Differential Privacy

Sharing aggregate health datasets for research without leaking any one patient — epsilon budgets, calibrated noise, and why anonymization alone fails

Current Stage
Privacy Budget ε
Re-ID Risk
Query Error
Cumulative ε (k queries)
Privacy Budget (ε)1.0
Composed Queries (k)1
Patient record / true data point
Re-identified / linked record
Calibrated noise draw
Released noisy statistic
External linkage dataset
Scroll for details