Comment by 6r17

9 hours ago

Whether there is a single app or not doesn't really matter - i'm more concerned about the database itself and the inter-connectivity between them and most importantly by which control acceptance protocol we abide between states.

The idea that we want a single database or a network without any kind of control is frightening me

What do you mean by "control" here? It's my understanding that EU law afford citizens the right to correct data that is wrong about them.

  • The problem is not about the data being correct or not, it's about its existence in the first place.

    Why would you correct data about you very own surveillance ?

    • Governments need to identify citizens. They currently do this via paper records and extensive digital databases that those tie into. They will in future do this via digital records/tokens but this won’t change much.

      Some amount of id verification and surveillance is of course required for a government to function, the question should be more what is allowed and what is not.

    • Is all data about you "surveillance". When your doctor produces a medical record after your visit, are they "surveilling" you? How about when the railway company stores your travels to bill you later?

      I'll assume your answer is no, and I that case surely you must see the value in that medical record being correct.

      5 replies →

  • I mean that there is a big difference between a state automatically providing your data to any other state while having "their database disconnected" - and a human operator in the loop and an administrative verification of the appropriate access ;

    For example this would allow a state to refuse access to the PI of their citizens for cases that are not administratively documented. This forces the access audit sufficiently that a malign actor cannot simply request data for a citizen without having probable cause ; another vector we want to protect ourselves against is simply the psycho/sociopaths that have access to these data without surveillance.