Exploring privacy requirements gap between developers and end users

被引:0
|
作者
Zhang, Jianzhang [1 ]
Hua, Jinping [1 ]
Niu, Nan [2 ]
Chen, Sisi [1 ]
Savolainen, Juha [3 ]
Liu, Chuang [1 ]
机构
[1] Hangzhou Normal Univ, Alibaba Business Sch, Hangzhou, Zhejiang, Peoples R China
[2] Univ Cincinnati, Dept Elect Engn & Comp Sci, Cincinnati, OH 45221 USA
[3] Danfoss Drives AS, Grasten, Sonderborg, Denmark
基金
中国国家自然科学基金;
关键词
Privacy policy; Privacy reviews; Privacy requirements; Requirements gap; Requirements engineering;
D O I
10.1016/j.infsof.2022.107090
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Context: Privacy policies document the privacy requirements guiding developers. Though privacy policies analysis has drawn increasing attention recently, how end users perceive privacy requirements has been less explored.Objective: We empirically explore the privacy requirements gap between developers and end users to derive beneficial insights into users' privacy concerns to support maintenance.Method: We present a semi-automatic privacy requirements gap analysis framework based on text mining including information retrieval, topic modeling, and computational linguistic techniques. Results: The preliminary results of applying our framework to Facebook show that: (1) topic comparison reveals that both privacy related reviews and policy statements involve privacy requirements types of collection, usage, and disclosure as well as account security. The retention requirements are almost not mentioned in reviews as they are hard to be directly perceived; (2) content comparisons reveal that though overlapping with the privacy policy statements, reviews are more general, informal, and negative in wording.Conclusion: The illustrative example with Facebook demonstrates the potential usage of our framework in informing software maintenance, e.g., privacy relevant testing and privacy policy refinement.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] Privacy Policy Specification Framework for Addressing End-Users' Privacy Requirements
    Mohammadi, Nazila Gol
    Leicht, Jens
    Ulfat-Bunyadi, Nelufar
    Heisel, Maritta
    TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS, TRUSTBUS 2019, 2019, 11711 : 46 - 62
  • [2] END USERS AS APPLICATION DEVELOPERS
    McLean, E. R.
    MIS QUARTERLY, 1979, 3 (04) : 37 - 46
  • [3] A mixed-methods approach to identifying and exploring the causes of the electronic service gap between hospital website developers and users
    Hung, Wei-Hsi
    Tseng, Chih-Lang
    Chang, Fang-Kai
    Wu, Yi-Che
    TECHNOLOGY ANALYSIS & STRATEGIC MANAGEMENT, 2023, 35 (10) : 1296 - 1309
  • [4] POWER TO THE PEOPLE - END USERS AS DEVELOPERS
    REISMAN, S
    IEEE SOFTWARE, 1992, 9 (02) : 112 - &
  • [5] The sources of power between information systems developers and end users - A resource dependence perspective
    Shaw, T
    Pereira, RE
    SYSTEMS DEVELOPMENT METHODS FOR THE NEXT CENTURY, 1997, : 463 - 471
  • [6] Enabling Users to Specify Correct Privacy Requirements
    Rudolph, Manuel
    Polst, Svenja
    Doerr, Joerg
    REQUIREMENTS ENGINEERING: FOUNDATION FOR SOFTWARE QUALITY (REFSQ 2019), 2019, 11412 : 39 - 54
  • [7] Creating Knowledge of End Users' Requirements: The Interface Between Firm and Project
    Pemsel, Sofia
    Widen, Kristian
    PROJECT MANAGEMENT JOURNAL, 2010, 41 (04) : 122 - 130
  • [8] On Understanding How Developers Perceive and Interpret Privacy Requirements Research Preview
    Peixoto, Mariana
    Ferreira, Dayse
    Cavalcanti, Mateus
    Silva, Carla
    Vilela, Jessyka
    Araujo, Joao
    Gorschek, Tony
    REQUIREMENTS ENGINEERING: FOUNDATION FOR SOFTWARE QUALITY (REFSQ 2020), 2020, 12045 : 116 - 123
  • [9] Bridging the gap between users and requirements engineering: the scenario-based approach
    Ben Achour, C
    Souveyet, C
    Tawbi, M
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 1999, 14 (06): : 379 - 388
  • [10] Requirements of polymer end-users
    Howe, G
    POLYMER PROCESS ENGINEERING 01, 2001, : 240 - 241