Automating Contextual Privacy Policies: Design and Evaluation of a Production Tool for Digital Consumer Privacy Awareness

被引:10
|
作者
Windl, Maximiliane [1 ]
Henze, Niels [2 ]
Schmidt, Albrecht [1 ]
Feger, Sebastian S. [1 ]
机构
[1] Ludwig Maximilians Univ Munchen, Munich, Germany
[2] Univ Regensburg, Regensburg, Germany
关键词
privacy; privacy policies; online services; contextual privacy; ONLINE; INFORMATION; NOTICE;
D O I
10.1145/3491102.3517688
中图分类号
学科分类号
摘要
Users avoid engaging with privacy policies because they are lengthy and complex, making it challenging to retrieve relevant information. In response, research proposed contextual privacy policies (CPPs) that embed relevant privacy information directly into their affiliated contexts. To date, CPPs are limited to concept showcases. This work evolves CPPs into a production tool that automatically extracts and displays concise policy information. We first evaluated the technical functionality on the US's 500 most visited websites with 59 participants. Based on our results, we further revised the tool to deploy it in the wild with 11 participants over ten days. We found that our tool is effective at embedding CPP information on websites. Moreover, we found that the tool's usage led to more reflective privacy behavior, making CPPs powerful in helping users understand the consequences of their online activities. We contribute design implications around CPP presentation to inform future systems design.
引用
收藏
页数:18
相关论文
共 50 条
  • [1] Consumer Control and Privacy Policies
    Ali, Nageeb
    Lewis, Greg
    Vasserman, Shoshana
    AEA PAPERS AND PROCEEDINGS, 2023, 113 : 209 - 209
  • [2] Comprehensive evaluation of privacy policies using the contextual integrity framework
    Ghahremani, Shahram
    Nguyen, Uyen Trang
    SECURITY AND PRIVACY, 2024, 7 (04)
  • [3] Implementation and In Situ Assessment of Contextual Privacy Policies
    Ortloff, Anna-Marie
    Windl, Maximiliane
    Schwind, Valentin
    Henze, Niels
    PROCEEDINGS OF THE 2020 ACM DESIGNING INTERACTIVE SYSTEMS CONFERENCE (DIS 2020), 2020, : 1765 - 1778
  • [4] A Tool for Automatic Assessment and Awareness of Privacy
    Cappellari, Paolo
    Chun, Soon Ae
    Perelman, Mark
    DG.O 2017: THE PROCEEDINGS OF THE 18TH ANNUAL INTERNATIONAL CONFERENCE ON DIGITAL GOVERNMENT RESEARCH: INNOVATIONS AND TRANSFORMATIONS IN GOVERNMENT, 2017, : 586 - 587
  • [5] Beyond Privacy Policies Assessing Inherent Privacy Risks of Consumer Health Services
    Weber-Jahnke, Jens H.
    Williams, James B.
    2011 NINTH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST, 2011, : 229 - 237
  • [6] Digital privacy: theory, policies and technologies
    Annie I. Anton
    Travis D. Breaux
    Stefanos Gritzalis
    John Mylopoulos
    Requirements Engineering, 2011, 16 : 1 - 2
  • [7] Digital privacy: theory, policies and technologies
    Anton, Annie I.
    Breaux, Travis D.
    Gritzalis, Stefanos
    Mylopoulos, John
    REQUIREMENTS ENGINEERING, 2011, 16 (01) : 1 - 2
  • [8] Semantic Approach to Automating Management of Big Data Privacy Policies
    Joshi, Karuna P.
    Gupta, Aditi
    Mittal, Sudip
    Pearce, Claudia
    Joshi, Anupam
    Finin, Tim
    2016 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2016, : 482 - 491
  • [9] Automating the Generation of Privacy Policies for Context-sharing Applications
    Apolinarski, Wolfgang
    Handte, Marcus
    Marron, Pedro Jose
    2015 INTERNATIONAL CONFERENCE ON INTELLIGENT ENVIRONMENTS IE 2015, 2015, : 73 - 80
  • [10] Online privacy as legal safeguard: The relationship among consumer, online portal, and privacy policies
    Fernback, Jan
    Papacharissi, Zizi
    NEW MEDIA & SOCIETY, 2007, 9 (05) : 715 - 734