论文标题
健身应用的隐私和区块链同意管理
Privacy of Fitness Applications and Consent Management in Blockchain
论文作者
论文摘要
健身可穿戴设备的快速进步是重新定义围绕互动的隐私。健身可穿戴设备记录了有关运动,血氧水平和心率的大量敏感和私人细节。关于健身应用程序和可穿戴设备提供商的个人原始健身数据和数据分析之间的相互作用已经出现了隐私问题。本文描述了在健身追踪器生态系统中采用和应用法律框架的重要性。在这篇综述中,我们描述了有关适应性应用程序提供者当前隐私政策的研究,启发式评估健身提供者的同意管理方法,总结了我们对这些研究的综述中确定的差距,并讨论了填补所确定差距的潜在解决方案。我们已经确定了与保留健身应用程序用户隐私相关的四个主要问题:缺乏系统透明度,缺乏隐私政策可读性,对一次性同意的担忧以及在同意管理方面的违规问题。在讨论了可行的解决方案之后,我们通过描述区块链如何适合解决这些隐私问题来得出结论。
The rapid advances in fitness wearable devices are redefining privacy around interactions. Fitness wearables devices record a considerable amount of sensitive and private details about exercise, blood oxygen level, and heart rate. Privacy concerns have emerged about the interactions between an individual's raw fitness data and data analysis by the providers of fitness apps and wearable devices. This paper describes the importance of adopting and applying legal frameworks within the fitness tracker ecosystem. In this review, we describe the studies on the current privacy policies of fitness app providers, heuristically evaluate the methods for consent management by fitness providers, summarize the gaps identified in our review of these studies, and discuss potential solutions for filling the gaps identified. We have identified four main problems related to preserving the privacy of users of fitness apps: lack of system transparency, lack of privacy policy legibility, concerns regarding one-time consent, and issues of noncompliance regarding consent management. After discussing feasible solutions, we conclude by describing how blockchain is suitable for solving these privacy issues.