What's Inside the EU Green Pass QR Code?
gir.st
gir.st
https://github.com/eu-digital-green-certificates/
There are Android and iOS apps for QR reading, although they don't point to the production certificate chains so can't be used to verify "real" EU certs.
https://github.com/eu-digital-green-certificates/dgc-partici...
Side note: we're so generous that I hear of Americans here in Berlin who are getting the pass too by showing their American vaccination documents and a proof of residence in Germany. Meaning: the system is solid, but surprisingly flexible.
It has cost 4.3M euros and have detected 76.115 people, which amounts to 420 DKK or 56 euros per person.
To me that sounds quite expensive and not like a success.
Link in Danish:
https://jyllands-posten.dk/indland/ECE13057409/sundhedsminis...
I don’t have the numbers but my gut feeling says that 56€ is a bargain.
If the number of infections that were not detected are double the 300.000, then we are fast approaching 10% of all infections detected.
But anyway Denmark spend 60 times the budget for the app on testing each month in 2021, so it's pennies the app has cost.
But i still think it worthwhile to know what the taxpayers get for their money.
By that logic, we should start selling hand sanitizer for 100 euros, and soap for 50 euros, right?
Obviously the idea that something should not be evaluated by how efficiently was produced but solely by how much it was needed is a recipe for absolute disaster and cost bloat. Seat belts will go for 10,000 euros in that world.
But i find this wording very ominous, as i sincerely hope it will be sunset way earlier than 2022.
> If needed, the scheme may run for a longer period than one year.
Source:
https://www.schengenvisainfo.com/news/all-details-on-eu-covi...
Android or iOS will certainly not see too much health data of mine. Kudos to those working on it for free, but I don't really like to use the results.
The main EU project is part of the eHealth Network and can be found here:
https://github.com/ehn-dcc-development/
Disclaimer: I'm working on it as part of the Dutch team, mainly contributing to the schema but have also helped get the gateway up and running.
Otherwise the proprietary folks will come up with a competing implementation that meets their non-technical (licensing) requirements.
Edit: I am able to scan the code in the OPs link with the Swiss App and I can import it however the certificate seems to be currently not accepted.
E-voting was a poorly implemented transparency process to check a not totally terrible (and also, not correct) implementation of a pretty good design. Lessons were learned on the transparency side, and they are on HackerOne now, doing things approximately right. Security is hard and they will probably fail again, but they are failing according to industry standards now, at least. (I was a reviewer of the original system.)
e-ID was rejected by the voters as a gift of a service that should have been in government control to private industry for them to make profit on it. There was nothing technically terrible about the design for outsourcing eIDs to private industry, it was just a concept the voters found unacceptable. (I voted no along with a majority of my fellow citizens.)
I'm quite thankful for Die Republik (slightly leftist daily internet "paper", which is ad free and subscription only) because I think they were quite instrumental in uncovering some of the shenanigans being pulled by those companies.
This is the fundamental flaw of any e-voting system. Even if you manage to get it secure, how do you transparently proof this to everyone, including those who can't grok cryptography. What about those who don't care and just want to call the election stolen?
It is hard enough to convince them with paper ballots, but these are at least physical and they cannot come out of nowhere.
Even those who can grok cryptography can't check that the implementation matches the specification.
No human being can review the complete software running on a computer. Even less a distributed system.
But most human beings can understand the paper ballot system.
[1] -- https://www.ubique.ch/
It is indeed signed, according to the blog post and to the spec linked in the blog post https://github.com/ehn-dcc-development/hcert-spec/blob/main/...
How are the codes generated to begin with? Is there some central database that hands them out, or can any clinic generate one (having access to a copy of the private key?)
Infrastructure for code generation and signing is probably country-specific, though I imagine most countries will establish centralized systems dealing with this and integrate with other systems that track vaccination or test records on various levels (some countries delegate vaccination efforts to their states, others handle it nationally, etc.)
If the answer is that a service can validate the data, then why not just have the ID value if its all going to be on a server?
On top of that, online verification (e.g. by certificate ID) might be possible, too.
It would be cool if the whole thing was signed by a government public key, then you could verify it offline.
Some even sold screenshots on Facebook.
Now the app have all sorts of cool colour effects when you tilt your phone.
It's not clear (to me) when you are supposed to show the code with additional information, and I haven't been asked to do so.
The option with more data is only for official situations, like border control. That version is also in English and French.
1. No personal information at all. It only says valid or not valid. 2. Name and date of birth 3. Foreign travel, with name, date of birth as well as information about test type or vaccination type etc.
So no, due to privacy, there no nane show by default.
The QR codes design is pretty sound, so as long as they are validated correctly and checked against an ID this should not be possible.
You can run the text through a translator yourself, but the main quote: "Henover weekenden har vi allerede set de første eksempler på danskere, der sælger QR-koder i lukkede grupper på sociale medier" roughly translates to: "During the weekend we have experienced the first examples of people selling QR codes in closed groups on social media".
Edit: This article [2] is about 6 teens being charged with forgery of the pass.
[1]: https://www.inputmag.dk/snyd-med-coronapas-er-dokumentfalsk/
[2]: https://www.dr.dk/nyheder/regionale/oestjylland/seks-gymnasi...
Notably, it contains my full name, including middle name, and date of birth.
It notably states that it's only valid together with an identification document.
It's possible, of course, that gyms and nightclubs don't check very thoroughly, but I certainly wouldn't risk passing a border with a fake certificate.
Any information on the users phone can 100% not be trusted. It should just show the QR code. On the other hand the scanning App has to validate the signature, check if the dates are correct and display a big info that the QR is only valid if the name is the same as the one on a presented ID.
Maybe this should have been a design requirement from the EU spec.
I'm not entirely sure that the people implementing the policies understand the 'herd immunity' model, nor the by now fairly comprehensive statistical data on who is and isn't at significant risk from Covid19.[0]
Q: If a healthy 18 year-old chooses to attempt to go to a nightclub unvaccinated, who exactly is put at risk from this?
[0] https://www.ons.gov.uk/aboutus/transparencyandgovernance/fre...
"Children's risk of severe disease from Covid is tiny, deaths are extremely rare and have only occurred in UK children with profound underlying and life-limiting conditions. The direct benefits to them of vaccination would be low."[0]
Insert quote from Margaret Thatcher from 1987?[0]
More seriously, there is no [longer] one approved way to live, thank goodness.
We rightly demand that larger / mainstream groups respect minorities.
At what point is it OK to stop listening or respecting minority views, and who gets to decide that?
[0] "you know, there's no such thing as society. There are individual men and women and there are families" https://www.theguardian.com/politics/2013/apr/08/margaret-th...
I would even take a vaccine to protect some abstract person with a broken immune system whom I never met and probably never will.
I would even do that if the vaccine wouldn't help me (which it does).
It is called empathy and caring for each other.
That person, plus every person they come in contact with.
Oh, you can compute the total "risk" of course. Assuming the person is contaminated and you put their personal "risk" treshold at an arbitrary 2% (which I just pulled out of thin air: chance of getting unacceptable side-effects: p(side_effect|contaminated)). You then have to sum that up for every person they come in contact with.
sum((1-vacc_effectiveness)*personal_risk*transmissiveness).
The real contribution might be even greater than that, as the contaminated will go on carry the virus to other people.
In theory if the number of people is large enough, you should be able to replace the values with average ones, but it's likely that 18 yo will spend more time with 18 yo than 70 yo.
To sum it up, herd immunity only works if enough people are immune (vaccinated). Everyone should feel responsible for it, even 18 years-olds (unless you take a very individualist view of life, which seems like a dominant feeling in the US: it works a lot like the prisoner's dilemna). Anyway, I'm just proud of performing my civic duty, I won't be a carrier for that virus.
There are a considerable number of people out there - some of whom are young and healthy and at vanishingly small personal risk from Covid19 - who if you mention the phrase "unacceptable side-effects" their first thought would be of side effects from vaccination, not the virus.
The boss at my daughter's kindergarten had Covid19 last summer. She had to quarantine for two weeks, then came back to work. She told me (unprompted) that sitting out the quarantine was way worse than the virus.
Telling these people they are stupid or anti-social - or simply downvoting them :) - may not be the most effective strategy to make them change their mind.
How should society approach this?
How should governments approach this?
So if over the course of their study period, 100 unvaccinated people got covid out of a thousand tracked, with a 98% effectiveness, only 2 people in the 1000 people vaccinated group would have gotten it.
So vaccines are really effective. Even more so for preventing serious complications.
It is is about the authority that delivers the QR code: if it doesn't have the data (photo) it can't produce the QR code.
For example, I have been vaccinated in April, long before the green pass appeared. No one took my picture at that time (and that's not the task of doctors to take pictures and store them in central database, for privacy reasons). I still deserves a QR-code to go out of home.
In France we have ID cards which can link a photo to the name and birth date. So encoding name and birth date in the QR-code are enough.
Border guards are even less interested in the validity of your covid certificates than nightclub bouncers. They have very limited amounts of time they can spend on processing people without the whole system collapsing
You will not enter any Schengen country without the border guard checking if you have an entry in the Schengen Information System.[1]
A reply is available within seconds after the border agent scans your ID document (passport or identification card).
Travelling between Schengen countries doesn't require an id or a passport, but currently countries have restrictions on entry most of them either insisting on you being vaccinated or to present a current Covid test.
I'm travelling to Paris by train on Friday. which has the following requirements for entry:
From 9 June, fully vaccinated people from EU or
Schengen Associated Countries will not be subject to
testing or isolation requirements.
Accepted vaccines:
Pfizer/BioNTech
Moderna
AstraZeneca
Johnson & Johnson (Janssen)
further All travellers (from 9 June: all non-vaccinated
travellers) are subject to the requirement for a pre-
departure negative COVID-19 test taken within 72 hours
prior to arrival.
Now sure, chances are small that I'm even checked in the train. But if I am then it would be pretty dumb to present fake documentation. Don't you think so?[1] https://ec.europa.eu/home-affairs/what-we-do/policies/border...
Why would it be dumb to use fake documents when it’s literally impossible to get caught?
I can safely discuss this on the internet too, it’s not like anyone took photocopies of the documents I showed them.
FWIW I’m not some antivaxxer nutjob, I’m happy to wear masks and self isolate when I’m sick. I’m just going to fight the surveillance state in any way I can.
> You will not enter any Schengen country without the border guard checking if you have an entry in the Schengen Information System.[1]
This is actually not correct. Many EU citizens do not have SIS entries but are still able to travel. This is likely to change in the future though.
Why would you do that? Unless you're pulling some dodgy shit there is really no reason for this and frankly, I don't believe you.
> Many EU citizens do not have SIS entries but are still able to travel.
Huh? Of course you don't have an entry in the SIS if there's no reason to be entered. SIS is not a directory about every resident in the Schengen area, let alone the whole world. If you do have an entry, however (dpending on its contents) you can be damn sure that you're in for an extended interview with border authorities.
Because I like to travel regardless of government restrictions? Is that “dodgy shit”?
I just brought a friend who is a Russian citizen to France with documents showing that she had a car booked to transfer her to Switzerland for surgery.
Right now anyone entering the UK from certain countries needs documents to show that they’re in “transit” to avoid quarantines.
> Huh? Of course you don't have an entry in the SIS if there's no reason to be entered
My bad, I misunderstood what you were saying.
Yes.
HTH!
Anecotal data point #1:
I've entered Italy three times [by road] in the last six months, each time with a sheaf of paperwork to hand demonstrating my need to travel, negative test, EU27 residency, the full nine yards.
During none of the three visits did I even see a border guard / police / Carabinieri / $whoever at or close to the border, never mind get stopped, never mind have my documents checked.
There is policy, and there is reality. Maybe the gap between them in Italy is marginally larger than in some other places?
The QR code by itself is not proof of anything until you have verified that it actually belongs to the person showing it. That's where the ID comes in.
We have the vacciness, anyone can get one for free, just open up, and let the antivaxxers risk it if they want.
Even with a vaccine you can get COVID. Any body hosting a COVID virus is an environment where mutations happen.
We don't just want people to stop dying from COVID. We also want to stop new more dangerous strains of the virus to emerge or propagate.
We do not implement these measures here (Germany) at the moment. Anyone can visit stores or e.g. retirement homes without having to show a negative test result or proof of vaccination. Before easing the measures, people with proof of vaccination were treated like having a negative result in general, i.e. they could do all the things that others also could but without the hassle of having to be tested.
If you are vaccinated, you just show your pass and go into the bar. If you aren't you have to produce a test. A recent test. So frequent renew. Or you might just not be allowed to get in.
So just get the vaccine and life will be easier.
If you don't want the vaccine, just stay at home.
But one of the main benefits of the GDPR is making it illegal for businesses to keep surveillance records on you. This way you don't have to worry about keeping basic information like your name secret in the first place.
The US really needs something like the GDPR to restore some societal trust. As it stands, I'm planning on wearing a mask into stores etc for as long as I can get away with it.
Yeah, but that's the US. Which is well known for being pretty wacky on these things.
> It's another avenue of obtaining identifying information about you, to abuse with no restrictions.
How? You hold up your vaccine pass to the bouncer, and your photo ID, so he can see that the vaccine pass is actually yours: He compares the face in the ID to yours, and the name on the pass to that on the ID. Then he turns away from you and says "Next, please". In two minutes he has forgotten your name, and in thirty he remembers your face to the extent that he can say "Yeah, I think I let that one in tonight."
Does he photograph your pass and ID, or type them into some computer system? Hardly. So what's to "abuse"?
> This way you don't have to worry about keeping basic information like your name secret in the first place.
In any sane society, your name isn't supposed to be a secret.
Dang, Americans are a funny people. Paranoid about all the wrong things.
[..] especially given that you can also cross a border with a negative antigen test, which is pretty easy to come by. I must have done getting on for 50 of them so far this year.
Any video for that?
ie. the patient would scan a qr code (containing a nonce) on the checkpoint, and include that number in the token which was then shown to the checkpoint.
Even ignoring that though: including both the ID and detail allows it to work both ways. In official situations (e.g. at a country border) you might be able to validate against a server, but the local nightclub probably doesn't have access to a validation server.
So the local nightclub cann't(legally) check these certificates.
This Regulation establishes the legal ground for the processing of personal data within the meaning of point (c) of Article 6(1) and point (g) of Article 9(2) of Regulation (EU) 2016/679, necessary for the issuance and verification of the interoperable certificates provided for in this Regulation. It does not regulate the processing of personal data related to the documentation of a vaccination, a test or a recovery event for other purposes, such as for the purposes of pharmacovigilance or for the maintenance of individual personal health records
Member States may process personal data for other purposes, if the legal basis for the processing of such data for other purposes, including the related retention periods, is provided for in national law, which must comply with Union data protection law and the principles of effectiveness, necessity and proportionality, and should contain provisions clearly identifying the scope and extent of the processing, the specific purpose involved, the categories of entity that can verify the certificate as well as the relevant safeguards to prevent discrimination and abuse, taking into account the risks to the rights and freedoms of data subjects
So, if my interpretation is right, a national law backing those "secondary" uses must be in place.
Only health inspectors can do so, and they do random checks. Honestly, I don't know how this will end, because people are really fed up with this situation and all the lies from the government, and a club full of drunk people vs a few inspectors won't end well.
If I understand correctly, one of the pandemic laws requires them to verify, but the Information Commissioner's Office has countered that with one of their classic "well yes, but actually no" opinions saying that they're not actually allowed to demand that kind of information. What "demand" means here, of course, doesn't seem to be defined well, so I'm guessing they're still allowed to refuse service if you don't show them some proof.
Or maybe all of that has changed in the 20h since I was last at a bar - the speed at which the current government is making seemingly entirely random changes to the covid rules is genuinely impressive.
For example here in Italy I need the green pass to go to a wedding next week
And yes, in theory at least the name should be crosschecked with a form of ID. It's just a digital copy of a legal document, you could easily borrow or copy the paper version from someone else as well.
Clicking the link, I must admit I was expecting a privacy or security disaster. We should highlight the good stuff more often.
Either way, the official apps that let you check the record do not allow tracking, only verification. The simple solution is that if you don't see them using the official app, simply leave.
So why are name and date of birth included in the QR code?
It'd be easy to make something that looks like the official app but does store the information, especially if that app is open source (is it?).
Basically even if they collected the data they wouldn't be able to use it. If they just collected your name to personalize your experience they'd be literally in deep shit if someone asked: "where did you get this information from?" - which to you may sound a weird question, but since 2018, at least in my country, more and more people ask this question.
When in doubt, report. They'd need to show to authorities that the person gave explicit consent to store that data and to be used for personalized experiences.
It's about consent. If the user didn't give consent you have no use for the data, and you'll be storing toxic material to get you fined.
In the US, bars often ask for photo ID to verify that customers are old enough to be served alcohol. That doesn't seem to lead to widespread customer tracking.
1. This is a subset of all customers so it is not as useful as all customers
2. I’ve never seen a bartender or waitress scan my photo ID or record the data on the ID; without that it isn’t highly unlikely the data is being stored.
Your comparison is just not valid.
It is extremely creepy.
But Yanks screech about European surveillance states, and denounce the evil EU and its "sheeple" citizens... Much better over there, of course, where it's just corporations and not the eevul gubmint that's doing it.
___
[1]: That she borrowed off her elder sister...
In my experience, both statements are accurate.
https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A...
Article 10
Protection of personal data
1. Regulation (EU) 2016/679 shall apply to the processing of personal data carried out when implementing this Regulation.
2. For the purpose of this Regulation, the personal data contained in the certificates issued pursuant to this Regulation shall be processed only for the purpose of accessing and verifying the information included in the certificate in order to facilitate the exercise of the right of free movement within the Union during the COVID-19 pandemic. After the end of period of the application of this Regulation, no further processing shall occur.
3. The personal data included in the certificates referred to in Article 3(1) shall be processed by the competent authorities of the Member State of destination or transit, or by the cross-border passenger transport services operators required by national law to implement certain public health measures during the COVID-19 pandemic, only to verify and confirm the holder’s vaccination, test result or recovery. To that end, the personal data shall be limited to what is strictly necessary. The personal data accessed pursuant to this paragraph shall not be retained.
If I saw the person pull out a notebook and write my information down I would physically take my ID back and walk away. I'm pretty sure most people would be put off by this action.
I've seen this exact setup before, in an entrance to a club, but no one seems to care.
I'd wager that the vast majority of people think the machine only checks if the ID is valid and doesn't do anything else.
this has never been a thing in any European country I've been in. Maybe if you look underage, but definitely not the norm.
(Twelve, I think.)
Both are in the repo.
The check app validates the pass in-app, and, as far as I can tell, doesn’t phone home or report any data. IE there is no logging of the scanned persons data
Apps can also be configured to prohibit (or at least make it harder make) screenshots/screen-recordings. It can of course be circumvented, but still. It's illegal.
I would consider it as safe as showing my ID to a bartender/bouncer. Safer, even, as they don't get as much data.
* Famous last words, I know
And even if we don't have the need to check for our vaccination state when going to restaurants soon enough, it would be good if those certificates could be used to track any other vaccination you get. Just as the replacement or digital alternative for the usual yellow vaccination booklet. It would make checking your vaccination status for your doctor much easier than trying to decipher what a colleague has scribbled many years ago.
To exactly prevent this from happening.
I'd be showing my ID/vax record to those restaurants either way so it just seems like a technicality in the end. If you don't like it, don't use it, like all covid apps in the EU.
between eu member states, the acceptance of e.g. sputnik-v (the russian corona vaccine) varies. having the name (or id) of the vaccine in the code allows countries who don't recognize a given vaccine to validate codes issued by other eu nations, who are more open to such a vaccine. (what a horriblly worded sentence, i hope you get what i'm trying to say)
That seems reasonable; it's totally plausible that a future variant defeats a vaccine, and at that point you would want to be able to detect people who'd been given that one.
The only criticism I can think of, is the QR code is too "fat". It would have scanning difficulties in low-light conditions, especially QR readers with cheap cameras with low ISO tolerance. The Base45 encoded bytes should be cut at least by half to make fast scanning possible.
The paper version is less good as paper bends..
Nobody wants every verification resulting in a ping back to some central server doing who knows what.
1) Some other countries or commercial venues using their own version of VERIFIER app (based on open source) that pings some server online
2) Some other countries using their own version of ID app (based on open source) that pings some server online while QRCODE is rendered/generated
I'm just wondering why they havent designed it in different way (only when applying for use in commercial venues):
For application inside nightclubs, concerts etc. :
1) QRCode doesn't have any private data such as firstname / family name / date of birth etc (so that it's impossible to create profile ID)
2) While downloading your qrcode for the first time after installing the app (onboarding), it ask your for e.g scanning your National ID and/or holding your phone in front of mirror to verify your face (similar like other banking app do). After verification only then generates offline qr code for you
3) While onboarding it is mandatory that app is protected with your FaceId or TouchId
4) Such app can be installed only on one device (similar like in Whatsapp once trying onboarding on new device the previous app code is invalid) - any qrcode would be valid only for 48h
5) Bouncer still scan qrcode to check offline if is properly signed by authority + communicated with the app P2P via NFC/Bluetooth/Proximity to verify this is neither screenshot nor some unauthorized app.
ad 5) Verifier maybe would have to ping some server to check that App is legit but wouldn't know who is checkin in
edit - formatting
This is already way over the line. I can understand banking apps do it but for a vacvination certificate? No way. The QR code implementation is fine. It would also be fine if it would be printed on paper or in a PDF and valid for a year.
If verifier app will at some point start pinging some server having a QRCode in PDF or printed on paper won't save you from someone tracking all places you are going to. Imagine how useful it can be for tracking some politicians, activists or journalists and correlating that check-in information who they might be meeting with.
The QR code is essentially like a Covid-only digital vaccination pass; it doesn't provide any more or less information.
The only valid point in pzo's original comment is that a scanner app from a bad actor could collect the personal information within the code. So we need to be able to trust that the person scanning the QR code is using a legitimate app.
We use IDEMIX, a form of Verifiable Credentials. The nice feature of IDEMIX is that - unlike W3C VC - it also has the property of being able to create unlinkable credentials.
Guess what? That's the reason that we've used them :)
Read our technical designs here: https://github.com/minvws/nl-covid19-coronacheck-app-coordin...
The key re-usable components of the system been development in public and in open and made available with a permissive license.
This should be enough to create a pretty much unique profile ID especially for countries like Netherlands with small population.
I have a very common combination, and I get only my First_Name_Initial and Birth_Month.
EDIT: I quite literally built this for the first version of the app. It's all in the repo (unless someone has cleaned it up since I last looked).
Let's say your name is Gerrit de Winter, born May 3 1973. The QR code would then contain: G W 5/3
Nothing is stopping you from sharing the code with your friends as long as they share these limited credentials, but those chances are very small. It's easier to get a valid QR code than finding a credential twin.
So you can scan in the face of your vaccinated cousin to go with his QR code you downloaded; or the driver's license you stole off some poor sucker. Doesn't seems like all that great a security scheme to me.
Here in The Netherlands our app is also used for proof of a negative test. I wonder if giving signing powers to however many hundreds of test locations will backfire at some point. Then again I don't know if our national QR codes are even cryptographically signed to begin with.
In Germany the vaccine proof can be generated at (most?) pharmacies. If that would become an issue, I don't think it would only be one in the Netherlands.
The California version will certainly be used to generate databases that will be fed to marketers.
The doorman is not remembering/recording every person who came in, thats the difference.
If a company violates privacy laws, I will not immediately know it happened. If I don't know it happened then I can't report it to the police, but even if I did, the police probably won't take it seriously. And prosecutors going after corporations? Even if that happens it will doubtlessly take many years for the court case to reach any conclusion. If convicted, the corporation will receive a fine that is a fraction of what it would take to put them out of business. The executives won't go to prison.
The practical differences between these two scenarios are substantial.
?!?!?!
QR codes support binary natively. What the hell even is base45?!
https://datatracker.ietf.org/doc/draft-faltstrom-base45/
"Even in Byte mode a typical QR-code reader tries to interpret a byte sequence as an UTF-8 or ISO/IEC 8859-1 encoded text. Thus QR-codes cannot be used to encode arbitrary binary data directly. Such data has to be converted into an appropriate text before that text could be encoded as a QR-code. Compared to already established Base64, Base32 and Base16 encoding schemes, that are described in RFC 4648 [RFC4648], the Base45 scheme described in this document offer a more compact QR-code encoding."
Here is the output alphabet:
Value Encoding Value Encoding Value Encoding Value Encoding
00 0 12 C 24 O 36 Space
01 1 13 D 25 P 37 $
02 2 14 E 26 Q 38 %
03 3 15 F 27 R 39 *
04 4 16 G 28 S 40 +
05 5 17 H 29 T 41 -
06 6 18 I 30 U 42 .
07 7 19 J 31 V 43 /
08 8 20 K 32 W 44 :
09 9 21 L 33 X
10 A 22 M 34 Y
11 B 23 N 35 Z
My initial thought is using "Space" as a valid encoded value seems like an enormous foot gun.I would have omitted these four (the asterix being there only to have a consecutive subset):
36 Space
37 $
38 %
39 *
Especially % can be confusing, as %20AA seems like a valid base45 both before and after urldecode. The $ is a lesser footgun.I'd be keen to learn why they decided to use full 45 characters available in alphanumeric QR.
Which means it is a text mode, and actual scanners do treat it as text (although usually UTF-8 which goes against that standard, meh).
The encoding is great, actually: 4n bytes will get encoded into 6n alnums (base45 symbols) which are 3n * 11 = 33n QR-bits. A loss of just 3% (33/32 - 1). This works because [ alnum1 alnum2 ] by spec must get packed into [ 11 bits ] in the QR message bitstream.
Wrote an explanation here: https://news.ycombinator.com/item?id=27592936
It says:
A QR code contains a mode indicator, character count and the bitstream encoding the characters. Modes are:
- numeric: 10 bits are used for [0-9]{3}
- alphanumeric: 11 bits are used for [0-9A-Z$%+-./:]{2}
- 8 bit Kana/JIS X 0201: (8 bits are used for every Japanese character)
- Kanji
- mixed mode (switching between multiple character sets in one stream)
- extended channel mode (ECI) - latin1, cyrillic, etc
https://www.swisseduc.ch/informatik/theoretische_informatik/...
Note that the document mentions that stuff like 'font size' is not specified in QR (?), while saying nothing about basic questions like 'what about non-printable characters'.
Then it got it got superseeded by 18004:2015. When a person asked on StackOverflow what's going on, the answer by the author of the most popular QR library (zxing) says "There is one (not obsolete) ISO spec for QR codes, ISO 18004:2006. Most of what you observe is just lack of compliance." - https://stackoverflow.com/questions/18699739/tools-for-qr-co...
Looking at other questions ("how do I store utf8"), it seems like scanners do some heuristics (scanning for BOM, valid unicode codepoints, etc), not even slightly conforming to the modes: https://stackoverflow.com/questions/51516612/choosing-a-char...
---
So, you can do base64 with ECI latin1, and risk the scanner performing some heuristic... or you can just take the alphanumeric route with 45 options (26 letters: [A-Z], 10 digits: [0-9] + 9 special characters), which is compact in terms of QR representation (not in terms of modern 8-64 bit words in memory!) and call it a day: https://tools.ietf.org/pdf/draft-faltstrom-base45-06.pdf
Even "data" and "science" is subject to emotionally or ideologically-driven narrative and/or subjective perception.
This, against a backdrop of our current "big tech" which has demonstrated wanton disregard for individuality and autonomy in favor of centralization and manipulation.
There are a few voices of reason here. Hopefully more will speak up.
It is the very creation of SYSTEMS that pose the greatest risk to individual liberty and the course of society.
Once the systems are in place, they can evolve. They can be leveraged or weaponized.
It is past time for ethics and limits in tech. The creation of these "pass" systems is extremely naive, and forms the basic enabler of a technocratic tyranny.
Your personal autonomy is being increasingly removed.
You are approaching a reality where some (many in this thread) naively want you to accept that you are inherently dangerous, untrustworthy, and unprivileged - until some central "system of authority" grants you "privilege" to exercise "rights" that are being removed.
No thanks.
Reject the overton window shift.
[0] https://www.revk.uk/2020/09/how-not-to-qr-nhs-c19-app.html
Here's what it looks like (in a big fat QR):
{
"@context":["https://www.w3.org/2018/credentials/v1"],
"id":"<INDIVIDUAL ID>",
"type":["VerifiableCredential"],
"issuer":"<ISSUER ID>",
"issuanceDate":"2021-06-12T01:14:19Z",
"expirationDate":"2022-05-19T03:59:59Z",
"credentialSchema":{
"id":"<SCHEMA ID>",
"type":"JsonSchemaValidator2018"
},
"credentialSubject":{
"display":"#24387E",
"passType":"COVID-19 Vaccination",
"subject":{
"birthDate":"<DOB>",
"name":{
"family":"<LAST NAME>",
"given":"<FIRST NAME>"
}
},
"type":"COVID-19 Vaccination"
},
"proof":{
"created":"2021-06-12T01:14:19Z",
"creator":"<CREATOR ID>",
"nonce":"<NONCE>",
"signatureValue":"<SIGNATURE>",
"type":"EcdsaSecp256r1Signature2019"
}
}
I'm not sure where to get the schema, but it looks like some common format.There's not really any private medical ID in there. My driver's license has more info.
(It also also includes a link to a json schema)
In my country, if you get a positive PCT test, you can go places 10 days after the result and up to 6months after, then a vaccination is required (or a new positive result, or a test).
If another country has different limits (14 days after the positive test and up to 5 months after), they need a test date to calculate if you're allowed to enter or not.
As someone from a former socialist country, this really reminds me of "papers please", especially the border crossings between countries with similar numbers of infected not letting people cross.
Maybe that is only for the national check and not EU passport.
Dutch: https://coronacheck.nl/nl/faq/1-6-welke-informatie-staat-in-...
English: https://coronacheck.nl/en/faq/1-6-welke-informatie-staat-in-...
The cross-border credentials provide context to allow the destination to make a determination if they wish. For example, some jurisdictions may not recognize Sinovac. Others may not recognize a COVID recovery + 1/2 dose series as valid. In the future, some vaccine series may need a 3rd dose.
Each place in different. Some US jurisdictions adopted a "hold my beer" approach. Others have tight standards and vaccine registry, others have good immunization processes, but the integration with third parties is poor.
When I scan it on my I iPhone it just gores to the Apple health app with no information.
What exactly is the moral high ground we stand on?
Does it have access to a passport ID? Image database?
How is the one verifying the validity of the certificate supposed to check if it's actually the holder of the certificate standing in front to clear admission?
You'd still end up comparing a picture to someone's face, though, so you can't really remove the middle man without going into some dangerous facial recognition tech.
Your granny doesn’t need to verify this, these are used by employees of venues that want to limit access to their facilities to people who are either vaccinated or tested negatively.
I'm pretty sure the guard doesn't give a flying fuck about my personal information, just like the programmers - so how do I verify myself? Or am I to stay at home forever if I care about my privacy? The EU said very different things about these issues, is that forgotten now? The same goes for the other identity-related EU initiatives, where did all the talk about privacy go? Was it just propaganda, because it certainly seems so now, as there are so many so obvious loopholes it can't be an accident?
If you or your granny aren't good at reading code, you just have to trust that other members of the public who are would have made some noise in the media if something fishy was going on.
Yes -- just like you've always been, long before this pandemic. Every time you're out in public, you're out in public.
Having someone at the door look at a paper ICVP and a photo ID with their analog eyes has much better privacy properties. (Still bad though.)
https://en.wikipedia.org/wiki/International_Certificate_of_V...
The verifier app is a dumb app that simply verifies the signature of the QR code payload and displays the relevant info on screen, which they look at with their analog eyes and compare to the photo id. The only network activity and/or storage is related to downloading the public keys of the issuing authorities.
Source code is available on github.
The QR code scanners will probably just be the official app installed on smartphones the venue will need to supply to the security personnel. Who's going to hack this? Banks can already track your credit card payments to figure out your profile, Google can track your location through your phone. Russian, Chinese or North Korean hackers probably don't care about where you spend your evenings.
"The imaginary is that which tends to become real" -André Breton
> Banks can already track your credit card payments to figure out your profile, Google can track your location through your phone.
For people who don't even avoid these easily defeated tracking vectors (with cash and de-googling), sure, vaccine passport tracking won't make a big difference.
Just because you can find a quote you think is profound and attach a name to it, doesn't justify super-paranoia. Do you get out of the house, or are you avoiding the virus? Life's about judging risks and benefits, and IMO you're way overblowing the risk of these hackers. What Andre Breton thinks is irrelevant.
Here we hide personal health information in a QR code and are expected to give random strangers 'consent' to this personal data to gain 'access' to a venue or 'service'.
Sounds awfully lot like a cookie consent-popup.
Without any kind of ID the QR code is useless.
Do you really need to know the last four if you all you really want to know if the identified person should be granted access?
I’m not sure how else to give someone the information that person X has had vaccine Y, other than actually transmitting that exact information?
Yes, it’s (slightly) sensitive information. But if one decides that we want to have a system based on this exact information, and it had to be “offline capable”, what are the options?
> Do you really need to know the last four if you all you really want to know if the identified person should be granted access?
If the requirements are that verifiers must themselves be able to decide which vaccines are acceptable, number of doses or time since last dose, and which issuers are allowed, then yes.
Most countries, for example, require vaccination for contagious diseases for a variety of public functions like attending school. The need to validate vaccination status for functions like boarding airplanes or attending large stadium events is just common sense, as certain populations are refusing vaccination for mostly irrational reasons.
These digital credentials allow people to conveniently provide this documentation in a reliable way.
It's not irrational for people to be cautious about a new treatment for which there's absolutely no data about long-term safety (can't know the 2-3 year effects of something that's only been around one year), which has bypassed normal treatment approval processes (the covid vaccines only have FDA emergency use authorisation, and have not yet passed the requirements for full FDA approval, requirements which are strict for a reason), for which some previous attempts have failed significantly (https://pubmed.ncbi.nlm.nih.gov/22536382/), to prevent a disease that for many people has less than a 1/100,000 to 1/1,000,000 fatality rate (https://www.medrxiv.org/content/10.1101/2020.05.17.20097410v...), ten to a hundred times less dangerous than giving birth.
And you're seriously downplaying the risks of COVID-19 here, of course it is relatively harmless for very young people. But it is seriously dangerous for a large part of the population that is older.
It's not only "very young" people. Did you look at the link I provided? For people 20-30, it's around one in a hundred thousand. For people 30-50, it's around one in ten thousand (similar to giving birth). When someone's making a rational decision, it's with regard to their individual risk; the risk of covid to an eighty-year-old is irrelevant to a twenty-year-old deciding whether to take the vaccine, especially given the vaccine doesn't prevent them infecting others if they get it (see this data from the Singapore government: https://covid.viz.sg/ ).
>for vaccines they generally appear reasonably close to the date of the vaccination.
The MRNA vaccines are quite different from normal dead/live virus vaccines and have never been used at scale.
Their closer relative, the viral vector vaccines (like J&J’s), have been. You’re right about calculating risk, but when’s the last time a vaccine in normal, longer term stage three trials resulted in a higher fatality rate than COVID (for any age group)? The link for the SARS vaccine candidate was a failure that was caught in a mouse model, which unsurprisingly they also did with the new vaccines before the human trials started. To echo the parent comment, these were immediate side effects on challenge (which would likely been caught in stage 2 trials even if they only happened in humans and not in animal models).
If we want to go with unusual reactions that only show up over time, what about the chance that whatever long term side effect you’re imagining from the vaccines instead happens for people who have been infected with COVID 5 years from now? Once you decide to make decisions based on rare and novel events with unquantifiable risks, you’ll find they show up absolutely everywhere if you’re being intellectually honest.
> given the vaccine doesn't prevent them infecting others if they get it (see this data from the Singapore government
That data’s N is a little low, but let’s take it seriously for a moment. The vast majority of vaccinated people in that dataset did not go on to infect others, and none of them were epicenters for super-spreader events. Eyeballing it, it’s consistent with a sterilizing immunity in excess of 80%. If the vaccines turn out to be that effective at preventing transmission, that’s an excellent outcome (it is higher than most vaccines).
It's basically like saying: "the unit tests have all passed now, the regression tests all pass, so let's roll out the fix straight to prod, because it's urgent and we don't have enough time to do the normal amount of staging environment testing". Sure, probably it's fine. But mistakes happen. In any other context, a 1/100,000 chance of error would be considered incredibly low, a great achievement. But in this case, a 1/100,000 chance of seeing after 2-3 years a failure like happened early on in those previous trials would be an incredible tragedy, if the vaccine was taken by people with less than 1/100,000 chance of being killed by covid.
https://onlinelibrary.wiley.com/doi/10.1111/ijcp.13795 makes a better case than I can that "a finite, non-theoretical risk is evident in the medical literature that vaccine candidates composed of the SARS-CoV-2 viral spike and eliciting anti-SARS-CoV-2 antibodies, be they neutralising or not, place vaccinees at higher risk for more severe COVID-19 disease when they encounter circulating viruses"
>If we want to go with unusual reactions that only show up over time, what about the chance that whatever long term side effect you’re imagining from the vaccines instead happens for people who have been infected with COVID 5 years from now? Once you decide to make decisions based on rare and novel events with unquantifiable risks, you’ll find they show up absolutely everywhere if you’re being intellectually honest.
The difference is that covid does not have a big qualitative difference from other respiratory viruses, and no circulating respiratory viruses are known to cause serious long-term symptoms in people who were short-term asymptomatic. Whereas the MRNA treatment is quite a different mechanism from previous vaccines.
Separately, ethically it's generally considered worse if a death results from deliberate human action than from an "act of nature". E.g. nowhere is it morally acceptable to murder somebody just because their organs could be used to save ten people. In this case that means it would be considered morally worse if people were coerced into taking a vaccine that ended up killing them than if, absent the vaccine, they died from natural causes of equivalent risk.
>That data’s N is a little low, but let’s take it seriously for a moment. The vast majority of vaccinated people in that dataset did not go on to infect others, and none of them were epicenters for super-spreader events. Eyeballing it, it’s consistent with a sterilizing immunity in excess of 80%. If the vaccines turn out to be that effective at preventing transmission, that’s an excellent outcome (it is higher than most vaccines).
There's one super-spreader there, a prison cook. I pulled the data from the backing rest API (if you want I could upload the notebook and show you):
pd.Series(vax_links).describe()
count 17.000000
mean 2.705882
std 3.670230
min 1.000000
25% 1.000000
50% 1.000000
75% 2.000000
max 14.000000
dtype: float64
pd.Series(unvax_links).describe()
count 127.000000
mean 2.181102
std 1.965647
min 1.000000
25% 1.000000
50% 2.000000
75% 2.000000
max 15.000000
dtype: float64
While there are way fewer vax cases than unvax cases, looking at the average number of infectees it doesn't appear that vaccinated people infect fewer on average than the unvaccinated do, at least given the limited data.So yes, chances are I wouldn't die if I didn't vaccinate, but chances are I would kill my grandma if I caught covid.
The choice isn't between the vaccine or COVID.
FDA approvals are largely based on the ability to provide reliable test cases. You literally have the largest test case known to human history. No amount additional FDA testing is going to make that change.
> to prevent a disease that for many people has less than a 1/100,000 to 1/1,000,000 fatality rate
This figure is meaningless. We have a steady history of "excess deaths" and can predict what annual death rates are on average on a yearly basis. This number jumped significantly even with mask mandates, lockdowns, etc over the last 18 months:
https://www.cdc.gov/nchs/nvss/vsrr/covid19/excess_deaths.htm
Nine women can't have a baby in one month. A billion test cases for short-term side effects still aren't test cases for long-term side effects.
>This figure is meaningless. We have a steady history of "excess deaths" and can predict what annual death rates are on average on a yearly basis. This number jumped significantly even with mask mandates, lockdowns, etc over the last 18 months:
For making a rational decision, the figure to use is the personal risk to the individual. Using excess deaths is meaningless, because if the vast majority of those deaths were in old and overweight individuals and you're neither, then those numbers are irrelevant to quantifying the risk you face.
Depending on age and condition the risk to an individual can vary from one in ten million to under one in a hundred. In your mind, what is the risk that an individual must face from covid to make it rational to take a novel treatment with no long-term safety data that hasn't passed the standard FDA approval process? In any other context, would people here be so confident that there's a less than one in ten million risk from a novel MRNA treatment?
You're off by several orders of magnitude here. See "current best estimate": https://www.cdc.gov/coronavirus/2019-ncov/hcp/planning-scena...
The "central authority" already do forbid you from accessing certain or public services for the same rules - only you need to provide the relevant paper documents. This is effectively the paperless version thereof.
You may personally disagree with the concept of proof of vaccination, but thats completely aside from the technical discussion we are having here.
You mean just like a centrally fabricated ID card that's used for entering an airport, making certain purchases, verifying ID for a CC purchase, entering the country, etc?
Just a year ago, saying that the governments will require you to produce a "vaccination passport" to enter a restaurant was laughed at as a crazy conspiracy theory, and currently, the difference between a "crazy conspiracy theory" and "reality" is about 6-12 months.
If you are talking about private services, then there are many examples where papers are needed:
• buying alcohol (ID)
• entering a nightclub (ID)
• taking a plane (ID)
• opening a bank account (SSN/ITIN)
• renting a car (driver's license)
• buying a gun (proof of residence)
Of course, just because something is called "good for society", doesn't mean it actually is
So it's just meaningless erosion of freedom
> Will citizens who are not yet vaccinated be able to travel to another EU country?
> Yes. The EU Digital COVID Certificate should facilitate free movement inside the EU. It will not be a pre-condition to free movement, which is a fundamental right in the EU.
https://ec.europa.eu/info/live-work-travel-eu/coronavirus-re...
You're basically given three options:
- get vaccinated
- get tested every 48 hours
- intentionally infect yourself with covid
Compare this to pre covid travel, and yes, it affects us greatly. Since pretty much all the countries have very low covid numbers, any such limitations are stupid.
No, don't. What we are talking here about is a Covid pass / QR code thing, not the pre-pandemic past.
> Since pretty much all the countries have very low covid numbers, any such limitations are stupid.
In just the Europe, Russia and UK have horrible numbers right now, Portugal joining them. So no, you are wrong, I am sorry but the testing/vaccine/quarantine rules make sense and will make sense in the foreseeable future.
And, does this "EU Green Pass" work in UK or russia? Because the "EU" implies EU only and the webpage[0] says that directly [1]
[0] https://ec.europa.eu/info/live-work-travel-eu/coronavirus-re...
[1] The EU Digital COVID Certificate will facilitate safe free movement of citizens in the EU during the COVID-19 pandemic.
No, UK/Russia are an example that we are not yet safe. In fact, the current numbers in Portugal are a direct result of influx of visitors from the UK who imported the Delta variant there.
> we're striving for the prepandemic way of life
Yes, as soon as the virus is not a big threat, we can resume the prepandemic way of life. If you look at the current numbers of people getting sick and dying from Covid, it should be clear we are not there yet. But the Covid pass is a part of normalizing the situation. I will travel in July to a vacation. I will carry the covid pass with me and as a result of that, I will not have to be tested (several times) or quarantined, despite traveling through several international (Schengen) borders.
So we've got two realistic options: 1) non-EU countries teach people their own and the EU verification method, or 2) non-EU countries offer a way to "convert" EU QR scheme to their own at the point of entry.
It's similar the other way around as well, because non-EU countries could either start issuing EU-compatible QR codes, or recepients could "convert" them to the EU-compatible QR code at the point of entry.
I'm vaccinated, the vaccine works, and I'm living accordingly. If a business wants proof, they don't get my business.
ID2020 anyone? remember that was always the plan.....
The pandemic was the perfect opportunity - so they coordinated between big tech and government to setup more and more tracking systems - Apple and Google knew ahead of time, just like the politicians and CEOs who ran before the announcement with buckets of share sales....
And then there is the solidarity and collective front to ensure that no dissent was heard (ie...fact checkers) and cartel like collusion between platforms to silence and coordinate news.
Then there is the fact that they have managed to make health and science immune to the forces of criticism and public disclosure....
or how about the media sucking at the tit of big tech for years trying to get at that sweet sweet ad nector....
Umm that I elected the people who do this, and support it (or else I’d vote for someone else next time). The Chinese don’t have that privilege.
Their design looks very similar to mine [1], but they use a compact and custom schema instead of FHIR and W3’s Verifiable Credentials standard. Looks like they might be using LOINC code though.
The Dutch government disagrees. Their app implementation will have the ability to generate two codes, one for events within the borders and one for the EU pass.
The reason behind this is that the Dutch QR code only contains the bare minimum of personal information to identify you. By default this means the day and month of birth and your initials, unless you share those among many other citizens. In that case, more data may be added, such as your full first name or year of birth.
While the amount of personal data exposed through the QR code is small and not a privacy risk in my opinion, it does have some points where it can improve. Still, it's not a bad system from a technical point of view.
My problem with the entire system is that this code is basically a free pass for all the old people we've stayed inside for a year for to go on holiday, while everyone else gets to go through all the same hoops they've been going through for months. If the vaccinations were spread randomly across the population, I'd be perfectly okay with such a system, but in real life all the old people got their shots first. Things may be different in other countries, but here the vaccinations are still going, with only half the population having had a first shot.
The underlying message is clear, there's no solidarity between the age groups. I had to pause my social life to protect the people aged 50+, but those people aren't willing to put off their holiday for me in return. I'm sure the underlying reason for implementing this system is economic, it's the EU after all, trying to save tourist-oriented economies and all that.
I'll get my pass somewhere near the end of August (two weeks after my second shot), past the holiday period. Parents will have to wait for even longer if they want to travel with their kids, because kids are all the way at the end of the vaccination line if they even get them at all.
With the Indian covid variant ravaging Portugal and the seasonal effect, I do wonder how long this system will last. It's only a matter of time before some mutant shows up that's resistant to a certain vaccine and we start from scratch.
This sounds like k-anonymity, in which case the k is usually made public. Any idea what value they chose?
In this case it looks like they want a guarantee on both, which makes sense.
(So yeah, you're right, this definitely isn't just k-anonymity)
I don't understand. Why does it bother you if someone else is allowed to meet her friends again after being vaccinated and you are not? If they sit alone at home instead, how does it benefit you? The reason why they had to isolate themselves (being at risk of dying and infecting others) is gone. That means there is also no legal legitimation to restrict the people's basic human rights any longer than necessary.
In any case, while it is certainly nicer to be vaccinated, it’s possible to get free PCR tests for the equivalent access.
PCR test cost around 100eur in slovenia, and take a day or two. Fast tests (HAT) are free, but the waiting lines are 1-3hours, because of all the groups that have to do mandatroy testings each week.
No, that's not true.
I've mentioned it in a few comments now, but for events within Netherlands there is no cost - you can either have your (free) vaccination check or you can get a free PCR test and have a time-limited entry code. PCR tests for this purpose are always free in NL.
And the Netherlands is covering the cost of PCR tests for travel through July and August, by which point any adult who wants a vaccine can have had one.
Time limited is how long? I'm guessing 48 hours? So, even if free, you need to take an hour or two out of your life, every two days to be able to go to the cinema/footbal match/concert?
In slovenia, there are cases of people getting intentionally infected with covid, just to get "the papers", and to avoid the AstraZeneca vaccine (with, quoting the leader of our "expert team": "blood clot issues in a few per 100k people" - which is way more than the covid death rate in those age group).
Add to this the famous saying, that "there is nothing more permanent than a temporary solution".
>Time limited is how long? I'm guessing 48 hours? So, even if free, you need to take an hour or two out of your life, every two days to be able to go to the cinema/footbal match/concert?
Certainly not saying it is seamless or not a total pain in the ass, but in reference to the OP it is wrong to characterize this as young people suffering, locked at home at the expense of old people who are free to do everything.
The government here has been moving the goalposts a lot, because we're in the "green" phase now, where just a few months ago, pretty much everything was allowed, and now they've added the vaccine/recovered/tested requirement (called PCT here) to everything. Also, we've ended the "epidemy status", so no more help for businesses, while still limiting how they can operate (requiring PCT, limiting number of people per square meters or percentage of capacity), and night clubs are only allowed to be open until midnight (making it not worth it to open, but without any help to keep the employees employed).
Everyone has had their lives interrupted for a year to save the old and weak, has had their life-saving vaccinations rationed towards the old and weak, and in exchange, the old and weak get to go to concerts without paying for a covid test.
Is that the thanks we get for trying to save their lives? The government isn't helping the younger generations, they didn't vote for them anyway, and the news is full of entitles people demanding to get a stamp to go on holiday before the app goes live.
Is it fair that my human rights are still restricted, while those of the people the restrictions are intended to protect aren't? It doesn't feel fair to me.
Be fair now...you also do not need to pay for the test. It's a hassle, true.
What kind of 'thanks' would you expect exactly?
They have lived the year at higher risk of contracting dangerous symptom, while you were safer in comparison. Was it fair then? When you were able not to fear too much about your safety?
Frankly, forcing people to stay inside while they have been vaccinated and are at an acceptable level of risk, under the guise of 'fairness' is pretty rich.
It is a bit ignorant to say that only the old and weak needed saving from covid-19. You won't know if you are strong enough against covid until you are one step away from hospitalization, whether you are 20 or 60.
In this case the status is vaccinated status, which in many countries is not widely available and the distribution is controlled by the government.
However at the point where everyone has equal access to the vaccination (and uptake is enough to provide herd immunity) such restrictions are unnecessary. So as soon as it's fair to put in place restrictions, they are no longer necessary.
I see the issue here but for the government it's a case of damned if you do, damned if you don't, or a lesser of two evils. Keeping restrictions in place for everyone whilst waiting until herd immunity is achieved is a severe restriction of freedoms for everyone, whereas loosing restrictions for those who are vaccinated is unfair but allows society to slowly return to normal.
Because the young people could meet their friends and go on holidays with minimal risk[0], but they were not allowed to, because they had to "save grandma". Now grandma is "saved" and vaccinated, and they're still not allowed to go, with the risk still being minimal.
[0] in slovenia, the have been 600k-1mio (depending on the expert) infections, and total number of 4(!) people died below the age of 35, 88 below 55 (including those 4) - for comparison, average number of deaths in traffic is ~100 per year.
That's not a given. There's an evolutionary space for mutations the virus that isn't endless. It seems far from clear that it can generate escape mutants that are resistant to the current vaccines, for that it would have to turn into a completely different virus.
>We emphasize, however, that enhanced transmissibility, rather than immunoevasion or greater lethality, would be considered the most potent path for the virus to become more fit and viable.
>Indeed, more-fit variants can be expected to emerge over time [...], but we believe that these will not continue to emerge indefinitely: nothing is infinite in nature, and eventually the virus will reach its form of ‘maximum transmission’
It's early speculation and there is no guarantee, but it's certainly not given that there will be a variant that forces us to start from scratch.
Furthermore, it is possible to take advantage of everything a person with a vaccine pass can do with a (free!) PCR test. It’s even paid for by the government for July and August for travel abroad.
Also, it’s definitely far from certain that some mutation will evaporate all of the progress made. It’s not helpful to speculate like that.
You do raise an excellent point that this vaccine system excludes children.
Also, PCR tests are available for way less than 120 EUR.
That's not to say the past year wasn't particularly difficult to families with children and young people in general.
If you have to fly, you have to do PCR test and again on return.
PCR tests in most cities are 80-130 Euro. Only if you live in Bavaria, you may do it for free.
https://www.government.nl/topics/coronavirus-covid-19/visiti...
Granted, it is more complex to check what countries require to accept a person traveling from the Netherlands.
At least Germany itself has lots of nice and diverse holiday destinations. That's what we're doing this year.
(Source: came back yesterday)
I have to disagree here. There is neither reciprocity nor solidarity involved, because you gain/lose nothing by them having or not having additional freedoms.
Don't get me wrong I understand OP's frustration and that he/she feels treated unfairly. But OP's frustration is not rational. As harsh as it sounds OP's feelings are driven by envy.
It could be argued that keeping everyone home instead of just those at risk was irrational.
What I'm saying is that given the current situation, player A (OP) loses nothing while player B (the vaccinated) gains something (also called a Pareto improvement). It is not rational for player A to oppose this new situation where B gains something.
It's disingenuous to suggest that throughout all of this, elderly people were somehow welcome to do as they pleased while the young were locked at home. Don't cast aside the immense suffering and loneliness of elderly people throughout this.
What, have you been dead for this last year? If not, you haven't "lost more than a year of the prime of our life". Silly hyperbole.
> we still don't have back despite there still being next to no risk to us.
Me, me, me... Yeah, who the fuck cares about risk to others, right? What you're writing comes off as the thinking of a self-centered asshole.
Would you have preferred to be one of the people whose lives were in danger because of this disease? There's a good reason they got the first vaccinations.
The youth sacrificed a year of their lives for the elderly, and in exchange they'll have their freedoms restricted for longer while the elderly they've sacrificed their time for get a free pass to holidays and concerts.
There are some EU countries that will have you take one if you didn't bring your result along (and it will be free of charge), but then you might need to spend a day or more in self isolation till the test result is reported back.
I'm just not convinced that we should require the same tests even after vaccinations even if it now leads to uneven amount of hassle.
Yes, that's unfair.
It would have also been unfair to give the vaccine to young people first.
Such is life. Whichever choice you make here, it is unfair. There is no "happy path".
Or actually, we (here in the West) ARE on the happy path. Just have a look at what is happening in Brazil or India to see why we are the fortunate ones. We need to stick with it for a bit longer, and Corona will mostly be a thing of the past here. Many people all over the world would love to swap places with us. Also extremely unfair. Unfortunately.
Edit: could be in the top level "r" for Recovery group element
Edit 2: no, the recovery element does not allow information on vaccination, and vaccination/recovery group cannot be combined
https://www.faz.net/aktuell/wirtschaft/jens-spahns-umgang-mi...
They won't give you a second jab, but they also won't officially recognize you as vaccinated right now. And travel is also problematic since not all countries, not even the EU countries, accept prior illness + vaccine as being fully vaccinated.
These laws look like code that could use property based testing.
The lack of getting people a second shot is disappointing, but with the limited availability of vaccines it's understandable from a health perspective. The goal of vaccination isn't to help people travel, it's to prevent a deadly disease, after all.
We'd be better off with a common deciding factor what measures are acceptable to cross the borders, but areas with tourist-centric economies are incentivised to reduce the access requirements, and other countries are paying for those economies while they're still failing, so health and safety wouldn't be the main concern of such a common approach. The national approach doesn't have this problem, at least not for the countries supplying the tourists.
Besides, the recommendation for people who had the infection is to get the shot 6 months after the diagnosis, so it would make no sense to include that information in the recovery one.
Source: I work for one of the regional healthcare providers in my country and my team had to develop our EU compatible certificates.
these exercises in scrutiny, the demands on transparency, accountability, second order risk analysis etc. all this sets a precedent that will not be easy to ignore.
a silver lining if you wish [you can now resume the discussion]
Maybe I made a mistake as I certainly care about data privacy now. These passes are an absolute tragedy for society as far as I can see.
Still sensible to get vaccinated, but I think I will just put it in my paper pass. I don't trust smartphone OS one bit.
Why should you give your vaccination status to anyone within the borders of a country, and what meaningful assurance does it provide to the pub/venue recieving it?
Here is what it does not do:
a) show you do not have a variant of a disease
b) show you are not carrying a disease
c) show you are or are not vulnerable to a disease or variants of it
What does demonstrating this status signify? Perhaps I am missing something.
Some french researchers and Laquadrature are going to court to remove those infos from there:
"la lecture du code en 2D permet à n’importe qui, toujours aussi facilement, d’accéder à des données de santé très sensibles mais parfaitement inutiles au fonctionnement du passe : date de prise du vaccin, nom du vaccin, contraction passée de la maladie"
https://www.laquadrature.net/2021/06/09/passe-sanitaire-atta...
That will make things easier when the desired immunity definition changes (i.e. require three vaccinations), and also allows medical staff to make their own judgments.
Well, I guess that will invalidate the covid certificate. There seems to be the "number of doses" and "doses received".
It will be interesting to see how this will actually be changed if we need more than 2 vaccines to be considered immune. Will they have to re-issue a certificate and invalidate the previous one? Will they let the old certificates expire and issue a new one with the updated total count?
e.g. some countries will consider you fully vaccinated X weeks after your 2nd jab of a specific vaccine. Others will say it's X+1 weeks.
The system has been built so that these decisions aren't in the cert itself, rather each country can layer on "business rules" on top. So - even if the cert expiry date is likely to be set far into the future, that has zero bearing on if it will be accepted or considered expired.
Here is an example of how it works for vaccines: https://thecostaricanews.com/how-to-apostille-in-costa-rica-...
Basically you do this:
1. Get your official vaccine record from your /state/ (not county) department of health.
2. Get your official vaccine record apostilled (certified for international use) by mailing it in (and paying a $10-15 fee) to your state secretary of state (in the state where it was issued).
3. (sometimes required--call a consulate) Get an official translation of the vaccine record (usually a translation on the apostille is not required) from a court approved translator in the country abroad (i.e. France). Typically this costs $35-50.
4. (sometimes required--call a consulate) Get all of this authenticated for use in the country you are staying in, abroad, usually via an official working for the Ministry of Foreign Affairs (i.e. France). This probably costs around $20.
Anyways, this is a lot of work, but this is the legalization process for foreign documents, so that they are viewed as official and usable abroad. Anyways, this is the standard and typical certification process for Croatia, an EU country.
Perhaps people care, but simply disagree with your threshold for what's an appropriate societal imposition. I certainly do.
(Also, a vaccine is not a "genetic treatment". Not even an RNA vaccine.)
Many are skeptical of a vaccine passport combined with a digital wallet for CBDC. The historical background of those promoting this program is concerning. Even without that, the historical parallels to other atrocities is concerning. Together it seems obvious to those who are willing to examine it.
Unfortunately, there's a distinct lack of "intellectual curiosity" surrounding these issues. People are scared. Once again, they are looking for authorities to help them. Dissent is demonized as always.
In this case, concerns are framed as dangerous propaganda preventing us from reacquiring our pre-pandemic freedoms. For those true believers, I ask: When has government willingly returned freedoms ceded under the pretense of emergency?
The banality of evil marches on.
Merriam Webster has changed the definition of "Vaccine" to avoid the distinction you have raised.
This links 'a person' to 'a piece of health information'. Imagine what you or any data platform could do with that (big) data.
Imagine that you are only allowed to visit certain countries based on your vaccination status. Advertising agents of tourist and traveling agents would love to get their hands on that information, to create a better profile of you. Maybe Google could even make a FLoC of 'COVID-19 vaccinated people'.
Imagine that one year from now, one of the vaccines is known to cause health issue X, which would require over-the-counter medication Y. Advertising companies would love to know exactly what vaccines you have received, to add to their 'profile'. and would go to great lengths to get this information (create their own 'reader app' and supply this to events).
Here we hide personal health information in a QR code and are expected to give random strangers 'consent' to this personal data to gain 'access' to a venue or 'service'.
Sounds awfully lot like a cookie consent-popup, which the EU is so actively trying to prevent through legislation.
Do you really need to link 'a person' to 'a vaccine profile'? Isn't it enough to link 'a person' to 'can access this service/venue according to local laws?'.
In software development, you separate authentication and authorization. The authentication part is 'are you who you say you are', the authorization part is 'are you allowed to access this resource'. For authorization, you don't send the full list of all roles/permissions of this user for all authorized applications, you send a true/false based on the question canAccess(resource)? Otherwise a 'hacker' might find he has no permissions using the current authenticated account to resource A, but conveniently has full permissions to resource B.
You wouldn't give a random webshop access to your Bank Balance and history, would you? Your bank should only tell them 'transfer of X dollar is approved'.
How is this different from the uncontroversial practice of requiring yellow fever vaccinations when travelling to certain African or South American countries?
Do you speak from experience?
The certificate is commonly checked in Africa, but as I said, often the official on the border checking it is not capable of understanding the details – they just look for the paper with the familiar color and logo. Also, it has been common for travelers unable to get the yellow fever vaccine in their home country (historically supplies in Eastern Europe have been scarce, for instance) to simply forge the certificate, which is easily done. The WHO is aware that some amount of certificates will be forgeries, but nevertheless believes that the policy of requiring vaccination will be enough to reduce the risk of outbreaks.
When traveling to African or South American countries, you have to show proof to a public immigration agent. I have an international vaccination passport, on paper, which has been 'good enough' to provide this proof. My health dossier is not publically accessible.
Currently, this check is
- looking at a piece of paper for the correct stamps,
- perfomed by a public immigration officer,
- upon entering a country.
With this QR code, I now put this check into the hands of
- any QR code 'reader' app,
- on a Google or iOS platform,
- which can be connected to the internet,
- performed by private companies (venue/event/organizer)
- upon entering a variety of locations.
It seems to me this is just a question of convenience.
We don't need to imagine this scenario, because it has long been the case for certain countries with yellow fever checks, TB checks, etc.
The difference now is that the restrictions are perhaps much more widespread.
I have an international vaccination passport, paper-based, which is only shown to a customs officer of the country I am visiting. This has been 'good enough' to enter countries with vaccination requirements up until now. It has not been copied or entered into a computer system.
They could've gone the lazy route and stored your SSN (or similar).
Otherwise, some personal data will be required, since the person checking your code (like a bouncer) must be able to verify that against your ID card.
The bouncer at the night club don't need to know how many doses you had or where you tested negative, as that has no impact by the legislation
In addition to that, legislation may change, so your time limits and dosage limits now all change and future vaccinations might require more doses.
Either way, the bouncer doesn't get to see any of this. They only see your name, check your ID if it's the same name (which they have to do anyway to check you're 16 for alcoholic beverages and curfew) and then wave you through. The apps I've seen in use by people who check the vaccination QR code only give you an OK or NOT OK signal, once you've setup the type of limits you have to obey.
In my country they expire after 10 years, on the birthday. So about 7 / (365 * 10) = 0.002 % of id cards expired this week here, or 115k cards. I'd store only the name and birthday and let officers check the id card with the usual procedure.
Linking to an ID card number has the slight advantage that the ID card number is unique whereas several people can have the same name and date of birth. It doesn't really help with keeping the name or date of birth private because in practice those things are printed on the ID card which has to be shown together with the QR code.
The ideal would be to reveal only the information that is needed in a particular situation. For example, if you're trying to get into an Austrian pub all that's needed is the photograph of the face and confirmation that the person with that face is over 18 and vaccinated. Though in practice people like pub bouncers are not very good at checking faces so having a physical ID card that is hard to counterfeit is an important part of the security.
That line of reasoning suggests that what's needed is an ID card with banknote-style anti-counterfeiting measures that shows only a unique number and a photograph while all other information is provided through another channel such as a QR code.
> It would presumably not be a problem for people to regenerate their QR code when they replace their ID card. They have to regenerate it every day or so anyway. (The QR code in the article expires after 48 hours.)
A not small number of those 115k people per week are elders without a smartphone or no digital abilities except video calling their children and nephews.
Luckily it seems that in my country we'll be able to get a permanent QR code (paper or plastic, don't know.) I'm thinking about getting that one instead of the digital certificate: one less app, no worries about batteries and if it worked for my passport, id card and driver license it will be OK for my covid pass too.
If you cannot hide 'name', because you need that for identification, you could hide 'vaccination details', for example by linking 'name' to 'is properly vaccinated?'. No need to specify what vaccin gotten where and when in how many doses. The signed-certificate part could still be present, as a tampering protection.
This very likely is a subjective matter. I absolutely would want my name to be associated to my vaccination details, and will certainly do when it will be my turn to get the shot (still have high antibodies level after catching symptomatic Covid months ago).
The part I am worried about is, do I want to give anybody and everybody access to this information, or only a select group which is in my control.
Do I want to share my full Google/Facebook account, with password, with everybody that I show a QR-code to (for example a 'Login with Facebook' button), or do I want to be selective and only allow for 'verify and give permission to access part of profile'?
Do I want to share my full contacts list with a random app I installed from an app store, just because I started it? Or do I want to be selective and deny 'access to contacts' for a game which has no business looking through my contacts.
0: (I beat symptomatic Covid at home, then tested negative, then after 3 weeks had a road accident and the mandatory ER triage swab told I was positive again, although this time with no symptoms).
It has someone's name and DOB in it, which, when scanned, creates a record of their identity at that location at that time.
Coordination between scanners can create a crude track log.
It's still a privacy nightmare.
Name and DOB could be hashed and compared to the hash inside the QR code.
There may be variations between different documents (e.g. it might exclude middle names, people might use a different name on different documents, accented characters, hyphens, might be in a different order, might have a title or honorific such as "MR").
Otherwise, there is a large degree of normalisation in the id documents in the EU, and you could simply hash each variation.
Gabriele is a "he" in Italian. Gabrielle [sic] is a "she" in French.
Kari is a "he" in Finnish, and a "she" in Norwegian.
Maybe Gabriele is a "she" in Austrian German.
“ 7.5.2 use vaccination certificates only for their designated purpose of monitoring vaccine efficacy, potential side effects and adverse events;”
Allowing people to visit pubs or other social places is the right — whether someone concerned of getting sick it is up to them to get a vaccine; those who are not in for the experiment (most of covid vaccines are in experimental state up to year 2023) shall not suffer the artificial social limitation barriers.
If it was ‘carefully optimized for size and reliability’ they would use all caps letters and reduce the area by 40%.
Saying that is carefully optimized is like saying GDPR pop ups carefully optimize user interfaces.
There is no easy solution for this, and including the native name + a normalised (ICAO 9303) version is probably the best one
I strongly disagree. If the goal is to determine the COVID19 immunity status of a person on-site the only thing that should be contained is vaccination information. There is no need for full names, place of birth, issuer, targeted disease to be encoded in a QR-code that will be read by businesses. Especially since the information is presumably signed and verified by the official issuers anyway.
Any other personal details such as age can be checked via already existing IDs. The "targeted disease" field betrays function scope creep. So much for the EU's moral high ground regarding privacy: needlessly sharing personal details for entering a cafe is not good privacy practice!
Does a bouncer at a nightclub really need to know I received one dose of a Pfizer vaccine against COVID-19 in Austria on February 18, 2021? Or does he need to know that 'I am fully vaccinated to enter this venue according to local laws'?
The type of shot, and the amount of shots, even the date of the shot, are all perfectly valid requirements that can end up in local law. Astrazenica doesn't work well against the British covid variant, so in an outbreak you might end up with laws restricting the type of vaccination, easily.
To determine what is and what isn't allowed, the logic should be built into the verification code, which each government can make their own for.
If all of Europe were to use the same laws and regulations then I'd agree that this information does not need to be stored in the QR code. This is impossible to manage in practice, though.
What or who generates these QR-codes? Can't that system also provide the verification check? It is a European-wide 'system' after all.
Who do you trust more with your data: your (european) government or a (non-european) government/private entity?
Would you trust every and all third-party applications with this 'Login with Facebook' functionality, to not look at your plaintext password? Or would you rather have Facebook not send your password in the first place?
I doubt the IDs start at 1, it's likely the fist few digits (perhaps 8405) are a type classification for the ID. It's been going for a few decades and thousands of new IDs are added each year.
/s
That said, the government communicated that it's currently valid for 6 month after the second jab.
This is because the length of effectiveness of the vaccination is not reliably known.
I don't know how it works with certificates, which are issued based on a negative test.
4: 1624458597, # QR code expiry 6: 1624285797} # QR code generated
1624458597 - 1624285797 = 172800 = 48 * 60 * 60
(I would have thought they could afford to be a bit more generous than that. If they were valid for a few weeks then it would be practicable to print them out.)
A technically sound proof which doesn't require online access is like this.
The authority encrypt some private information(name and birth date for example) with the private key, and encode it to QR code and give it to the customer.
On entering the pub, the customer show the document(passport, driver's license etc) which prove his private information. Staff then decode the QR code and decrypt it with authority's public key. Check the decrypted text.
It should encode:
https://covidcheck.gov.eu/87HS84JU8179
The URL, when visited by browser should display a big green tick or cross. The page should contain all the machine parsable metadata. The URL itself should have a check digit to allow low-security offline checking, although for cases where falsification is an issue, online checks should be required, since there is no good way to revoke offline codes.
The substantially shorter code will read much more easily and be smaller to print. It can be verified or generated without any special software.