Digital ID ‘entirely appropriate’ for online voting: NSW iVote architect


Verifying the government-issued digital identity credentials of voters before they cast an electronic ballot is now “entirely appropriate”, according to the architect of the now-abandoned iVote platform, but any move to do so would need to be tested extensively.

One-time New South Wales Electoral Commission chief information officer Ian Brightwell, who was at the agency when iVote was first introduced in 2011, also believes the evolution of technology-assisted voting (TAV) in the state is being held hostage by a “very active anti-TAV lobby”.

The comments are in his submission to the ongoing review into the appropriateness of TAV for future elections, launched after technical glitches prevented an unknown amount of people from using iVote to vote in the 2021 local election.

The review was commissioned when the iVote system was scrapped due to what the state’s electoral commissioner said was “insufficient time” to upgrade the underpinning software provided by Spanish vendor Scytyl. Digital voting is not expected to return until at least 2027.

Mr Brightwell, who spent 11 years as chief information officer and director of IT, said it is “inevitable that a portion of votes will need to be returned remotely using TAV”, and that ensuring elections keep with the time is essential “if public acceptance of elections is to be maintained”.

He told the Commission that while it would not be possible to use geolocation to verify the eligibility of elector classes for TAV, he agreed that government or other digital identity credentials could be used for this.

“Given the prevalence of NSW electors having Service NSW accounts due to COVID I believe it is entirely appropriate to validate users at the time of registration using Service NSW credentials,” he said.

“Less inclined to use myGovID because of its complexity and has low penetration in the community. However, myGovID and myGov login could be used as an alternative if someone does not have a Service NSW account or has trouble identifying themselves some other way.”

Scytyl, the software vendor behind iVote, also agreed in its submission that the use of digital identity credentials – which “are maturing at the point they can be relied upon” – “increases the available channels of authentication”.

But Mr Brightwell also said that this would not be possible “unless the credential is linked to the electors electoral roll record reliably”, which he said he said would need “special legislation” and, even then, would likely be unpopular with Australians.

“Notwithstanding the desire to use these government credentials to identify electors for registering to vote, it is not possible unless the credential is linked to the electors electoral roll record reliably,” he said.

“To my knowledge this link has not been done and would need to be done well before an election and fully tested. This type of data matching will also need special legislation which may be challenging given the public’s aversion to Australia Card-type identification.”

Mr Brightwell also agreed that electoral reform was needed to “better define when electoral failure for any voting channels has occurred”, arguing that postal voting is “as fallible than TAV”, but that any reforms should omit “technical detail concerning vote verifiability”.

“The problem that TAV faces is that it is scrutinised by a very active anti-TAV lobby which does not consider the relative risks associated with TAV compared to other voting channels,” the submission states.

He said more “metadata about the efficacy on the election process” should also be made publicly available to allow “analysts to assess the integrity of all voting channels”, potentially exposing that postal voting has “as many problems as TAV”.

“All voting channels have a potential for failure, it is just that remote TAV failures are more visible to be public and as such more readily put into the media’s eye,” he said.

“If remote TAV or indeed any TAV is to be assessed fairly for introduction into NSW elections then we have to be more transparent about the failures experienced in all voting channels not just TAV to allow the best policy decision to be made.”

Do you know more? Contact James Riley via Email.

3 Comments
  1. James Happell 1 week ago
    Reply

    Digital identification is welcome and can’t come fast enough.

    Electronic voting is unnecessary, less secure, and outright dangerous to democracy, as it creates a single point of attack for any nefarious actors who may wish to disrupt the election process.

    Our current system has served its intended purpose for over a hundred years, there is no justification for changing it.

  2. Digital Koolaid 2 weeks ago
    Reply

    Your “Digital ID” has turned you into a mobile phone. No phone = no You. People without an iPhone or a Samsung are non-people now. Lose you phone and become a non-person. Upgrade your phone and become a non-person. Throw away your phone and become a non-person. Hey! There’s an idea. Throw away your phone. What has a phone ever done for me anyway?

    • Anthony 6 days ago
      Reply

      The idea that iVote’s failure should mean a national digital ID system is so incredibly silly. The idea of tying it to mygov/mygovid is especially silly given how appallingly terrible that stuff is. Can you reliably do a password reset on mygov? No you cannot.

      That plenty of folks pointed out the obvious flaws and issues with iVote and were ignored for several years? Oh they’re just “anti-TAV”. That iVote fell over under load that anyone competent would have planned for also goes unmentioned. No no, it’s the silly people who don’t want to carry a national ID card that are to blame.

      “Oh all voting systems have issues” correct, the AEC senate election snafu in WA in 2013 for instance. They fixed it, reran it. Wasn’t great, was fixed. Didn’t result in them stopping using pencil and paper ballots. Because it wasn’t a completely flawed approach like iVote.

Leave a Comment

Your email address will not be published.

Related stories