. It permits an observer to see slightly different hemispheres of the surface at different times. It is similar in both cause and effect to the changes in the Moon's apparent size due to changes in distance. " This paper is like the Apollo 8 astronauts who were the first humans to see the far side in person when they orbited the Moon in 1968. We are just mapping that side of digital identity which we all know is there and contributing to opening up debate and developing robust legal, technical, human experience and governance mechanisms for addressing this problem. e.g. https://privacyinternational.org/advocacy/4945/letter-global-csos-world-bank "We, the undersigned civil society organizations and individuals, urge the World Bank and other international organizations to take immediate steps to cease activities that promote harmful models of digital identification systems (digital ID). "
|
15mins | Potential Titles | Nicky | From discussion in HXWG
From story Arc Mapping the Far Side of the Moon: A new framework for understanding and mitigating the human harms of digital identity systems; ‘Overcoming the challenges of human harms from in digital identity ecosystems’ The Apollo 16 Paper: Considering human harms in digital trust ecosystem design / digital identity systems Vision based: Do no harm: creating digital identity systems that serve the public good On track for finishing 2nd draft end next week Darrell O'Donnell and Christine Martin to do Foreward |
...
Time | Item | Lead | Notes | ||||
5 min |
| Nicky |
| ||||
10mins | Intro's & Updates | Nicky | Eric Welton- discussions with Myanmar Responsible Business Coalition - tricky situation with hostile relationships in government - establishing a biometric identity - difficult choice as someone is going to do it. Can we do it in a more responsible, less harmful way. May be useful to have a session on this in this group. Difficult ethical questions for the team. Interesting presentation on how digital ID can be abused. sankarshan- biometric topic seems to be settling down from aid organisations - have to use biometrics, main focus is now on mitigating harms. Myanmar, Afghanistan and other examples. Uganda for example, optimistic programme, under-enrollment. (the harms of untrustworthy systems) - now starting w/genetic profiling! "The genie is out of the bottle" Jo Spencer Activity on NSW gov initiative - driving license initiative hacked, DNA & biometrics further reinforce the argument.
sankarshanMinimisation is not suitable for some interactions, e.g. Medical Records - much more important for secure and trustworthy data payload / exchange. Also Financial Transactions not very well suited to VC's. Jo Spencer use of verifiable presentations which present derived data. sankarshan taxonomy & semantics - quality & classification of data also needed VC's are not the solution for many forms of data. Biggest harm is derived data sets from small data sets. Eric Welton - Use cases - all non-cash transactions will be exposed to government, e.g. national security / tax collection is given as purpose coming in ??. Remember problems of correlation highlighted by Daniel Hardman Also use case of VCs to convey health information - presentation that key emergency information for medical purposes (e.g. in accident) - could use biometrics to unlock the data for emergency responders. VC is a PDF - convenience / emergency service. Similar to ICE contact, could have ICE Credential. Could be linked to IATA - Good Health Pass sankarshan Must be freeform data. Accept that this is a new attack surface. John Phillips Humanitech conference - could be some good material & input to this discussion. Great discussion and material. I'm now seeing an obvious connection between this work, and the work of the Humanitech organisation here in Australia (founded by the Australian Red Cross) who have been thinking about how they might "ensure frontier technologies benefit people and society". I was at, and spoke briefly, at their 2022 conference (https://humanitechsummit.org/2022/) - they've been considering the potential harms of the mis-application of frontier technology for some time. | ||||
5mins | Actions | Nicky |
| ||||
15mins | AGENCY | Nicky | Review of notes and insights from the AGENCY talk at HXWG last week. Here is the wiki page On fake news (and news) there's a good 20 mins conversation from Davos hosted by Polkadot -
Rumsfeld Structure to scope "Reports that say that something hasn't happened are always interesting to me, because as we know, there are known knowns; there are things we know we know. We also know there are known unknowns; that is to say we know there are some things we do not know. But there are also unknown unknowns—the ones we don't know we don't know. And if one looks throughout the history of our country and other free countries, it is the latter category that tends to be the difficult ones.[1]" (Source: Wiki) Also for discussion see this Miro Board
| ||||
20mins | Storyboard Next Steps | Phil | NEW (Google Slides): https://docs.google.com/presentation/d/1Y404nJpSOkJFK5pc2aYUmJtrXtCkwcx-eIMC9ZMC0DU/edit?usp=sharing Phil has transferred to a G-DOC https://docs.google.com/document/d/151cqN0HY-ECmGwcS_SSBCeCHtszuwGyQebLRJq8sODA/edit?usp=sharing which contains the same material but in a doc format | ||||
5mins | AOB | Nicky |
...