Personal information is continuously gathered and processed by modern web applications. Due to regulation laws and to protect the privacy of users, customers, and business partners, such information must be kept private. A recurring problem in constructing web applications and services that protect privacy is the insufficient resources for documenting them. As web applications must be developed consistently with the statements of the privacy policy in order to enforce them, a structured documentation is necessary to model privacy protection during application design. To contribute with solutions to this problem, in this paper we propose a UML profile for privacy-aware applications. This profile helps building UML models that specify and structure particular concepts of privacy and, consequently, improve privacy definition and enforcement. After introducing the main privacy concepts, we describe how they are represented in the UML language. The profile’s ability to model statements of realistic privacy policies is then demonstrated on a case study.

Towards a UML Profile for Privacy-Aware Applications / Basso, Tania; Montecchi, Leonardo; Moraes, Regina; Jino, Mario; Bondavalli, Andrea. - ELETTRONICO. - (2015), pp. 371-378. ( The 15th IEEE International Conference on Computer and Information Technology (CIT-2015) Liverpool, UK 26-28 October 2015) [10.1109/CIT/IUCC/DASC/PICOM.2015.53].

Towards a UML Profile for Privacy-Aware Applications

MONTECCHI, LEONARDO;BONDAVALLI, ANDREA
2015

Abstract

Personal information is continuously gathered and processed by modern web applications. Due to regulation laws and to protect the privacy of users, customers, and business partners, such information must be kept private. A recurring problem in constructing web applications and services that protect privacy is the insufficient resources for documenting them. As web applications must be developed consistently with the statements of the privacy policy in order to enforce them, a structured documentation is necessary to model privacy protection during application design. To contribute with solutions to this problem, in this paper we propose a UML profile for privacy-aware applications. This profile helps building UML models that specify and structure particular concepts of privacy and, consequently, improve privacy definition and enforcement. After introducing the main privacy concepts, we describe how they are represented in the UML language. The profile’s ability to model statements of realistic privacy policies is then demonstrated on a case study.
2015
Computer and Information Technology; Ubiquitous Computing and Communications; Dependable, Autonomic and Secure Computing; Pervasive Intelligence and Computing (CIT/IUCC/DASC/PICOM), 2015 IEEE International Conference on
The 15th IEEE International Conference on Computer and Information Technology (CIT-2015)
Liverpool, UK
26-28 October 2015
Basso, Tania; Montecchi, Leonardo; Moraes, Regina; Jino, Mario; Bondavalli, Andrea
File in questo prodotto:
File Dimensione Formato  
PID3897943.pdf

Accesso chiuso

Tipologia: Pdf editoriale (Version of record)
Licenza: Tutti i diritti riservati
Dimensione 1.09 MB
Formato Adobe PDF
1.09 MB Adobe PDF   Richiedi una copia

I documenti in FLORE sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificatore per citare o creare un link a questa risorsa: https://hdl.handle.net/2158/1012268
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 19
  • ???jsp.display-item.citation.isi??? 14
social impact