Vantage 3.0
Introducing a hybrid approach to using Document AI and GenAI
Supercharge AI automation with the power of reliable, accurate OCR
Increase straight-through document processing with data-driven insights
Integrate reliable Document AI in your automation workflows with just a few lines of code
PROCESS UNDERSTANDING
PROCESS OPTIMIZATION
Purpose-built AI for limitless automation.
Kick-start your automation with pre-trained AI extraction models.
Meet our contributors, explore assets, and more.
BY INDUSTRY
BY BUSINESS PROCESS
BY TECHNOLOGY
Build
Integrate advanced text recognition capabilities into your applications and workflows via API.
AI-ready document data for context grounded GenAI output with RAG.
Explore purpose-built AI for Intelligent Automation.
Grow
Connect with peers and experienced OCR, IDP, and AI professionals.
A distinguished title awarded to developers who demonstrate exceptional expertise in ABBYY AI.
Explore
Insights
Implementation
January 17, 2019
A potentially problematic challenge for industry and legislators is the apparent tension between privacy rights and the rapid adoption of blockchain-based applications which are expected to reach $10.6 billion in revenue by 2023.
There is a school of thought that blockchain is antithetical to and incompatible with safeguarding privacy rights. One of the most notable blockchain skeptics – David Gerard –argues that if “you were silly enough to put personal data into an append-only ledger which is a proof-of-work blockchain — that’d be flat-out insane.”
There is certainly merit to this argument. The ambition of blockchain is to provide an immutable ledger of transactions which cannot be modified by a participant within the blockchain, but rather controlled by complex consensus-based algorithms. While a blockchain provides a trusted framework for the integrity and auditability of transactions it stands in stark contrast to the ambition of the GDPR Regulation, the foundation of which is to enable data subjects to exercise greater degree of control over the processing of personally identifiable information.
The GDPR Regulation provides data subjects with enhanced rights to withdraw consent, access, correct and in some cases erase their personal information. “The structure of the blockchain does not allow for any such changes. Any attempt to modify the information recorded about a prior transaction could break the chain, and the transactions that were conducted in reliance on the pre-existing data could not be erased or superseded.”
The contrarian position is that blockchain and privacy rights can in fact be complimentary as both are predicated on the desire to confer greater degree of control on individuals over their information – albeit from two different ends of the spectrum of control. The ambition of blockchain is to remove agency costs by obviating the need for intermediaries to control data while at the same time ensure the trustworthiness, traceability and security of transactions. GDPR on the other hand is designed to primarily enable data subjects to exercise greater degree of control over the processing of their personal information. Both blockchain and GDPR are designed to “democratize” data by giving more control over its use to individuals.
There is a further argument for the co-existence of blockchain and GDPR privacy rights grounded on the inevitability of accelerated adoption of blockchain-based applications and that their impact “will be more transformational than the internet itself.” In an article Anne Toth, Head of Data Policy, World Economic Forum, LLC posed the following:
“While European policymakers were debating and finalizing aspects of GDPR, blockchain wasn’t on most people’s radar. This is yet another example of where regulation is addressing a problem in the rear view mirror rather than looking at the road ahead…. In this case, while we wait for the rules to play catch up, the question we have to ask is whether existing blockchain applications that store personal data are now rendered illegal until this is sorted.”
In between these polar opposite arguments there may be a pragmatic middle ground:
A particularly instructive analysis of the co-existence of blockchain and GDPR is the French data protection authority (CNIL) which provides helpful guidance on best practices related to the implementation of GDPR compliant blockchain applications:
“Organizations should carefully determine whether they need blockchain in the first place, particularly a public one; if you choose to go forward, practice data minimization when registering data on a blockchain.”
This article originally appeared in AIIM.org entitled “The Tension between GDPR and Blockchain: Are they Polar Opposites or Can they Co-exist” by Andrew Pery. To read the original version, please visit: https://info.aiim.org/aiim-blog/the-tension-between-gdpr-and-blockchain-are-they-polar-opposites-or-can-they-co-exist?hs_preview=cQPEXuNl-6964127364.