Complying with Privacy Legislation: From Legal Text to Implementation of Privacy-Aware Location-Based Services

被引:8
|
作者
Ataei, Mehrnaz [1 ]
Degbelo, Auriol [1 ]
Kray, Christian [1 ]
Santos, Vitor [2 ]
机构
[1] Univ Munster, Inst Geoinformat, Heisenbergstr 2, D-48161 Munster, Germany
[2] Univ Nova Lisboa, NOVA IMS Informat Management Sch, P-1070312 Lisbon, Portugal
基金
欧盟地平线“2020”;
关键词
geographical information; location privacy; geoprivacy; general data protection regulation (GDPR); location-based services; privacy-aware systems; SUS;
D O I
10.3390/ijgi7110442
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
An individual's location data is very sensitive geoinformation. While its disclosure is necessary, e.g., to provide location-based services (LBS), it also facilitates deep insights into the lives of LBS users as well as various attacks on these users. Location privacy threats can be mitigated through privacy regulations such as the General Data Protection Regulation (GDPR), which was introduced recently and harmonises data privacy laws across Europe. While the GDPR is meant to protect users' privacy, the main problem is that it does not provide explicit guidelines for designers and developers about how to build systems that comply with it. In order to bridge this gap, we systematically analysed the legal text, carried out expert interviews, and ran a nine-week-long take-home study with four developers. We particularly focused on user-facing issues, as these have received little attention compared to technical issues. Our main contributions are a list of aspects from the legal text of the GDPR that can be tackled at the user interface level and a set of guidelines on how to realise this. Our results can help service providers, designers and developers of applications dealing with location information from human users to comply with the GDPR.
引用
收藏
页数:28
相关论文
共 50 条
  • [21] From location to location pattern privacy in location-based services
    Abul, Osman
    Bayrak, Cansin
    [J]. KNOWLEDGE AND INFORMATION SYSTEMS, 2018, 56 (03) : 533 - 557
  • [22] From location to location pattern privacy in location-based services
    Osman Abul
    Cansın Bayrak
    [J]. Knowledge and Information Systems, 2018, 56 : 533 - 557
  • [23] LP-Cache: Privacy-aware Cache Model for Location-based Apps
    Patel, Asma
    Palomar, Esther
    [J]. SECRYPT: PROCEEDINGS OF THE 13TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS - VOL. 4, 2016, : 183 - 194
  • [24] Location privacy of users in location-based services
    Yanagisawa, Yutaka
    Kido, Hidetoshi
    Satoh, Tetsuji
    [J]. 2006 THIRD ANNUAL INTERNATIONAL CONFERENCE ON MOBILE AND UBIQUITOUS SYSTEMS: NETWORKING & SERVICES, 2006, : 1 - +
  • [25] Location Privacy Issues in Location-Based Services
    AlShalaan, Manal
    AlSubaie, Reem
    Latif, Rabia
    [J]. 2022 FIFTH INTERNATIONAL CONFERENCE OF WOMEN IN DATA SCIENCE AT PRINCE SULTAN UNIVERSITY (WIDS-PSU 2022), 2022, : 129 - 132
  • [26] Location-Semantic Aware Privacy Protection Algorithms for Location-Based Services
    Xu, Hongyun
    Zheng, Yaohui
    Zeng, Jian
    Xu, Cheng
    [J]. 2018 IEEE SMARTWORLD, UBIQUITOUS INTELLIGENCE & COMPUTING, ADVANCED & TRUSTED COMPUTING, SCALABLE COMPUTING & COMMUNICATIONS, CLOUD & BIG DATA COMPUTING, INTERNET OF PEOPLE AND SMART CITY INNOVATION (SMARTWORLD/SCALCOM/UIC/ATC/CBDCOM/IOP/SCI), 2018, : 1219 - 1224
  • [27] Landscape-aware location-privacy protection in location-based services
    Ardagna, Claudio Agostino
    Cremonini, Marco
    Gianini, Gabriele
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2009, 55 (04) : 243 - 254
  • [28] Location privacy of users in location-based services
    Yanagisawa, Yutaka
    Kido, Hidetoshi
    Satoh, Tetsuji
    [J]. 2006 3RD ANNUAL INTERNATIONAL CONFERENCE ON MOBILE AND UBIQUITOUS SYSTEMS - WORKSHOPS, 2006, : 66 - +
  • [29] Trust and privacy in location-based services
    Jorns, O.
    Quirchmayr, G.
    [J]. ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2010, 127 (05): : 151 - 155
  • [30] Location-Based Services and Privacy in Airports
    Hansen, John Paulin
    Alapetite, Alexandre
    Andersen, Henning Boje
    Malmborg, Lone
    Thommesen, Jacob
    [J]. HUMAN-COMPUTER INTERACTION - INTERACT 2009, PT I, 2009, 5726 : 168 - +