个人信息去识别化的类型解构与治理方案
2021-09-08蒋洁兰舟祁怡然
蒋洁 兰舟 祁怡然
摘 要:文章厘清长期混用的个人信息去识别化、匿名化、假名化、去标识化的内涵外延,结合域内外建规立制的发展脉络,搭建动态平衡个体隐私安全与数据充分利用的层级治理方案。充分论证迭代算法有可能重新识别严重不完整的零散数据集,客观上难以达致无法识别且不能复原的匿名状态,亟待有条件免除数据处理者在符合去标识化标准下的同意获取义务。通过基于风险管控搭建的个人信息规制模式、隐私保障方案和以数据利用为核心的权属机制,安全变现数据价值,助力后疫情时代数字经济有序发展。
关键词:个人信息;去识别化;匿名化;去标识化;数据治理
Abstract The purpose of the article is clarifying the concepts of de-recognization, anonymization, pseudonymization, and de-identification with the development path on making regulations, and promoting the dynamic equilibrium between the protection of personal information and the full use of data. Since iterative algorithms may re-recognize seriously incomplete anonymous data sets, it is objectively difficult to achieve an absolute state that cannot be recognized and cannot be recovered. It is necessary to ensure that completely anonymous data does not belong to the category of personal information, and conditionally exempt the processor from obtaining consent obligation under fully meeting the basic standards of de-identification. Through the governance mechanism and the protection mechanism of personal information de-identification based on risk controlling and management, and the ownership mechanism of rights and interests on personal information de-identification with data utilization as the core, rights and interests of specific natural persons will be protected, and the value of massive data will be fully realized. These will promote the harmonious development of economy and society.
Key words personal information; de-recognization; anonymization; de-identification; data governance
1 引言
網络的诞生源于对自由的追求,最初的开拓者以开源代码为己任,致力于搭建“终端对终端”的在线行为无法追溯的互联架构,试图营造一个摒弃真实身份的赛博环境[1]。直至频发的风险事件促使人们意识到表面隔离在现实世界之外的虚拟空间能够对科技进步、经济发展与社会稳定等产生实质影响,方才拉开个人信息可识别化的序幕。如多个国家和地区为了社会治理需要而责令网络服务提供商设置实名门槛[2];又如虚拟平台运营企业为了精准推送商业广告,迅速开发出能够揭示真实地理位置的地图程序以取代虚拟IP地址[3]。
回顾全球数字经济的发展历程,个人信息的可识别化曾是万物互联的核心动能。显名模式助力海量数据作为安全可信的生产要素参与市场交易,推动建设开放型世界经济,支撑信息化时代的科技文化和社会发展。……
