首页> 外文会议>International Joint Conference on E-Business and Telecommunications >COMPLIANCE OF PRIVACY POLICIES WITH LEGAL REGULATIONS - Compliance of Privacy Policies with Canadian PIPEDA
【24h】

COMPLIANCE OF PRIVACY POLICIES WITH LEGAL REGULATIONS - Compliance of Privacy Policies with Canadian PIPEDA

机译:与法律规定的隐私政策遵守 - 与加拿大Pipeda的隐私政策合规

获取原文

摘要

The W3C's Platform for Privacy Preferences (P3P) is a set of standards that provides for representation of web-sites' privacy policies using XML so that a privacy policy can be automatically retrieved and inspected by a user's agent. The agent can compare the site's policy with the user's preferences on collection and use of his/her private data. If the site's privacy policy is incompatible with the user's preferences, the agent informs the user on the privacy policy's shortcomings. The P3P specification defines XML tags, schema for data, set of uses, recipients, and other disclosures for expressing web-sites' privacy policies. It is important for the user's agent to determine whether the site's privacy policy actually satisfies privacy regulations that are applicable to the user's current transaction. We show that the P3P specification is not sufficiently expressive to capture all of the legal requirements that may apply to a transaction. Consequently, to determine whether or not a site's privacy policy satisfies the requirements of a particular law in question, the site's privacy policy expressed in the natural language must also be retrieved and examined. To determine which legal requirements of a particular law are satisfied by the site's P3P privacy policy, which is an XML document, we examine the document's XML tags - a relatively straight-forward task. To determine whether legal requirements, which cannot be satisfied by using P3P XML tags, are present in the site's privacy policy expressed in the natural language, we use standard classification algorithms. As a proof of concept, we apply our approach to the Canadian PIPEDA privacy law and show up to 88% accuracy in identifying the legal privacy clauses concerning the Safeguard principle in privacy statements.
机译:W3C的隐私首选项的平台(P3P)是一组标准,它提供了使用XML的网站隐私政策的表示,以便可以通过用户的代理自动检索和检查隐私策略。代理可以将网站的策略与用户的收集和使用他/她的私有数据的偏好进行比较。如果网站的隐私政策与用户的偏好不兼容,则代理商会通知用户隐私政策的缺点。 P3P规范定义了用于表达网站的隐私政策的数据,用于数据集,使用,收件人集和其他披露的XML标签。对于用户的代理来确定网站的隐私政策是否实际上满足了适用于用户当前交易的隐私法规是重要的。我们表明P3P规范并不充分表达,以捕获可能适用于交易的所有法律要求。因此,为了确定网站的隐私政策是否满足有关特定法律的要求,还必须检索和审查以自然语言表达的网站的隐私政策。为了确定特定法律的哪些法律要求,该网站的P3P隐私政策满足,这是一个XML文档,我们检查了文档的XML标签 - 相对直接的任务。要确定使用P3P XML标签不能满足的法律要求,还在自然语言中表达的网站的隐私政策中,我们使用标准分类算法。作为概念的证据,我们将我们的方法应用于加拿大Pipeda隐私法,并在识别有关隐私声明中保障原则的法律隐私条款的准确性上显示出高达88%的准确性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号