Feeds

RIPA changes in Freedoms Bill don't protect privacy enough

Changes bring neglible improvement in privacy protection

Mobile application security vulnerability report

The changes with respect to communications data

No local authority has the power to intercept a telephone call or any other form of communication during the course of its transmission, and the only change in the Freedoms Bill relates to local authority collection of communications data. (Communications data are those data that relate to who has called whom, when, for how long and from what location – but not the content of that communication.)

The interception commissioner’s annual report (PDF/315KB) notes that: "During the year ended 31 December, 2009, public authorities as a whole made 525,130 requests for communications data to communication service providers and internet service providers"(ie: there are 43,761 requests per month).

The commissioner then notes that that "during the period covered by this report, 131 local authorities notified me that they had made use of their powers to acquire communications data, and this is slightly more than last year". The commissioner records that local authorities made "a total of 1,756 requests ... for communications data and the vast majority were for basic subscriber information". So before we do any analysis, local authorities collectively only account for 0.33 per cent of the total number of requests for communications data.

If 131 local authorities make 1,756 requests per year, then this works out to a local authority average of 13.4 per year (ie: the average local authority is making just over one request per month – actual figure is 1.1). This figure of 1.1 per month should be compared with the 43,761 requests per month for all of the public sector.

From this we may deduce that from the perspective of each local authority, the provisions in the Freedom Bill will impact on 0.0025 per cent of the total of number of times communications data are used. In this case, to describe the enhanced privacy protection as "inconsequential" is really a gross overstatement of the improvement in protection.

Breaking down statistics

In each case, the analysis shows that each local authority represents 0.05 per cent or less of the actual RIPA activity; 99.95 per cent of RIPA activity is therefore unaffected. Quite simply, there is no significant change to privacy protection.

One cannot help but conclude that this part of the Freedoms Bill has focused on local authorities because it diverts attention from other areas of RIPA. Local authorities (thanks to Poole Council one suspects) are the new “sitting ducks” for government rhetoric.

However, two important questions are not being asked:

  • Why is it that judicial authority is required by a local authority, but not say, the other government departments that also infrequently use RIPA powers?
  • Why is it that the use of these powers are to become subject to judicial authority for just local authorities, when it would reassure the public that all RIPA powers exercised properly by any public authority, if all authorities were subject to judicial authority? After all, all RIPA powers are very invasive of individual privacy ...

When you look at the above, there is only one conclusion: the changes represent only a very thin veneer of additional privacy protection. Be grateful for small mercies, but recognise that they are very small indeed.

This story originally appeared at HAWKTALK, the blog of Amberhawk Training Ltd.

Bridging the IT gap between rising business demands and ageing tools

More from The Register

next story
Adam Afriyie MP: Smart meters are NOT so smart
Mega-costly gas 'n' 'leccy totting-up tech not worth it - Tory MP
Just TWO climate committee MPs contradict IPCC: The two with SCIENCE degrees
'Greenhouse effect is real, but as for the rest of it ...'
'Blow it up': Plods pop round for chat with Commonwealth Games tweeter
You'd better not be talking about the council's housing plans
Arrr: Freetard-bothering Digital Economy Act tied up, thrown in the hold
Ministry of Fun confirms: Yes, we're busy doing nothing
ONE EMAIL costs mining company $300 MEEELION
Environmental activist walks free after hoax sent share price over a cliff
Help yourself to anyone's photos FOR FREE, suggests UK.gov
Copyright law reforms will keep m'learned friends busy
Apple smacked with privacy sueball over Location Services
Class action launched on behalf of 100 million iPhone owners
UK government officially adopts Open Document Format
Microsoft insurgency fails, earns snarky remark from UK digital services head
prev story

Whitepapers

Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
Application security programs and practises
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Securing Web Applications Made Simple and Scalable
Learn how automated security testing can provide a simple and scalable way to protect your web applications.