Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • usage of the ISO 29100 - roles and definitions for transborder flow of personal data 
    • stakeholders - 
  • usage of ISO 29184 - notice controls and record structure 
  • ISO 27560 - to. generate consent record structure for rights receipt 
  • W3C DPV - legal semantic ontology for notice and notification . 
  • ** In review - 27710
    • requirements against privacy by design and default. 
    • 27550 - Privacy Engineering - C.4 - and C.5 - \

Updating from v1.1 - represented by submission to ISO 27560

  • delegation 
  • jurisdictions 
  • personal data categories
  • consent record structions 
    • purpose finger print purpose - 
    • purpose 

V1.2 : Consent Receipt Framework 

  • PasE - signalling/ communication Protocol
    • Contribution as apart  of the NGI project : Sal, Vitor, Mark & Harsh 
      • comparing 2 receipts to see active state provide and active state fore more dynamic controls in identity management systems 
      • part of the NGI funded project condition was on the contribution of the protocol to the ANCR WG which would then be reflected in comments to ISO 27560
      • Description for this contribution 
        • PaE includes a stack of semantic standards 
          • 29100 is open - 
          • CR v1.1 written with 29184 
          • PaE protocol includes these control sets and through its contribution opens this work in application
        •  Dynamic Protocol for the control of personal data 
        • standardized the presentation of rights 
    • Creating a framework to implement a communication protocol 
    • Notice of Control for Online Services Implementing 2DC
    • 2FC 
      • First Factor - Generated standards 
      • Second Factor (link) - existing Factor - the sign or notice or notification form the provider
    • Linked Data - Semantics
  • Flow 3rd party - Network Facilitator for Notice and Consent Processors 

V1.2.1 :  Anchor Receipt

  • Legal Use Case
    • Privacy as Expected Protocol
      • comparing two receipts - generated by the human user agent
      • using DPV for notice and notifications 
      • human interaction with notice creates records and receipts 
    • IP Contribution
      • From NGI-Trust PasE:CG Project
        • applies conformance criteria to consent record structure  
  • Required Notice of Controller Identity Fields - the capture of the identity of the controller, and the physical context of the notice for processing provided by the controller

...