Privacy-Preserving Video Surveillance Using Sensor-Based Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current video surveillance systems infringe on privacy by capturing and storing identifiable information of individuals, lacking selective data capture and privacy protection for authorized personnel, and requiring identification for access control, which is intrusive and inefficient.
Innovation Solution
A privacy-protecting framework that combines multi-sensor data with an XML-based access control policy to determine and enforce privacy levels, using off-the-shelf sensors like RFID and motion detection for localization, and applying video masking techniques to protect individual privacy in real-time, while focusing on anomalous events.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If video surveillance systems capture and store visual data of individuals, then security monitoring is improved, but privacy of authorized personnel deteriorates
Solution Approach 1:
The patent applies different privacy protection levels to different individuals based on their authorization status and privacy preferences. Authorized personnel with high privacy preferences receive strong masking (e.g., pixelation, blur), while unauthorized individuals or those with lower privacy preferences receive minimal or no masking. This local differentiation resolves the contradiction by tailoring privacy protection to specific objects (individuals) rather than applying uniform treatment.
Solution Approach 2:
The video stream is segmented into multiple quality levels or processing paths. The system divides the surveillance data into different privacy protection tiers, allowing selective application of masking techniques based on individual characteristics. This segmentation enables the system to maintain security monitoring while protecting privacy for authorized personnel who require it.
2Reliability
If video data is collected and stored for surveillance, then security analysis is improved, but data collection volume increases
Solution Approach 1:
The patent extracts and processes only the necessary visual data features for security analysis while discarding or masking unnecessary identifying information. By extracting only the essential surveillance data (motion detection, location, behavior patterns) and separating it from full-identity information, the system reduces data collection volume while maintaining security analysis capability.
Solution Approach 2:
The system applies partial processing to video data, processing only the portions related to security monitoring objectives and leaving other portions unprocessed or masked. This partial action approach reduces the overall data collection volume while maintaining sufficient information for security analysis.
3Reliability
If identification-based access control is implemented, then access security is improved, but operational efficiency deteriorates
Solution Approach 1:
The patent performs preliminary privacy level assignment and access control policy setup before actual surveillance operations. Individuals are pre-categorized with privacy levels and access rights, allowing the system to automatically apply appropriate processing without real-time identification delays. This preliminary action maintains access security while improving operational efficiency during execution.
Data Source
AI summary
A security system which is nonintrusive of personal privacy of a person in a space comprises at least a first localization sensor subsystem, if any, in the possession of the person; a video surveillance subsystem arranged and configured to collect visual data related to the person in the space; and a computer subsystem coupled to the localization sensor subsystem and video surveillance subsystem to associate a predetermined privacy level with the localization sensor subsystem, and to provide an access control privilege with the localization sensor subsystem, the computer subsystem determining how to present, store and/or retrieve the visual data while meeting predetermined the privacy level associated with the person.


