The document proposes two schemes, AnonyControl and AnonyControl-F, to control access privileges for cloud data while protecting user identity privacy. Existing schemes focus on access control and data privacy but reveal user identities. The proposed schemes decentralize authorities so each knows only attributes, preventing identity discovery. AnonyControl provides semi-anonymity while AnonyControl-F fully prevents identity leakage. The schemes allow fine-grained privilege management and remain secure if fewer than N-2 of N authorities are compromised.