2020-02-26 22:36:49
(Source: https://aircloak.com/history-of-data-anonymization/)
We are able to learn what we wanted without incidentally collecting any strongly incriminating information about any single individual in the population : collecting only the aggregate information that we wanted.
an important trade-off: the more private we make the protocol, the more plausible deniability each individual we poll gets, and the less anyone can learn from an individual polling response
So to get the same accuracy, the smaller the privacy parameter, the more people we need to poll.