Complying with privacy legislation

Detalhes bibliográficos
Autor(a) principal: Ataei, Mehrnaz
Data de Publicação: 2018
Outros Autores: Degbelo, Auriol, Kray, Christian, Santos, Vitor
Tipo de documento: Artigo
Idioma: eng
Título da fonte: Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
Texto Completo: https://doi.org/10.3390/ijgi7110442
Resumo: Ataei, M., Degbelo, A., Kray, C., & Santos, V. (2018). Complying with privacy legislation: from legal text to implementation of privacy-aware location-based services. ISPRS International Journal of Geo-Information, 7(11), [442]. DOI: 10.3390/ijgi7110442
id RCAP_bb9506f2d652c4a2007caacf30a70d3c
oai_identifier_str oai:run.unl.pt:10362/55065
network_acronym_str RCAP
network_name_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository_id_str 7160
spelling Complying with privacy legislationfrom legal text to implementation of privacy-aware location-based servicesGeneral data protection regulation (GDPR)Geographical informationGeoprivacyLocation privacyLocation-based servicesPrivacy-aware systemsGeography, Planning and DevelopmentComputers in Earth SciencesEarth and Planetary Sciences (miscellaneous)Ataei, M., Degbelo, A., Kray, C., & Santos, V. (2018). Complying with privacy legislation: from legal text to implementation of privacy-aware location-based services. ISPRS International Journal of Geo-Information, 7(11), [442]. DOI: 10.3390/ijgi7110442An individual’s location data is very sensitive geoinformation. While its disclosure is necessary, e.g., to provide location-based services (LBS), it also facilitates deep insights into the lives of LBS users as well as various attacks on these users. Location privacy threats can be mitigated through privacy regulations such as the General Data Protection Regulation (GDPR), which was introduced recently and harmonises data privacy laws across Europe. While the GDPR is meant to protect users’ privacy, the main problem is that it does not provide explicit guidelines for designers and developers about how to build systems that comply with it. In order to bridge this gap, we systematically analysed the legal text, carried out expert interviews, and ran a nine-week-long take-home study with four developers. We particularly focused on user-facing issues, as these have received little attention compared to technical issues. Our main contributions are a list of aspects from the legal text of the GDPR that can be tackled at the user interface level and a set of guidelines on how to realise this. Our results can help service providers, designers and developers of applications dealing with location information from human users to comply with the GDPR.NOVA Information Management School (NOVA IMS)Information Management Research Center (MagIC) - NOVA Information Management SchoolRUNAtaei, MehrnazDegbelo, AuriolKray, ChristianSantos, Vitor2018-12-18T23:23:01Z2018-11-012018-11-01T00:00:00Zinfo:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/articleapplication/pdfhttps://doi.org/10.3390/ijgi7110442eng2220-9964PURE: 10583429http://www.scopus.com/inward/record.url?scp=85058030581&partnerID=8YFLogxKhttps://doi.org/10.3390/ijgi7110442info:eu-repo/semantics/openAccessreponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãoinstacron:RCAAP2024-03-11T04:26:54Zoai:run.unl.pt:10362/55065Portal AgregadorONGhttps://www.rcaap.pt/oai/openaireopendoar:71602024-03-20T03:32:49.336406Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãofalse
dc.title.none.fl_str_mv Complying with privacy legislation
from legal text to implementation of privacy-aware location-based services
title Complying with privacy legislation
spellingShingle Complying with privacy legislation
Ataei, Mehrnaz
General data protection regulation (GDPR)
Geographical information
Geoprivacy
Location privacy
Location-based services
Privacy-aware systems
Geography, Planning and Development
Computers in Earth Sciences
Earth and Planetary Sciences (miscellaneous)
title_short Complying with privacy legislation
title_full Complying with privacy legislation
title_fullStr Complying with privacy legislation
title_full_unstemmed Complying with privacy legislation
title_sort Complying with privacy legislation
author Ataei, Mehrnaz
author_facet Ataei, Mehrnaz
Degbelo, Auriol
Kray, Christian
Santos, Vitor
author_role author
author2 Degbelo, Auriol
Kray, Christian
Santos, Vitor
author2_role author
author
author
dc.contributor.none.fl_str_mv NOVA Information Management School (NOVA IMS)
Information Management Research Center (MagIC) - NOVA Information Management School
RUN
dc.contributor.author.fl_str_mv Ataei, Mehrnaz
Degbelo, Auriol
Kray, Christian
Santos, Vitor
dc.subject.por.fl_str_mv General data protection regulation (GDPR)
Geographical information
Geoprivacy
Location privacy
Location-based services
Privacy-aware systems
Geography, Planning and Development
Computers in Earth Sciences
Earth and Planetary Sciences (miscellaneous)
topic General data protection regulation (GDPR)
Geographical information
Geoprivacy
Location privacy
Location-based services
Privacy-aware systems
Geography, Planning and Development
Computers in Earth Sciences
Earth and Planetary Sciences (miscellaneous)
description Ataei, M., Degbelo, A., Kray, C., & Santos, V. (2018). Complying with privacy legislation: from legal text to implementation of privacy-aware location-based services. ISPRS International Journal of Geo-Information, 7(11), [442]. DOI: 10.3390/ijgi7110442
publishDate 2018
dc.date.none.fl_str_mv 2018-12-18T23:23:01Z
2018-11-01
2018-11-01T00:00:00Z
dc.type.status.fl_str_mv info:eu-repo/semantics/publishedVersion
dc.type.driver.fl_str_mv info:eu-repo/semantics/article
format article
status_str publishedVersion
dc.identifier.uri.fl_str_mv https://doi.org/10.3390/ijgi7110442
url https://doi.org/10.3390/ijgi7110442
dc.language.iso.fl_str_mv eng
language eng
dc.relation.none.fl_str_mv 2220-9964
PURE: 10583429
http://www.scopus.com/inward/record.url?scp=85058030581&partnerID=8YFLogxK
https://doi.org/10.3390/ijgi7110442
dc.rights.driver.fl_str_mv info:eu-repo/semantics/openAccess
eu_rights_str_mv openAccess
dc.format.none.fl_str_mv application/pdf
dc.source.none.fl_str_mv reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron:RCAAP
instname_str Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron_str RCAAP
institution RCAAP
reponame_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
collection Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository.name.fl_str_mv Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
repository.mail.fl_str_mv
_version_ 1799137950158553088