Skip to main content
. Author manuscript; available in PMC: 2020 Nov 27.
Published in final edited form as: Harv Data Sci Rev. 2020 Sep 30;2020(23):10.1162/99608f92.cfc5dd25. doi: 10.1162/99608f92.cfc5dd25

Figure 3:

Figure 3:

Comparisons between the two ways of privacy analysis on MNIST in terms of the tradeoff between type I and type II errors, in the same setting as Table 1. The plots are different from Figure 7 in [18]. The (ε, δ)-DP guarantees are plotted according to (1). The blue regions in the plots from the second row correspond to all pairs of (ε, δ) computed by MA. The blue regions are not noticeable in the third row.