首页> 外文期刊>International journal of law and information technology >Identifying Personal Data Using Relational Database Design Principles
【24h】

Identifying Personal Data Using Relational Database Design Principles

机译:使用关系数据库设计原则识别个人数据

获取原文
获取原文并翻译 | 示例
           

摘要

The European Union (EU) directive on personal data and resulting data protection legislation of EU member states require from data controllers, a notification of their activities to the appropriate supervisory authority. Included in this notification is also a description of the data or categories of data which are processed. Legislation in some EU member states (e.g. Slovenia) require that not only a description but also a concrete list of personal data attributes needs to be included in this notification. In such cases it is sometimes difficult to ascertain in concreto whether some collected attribute represents personal data (and should therefore be included in the list of attributes) or whether it is a non-personal attribute. Similarly, under the EU directive data subjects have various rights, including the right to access their data, and data controllers are sometimes faced with the problem of determining whether various data items constitute personal data. Further, the impending case in the European Court of Human Rights arising out of the decision of the UK case of Durant v Financial Services Authority (which narrowed the scope of personal data) has added some uncertainty to the interpretation of the EU directive. In view of the legal uncertainty regarding what constitutes personal data, this paper examines whether relational database design principles can be applied to identifying personal data. Using this approach, the paper explores various parallels between personal data identification and principles of relational database design. The paper thus makes a novel contribution to the ongoing uncertainty in data protection law. The paper also discusses the wider issue of applying computing/scientific principles to interpreting the law.
机译:欧盟(EU)关于个人数据的指令以及由此产生的欧盟成员国数据保护法规要求数据控制者将其活动通知给适当的监管机构。该通知中还包括对要处理的数据或数据类别的描述。某些欧盟成员国(例如斯洛文尼亚)的立法要求该通知中不仅要包含描述,而且还必须包含个人数据属性的具体列表。在这种情况下,有时很难确定所收集的某些属性是否代表个人数据(因此应包括在属性列表中)或它是否是非个人属性。同样,根据欧盟指令,数据主体具有各种权利,包括访问其数据的权利,并且数据控制者有时会面临确定各种数据项是否构成个人数据的问题。此外,由于英国杜兰特诉金融服务管理局一案的裁决(缩小了个人数据的范围),欧洲人权法院即将审理的案件为欧盟指令的解释增加了一些不确定性。鉴于有关什么构成个人数据的法律不确定性,本文研究了关系数据库设计原则是否可以应用于识别个人数据。使用这种方法,本文探索了个人数据识别与关系数据库设计原理之间的各种相似之处。因此,本文为数据保护法中的不确定性做出了新的贡献。本文还讨论了将计算/科学原理应用于法律解释这一更广泛的问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号