Black box voting signifies voting on voting machines which do not disclose how they operate such as with closed source or proprietary operations. If a voting machine does not provide a tangible record of individual votes cast then it can be described as black box voting.
The term, as described by Dr. Arnold Urken of Stephens Institute of Technology, comes from the technical jargon use of the term black box, a device or system or object when it is viewed primarily in terms of its input and output characteristics. Dr. Urken's group at Stevens Institute was one of the first independent testing authorities for voting machines.
The term was coined by David Allen, publisher, technical consultant and co-writer to author and activist Bev Harris. Harris popularized the term in her book with that title and runs the BlackBoxVoting.org website. Allen's formal definition is found on page 4 of the original edition of the book: "Any voting system in which the mechanisms for recording and/or tabulating the vote are hidden from the voter, and/or the mechanism lacks a tangible record of the vote cast."
Both optical scan systems which interpret paper ballots and Direct Recording Electronic (DRE) systems can be black box systems; in fact, mechanical voting machines can also be seen as black-box systems, since only the technicians who set up the machines have access to the linkages between the voting levers on the face of the machine and the vote recording counters inside. Rhode Island supreme court justice Horatio Rogers, in an 1897 dissenting opinion, wrote of one early mechanical voting machine that
Rogers' criterion for whether a voting machine is a black box is strict—you must be able to sense that it works correctly as you use it. A somewhat weaker criterion is sometimes accepted, based on whether the public is allowed to examine the mechanism, in a modern context, both the source code and hardware. Though source code may be available to voting system testing authorities and state or county election officials it can still be considered "black box" if it is not available to the public. Even with some open source systems, which allow examination of the source code, access to firmware, which controls the hardware, is not available.
Even if the source code is made public, significant challenges remain in the areas of authenticating that the code running systems in the field matches the publicly released code, and it is still possible to find attack vectors for open source systems.