Intent-Aware Permission Architecture: A Model for Rethinking Informed Consent for Android Apps

02/14/2022
by   Md Rashedur Rahman, et al.
0

As data privacy continues to be a crucial human-right concern as recognized by the UN, regulatory agencies have demanded developers obtain user permission before accessing user-sensitive data. Mainly through the use of privacy policies statements, developers fulfill their legal requirements to keep users abreast of the requests for their data. In addition, platforms such as Android enforces explicit permission request using the permission model. Nonetheless, recent research has shown that service providers hardly make full disclosure when requesting data in these statements. Neither is the current permission model designed to provide adequate informed consent. Often users have no clear understanding of the reason and scope of usage of the data request. This paper proposes an unambiguous, informed consent process that provides developers with a standardized method for declaring Intent. Our proposed Intent-aware permission architecture extends the current Android permission model with a precise mechanism for full disclosure of purpose and scope limitation. The design of which is based on an ontology study of data requests purposes. The overarching objective of this model is to ensure end-users are adequately informed before making decisions on their data. Additionally, this model has the potential to improve trust between end-users and developers.

READ FULL TEXT

page 1

page 2

page 3

page 4

page 5

page 8

page 9

page 10

research
01/16/2023

Stuck in the Permissions With You: Developer End-User Perspectives on App Permissions Their Privacy Ramifications

While the literature on permissions from the end-user perspective is ric...
research
10/08/2012

Mining Permission Request Patterns from Android and Facebook Applications (extended author version)

Android and Facebook provide third-party applications with access to use...
research
04/03/2023

Lessons in VCR Repair: Compliance of Android App Developers with the California Consumer Privacy Act (CCPA)

The California Consumer Privacy Act (CCPA) provides California residents...
research
04/24/2021

The Design of the User Interfaces for Privacy Enhancements for Android

We present the design and design rationale for the user interfaces for P...
research
03/12/2021

On Satisfying the Android OS Community: User Feedback Still Central to Developers' Portfolios

End-users play an integral role in identifying requirements, validating ...
research
02/28/2021

They'll Know It When They See It: Analyzing Post-Release Feedback from the Android Community

It is known that user involvement and user-centered design enhance syste...
research
05/11/2023

PriGen: Towards Automated Translation of Android Applications' Code to Privacy Captions

Mobile applications are required to give privacy notices to the users wh...

Please sign up or login with your details

Forgot password? Click here to reset