We abstract the privacy-preserving data-leak detection
problem with a threat model, a security goal and a privacy
goal. First we describe the two most important players in
our abstract model: the organization (i.e., data owner) and the
data-leak detection (DLD) provider.
channels. Inadvertent data leak may be due to human
errors such as forgetting to use encryption, carelessly forwarding
an internal email and attachments to outsiders,