GDPR-Compliant Personal Data Management: A Blockchain-based Solution

04/05/2019
by   Nguyen Binh Truong, et al.
0

The General Data Protection Regulation (GDPR) gives control of personal data back to the owners by appointing higher requirements and obligations on service providers (SPs) who manage and process personal data. As the verification of GDPR-compliance, handled by a supervisory authority, is irregularly conducted; it is challenging to be certify that an SP has been continuously adhering to the GDPR. Furthermore, it is beyond the data owner's capability to perceive whether an SP complies with the GDPR and effectively protects her personal data. This motivates us to envision a design concept for developing a GDPR-compliant personal data management platform leveraging the emerging blockchain (BC) and smart contract technologies. The goals of the platform are to provide decentralised mechanisms to both SPs and data owners for processing personal data; meanwhile empower data provenance and transparency by leveraging advanced features of the BC. The platform enables data owners to impose data usage consent, ensures only designated parties can process personal data, and logs all data activities in an immutable distributed ledger using smart contract and cryptography techniques. By honestly participating in the platform, an SP can be endorsed by the BC network that it is fully GDPR-compliant; otherwise any violation is immutably recorded and is easily figured out by associated parties. We then demonstrate the feasibility and efficiency of the proposed design concept by developing a profile management platform implemented on top of a permissioned BC framework, following by valuable analysis and discussion.

READ FULL TEXT

page 1

page 13

research
08/28/2019

Blockchain-based Personal Data Management: From Fiction to Solution

The emerging blockchain technology has enabled various decentralised app...
research
08/06/2019

LUCE: A Blockchain Solution for monitoring data License accoUntability and CompliancE

In this paper we present our preliminary work on monitoring data License...
research
07/26/2022

Hybrid On/Off Blockchain Approach for Vehicle Data Management, Processing and Visualization Exemplified by the ADAPT Platform

Hybrid on/off-blockchain vehicle data management approaches have receive...
research
03/09/2022

Usage Control Specification, Enforcement, and Robustness: A Survey

The management of data and digital assets poses various challenges, incl...
research
04/28/2022

Design of Blockchain-based Travel Rule Compliance System

In accordance with the guidelines of the Financial Action Task Force (FA...
research
06/28/2021

Design Considerations for Data Daemons: Co-creating Design Futures to Explore Ethical Personal Data Management

Mobile applications and online service providers track our virtual and p...
research
06/19/2020

On the Principle of Accountability: Challenges for Smart Homes Cybersecurity

This chapter introduces the Accountability Principle and its role in dat...

Please sign up or login with your details

Forgot password? Click here to reset