{"title":"A Review of Privacy Decision-making Mechanisms in Online Social Networks","authors":"José Alemany, E. Noguera, A. García-Fornes","doi":"10.1145/3494067","DOIUrl":null,"url":null,"abstract":"Personal information of online social networks (OSNs) is governed by the privacy policies chosen by users besides OSN’s policies. Users make these decisions using privacy mechanisms, but privacy problems and regrets are daily reported. This article reviews current privacy mechanisms and solutions. For this, we analyze all the sub-decisions and elements of online communication involved in the privacy decision-making process. However, the differences in users’ motivations and the disclosure of too sensitive information (among others) can lead to loss of privacy. In this work, we identify requirements such as automation, preference-centered, relationship-based, and multi-party privacy mechanisms, which have been more researched. But also other requirements (recently emerged), such as privacy preservation with risk metrics, explainability, and ephemeral messages. We explore all the advances made in the literature, and we have seen that most of these have been focused on matching the users’ preferences with their decision (which is not appropriate, because users cannot evaluate all of the potential privacy scenarios) instead of assessing privacy risk metrics, adaptation, and explainability. Therefore, we have identified open challenges, such as metrics for assessing privacy risks, explainable solutions for users, ephemeral communication solutions, and the application of these requirements to the multi-party privacy scenario.","PeriodicalId":7000,"journal":{"name":"ACM Computing Surveys (CSUR)","volume":"3 1","pages":"1 - 32"},"PeriodicalIF":0.0000,"publicationDate":"2022-01-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"11","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"ACM Computing Surveys (CSUR)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3494067","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 11
Abstract
Personal information of online social networks (OSNs) is governed by the privacy policies chosen by users besides OSN’s policies. Users make these decisions using privacy mechanisms, but privacy problems and regrets are daily reported. This article reviews current privacy mechanisms and solutions. For this, we analyze all the sub-decisions and elements of online communication involved in the privacy decision-making process. However, the differences in users’ motivations and the disclosure of too sensitive information (among others) can lead to loss of privacy. In this work, we identify requirements such as automation, preference-centered, relationship-based, and multi-party privacy mechanisms, which have been more researched. But also other requirements (recently emerged), such as privacy preservation with risk metrics, explainability, and ephemeral messages. We explore all the advances made in the literature, and we have seen that most of these have been focused on matching the users’ preferences with their decision (which is not appropriate, because users cannot evaluate all of the potential privacy scenarios) instead of assessing privacy risk metrics, adaptation, and explainability. Therefore, we have identified open challenges, such as metrics for assessing privacy risks, explainable solutions for users, ephemeral communication solutions, and the application of these requirements to the multi-party privacy scenario.
OSN (online social networks)的个人信息除了受OSN策略的约束外,还受用户选择的隐私策略的约束。用户使用隐私机制做出这些决定,但隐私问题和遗憾每天都有报告。本文回顾了当前的隐私机制和解决方案。为此,我们分析了隐私决策过程中涉及的所有在线交流子决策和要素。然而,用户动机的差异和过于敏感的信息(以及其他)的披露可能导致隐私的丧失。在这项工作中,我们确定了自动化、以偏好为中心、基于关系和多方隐私机制等需求,这些需求已经得到了更多的研究。但也有其他需求(最近出现的),例如带有风险度量、可解释性和短暂消息的隐私保护。我们探索了文献中取得的所有进展,我们已经看到,其中大多数都集中在将用户的偏好与他们的决定相匹配(这是不合适的,因为用户无法评估所有潜在的隐私场景),而不是评估隐私风险指标、适应性和可解释性。因此,我们已经确定了开放的挑战,例如评估隐私风险的指标,用户可解释的解决方案,临时通信解决方案,以及将这些要求应用于多方隐私场景。