Towards an Accountable Web of Personal Information: The Web-of-Receipts

被引:10
作者
Jesus, Vitor [1 ]
机构
[1] Birmingham City Univ, Sch Comp & Digital Technol, Birmingham B5 5JU, W Midlands, England
关键词
Privacy; consent; accountability; web-of-receipts; personal data receipts; PRIVACY; CONSENT; INTERNET;
D O I
10.1109/ACCESS.2020.2970270
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Consent is a corner stone in any Privacy practice or public policy. Much beyond a simple "accept'' button, we show in this paper that obtaining and demonstrating valid Consent can be a complex matter since it is a multifaceted problem. This is important for both Organisations and Users. As shown in recent cases, not only cannot an individual prove what they accepted at any point in time, but also organisations are struggling with proving such consent was obtained leading to inefficiencies and noncompliance. To a large extent, this problem has not obtained sufficient visibility and research effort. In this paper, we reviewthe current state of Consent and tie it to a problem of Accountability. We argue for a different approach to how the Web of Personal Information operates: the need of an accountable Web in the form of Personal Data Receipts which are able to protect both individuals and organisation. We call this evolution the Web-of-Receipts: online actions, from registration to real-time usage, is preceded by valid consent and is auditable (for Users) and demonstrable (for Organisations) at any moment by using secure protocols and locally stored artefacts such as Receipts. The key contribution of this paper is to elaborate on this unique perspective, present proof-of-concept results and lay out a research agenda.
引用
收藏
页码:25383 / 25394
页数:12
相关论文
共 45 条
[1]  
Agarwal R. R., 2019, ARXIV191007110
[2]   Privacy, consent and vehicular ad hoc networks (VANETs) [J].
Akalu, Rajen .
COMPUTER LAW & SECURITY REVIEW, 2018, 34 (01) :37-46
[3]   A Usability Study on The Privacy Policy Visualization Model [J].
Albalawi, Tahani ;
Ghazinour, Kambiz .
2016 IEEE 14TH INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, 14TH INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, 2ND INTL CONF ON BIG DATA INTELLIGENCE AND COMPUTING AND CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/DATACOM/CYBERSC, 2016, :578-585
[4]  
[Anonymous], [No title captured]
[5]  
[Anonymous], [No title captured]
[6]  
[Anonymous], [No title captured]
[7]  
[Anonymous], [No title captured]
[8]  
[Anonymous], [No title captured]
[9]  
[Anonymous], [No title captured]
[10]  
[Anonymous], [No title captured]