Understanding privacy policies A study in empirical analysis of language usage
نویسندگان
چکیده
There is growing recognition that users of web-based systems want to understand, if not control, what customer’s data is stored by whom, for what purpose, for what duration, and with whom it is shared. We inform current language-based privacy efforts with an empirical study of P3P—the W3C domain-specific language for privacy policies. We use methods of software language engineering to study usage profiles, correctness of policies, metrics, cloning, and language extensions. The study supports the conclusion that P3P’s approach to policy validation is too weak to ensure correct use of the language. The study also discovers common, dominating policies, which may suggest a simpler approach to web privacy. Further, the study investigates a range of metrics for policies in an attempt to discover particularly interesting or complex policies. Finally, the study also attempts to discover symptoms of the need for extending the P3P language, but the found results are not conclusive here.
منابع مشابه
Adding Value to Online Privacy for Consumers: Remedying Deficiences in Online Privacy Policies with an Holistic Approac
We present findings from a longitudinal, empirical study of online privacy policies. Our research found that although online privacy policies have improved in quality and effectiveness since 2000, they still fall well short of the level of privacy assurance desired by consumers. This study has identified broad areas of deficiency in existing online privacy policies, and offers a solution in the...
متن کاملAdding Value to Online Privacy for Consumers: Remedying Deficiences in Online Privacy Policies with an Holistic Approach
We present findings from a longitudinal, empirical study of online privacy policies. Our research found that although online privacy policies have improved in quality and effectiveness since 2000, they still fall well short of the level of privacy assurance desired by consumers. This study has identified broad areas of deficiency in existing online privacy policies, and offers a solution in the...
متن کاملEffective Online Privacy Policies
Online privacy policies are important mechanisms for informing web site users about the level of information privacy protection afforded when visiting web sites. To date, societal mechanisms and technologies have been the focus of attempts to improve the quality and effectiveness of online privacy policies. Little attention, however, has been given to the development and use of organisational m...
متن کاملAdding Value to Online Privacy for Consumers: Remedying Deficiencies in Online Privacy Policies With an Holistic Approach
Online privacy policies are important mechanisms for informing web site users about the level of information privacy protection afforded them when visiting web sites. To date, societal mechanisms and technologies have been the focus of attempts to improve the quality and effectiveness of online privacy policies. Little attention, however, has been given to the development and use of organisatio...
متن کاملCritical Privacy Factors of Internet of Things Services: An Empirical Investigation with Domain Experts
Internet of Things (IOT) services, i.e. sensor-based IS services facilitated by identification technologies such as barcode, radio frequency or global satellite communication, provide new security and privacy challenges in private and business situations of our everyday life. Accordingly, the relevance of privacy and security has been addressed in prior IS research and, as a result, design meth...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2012