My instinctual reaction to this has always been "well, you drive around in public, and your license plate is on the back of your car, so of course you can't expect privacy of it any more than you can stop someone from following you and taking photos of it."
And generally I feel it's a valid argument, but it exposes two root problems:
1) Scale: There is a clear difference between a single person photographing license plates in a parking lot, or even a single person following one car, compared to an enterprise industrializing that tracking process through wholesale procuring of security camera footage or similar.
2) Linkage: Even if your license plate can be tracked, why should it be linked to your identity? The answer is that it really shouldn't. Of course you can register your vehicle to an LLC, but even if you don't do that, you shouldn't expect anyone on the road to map your license plate to your address. But again we return to the problem of scale, because ultimately someone could see your car in your driveway, then see it on the road, and therefore know your starting location and current location.
The first problem of scale, while clearly exposing an obvious difference, doesn't seem easily resolvable to me, because at what point is a process "industrialized?" How do you legislate against this without imposing on constitutionally protected activity, or at least basic pseudo-freedoms like freedom of commerce? And how do you avoid regulatory capture granting carve outs to a few anointed large corporations to continue the practice, especially if they're the same corporations that "contract" with the government? [One side-problem/solution here is the lack of transparency of, or restrictions on, government purchasing "public" data.]
The second problem of linkage, seems more easily addressable (no pun intended). States should put more protections on license plate databases, and make it easier for people to register their vehicle through a proxy, even without needing to create an LLC. But you still have the problem of "manual" linkage using photos of driveways.
But the larger, perhaps root issue, is that modern technology is exposing a middle ground between "private" and "public" (meta)data - we see this with enterprise-scale tracking of public information, and also with "personal data" shared with limited audiences on social media sites, where it's obviously not private because you intend to share it with people, but you also don't intend to share it with everyone.
There is a third concern besides scale and linkage -- errors and accountability. Sometimes these services are wrong.
When they are wrong, and people get arrested, go to jail, or pay thousands in legal fees to clear themselves...there is no accountability. Sometimes, the law enforcement who use the systems rely ONLY on these systems, not on the underlyer data (e.g. images) to validate an arrest.
Minimally, the services should have to produce an original image/video when surfacing information that will be used for legal action. Secondly, the services should be held financially responsible for legal costs when mistakes are made.
I’ll add a fourth: these services will inevitably be hacked, their data added to multiple darkweb data dumps, and circulated among nation states, hackers, and advertisers for the rest of time.
If an eye-witness makes an erroneous identification, or a police officer misunderstands a piece of evidence, or a witness for the prosecution is coerced into giving false testimony, is that any different? In each case we're talking about information that turned out to wrong. This is just new information in the world. Sometimes it will be wrong or sometimes we will misunderstand it -- just like all other kinds of information.
So I think that thinking was good 20 years ago but isn't fine today. The difference is really the environments we live in.
20+ years ago it really wasn't hard to be private in a public space. You walk off the main street and if you couldn't see anyone then no one could see you, generally. Same would be true about audio.
But today there's cameras everywhere and microphones everywhere, so privacy is not verifiable by simple observation. Plus, you have a GPS tracker on you that's talking to all the GPS trackers that's on everybody else.
That's where the logic breaks down, but it requires subtly and a bit more nuance because the way we're tracked is covert and not as obvious. It can be automated and doesn't require someone to physically follow you. It can gather way more information that that person physically following you every could.
It's not that the former logic was bad, it's that it works on a certain set of assumptions. Assumptions that don't hold true today. The problem we face today with a lot of arguments we have (more than privacy) is that people tend to be working under different assumptions, assuming everyone else has equivalent ones. Additionally, our assumptions are frequently wrong and we end up fighting rather than discussion, which it's fine to disagree with.
Privacy could be a use case for those e ink license plates that have started showing up in California.
Instead of the "real" number, change the plate every 5 minutes using some sort of OTP algorithm. Makes it impossible for anyone with a camera to put together a location database, but the car is still identifiable by law enforcement if necessary.
Had never heard of these plates. At least the current models may well make the problem worse:
> "In addition to the flexibility of the display, the digital plates also sport a tracking device that will alert the police to the location of a stolen vehicle and allow for general vehicle tracking. While a lot of people can get behind the idea of never going to the DMV again, not a lot of people are thrilled about the whole “license plate as tracking device” angle"
An OTP license plate scheme is a very interesting idea. The license plate would probably have to get larger to accommodate more characters.
EDIT: I wonder why you got downvoted. I've recently been seeing a lot of downvoted comments that there's little conceivable reason to downvote, so I wonder if downvoting is a new way of trolling.
It is being downvoted because it is a silly idea. These systems are ran in cooperation with the state, who in turn would just un-OTP your plate at the time of scan. That means average citizens are the only ones who would end up with less data.
That means average citizens are the only ones who would end up with less data
That doesn't sound like a drawback, I can understand the public benefit of the police being able to look me up by license plate number but not for the average citizen being able to do the same. This is separate from the issue that there should be stricter limits on law enforcement use of the data.
I can understand the public benefit of the government being able to stalk me but not for the average citizen being able to do the same. When the government does it, it's obviously for The Greater Good™.
That's not what GP said. There are legitimate reasons for the government to track people, there are not legitimate reasons for private citizens to do so. That doesn't mean all tracking by the government is "for the greater good", but at least there is a chance it's acceptable. There is no chance with private citizens.
Average citizens are not the ones operating bulk collection systems. They are simply writing down a plate number of the car parked next to them when they find a giant door scratch in a parking lot.
It was clearly an idea worth discussing judging by the follow up comments, downvoting on HN is for unproductive comments not disagreement.
To the parent comments point, I have noticed more downvotes on valid but disagreeable comments recently, I think there might be some weight to it anecdotally.
Assuming that the function that generates the plate numbers from the current time and a per plate seed is deterministic this shouldn't be a problem.
You tell the police you saw the car with plate 2XYZ345 do a hit on run and give a time range. The state would have the seeds in its plate owner database and could generate a list of all cars that had 2XYZ345 sometime in that time range.
Presumably such a system would keep a history of expired identifiers, so law enforcement could still look it up after it's been expired and replaced with a new one.
> Makes it impossible for anyone with a camera to put together a location database, but the car is still identifiable by law enforcement if necessary.
Isn't it LEO that's deploying most of these systems? At least around here, *MOST* of the motorola cameras I see are on public roads / traffic signals. Bit of google shows EFF and other orgs FOIA-ing various counties in CA and a lot of them got federal money for their police to install them...
Look at Flock Safety for a private company doing this with private entities and sharing the results with law enforcement "partners".
"Now, you go from a crime in progress to instantly find the suspect when you search by:
Visual Evidence
- Vehicle make, type, and color
- License plate (missing plate, covered plate, state of the license plate)
- Unique features (roof rack, bumper stickers, and window stickers)
- Contextual Evidence
Timestamp
- Number of times this vehicle has been seen in the last 30 days
- Associated vehicles"
"Neighborhoods and businesses can download vehicular evidence, get a case number, and give it to the assigned detective. Vehicle data and license plates are the most requested piece of evidence.
If a known stolen vehicle or wanted person enters the community, local police will instantly get an alert on their cell phone or laptop. Up to 60% of stolen vehicles are associated with additional crime."
"With the Flock Safety network, your [law enforcement] agency is not limited to cameras you own — connect and collaborate with adjacent agencies and nearby privately-owned cameras in neighborhoods to extend your reach and multiply your search capacity."
We can just make it illegal if we want. We can pass a law and then enforce that law.
There’s plenty of precedent for similar laws. Credit reports are another form of aggregating information about you that comes from other people’s reporting and it’s extremely circumscribed.
You can’t keep files on what people think of my credit history without following very very detailed rules, as well as being strictly liable in private action for breaking any of the rules even by small technicalities.
We can outlaw this if we want. Or restrict it heavily.
I’m tired of listening to arguments that we can’t regulate commerce. It’s just learned helplessness after listening to generations of corporate lobbying.
> I’m tired of listening to arguments that we can’t regulate commerce. It’s just learned helplessness after listening to generations of corporate lobbying.
Exactly. We don't need to go on some moral and ethical odyssey to discover where the line is. We can just draw a line and say "thats the line." The notion that we must be fair and equitable to business and commerce is tiring. No, we don't.
You can make a law to outlaw it, what you cannot expect is the side that does not want that law to not voice their opinions and not make arguments counter to yours.
You're going to have to do a lot of work if you want to pass such a law.
I expect the other side to attempt to influence politicians with money by hiring their former staffers and children as lobbyists, paying them off with bullshit speaking gigs, planting opinion pieces and influencing online commentators, and any of the thousand other ways big business tries to bulldoze consumers in this country.
What's that got to do with anything? The point I'm making, of course, is that "fuck these people" is the right way to think about it.
There's no human right to make money off selling license plate data or something. People can find another business model or something else to do with their lives. Fuck them, and fuck their consumer privacy invading businesses.
At least in the US the law starts at "this is allowed", the imperative then is for you to promote a law saying it is forbidden. As much as you, me, or anyone else thinks it's the right thing to do, you still have to go through the process of making a law just like the opposition group does.
would you really not expect that people shouldn't follow you around? if i drive around the city taking pictures of you in your car, that's harassment. why can a company do it? it's one thing for it to be available for polling if there's a crime, it's another thing to sell that data to anyone
This comes down to the difference between certain people around town recognizing your car if they happen to see it pass by, vs them hiring dedicated car-watchers all around town to keep track of your comings and goings and selling the data to anyone who comes asking.
One is acceptable, the other is simply not.
You don't really get a choice to use or not use a license plate if you want to drive, and are seriously disadvantaged if you do not have a car in most places in the US. Should it be a requirement to give up your privacy to participate meaningfully in society?
In my jurisdiction, the local transit authority keeps a database of every fare payment ever made, with no expiry policy or any other future-looking privacy measures. The records are easily and routinely subpoenaed by law enforcement, and non-anonymized datasets are shared with researchers, as long as they pinky-swear to not compromise anyone's privacy. You can pay in cash, but have to pay an extra fee for a new fare card each time you want a new unique ID.
And generally I feel it's a valid argument, but it exposes two root problems:
1) Scale: There is a clear difference between a single person photographing license plates in a parking lot, or even a single person following one car, compared to an enterprise industrializing that tracking process through wholesale procuring of security camera footage or similar.
2) Linkage: Even if your license plate can be tracked, why should it be linked to your identity? The answer is that it really shouldn't. Of course you can register your vehicle to an LLC, but even if you don't do that, you shouldn't expect anyone on the road to map your license plate to your address. But again we return to the problem of scale, because ultimately someone could see your car in your driveway, then see it on the road, and therefore know your starting location and current location.
The first problem of scale, while clearly exposing an obvious difference, doesn't seem easily resolvable to me, because at what point is a process "industrialized?" How do you legislate against this without imposing on constitutionally protected activity, or at least basic pseudo-freedoms like freedom of commerce? And how do you avoid regulatory capture granting carve outs to a few anointed large corporations to continue the practice, especially if they're the same corporations that "contract" with the government? [One side-problem/solution here is the lack of transparency of, or restrictions on, government purchasing "public" data.]
The second problem of linkage, seems more easily addressable (no pun intended). States should put more protections on license plate databases, and make it easier for people to register their vehicle through a proxy, even without needing to create an LLC. But you still have the problem of "manual" linkage using photos of driveways.
But the larger, perhaps root issue, is that modern technology is exposing a middle ground between "private" and "public" (meta)data - we see this with enterprise-scale tracking of public information, and also with "personal data" shared with limited audiences on social media sites, where it's obviously not private because you intend to share it with people, but you also don't intend to share it with everyone.