Sketch of a client-side scanning architecture that uses (two-party) MPC between the client and the Provider. The client inputs the content to be scanned, while the server provides its secret model and/or hash database. The protocol gives the provider a copy of the user’s content if and only if the model says it’s illicit content, otherwise the provider sees nothing. (Note in this variant, the output goes only to the Provider.)<p>I send a legal but one I don't want exposed picture of myself to my legal spouse and the algo. Decides it's not legal and my private data gets exposed. and the algo is a blackbox like machine learning so who knows how it's trained.