<-Scope Go to ToC References->
The Upper-case Terms used in this standard have the meaning defined in Table 1. All MPAI-defined Terms are accessible online.
Table 1 – Table of terms and definitions
Term | Definition |
Active Traceability Method | A Traceability Method that alters the Neural Network (NN) Weights. |
Algorithmic Integrity | The equivalence of the Traceability Data extracted from a modified NN and those extracted from an unmodified NN. |
Computational Cost | The cost of injecting, Detecting, Decoding or Matching Traceability Data. |
Detection | The process of finding the presence of a known watermark in a NN. |
Decoding | The process of extracting the Payload from a watermarked NN. |
Extraction | The process of computing the fingerprint from an NN. |
Imperceptibility | A difference in the performance of an NN before and after the watermark embedding process. |
Matching | The process of finding a fingerprint in a database that correspond to the fingerprint computed from an NN. |
Means | Procedure, tools, dataset or dataset characteristics used to evaluate one or more of Computational Cost, Imperceptibility, or Robustness of a NN Traceability method. |
Modification | The result of an attack performed during NN Traceability testing. |
Neural Network | or Artificial Neural Network, a set of interconnected data processing nodes whose connections are affected by Weights. |
NN Fingerprinting Method | A NN Passive Traceability method that extracts NN identification data from the NN Weights and matches it to a known repository. |
NN Traceability | The possibility to identify the source and/or a potential Modification of a NN. |
NN Watermarking Method | A NN Active Traceability method that injects Traceability Data into the Weights or the activation function of a NN to subsequently enable a Decoder/Detector to decode/detect the injected Traceability Data. |
Parameter | A set of values characterizing Type and Intensity of a Modification, as used in Table 1. |
Passive Traceability Method | A Traceability Method that does not alter the NN Weights. |
Payload | The Symbols carried by a watermark. |
Robustness | The ability of a NN Traceability method to withstand a Modification in terms of Detection, Decoding or Matching capability. |
Secret Key | The data that the Traceability method requires to be kept secret. |
Symbol | A binary, numerical, or string element in a Payload. |
Tester | The user who evaluates a NN Traceability Method according to this Technical Specification. |
Traceability | The possibility to trace the origin of data. |
Traceability Data | The data to be inserted by the Active Traceability method or the result of the application of a Detection algorithm to an NN for a Passive Traceability Method. |
Weight | The value used to multiply the connection between two nodes of a NN. |