DataPortability and Privacy Policies

0 views
Skip to first unread message

Gregory Hnatiuk

unread,
Dec 10, 2008, 4:33:16 PM12/10/08
to DataPortability.General
Hello,
I had a thought about DataPortability that I thought might be worth
bringing up. It's certainly possible that something addressing the
following is already in the works or being discussed, but I didn't
find anything in particular when searching.


Consider the percentage of users who read privacy policies. I'm sure
someone has a number, but it's probably safe to assume that it's very
low. What could data portability combined with a system like OpenID
or browser plugins do to help?

Suppose a website had a meta tag pointing to its privacy policy.
Suppose the privacy policy had an embedded microformat describing
particular ways that they use member data and what they do with it
(e.g. sharing with third parties, contacting directly via email,
storing application specific user information locally)
Suppose this data was legally binding in the way a privacy policy
should be.
Suppose a user could set preferences and/or permissions for what kind
of data exposure they allowed by default in their OpenID account or
browser settings.
Suppose these preferences could be transmitted to the site requesting
authentication by the OpenID provider or the browser

Then:

When logging into a site, a user could be prompted that the site's
privacy policy does not comply with their default preferences for
their data, and in what ways (and perhaps be allowed to override them)
If the site was designed for it, the site could accept the user
default preferences for communications and data sharing (though it
could suggest to the user that they change those settings)
If the site changed their privacy policy, the user could be notified
of those changes and prompted to approve them.

Any thoughts? This seemed like an appropriate place to make the
suggestion.

Greg

Gregory Hnatiuk

unread,
Dec 10, 2008, 4:33:16 PM12/10/08
to DataPortability.General

Iain Henderson

unread,
Dec 12, 2008, 1:14:24 PM12/12/08
to dataportabi...@googlegroups.com
Hi Greg, yes that all makes sense; their is existing work in this area in a DataPortability workgroup on EULA's/ Terms of Service, and also a Project VRM related special interest group at http://wiki.projectliberty.org/index.php/VolunteeredPersonalInformationSIG .

I run the latter and we'd certainly be delighted to have your input - there are phone conferences twice a week and a plan to have a face to face meet in March or so.

Cheers

Iain

Elias Bizannes

unread,
Dec 13, 2008, 4:24:23 AM12/13/08
to dataportabi...@googlegroups.com
Hi Gregory,

Would be great to have you join the EULA/ToS task force that Iain mentions, which we are just starting up: http://wiki.dataportability.org/x/mIRE

Elias Bizannes
Mobile: +61 412 338 508
E-mail: elias.b...@gmail.com
DataPortability.Org - SiliconBeachAustralia.Org
Chat: Skype: elias.bizannes
LinkedinFacebookFlickrTwitterdel.icio.usBlogger
--
Elias Bizannes
http://liako.biz

Steven Greenberg

unread,
Dec 30, 2008, 1:49:23 AM12/30/08
to dataportabi...@googlegroups.com, ghna...@gmail.com
Hi, Gregory.

This is an interesting suggestion.  We have a TOS/EULA working group that's looking into issues like this.  We haven't gotten as far as any particular technological approach, but there is a lot to talk about.   We'd love to have you stop in and say hello.

The next meeting is on the 14th at 20:00 UTC  (3pm EST, noon PST).

Meetings are held over skype, and there is a phone bridge (thanks, Trent!).

Skype: +9900827041975640
Dial-Up: 1-201-793-9022 Room Code: 1975640

    Regards,
    Steve
Reply all
Reply to author
Forward
0 new messages