2020
DOI: 10.1109/access.2020.2970270
|View full text |Cite
|
Sign up to set email alerts
|

Towards an Accountable Web of Personal Information: The Web-of-Receipts

Abstract: Consent is a corner stone in any Privacy practice or public policy. Much beyond a simple ''accept'' button, we show in this paper that obtaining and demonstrating valid Consent can be a complex matter since it is a multifaceted problem. This is important for both Organisations and Users. As shown in recent cases, not only cannot an individual prove what they accepted at any point in time, but also organisations are struggling with proving such consent was obtained leading to inefficiencies and noncompliance. T… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
13
0

Year Published

2020
2020
2023
2023

Publication Types

Select...
3
2
2

Relationship

2
5

Authors

Journals

citations
Cited by 12 publications
(13 citation statements)
references
References 37 publications
0
13
0
Order By: Relevance
“…In this, we advance the state of the art, as outlined in Section.III-C, by further providing a detailed analysis of requirements across disciplines and creating a concrete proposal for the socio-technical utilisation of consent receipts on the web. In addition to addressing the challenges identified in [17], we also demonstrate the relevance and applicability of legal and standardisation efforts (see Section.III) and its implications for consent and consent receipts. Finally, the three real-world applications of consent receipt validate their usefulness as -(1) a powerful tool for legal compliance as well as user empowerment; and (2) a technically and practically feasible solution for users and user-agents.…”
Section: Introductionmentioning
confidence: 89%
See 2 more Smart Citations
“…In this, we advance the state of the art, as outlined in Section.III-C, by further providing a detailed analysis of requirements across disciplines and creating a concrete proposal for the socio-technical utilisation of consent receipts on the web. In addition to addressing the challenges identified in [17], we also demonstrate the relevance and applicability of legal and standardisation efforts (see Section.III) and its implications for consent and consent receipts. Finally, the three real-world applications of consent receipt validate their usefulness as -(1) a powerful tool for legal compliance as well as user empowerment; and (2) a technically and practically feasible solution for users and user-agents.…”
Section: Introductionmentioning
confidence: 89%
“…A receipt, if designed as a secure bearer token [17], provides a straightforward solution for both the service provider and the user to communicate and interact in a truly anonymous, but verifiable and secure, fashion. It decouples the identification and authentication problems from reusing sensitive identity information (such as ID cards) and instead provides a solution scoped to the context whereby the parties involved can determine their own methods for identity and identification.…”
Section: ) Receipts Decouple Identity From Authenticationmentioning
confidence: 99%
See 1 more Smart Citation
“…Among many other use cases such as financial platforms [15], online voting or even digital identity, Agarwal et al [1] tries adapting blockchain for CMS. The idea is not new and was introduced before the [41,9,40,21,7]. However, Agarwal et al focus is implementing a scalable system.…”
Section: Related Workmentioning
confidence: 99%
“…Furthermore, since tokens can be revoked at any time with immediate effect, it promotes compliance with virtually all regulations. Thirdly, we reuse the notion of Personal Data Receipt from the Data Protection communities [17]. BRUE provides acknowledgement Receipts for all operations of the involved entities.…”
Section: B Contribution Of This Papermentioning
confidence: 99%