This document discusses a hybrid cloud approach for authorized data deduplication. It proposes a system where a private cloud acts as a proxy between data owners/users and a public cloud storage provider. The private cloud manages differential privilege keys and allows users to securely check for duplicate files based on their privileges. The system aims to protect data confidentiality while supporting an authorized form of deduplication across users with different access levels.