A Conceptual Consent Request Framework for Mobile Devices

被引:0
作者
Drozd, Olha [1 ]
Kirrane, Sabrina [1 ]
机构
[1] Vienna Univ Econ & Business, Dept Informat Syst & Operat Management, Welthandelspl 1, A-1020 Vienna, Austria
关键词
GDPR; consent; privacy by design; usable privacy; user empowerment; PRIVACY POLICIES;
D O I
10.3390/info14090515
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The General Data Protection Regulation (GDPR) identifies consent as one of the legal bases for personal data processing and requires that it should be freely given, specific, informed, unambiguous, understandable, and easily revocable. Unfortunately, current technical mechanisms for obtaining consent often do not comply with these requirements. The conceptual consent request framework for mobile devices that is presented in this paper, addresses this issue by following the GDPR requirements on consent and offering a unified user interface for mobile apps. The proposed conceptual framework is evaluated via the development of a City Explorer app with four consent request approaches (custom, functionality-based, app-based, and usage-based) integrated into it. The evaluation shows that the functionality-based consent, which was integrated into the City Explorer app, achieved the best evaluation results and the highest average system usability scale (SUS) score. The functionality-based consent also scored the highest number of SUS points among the four consent templates when evaluated separately from the app. Additionally, we discuss the framework's reusability and its integration into other mobile apps of different contexts.
引用
收藏
页数:27
相关论文
共 46 条
[21]   Towards a Framework to Facilitate the Mobile Advertising Ecosystem [J].
Chen, Gong ;
Ji, Shouling ;
Copeland, John A. .
2016 IEEE 22ND INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2016, :456-465
[22]   Do Cookie Banners Respect my Choice? Measuring Legal Compliance of Banners from IAB Europe's Transparency and Consent Framework [J].
Matte, Celestin ;
Bielova, Nataliia ;
Santos, Cristiana .
2020 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP 2020), 2020, :791-809
[23]   A Reference Design Model to Manage Consent in Data Subjects-Centered Internet of Things Devices [J].
Khatiwada, Pankaj ;
Yang, Bian ;
Lin, Jia-Chun ;
Mugurusi, Godfrey ;
Underbekken, Stian .
IOT, 2024, 5 (01) :100-122
[24]   Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain [J].
Jung, Sung-Soo ;
Lee, Sang-Joon ;
Euom, Ieck-Chae .
APPLIED SCIENCES-BASEL, 2021, 11 (22)
[25]   Patient Willingness to Consent to Mobile Phone Data Collection for Mental Health Apps: Structured Questionnaire [J].
Di Matteo, Daniel ;
Fine, Alexa ;
Fotinos, Kathryn ;
Rose, Jonathan ;
Katzman, Martin .
JMIR MENTAL HEALTH, 2018, 5 (03)
[26]   The Problem of Readability of Informed Consent Documents for Clinical Trials of Investigational Drugs and Devices: United States Considerations [J].
S. Michael Sharp .
Drug information journal : DIJ / Drug Information Association, 2004, 38 (4) :353-359
[27]   The problem of readability of informed consent documents for clinical trials of investigational drugs and devices: United States considerations [J].
Sharp, SM .
DRUG INFORMATION JOURNAL, 2004, 38 (04) :353-359
[28]   Online data processing consent under EU law: a theoretical framework and empirical evidence from the UK [J].
Borghi, Maurizio ;
Ferretti, Federico ;
Karapapa, Stavroula .
INTERNATIONAL JOURNAL OF LAW AND INFORMATION TECHNOLOGY, 2013, 21 (02) :109-153
[29]   A Conceptual Framework for Thinking About Physician-Assisted Death for Persons With a Mental Disorder [J].
Shaffer, Catherine S. ;
Cook, Alana N. ;
Connolly, Deborah A. .
PSYCHOLOGY PUBLIC POLICY AND LAW, 2016, 22 (02) :141-157
[30]   A GDPR-Compliant Dynamic Consent Mobile Application for the Australasian Type-1 Diabetes Data Network [J].
Wang, Zhe ;
Stell, Anthony ;
Sinnott, Richard O. .
HEALTHCARE, 2023, 11 (04)