Extracting Layered Privacy Language Purposes from Web Services

04/30/2020
by   Kalle Hjerppe, et al.
0

Web services are important in the processing of personal data in the World Wide Web. In light of recent data protection regulations, this processing raises a question about consent or other basis of legal processing. While a consent must be informed, many web services fail to provide enough information for users to make informed decisions. Privacy policies and privacy languages are one way for addressing this problem; the former document how personal data is processed, while the latter describe this processing formally. In this paper, the socalled Layered Privacy Language (LPL) is coupled with web services in order to express personal data processing with a formal analysis method that seeks to generate the processing purposes for privacy policies. To this end, the paper reviews the background theory as well as proposes a method and a concrete tool. The results are demonstrated with a small case study.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/14/2019

Analysis of Privacy Policies to Enhance Informed Consent

In this report, we present an approach to enhance informed consent for t...
research
05/15/2023

Automating privacy decisions – where to draw the line?

Users are often overwhelmed by privacy decisions to manage their persona...
research
06/19/2021

XML Signature Wrapping Still Considered Harmful: A Case Study on the Personal Health Record in Germany

XML Signature Wrapping (XSW) has been a relevant threat to web services ...
research
03/14/2019

Analysis of Privacy Policies to Enhance Informed Consent (Extended Version)

In this report, we present an approach to enhance informed consent for t...
research
09/29/2021

Conflicting Privacy Preference Signals in the Wild

Privacy preference signals allow users to express preferences over how t...
research
02/01/2023

Privacy Dashboards for Citizens and GDPR Services for Small Data Holders: A Literature Review

Citizens have gained many rights with the GDPR, e.g. the right to get a ...
research
01/04/2022

OConsent – Open Consent Protocol for Privacy and Consent Management with Blockchain

In the current connected world - Websites, Mobile Apps, IoT Devices coll...

Please sign up or login with your details

Forgot password? Click here to reset