2016-09-29 Meeting Notes (CR)

2016-09-29 Meeting Notes (CR)

Date

September 29, 2016

Meeting notes approved: 2016-10-20 Meeting Notes (CR)

 

Attendees

  • @Former user (Deleted)

  • @Former user (Deleted)

  • @Former user (Deleted)

  • @John Wunderlich

Goals

  • Review current draft of CR Spec and give feedback to editor to feed into the work

  • Discuss specific topics that will require consensus decisions from the WG

 

Discussion Items

Time

Item

Who

Notes

Time

Item

Who

Notes

5 min

  • Roll call

  • Agenda bashing

  • Minutes Approval

@Former user (Deleted)

  • Prior minutes requiring approval

2016-09-22 Meeting Notes (Consent Receipts)

2016-09-15 Meeting Notes (Consent Receipts)

2016-09-08 Meeting Notes (Consent Receipts)

2016-09-08 Meeting Notes (Consent Receipts)

"Move to approve listed meeting notes previously circulated"

Motion: Deferred - insufficient attendance of attendees of the listed meetings to confirm notes

Second:

Discussion:

Result:

25 min

@Former user (Deleted)

KI-CR09-DRAFT-2016-09-24.doc (confluence attachment)

KI-CR09-DRAFT-2016-09-24 (Google doc)

 

  • David gave an update on the current draft status

  • Working on structure of the document to simplify and reduce complexity of the document presentation

  • David has sent the list of current issues to the list for feedback

  • Mary is working with a company now - usability studies and eventually a consent receipt

25 min

  • Discussion on 'content' item needing consensus decision

All

Implementation and interpretation questions that David posted to WG list

  1. MyData submitted some comments. I added them to the 0.9 doc as comments starting with "From MyData":

  2.  

    • Consent Time Stamp

    • Collection Method

    • Jurisdiction

    • PII Controller Org 

    • PII Controller Contact 

    • Privacy Policy

    • Version

    • CR GUID

    • Public Key - description and data type

    • PII Controller address - data type

    • PII Controller email - data type

  3. Resolve multiple definitions. These terms have two or more definitions. It's OK to have one normative definition and to include the other definitions as notes. 

  4.  

    • purpose

    • sensitive PII

    • use

  5. Resolve multiple terms. There should only be one normative term. The other can be mentioned in a note:

  6.  

    • expressed vs. explicit

    • implied vs. implicit

  7. I need clarification on "Consent Type". 

  8. What is the difference between PII Controller and Company/Organization?

  9. Consistent use of terms. I propose to change all occurrences of:

  10.  

    • "sensitive data" to "sensitive PII"

    • "data controller" to "PII Controller"

    • "PII Subject" to "PII Principal"

  11. I propose removing Appendix C. 

  12. I recommending adding a human readable CR example based on the same information used in Appendix D. 

Action Items







CR Spec publication schedule

Current: call for comments on draft spec commences

Date

Event

Status

Date

Event

Status

September 19

Close of business (Pacific) deadline for feedback on spec draft including examples and feedback from implementers.

 

September 22

WG call to review CR draft structure

 

September 29

WG call to review CR draft and discuss items needing resolution

 

October 6

WG call

 

October 13

WG call

 

October 20

Candidate draft to WG.
Decision required if the draft is sufficiently mature to base an IIW session on it.

 

October 27

Final working session for WG (with/without IIW comments) on candidate draft

 

November 3

Final draft for WG review

 

November 10

Working group ballot - must be approved by WG on Nov 10th

 

November 15

Send doc to the Leadership Council. They must approve it by Nov 30.

 

November 30

LC Approval decision

 

December 1

Kantara all member ballot begins.

 

January 15 2017

Earliest Spec approval date