Skip to main content

DifferentialPrivacyPolicy

Struct DifferentialPrivacyPolicy 

Source
#[non_exhaustive]
pub struct DifferentialPrivacyPolicy { pub max_epsilon_per_query: Option<f64>, pub delta_per_query: Option<f64>, pub max_groups_contributed: Option<i64>, pub privacy_unit_column: Option<String>, pub epsilon_budget: Option<f64>, pub delta_budget: Option<f64>, pub epsilon_budget_remaining: Option<f64>, pub delta_budget_remaining: Option<f64>, /* private fields */ }
Expand description

Represents privacy policy associated with “differential privacy” method.

Fields (Non-exhaustive)§

This struct is marked as non-exhaustive
Non-exhaustive structs could have additional fields added in future. Therefore, non-exhaustive structs cannot be constructed in external crates using the traditional Struct { .. } syntax; cannot be matched against without a wildcard ..; and struct update syntax will not work.
§max_epsilon_per_query: Option<f64>

Optional. The maximum epsilon value that a query can consume. If the subscriber specifies epsilon as a parameter in a SELECT query, it must be less than or equal to this value. The epsilon parameter controls the amount of noise that is added to the groups — a higher epsilon means less noise.

§delta_per_query: Option<f64>

Optional. The delta value that is used per query. Delta represents the probability that any row will fail to be epsilon differentially private. Indicates the risk associated with exposing aggregate rows in the result of a query.

§max_groups_contributed: Option<i64>

Optional. The maximum groups contributed value that is used per query. Represents the maximum number of groups to which each protected entity can contribute. Changing this value does not improve or worsen privacy. The best value for accuracy and utility depends on the query and data.

§privacy_unit_column: Option<String>

Optional. The privacy unit column associated with this policy. Differential privacy policies can only have one privacy unit column per data source object (table, view).

§epsilon_budget: Option<f64>

Optional. The total epsilon budget for all queries against the privacy-protected view. Each subscriber query against this view charges the amount of epsilon they request in their query. If there is sufficient budget, then the subscriber query attempts to complete. It might still fail due to other reasons, in which case the charge is refunded. If there is insufficient budget the query is rejected. There might be multiple charge attempts if a single query references multiple views. In this case there must be sufficient budget for all charges or the query is rejected and charges are refunded in best effort. The budget does not have a refresh policy and can only be updated via ALTER VIEW or circumvented by creating a new view that can be queried with a fresh budget.

§delta_budget: Option<f64>

Optional. The total delta budget for all queries against the privacy-protected view. Each subscriber query against this view charges the amount of delta that is pre-defined by the contributor through the privacy policy delta_per_query field. If there is sufficient budget, then the subscriber query attempts to complete. It might still fail due to other reasons, in which case the charge is refunded. If there is insufficient budget the query is rejected. There might be multiple charge attempts if a single query references multiple views. In this case there must be sufficient budget for all charges or the query is rejected and charges are refunded in best effort. The budget does not have a refresh policy and can only be updated via ALTER VIEW or circumvented by creating a new view that can be queried with a fresh budget.

§epsilon_budget_remaining: Option<f64>

Output only. The epsilon budget remaining. If budget is exhausted, no more queries are allowed. Note that the budget for queries that are in progress is deducted before the query executes. If the query fails or is cancelled then the budget is refunded. In this case the amount of budget remaining can increase.

§delta_budget_remaining: Option<f64>

Output only. The delta budget remaining. If budget is exhausted, no more queries are allowed. Note that the budget for queries that are in progress is deducted before the query executes. If the query fails or is cancelled then the budget is refunded. In this case the amount of budget remaining can increase.

Implementations§

Source§

impl DifferentialPrivacyPolicy

Source

pub fn new() -> Self

Creates a new default instance.

Source

pub fn set_max_epsilon_per_query<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of max_epsilon_per_query.

§Example
let x = DifferentialPrivacyPolicy::new().set_max_epsilon_per_query(42.0);
Source

pub fn set_or_clear_max_epsilon_per_query<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of max_epsilon_per_query.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_max_epsilon_per_query(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_max_epsilon_per_query(None::<f32>);
Source

pub fn set_delta_per_query<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of delta_per_query.

§Example
let x = DifferentialPrivacyPolicy::new().set_delta_per_query(42.0);
Source

pub fn set_or_clear_delta_per_query<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of delta_per_query.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_per_query(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_per_query(None::<f32>);
Source

pub fn set_max_groups_contributed<T>(self, v: T) -> Self
where T: Into<i64>,

Sets the value of max_groups_contributed.

§Example
let x = DifferentialPrivacyPolicy::new().set_max_groups_contributed(42);
Source

pub fn set_or_clear_max_groups_contributed<T>(self, v: Option<T>) -> Self
where T: Into<i64>,

Sets or clears the value of max_groups_contributed.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_max_groups_contributed(Some(42));
let x = DifferentialPrivacyPolicy::new().set_or_clear_max_groups_contributed(None::<i32>);
Source

pub fn set_privacy_unit_column<T>(self, v: T) -> Self
where T: Into<String>,

Sets the value of privacy_unit_column.

§Example
let x = DifferentialPrivacyPolicy::new().set_privacy_unit_column("example");
Source

pub fn set_or_clear_privacy_unit_column<T>(self, v: Option<T>) -> Self
where T: Into<String>,

Sets or clears the value of privacy_unit_column.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_privacy_unit_column(Some("example"));
let x = DifferentialPrivacyPolicy::new().set_or_clear_privacy_unit_column(None::<String>);
Source

pub fn set_epsilon_budget<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of epsilon_budget.

§Example
let x = DifferentialPrivacyPolicy::new().set_epsilon_budget(42.0);
Source

pub fn set_or_clear_epsilon_budget<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of epsilon_budget.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_epsilon_budget(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_epsilon_budget(None::<f32>);
Source

pub fn set_delta_budget<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of delta_budget.

§Example
let x = DifferentialPrivacyPolicy::new().set_delta_budget(42.0);
Source

pub fn set_or_clear_delta_budget<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of delta_budget.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_budget(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_budget(None::<f32>);
Source

pub fn set_epsilon_budget_remaining<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of epsilon_budget_remaining.

§Example
let x = DifferentialPrivacyPolicy::new().set_epsilon_budget_remaining(42.0);
Source

pub fn set_or_clear_epsilon_budget_remaining<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of epsilon_budget_remaining.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_epsilon_budget_remaining(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_epsilon_budget_remaining(None::<f32>);
Source

pub fn set_delta_budget_remaining<T>(self, v: T) -> Self
where T: Into<f64>,

Sets the value of delta_budget_remaining.

§Example
let x = DifferentialPrivacyPolicy::new().set_delta_budget_remaining(42.0);
Source

pub fn set_or_clear_delta_budget_remaining<T>(self, v: Option<T>) -> Self
where T: Into<f64>,

Sets or clears the value of delta_budget_remaining.

§Example
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_budget_remaining(Some(42.0));
let x = DifferentialPrivacyPolicy::new().set_or_clear_delta_budget_remaining(None::<f32>);

Trait Implementations§

Source§

impl Clone for DifferentialPrivacyPolicy

Source§

fn clone(&self) -> DifferentialPrivacyPolicy

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl Debug for DifferentialPrivacyPolicy

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl Default for DifferentialPrivacyPolicy

Source§

fn default() -> DifferentialPrivacyPolicy

Returns the “default value” for a type. Read more
Source§

impl Message for DifferentialPrivacyPolicy

Source§

fn typename() -> &'static str

The typename of this message.
Source§

impl PartialEq for DifferentialPrivacyPolicy

Source§

fn eq(&self, other: &DifferentialPrivacyPolicy) -> bool

Equality operator ==. Read more
1.0.0 (const: unstable) · Source§

fn ne(&self, other: &Rhs) -> bool

Inequality operator !=. Read more
Source§

impl StructuralPartialEq for DifferentialPrivacyPolicy

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
where ST: ?Sized, DT: ?Sized,

Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> DeserializeOwned for T
where T: for<'de> Deserialize<'de>,

Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> FutureExt for T

Source§

fn with_context(self, otel_cx: Context) -> WithContext<Self>

Attaches the provided Context to this type, returning a WithContext wrapper. Read more
Source§

fn with_current_context(self) -> WithContext<Self>

Attaches the current Context to this type, returning a WithContext wrapper. Read more
Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> IntoRequest<T> for T

Source§

fn into_request(self) -> Request<T>

Wrap the input message T in a tonic::Request
Source§

impl<L> LayerExt<L> for L

Source§

fn named_layer<S>(&self, service: S) -> Layered<<L as Layer<S>>::Service, S>
where L: Layer<S>,

Applies the layer to a service and wraps it in Layered.
Source§

impl<T> PolicyExt for T
where T: ?Sized,

Source§

fn and<P, B, E>(self, other: P) -> And<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow only if self and other return Action::Follow. Read more
Source§

fn or<P, B, E>(self, other: P) -> Or<T, P>
where T: Sized + Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow if either self or other returns Action::Follow. Read more
Source§

impl<T> Read<Exclusive, BecauseExclusive> for T
where T: ?Sized,

Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = !

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

Source§

fn vzip(self) -> V

Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more