Automating Contextual Privacy Policies: Design and Evaluation of a Production Tool for Digital Consumer Privacy Awareness

被引:17
作者
Windl, Maximiliane [1 ]
Henze, Niels [2 ]
Schmidt, Albrecht [1 ]
Feger, Sebastian S. [1 ]
机构
[1] Ludwig Maximilians Univ Munchen, Munich, Germany
[2] Univ Regensburg, Regensburg, Germany
来源
PROCEEDINGS OF THE 2022 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS (CHI' 22) | 2022年
关键词
privacy; privacy policies; online services; contextual privacy; ONLINE; INFORMATION; NOTICE;
D O I
10.1145/3491102.3517688
中图分类号
学科分类号
摘要
Users avoid engaging with privacy policies because they are lengthy and complex, making it challenging to retrieve relevant information. In response, research proposed contextual privacy policies (CPPs) that embed relevant privacy information directly into their affiliated contexts. To date, CPPs are limited to concept showcases. This work evolves CPPs into a production tool that automatically extracts and displays concise policy information. We first evaluated the technical functionality on the US's 500 most visited websites with 59 participants. Based on our results, we further revised the tool to deploy it in the wild with 11 participants over ten days. We found that our tool is effective at embedding CPP information on websites. Moreover, we found that the tool's usage led to more reflective privacy behavior, making CPPs powerful in helping users understand the consequences of their online activities. We contribute design implications around CPP presentation to inform future systems design.
引用
收藏
页数:18
相关论文
共 52 条
[1]  
[Anonymous], 2015, 11 S US PRIV SEC SOU
[2]  
Barocas Solon., 2009, Proceedings of the Engaging Data Forum: The First International Forum on the Application and Management of Personal Electronic Information
[3]  
Belanger F, 2011, MIS QUART, V35, P1017
[4]  
Bergmann M, 2009, IFIP ADV INF COMM TE, P237
[5]  
Bin Liu, 2016, Proceedings of SOUPS 2016: Twelfth Symposium on Usable Privacy and Security. SOUPS 2016, P27
[6]  
Blandford Ann, 2016, Qualitative HCI Research: Going Behind the Scenes, P51, DOI [10.1007/978-3-031-02217-35, DOI 10.1007/978-3-031-02217-35]
[7]   The Limits of Notice and Choice [J].
Cate, Fred H. .
IEEE SECURITY & PRIVACY, 2010, 8 (02) :59-62
[8]   Privacy by Design [J].
Cavoukian, Ann .
IEEE TECHNOLOGY AND SOCIETY MAGAZINE, 2012, 31 (04) :18-19
[9]  
Cherivirala Sushain K., 2018, USABLEPRIVACY ORG EX
[10]   User interfaces for privacy agents [J].
Cranor, Lorrie Faith ;
Guduru, Praveen ;
Arjula, Manjula .
ACM Transactions on Computer-Human Interaction, 2006, 13 (02) :135-178