Identity and privacy. Unique in the shopping mall: on the reidentifiability of credit card metadata

Science. 2015 Jan 30;347(6221):536-9. doi: 10.1126/science.1256297.

Abstract

Large-scale data sets of human behavior have the potential to fundamentally transform the way we fight diseases, design cities, or perform research. Metadata, however, contain sensitive information. Understanding the privacy of these data sets is key to their broad use and, ultimately, their impact. We study 3 months of credit card records for 1.1 million people and show that four spatiotemporal points are enough to uniquely reidentify 90% of individuals. We show that knowing the price of a transaction increases the risk of reidentification by 22%, on average. Finally, we show that even data sets that provide coarse information at any or all of the dimensions provide little anonymity and that women are more reidentifiable than men in credit card metadata.

Publication types

  • Research Support, Non-U.S. Gov't
  • Research Support, U.S. Gov't, Non-P.H.S.

MeSH terms

  • Commerce*
  • Data Collection*
  • Female
  • Humans
  • Income
  • Information Dissemination*
  • Male
  • Privacy*
  • Sex Characteristics