Loomio

Electronic and Online Voting

DS Danyl Strype Public Seen by 383

The online voting issue is becoming a major public debate, due to the experiments with it in next year’s local body elections, and the commentary I’ve seen is mostly anti TDB, even from the technically literate. The Pirates have a horse in this race, and we need to agree on some common points, and get them onto the racetrack, for example:
* any voting software must be free code/ open source
* votes should be secured using PGP or a blockchain system or (?)

The Danish Liberal party supposedly used a blockchain based voting system for internal elections last year. Not sure how it worked out yet.

AR

Andrew Reitemeyer Sun 20 Sep 2015 8:43PM

The Pirate Party of Iceland uses its own system - wasa2il - Podemos, in Spain, uses a liquid democracy variant developed by the Belgian Pirates. Both are open source.

As far as I know, all experiments, where electronic voting has replaced paper voting, have been using proprietary software. We should only consider open source solutions.

The idea of changing overnight to an online voting system that elects representatives in a PR system is flawed. Introducing a parallel, permanent, online direct democracy system of some sort is not.

We should look at the experiences of other legislatures who are and will be looking at this system and running our own in district councils for example,

The philosophical objections, such as being forced to vote a certain way under threat are met with a system where votes can be changed or passed on to trusted persons.

It don't think we should get too far into the technology but work more on the principle.

DU

Andrew McPherson Wed 11 May 2016 4:06AM

I have been working on and off into the area of secure online voting for the last 15 years.
There is some concern that genuinely secure online voting will not have the approval of the GCSB and their masters in the five eyes alliance, hence I have been forced to keep this research offline until the recent retirement of a certain former GCSB administrator.

I have long ago sent the basic preceding outline of my encryption system off for peer review with a classmate who now has his doctorate in cryptography maths, Dr Ali Hameed confirms it works, yet he has yet to study my other maths research which outlines why it works in detail.

I am personally committed to the completion of this project when the investment funds come through for a major unrelated research project.

I suggest that the potential for voter intimidation issues can be alleviated by confirmation with a selfie from phones, tablets and computer webcams.
This could also have a time limit on tokens for voting, whereby a vote can be updated within the voting period which allows for an individual vote when alone, such as in the toilet.

The main thing that online voting improves is the participation rate, as young voters can easily participate without constantly following a mail trail to their current property.
As this works to better get results from renters, the voting system no longer is biased in favour of the elderly property owners.

HM

Hubat McJuhes Mon 28 Sep 2015 10:43AM

" The idea of changing overnight to an online voting system that elects representatives in a PR system is flawed. "

That is exactly right. Replacing paper ballots with voting machines is something that we should oppose categorically.
Not only have all voting systems so far turned out to have been shockingly prone to manipulation; the real point is that it is intrinsically impossible to any process that includes digitalisation at any point in the process to be verifiable and anonymous for the individual voter at the same time. But these are core requirements for a democratic vote. Hence we must oppose any such attempt for as long as we are stuck with a PR system.

" Introducing a parallel, permanent, online direct democracy system of some sort is not. "

That is exactly spot on. With a liquid deliberation process it is arguably justifiable to omit secrecy/anonymity from the list of requirements.
It is a design feature of the new P irate Party concept that we can explore the potential of liquid systems as the tiny group that we currently are to the large organisation that we soon will be, in parallel to the current big scale PR system. Our success will work as an advertising platform for the liquid system that we come up with.

DS

Danyl Strype Sat 3 Oct 2015 4:35AM

Some facts we need to check before making a public statement:
* for those local bodies who are joining the online voting experiment, will online voting replace postal ballots or supplement them?
* will in-person voting still be possible at Council offices?
* is all the online voting being run by the same private company (ElectioNZ Ltd.)?
* how was the decision made to outsource the running of elections to a private company?
* how was the decision made to award the contract to the company(s)?
* what public interest scrutineering (if any) checks the rigour of the online voting procedures?

Is these questions prove difficult to answer, we could mention that and pose them again in our statement.

it is intrinsically impossible to any process that includes digitalisation at any point in the process to be verifiable and anonymous

What about a blockchain-based system like the Danish Liberals used internally?
EDIT: Or something like BitVote?

HM

Hubat McJuhes Wed 21 Oct 2015 6:14AM

What about a blockchain-based system like the Danish Liberals used internally?

To my knowledge do all reliable blockchain-based systems work pseudorandomly at best rather than anonymously, hence they are not suitable.

HM

Hubat McJuhes Wed 21 Oct 2015 6:19AM

@strypey All those questions are very well chosen to be asked.

But there is the risk that people could believe that if all these questions could be answered to full satisfaction, then it would be fine to move towards online voting.

My position is that there is no way to make such a move working all right. And I would advocate that we should make that very clear (if we can agree on this one).

That also means that while these questions are good to be asked, there is no need to wait with a statement until we have answers.

RF

Robert Frittmann Tue 10 May 2016 10:00AM

There's been some interesting discussion on this issue recently in the NZOSS mailing list, particularly about Voting with blockchain technology and Online voting "trial" scrapped.

My own opinion on this mirrors other Pirate's comments above, that any move to provide online voting within the scope of the existing proportional representation electoral system would be doomed to failure. I can imagine the headline in the NZ Herald already, something like "Online voting system botch-up likened to NovoPay". New Zealand's public-sector IT implementation history is fraught with tragedy: INCIS, WINZ kiosks, NovoPay, etc. Something as important as deciding on who should govern us needs to be reliable and above reproach, as do those implementing it. I don't think we're there yet, either as in-house or outsourced bespoke code.

AB

Adam Bullen Wed 11 May 2016 4:50AM

If we make the reasonable assumption that it is impossible to make a 100% secure system; we must then decide on an acceptable level of security.

Once we have decided on the reasonable level of security that we are happy with then the cost associated with achieving this level of security can be estimated.

Two things come out of the above; we know how much it costs to run current elections and how many votes are cast thus we know the cost per vote to run the current system. The goal of any new system should be to reduce the cost per vote; as it is tax (rate) payer money that is used to run the system. If costs double but voter participation goes from 25% to 80% I would be happy.

There are only a few ways this can happen; either reduce the cost to run the system and get the same number of votes; reduce the barriers to entry and get more people voting for the same overall cost; or some combination of more votes and less money to run the thing.

As an open source fan I think that it is best practice for any security software to be open source. The "just trust us (tm)" argument has never swayed me very much.

DU

Andrew McPherson Wed 11 May 2016 6:19AM

If we make the reasonable assumption that it is impossible to make a 100% secure system; we must then decide on an acceptable level of security.

Once we have decided on the reasonable level of security that we are happy with then the cost associated with achieving this level of security can be estimated.

Two things come out of the above; we know how much it costs to run current elections and how many votes are cast thus we know the cost per vote to run the current system. The goal of any new system should be to reduce the cost per vote; as it is tax (rate) payer money that is used to run the system. If costs double but voter participation goes from 25% to 80% I would be happy.

We are currently around the 41%~42% mark for the 2013 local elections, down from the increase at the 2010 local elections cycle which coincided with the earthquake increasing interest in local body politics. (49% mark at 2010 local elections).
Logically if we can introduce online voting to achieve anywhere from 60 ~ 90 % participation, then we can say that online voting is worthwhile the expense associated with increased turnout.

https://www.dia.govt.nz/diawebsite.nsf/wpg_URL/Services-Local-Elections-Local-Authority-Election-Statistics-2013?OpenDocument
(As above link shows, 60% participation is above that seen in 1989 local elections, and would be considered success in current electoral trend where nearly 60% don't engage with local elections.)

There are only a few ways this can happen; either reduce the cost to run the system and get the same number of votes; reduce the barriers to entry and get more people voting for the same overall cost; or some combination of more votes and less money to run the thing.

The system I propose of a peer to peer platform hosting a plain html website accessible to all, while hosting a form of voting blockchain for unalterable records for all to audit at the end of the voting period should have minimal costs only for the official results, and as a consensus record should be confirmed by all observers.

As an open source fan I think that it is best practice for any security software to be open source. The "just trust us (tm)" argument has never swayed me very much.

Which is why I think we should all be relieved that Elections NZ Ltd has not succeeded in a closed but binding trial this local election cycle.

HM

Hubat McJuhes Tue 17 May 2016 10:39AM

"If we make the reasonable assumption that it is impossible to make a 100% secure system..."

Security is not only about the accuracy of the counted votes, it is also about how easy or hard it is to tinker with the system and most importantly how likely it is to recognise an attempt of tinkering.

Digital systems offer a high variety of attack vectors and exploitation of many of those will be undetectable whereas the paper ballot system is very well understood, due procedures very well established and manipulation on a broader scale pretty much impossible to do without being recognised. The paper ballot is the clear winner in my eyes.

Load More