17-18 November 2009 W3C ACAS Workshop, Luxembourg 1
Privacy Assistants
Helping users to manage the information they disclose to websites
Disclaimer: Ideas describing work in progress Dave Raggett <dsr@w3.org>
Privacy Assistants Dave Raggett <dsr@w3.org> Helping users to - - PowerPoint PPT Presentation
Privacy Assistants Dave Raggett <dsr@w3.org> Helping users to manage the information they disclose to websites Disclaimer: Ideas describing work in progress 17-18 November 2009 W3C ACAS Workshop, Luxembourg 1 Why? Websites collect
17-18 November 2009 W3C ACAS Workshop, Luxembourg 1
Disclaimer: Ideas describing work in progress Dave Raggett <dsr@w3.org>
17-18 November 2009 W3C ACAS Workshop, Luxembourg 2
a given website holds on you?
17-18 November 2009 W3C ACAS Workshop, Luxembourg 3
– Can even reveal selected subset of properties in a credential
17-18 November 2009 W3C ACAS Workshop, Luxembourg 4
17-18 November 2009 W3C ACAS Workshop, Luxembourg 5
– Only bother user when user is expected to do something – Otherwise allow user to view privacy policy via
17-18 November 2009 W3C ACAS Workshop, Luxembourg 6
rd party for independent advice
– Trusted authorities – Wisdom of crowds via reputation system
17-18 November 2009 W3C ACAS Workshop, Luxembourg 7
the XML policies they should be generated from
– And/Or tree for what needs to be disclosed
– Details of purposes and retention periods – What kinds of notifications are available
– Use templates for generating candidate phrases
– Instantiate words with appropriate morphology
17-18 November 2009 W3C ACAS Workshop, Luxembourg 8
– Which websites have trustworthy privacy practices? – Avoid weaknesses of OpenID/email addresses as global ids – Support 24x7 authorizations for web 'bots acting on your behalf
17-18 November 2009 W3C ACAS Workshop, Luxembourg 9
– Describe relation between requested
rel="PrivacyPolicy"
– Now back as draft-nottingham-http-link-header
17-18 November 2009 W3C ACAS Workshop, Luxembourg 10
17-18 November 2009 W3C ACAS Workshop, Luxembourg 11
– Load balancing with Akamai
17-18 November 2009 W3C ACAS Workshop, Luxembourg 12
– Expanded set of purposes, or longer retention period
17-18 November 2009 W3C ACAS Workshop, Luxembourg 13
– Privacy preferences could be set by 3rd party