首页 > 最新文献

Computer Law & Security Review最新文献

英文 中文
Towards a right to cybersecurity in EU law? The challenges ahead 实现欧盟法律中的网络安全权?未来的挑战
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-25 DOI: 10.1016/j.clsr.2024.105961
Pier Giorgio Chiara

This article aims to engage with the scholarly debate on the introduction of a new fundamental right to cybersecurity in EU law. In particular, the legal analysis focuses on three legal challenges brought about by a theoretical framework for development of a new right to cybersecurity. They regard: i) the need for a new right to cybersecurity against the background of the existing fundamental right to security (Art. 6 EU Charter of Fundamental Rights, CFR); ii) the actual content of this new right; and, iii) how such a new right could be implemented. The article concludes by advocating for the need of acknowledging a new right to cybersecurity in EU law.

本文旨在参与有关在欧盟法律中引入新的网络安全基本权利的学术辩论。具体而言,法律分析的重点是制定新网络安全权的理论框架所带来的三个法律挑战。它们涉及:i) 在现有基本安全权(《欧盟基本权利宪章》第 6 条)的背景下,新网络安全权的必要性;ii) 这一新权利的实际内容;iii) 如何实施这一新权利。文章最后主张有必要在欧盟法律中承认一项新的网络安全权。
{"title":"Towards a right to cybersecurity in EU law? The challenges ahead","authors":"Pier Giorgio Chiara","doi":"10.1016/j.clsr.2024.105961","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105961","url":null,"abstract":"<div><p>This article aims to engage with the scholarly debate on the introduction of a new fundamental right to cybersecurity in EU law. In particular, the legal analysis focuses on three legal challenges brought about by a theoretical framework for development of a new right to cybersecurity. They regard: i) the need for a new right to cybersecurity against the background of the existing fundamental right to security (Art. 6 EU Charter of Fundamental Rights, CFR); ii) the actual content of this new right; and, iii) how such a new right could be implemented. The article concludes by advocating for the need of acknowledging a new right to cybersecurity in EU law.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S0267364924000281/pdfft?md5=25ebeae947069d6e07371338c4afa2c7&pid=1-s2.0-S0267364924000281-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140209219","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
The rise of livestreaming e-commerce in China and challenges for regulation: A critical examination of a landmark case occurring during COVID-19 pandemic 中国直播电子商务的崛起与监管挑战:对COVID-19大流行期间发生的标志性案例的批判性研究
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-23 DOI: 10.1016/j.clsr.2024.105955
Pinghui Xiao

The devastating COVID-19 pandemic saw that the livestreaming e-commerce, which is a brand-new e-commerce model by combining online shopping with livestreams, emerged prominently in China. It shares some commonalities with other forms of e-commerce and traditional shopping channels like TV shopping one way or another, but the former is a disruptive iteration of the latter. Nonetheless, the arrival of livestreaming e-commerce also brings about significant regulatory challenges, due to opportunistic livestreamers coupled with other issues, resulting in all kinds of market failure acts, with false or misleading representations figuring most prominently. This is reflected by a landmark case occurring during the pandemic, in which Xin Ba as one of the most influential livestreamers sold cubilose products via Kuaishou, China's leading livestreaming e-commerce platform, in a false or misleading way. When the cubilose products touted as luxury foods were later proven to contain nothing but water and sugar, it attracted considerable public attention due to the large number of consumers affected and huge transactions it generated. This scandal was followed by an administrative investigation and a civil investigation. The Paper has an in-depth analysis of legal issues surrounding these investigations mainly centered on how Xin Ba as a livestreamer is liable for what, and finds that the laws applied to livestreaming e-commerce demonstrate legal inconsistencies and gaps, which a corresponding legal reform is proposed to address. As a way forward, the Paper also examines the issue of platform liabilities, a topic under-discussed under the landmark case. Upon the above deep analyses, the Paper concludes.

在 COVID-19 大流行的破坏性影响下,直播电商这种将网络购物与直播相结合的全新电商模式在中国异军突起。它与其他形式的电子商务和电视购物等传统购物渠道有着这样或那样的共性,但前者是后者的颠覆性迭代。然而,直播电商的到来也带来了监管上的巨大挑战,由于直播者投机取巧,再加上其他问题,导致了各种市场失灵行为,其中以虚假或误导性陈述最为突出。疫情期间发生的一起标志性案件就反映了这一点,作为最有影响力的直播平台之一,新八通过中国领先的直播电商平台 "瓜搜网 "以虚假或引人误解的方式销售立方糖产品。当被吹捧为奢侈食品的立方糖产品后来被证实只含水和糖时,由于受影响的消费者人数众多且产生了巨额交易,引起了公众的极大关注。这一丑闻引发了行政调查和民事调查。本文深入分析了围绕这些调查的法律问题,主要集中在新巴作为直播者如何承担责任,并发现适用于直播电子商务的法律存在法律不一致和空白,建议进行相应的法律改革以解决这些问题。作为未来的发展方向,本文还研究了平台责任问题,这是一个在里程碑案件中讨论较少的话题。经过上述深入分析,本文得出结论。
{"title":"The rise of livestreaming e-commerce in China and challenges for regulation: A critical examination of a landmark case occurring during COVID-19 pandemic","authors":"Pinghui Xiao","doi":"10.1016/j.clsr.2024.105955","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105955","url":null,"abstract":"<div><p>The devastating COVID-19 pandemic saw that the livestreaming e-commerce, which is a brand-new e-commerce model by combining online shopping with livestreams, emerged prominently in China. It shares some commonalities with other forms of e-commerce and traditional shopping channels like TV shopping one way or another, but the former is a disruptive iteration of the latter. Nonetheless, the arrival of livestreaming e-commerce also brings about significant regulatory challenges, due to opportunistic livestreamers coupled with other issues, resulting in all kinds of market failure acts, with false or misleading representations figuring most prominently. This is reflected by a landmark case occurring during the pandemic, in which Xin Ba as one of the most influential livestreamers sold cubilose products via Kuaishou, China's leading livestreaming e-commerce platform, in a false or misleading way. When the cubilose products touted as luxury foods were later proven to contain nothing but water and sugar, it attracted considerable public attention due to the large number of consumers affected and huge transactions it generated. This scandal was followed by an administrative investigation and a civil investigation. The Paper has an in-depth analysis of legal issues surrounding these investigations mainly centered on how Xin Ba as a livestreamer is liable for what, and finds that the laws applied to livestreaming e-commerce demonstrate legal inconsistencies and gaps, which a corresponding legal reform is proposed to address. As a way forward, the Paper also examines the issue of platform liabilities, a topic under-discussed under the landmark case. Upon the above deep analyses, the Paper concludes.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140190712","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Data Protection Impact Assessment under the EU General Data Protection Regulation: A feminist reflection 欧盟《通用数据保护条例》下的数据保护影响评估:女性主义反思
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-23 DOI: 10.1016/j.clsr.2024.105950
Alessandra Calvi

Can the Data Protection Impact Assessment (DPIA) under Article 35 General Data Protection Regulation (GDPR) address the power imbalances between those in control of information and the most vulnerable and marginalised persons to whom this information refers? Put another way, can DPIA be considered a feminist tool?

Whilst data protection scholars and regulators consider DPIA a promising instrument for the protection of the fundamental rights threatened by personal data processing, particularly when performed by automated systems, a feminist critique thereof, essential to comprehensively evaluate whether such optimism is justified, is still missing. This contribution addresses this knowledge gap using a combination of doctrinal and non-doctrinal analysis, feminist legal methods and intersectionality.

Building on the state of the art about DPIA, I revisit its advantages and drawbacks through feminist lenses, concluding that DPIA cannot be considered a feminist tool as such. Yet, it could still serve feminist goals and become an empowering instrument for data subjects. For that, my proposals are to incorporate feminist legal methods and intersectionality principles in the process and to conceptualise a “right to DPIA”.

通用数据保护条例》(GDPR)第 35 条规定的数据保护影响评估(DPIA)能否解决信息控制者与信息所涉及的最弱势和边缘化人群之间的权力不平衡问题?换句话说,DPIA 可否被视为一种女权主义工具?虽然数据保护学者和监管者认为 DPIA 是一种保护受到个人数据处理威胁的基本权利的有前途的工具,尤其是在由自动化系统执行的情况下,但对其进行女权主义批判对于全面评估这种乐观是否合理至关重要,而这种批判仍然缺失。我在 DPIA 研究现状的基础上,通过女权主义视角重新审视了它的优点和缺点,得出的结论是,DPIA 本身不能被视为一种女权主义工具。然而,它仍然可以服务于女权主义目标,成为数据主体的赋权工具。为此,我的建议是在这一过程中纳入女权主义法律方法和交叉性原则,并将 "DPIA 权利 "概念化。
{"title":"Data Protection Impact Assessment under the EU General Data Protection Regulation: A feminist reflection","authors":"Alessandra Calvi","doi":"10.1016/j.clsr.2024.105950","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105950","url":null,"abstract":"<div><p>Can the Data Protection Impact Assessment (DPIA) under Article 35 General Data Protection Regulation (GDPR) address the power imbalances between those in control of information and the most vulnerable and marginalised persons to whom this information refers? Put another way, can DPIA be considered a feminist tool?</p><p>Whilst data protection scholars and regulators consider DPIA a promising instrument for the protection of the fundamental rights threatened by personal data processing, particularly when performed by automated systems, a feminist critique thereof, essential to comprehensively evaluate whether such optimism is justified, is still missing. This contribution addresses this knowledge gap using a combination of doctrinal and non-doctrinal analysis, feminist legal methods and intersectionality.</p><p>Building on the state of the art about DPIA, I revisit its advantages and drawbacks through feminist lenses, concluding that DPIA cannot be considered a feminist tool as such. Yet, it could still serve feminist goals and become an empowering instrument for data subjects. For that, my proposals are to incorporate feminist legal methods and intersectionality principles in the process and to conceptualise a “right to DPIA”.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140195966","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Balancing the platform responsibility paradox: A case for amplification regulation to mitigate the spread of harmful but legal content online 平衡平台责任悖论:以放大监管缓解有害但合法内容的网络传播
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-23 DOI: 10.1016/j.clsr.2024.105960
Tae Jung Park , Akshita Rohatgi

This paper examines the complex issue of harmful but legal content (HBLC) moderation on the internet, focusing on the contentious nature of specific content categories regulation and the emergence of an alternative approach, regulating these categories under the umbrella of HBLC. It highlights the fundamental difference between legal and illegal content and the irony when platforms face more liability than the principal poster for failing to take down legal, albeit harmful content, posted by third parties. Instead, it argues that platforms should be held accountable for amplifying harmful content due to the role of their recommender systems in promoting this content for engagement purposes. While challenging to conceptualise, the concept of amplification regulation is scrutinised in relation to HBLC and the potential ways of implementing such regulation are examined. Furthermore, the paper delves into the dynamic between the State and online platforms in the context of HBLC and amplification regulation, emphasising the need for a balanced approach tailored to each jurisdiction's context.

本文探讨了互联网上有害但合法内容(HBLC)管理的复杂问题,重点关注特定内容类别管理的争议性,以及在 HBLC 框架下管理这些类别的替代方法的出现。报告强调了合法内容与非法内容之间的根本区别,以及平台因未能删除第三方发布的合法内容(尽管是有害内容)而比主要发布者面临更多责任时的讽刺意味。相反,它认为,由于平台的推荐系统在推广有害内容以达到参与目的方面所起的作用,平台应为扩大有害内容承担责任。虽然概念化具有挑战性,但本文还是结合 HBLC 对放大监管的概念进行了仔细研究,并探讨了实施此类监管的潜在方法。此外,本文还深入探讨了在 HBLC 和放大监管背景下国家与网络平台之间的动态关系,强调了根据每个司法管辖区的具体情况采取平衡方法的必要性。
{"title":"Balancing the platform responsibility paradox: A case for amplification regulation to mitigate the spread of harmful but legal content online","authors":"Tae Jung Park ,&nbsp;Akshita Rohatgi","doi":"10.1016/j.clsr.2024.105960","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105960","url":null,"abstract":"<div><p>This paper examines the complex issue of harmful but legal content (HBLC) moderation on the internet, focusing on the contentious nature of specific content categories regulation and the emergence of an alternative approach, regulating these categories under the umbrella of HBLC. It highlights the fundamental difference between legal and illegal content and the irony when platforms face more liability than the principal poster for failing to take down legal, albeit harmful content, posted by third parties. Instead, it argues that platforms should be held accountable for amplifying harmful content due to the role of their recommender systems in promoting this content for engagement purposes. While challenging to conceptualise, the concept of amplification regulation is scrutinised in relation to HBLC and the potential ways of implementing such regulation are examined. Furthermore, the paper delves into the dynamic between the State and online platforms in the context of HBLC and amplification regulation, emphasising the need for a balanced approach tailored to each jurisdiction's context.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140191532","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Socio-legal study of technology: A norms and values approach to hacking and encryption law and policy 技术的社会法律研究:用规范和价值观方法研究黑客和加密法律与政策
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-23 DOI: 10.1016/j.clsr.2024.105958
Michael Anthony C. Dizon

In light of the dissolution of the traditional boundaries separating the fields of law, technology and society, this article puts forward an interdisciplinary norms and values approach to the study of technology law. It explains the core concepts of norms and values and their significance to legal research and other disciplines. The article further sets out the qualitative, inductive and interpretivist methodology and methods necessitated by this socio-legal approach. It then applies the norms and values approach to the cases of hacking and encryption to illustrate its substantial benefits and contributions to the development of technology law and policy.

鉴于法律、技术和社会领域之间的传统界限已被打破,本文提出了一种跨学科的规范与价值研究技术法的方法。文章解释了规范和价值的核心概念及其对法律研究和其他学科的意义。文章进一步阐述了这种社会法律方法所需的定性、归纳和解释主义方法论和方法。然后,文章将规范和价值观方法应用于黑客攻击和加密案例,以说明其对技术法律和政策发展的实质性益处和贡献。
{"title":"Socio-legal study of technology: A norms and values approach to hacking and encryption law and policy","authors":"Michael Anthony C. Dizon","doi":"10.1016/j.clsr.2024.105958","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105958","url":null,"abstract":"<div><p>In light of the dissolution of the traditional boundaries separating the fields of law, technology and society, this article puts forward an interdisciplinary norms and values approach to the study of technology law. It explains the core concepts of norms and values and their significance to legal research and other disciplines. The article further sets out the qualitative, inductive and interpretivist methodology and methods necessitated by this socio-legal approach. It then applies the norms and values approach to the cases of hacking and encryption to illustrate its substantial benefits and contributions to the development of technology law and policy.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S0267364924000256/pdfft?md5=6259d38cc8a6196201d31d3cb4c54dd2&pid=1-s2.0-S0267364924000256-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140191533","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Towards experimental standardization for AI governance in the EU 实现欧盟人工智能管理的实验性标准化
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-19 DOI: 10.1016/j.clsr.2024.105959
Kostina Prifti , Eduard Fosch-Villaronga

The EU has adopted a hybrid governance approach to address the challenges posed by Artificial Intelligence (AI), emphasizing the role of harmonized European standards (HES). Despite advantages in expertise and flexibility, HES processes face legitimacy problems and struggle with epistemic gaps in the context of AI. This article addresses the problems that characterize HES processes by outlining the conceptual need, theoretical basis, and practical application of experimental standardization, which is defined as an ex-ante evaluation method that can be used to test standards for their effects and effectiveness. Experimental standardization is based on theoretical and practical developments in experimental governance, legislation, and innovation. Aligned with ideas and frameworks like Science for Policy and evidence-based policymaking, it enables co-creation between science and policymaking. We apply the proposed concept in the context of HES processes, where we submit that experimental standardization contributes to increasing throughput and output legitimacy, addressing epistemic gaps, and generating new regulatory knowledge.

欧盟采用了一种混合治理方法来应对人工智能(AI)带来的挑战,强调统一欧洲标准(HES)的作用。尽管 HES 流程在专业知识和灵活性方面具有优势,但在人工智能背景下,它面临着合法性问题和认识论差距。实验标准化被定义为一种事前评估方法,可用于测试标准的效果和有效性。实验标准化基于实验治理、立法和创新方面的理论和实践发展。实验标准化与 "科学促进政策"(Science for Policy)和 "循证决策"(evidence-based policymaking)等理念和框架相一致,实现了科学与决策之间的共同创造。我们将所提出的概念应用于人类健康和环境服务(HES)过程中,我们认为实验标准化有助于提高吞吐量和产出的合法性,解决认识论上的差距,并产生新的监管知识。
{"title":"Towards experimental standardization for AI governance in the EU","authors":"Kostina Prifti ,&nbsp;Eduard Fosch-Villaronga","doi":"10.1016/j.clsr.2024.105959","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105959","url":null,"abstract":"<div><p>The EU has adopted a hybrid governance approach to address the challenges posed by Artificial Intelligence (AI), emphasizing the role of harmonized European standards (HES). Despite advantages in expertise and flexibility, HES processes face legitimacy problems and struggle with epistemic gaps in the context of AI. This article addresses the problems that characterize HES processes by outlining the conceptual need, theoretical basis, and practical application of <em>experimental standardization</em>, which is defined as an <em>ex-ante</em> evaluation method that can be used to test standards for their effects and effectiveness. Experimental standardization is based on theoretical and practical developments in experimental governance, legislation, and innovation. Aligned with ideas and frameworks like Science for Policy and evidence-based policymaking, it enables co-creation between science and policymaking. We apply the proposed concept in the context of HES processes, where we submit that experimental standardization contributes to increasing throughput and output legitimacy, addressing epistemic gaps, and generating new regulatory knowledge.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S0267364924000268/pdfft?md5=cb322c13cb72a1a4bc7b89c543300ffb&pid=1-s2.0-S0267364924000268-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140160430","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Tell me something new: data subject rights applied to inferred data and profiles 告诉我一些新情况:适用于推断数据和档案的数据主体权利
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-03-18 DOI: 10.1016/j.clsr.2024.105956
Bart Custers , Helena Vrabec

The EU General Data Protection Regulation (GDPR) contains several data subject rights, but for many of these rights it is not entirely clear how they should work in practice, especially in digital environments. Most data subject rights apply to personal data obtained directly or indirectly from the data subject. This is often personal data that data subjects already are familiar with, i.e., things they already know about themselves. Unclear, however, is to what extent ascribed personal data, such as inferred data and categories or profiles in which data subjects are placed by data controllers, are within the scope of these rights. Such ascribed personal data often concerns novel information, generated by data controllers, and includes insights into how controllers view and assess them, which may have practical and legal impact on data subjects. Given these characteristics, the ascribed personal data may be much more interesting to data subjects, so it appears beneficial, from the policy perspective, to have this novel information included in the scope of data subject rights. If data subject rights do not apply to inferred data and profiles, invoking these rights is unlikely to be informative and provide meaningful information for data subjects, particularly in complex, digital environments. However, if data subject rights do apply to inferred data and profiles, the scope of these rights may be hard to delineate and they may quickly interfere with rights and freedoms of others, including trade secrets of data controllers and privacy rights of other data subjects. In this article, we investigate the implications of applying data subject rights to inferred data and profiles. For each data subject right in the GDPR, we assess which types of personal data could and perhaps should be in scope, based on grammatical and teleological legal analyses as well as practical considerations. While the area of data subject rights received significant academic attention in the past years, our article contributes to the discussion by providing a systematic, holistic framework to consider the scope of the rights in relation to ascribed data.

欧盟《通用数据保护条例》(GDPR)包含多项数据主体权利,但其中许多权利在实践中,尤其是在数字环境中如何发挥作用,并不完全清楚。大多数数据主体权利适用于直接或间接从数据主体获得的个人数据。这通常是数据主体已经熟悉的个人数据,即他们已经知道的关于他们自己的事情。然而,不清楚的是在多大程度上归属个人数据,如推断数据和数据控制者将数据主体归入的类别或档案,属于这些权利的范围。此类归属的个人数据通常涉及由数据控制者生成的新信息,包括控制者如何看待和评估这些信息的见解,这可能会对数据主体产生实际和法律影响。鉴于这些特点,被赋予的个人数据可能对数据主体更有意义,因此从政策角度看,将这些新信息纳入数据主体权利的范围似乎是有益的。如果数据主体权利不适用于推断出的数据和个人资料,那么援引这些权利不可能为数据主体提供信息和有意义的信息,尤其是在复杂的数字化环境中。但是,如果数据主体权利确实适用于推断数据和档案,那么这些权利的范围可能难以界定,而且可能很快干扰他人的权利和自由,包括数据控制者的商业秘密和其他数据主体的隐私权。在本文中,我们将探讨将数据主体权利应用于推断数据和档案的影响。对于 GDPR 中的每项数据主体权利,我们都会根据语法和目的论法律分析以及实际考虑因素,评估哪些类型的个人数据可以、或许应该被纳入适用范围。虽然数据主体权利领域在过去几年中受到了学术界的极大关注,但我们的文章提供了一个系统、全面的框架来考虑与归属数据相关的权利范围,从而为讨论做出了贡献。
{"title":"Tell me something new: data subject rights applied to inferred data and profiles","authors":"Bart Custers ,&nbsp;Helena Vrabec","doi":"10.1016/j.clsr.2024.105956","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105956","url":null,"abstract":"<div><p>The EU General Data Protection Regulation (GDPR) contains several data subject rights, but for many of these rights it is not entirely clear how they should work in practice, especially in digital environments. Most data subject rights apply to personal data obtained directly or indirectly from the data subject. This is often personal data that data subjects already are familiar with, i.e., things they already know about themselves. Unclear, however, is to what extent ascribed personal data, such as inferred data and categories or profiles in which data subjects are placed by data controllers, are within the scope of these rights. Such ascribed personal data often concerns novel information, generated by data controllers, and includes insights into how controllers view and assess them, which may have practical and legal impact on data subjects. Given these characteristics, the ascribed personal data may be much more interesting to data subjects, so it appears beneficial, from the policy perspective, to have this novel information included in the scope of data subject rights. If data subject rights do not apply to inferred data and profiles, invoking these rights is unlikely to be informative and provide meaningful information for data subjects, particularly in complex, digital environments. However, if data subject rights do apply to inferred data and profiles, the scope of these rights may be hard to delineate and they may quickly interfere with rights and freedoms of others, including trade secrets of data controllers and privacy rights of other data subjects. In this article, we investigate the implications of applying data subject rights to inferred data and profiles. For each data subject right in the GDPR, we assess which types of personal data could and perhaps should be in scope, based on grammatical and teleological legal analyses as well as practical considerations. While the area of data subject rights received significant academic attention in the past years, our article contributes to the discussion by providing a systematic, holistic framework to consider the scope of the rights in relation to ascribed data.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-03-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S0267364924000232/pdfft?md5=10f15b5723ebb024eee39edef4dd2225&pid=1-s2.0-S0267364924000232-main.pdf","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"140160458","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"OA","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Stack is the New Black?: Evolution and Outcomes of the ‘India-Stackification’ Process 堆栈是新的黑色?:"印度-堆栈化 "进程的演变与成果
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-02-28 DOI: 10.1016/j.clsr.2024.105947
Smriti Parsheera

India is going through a transformative phase in its digital journey. A large part of this is enfolding in the field of digital public infrastructures as the ‘India Stack’ branded suite of technological solutions permeates through areas like digital identity, instant payments, digital commerce, and consent management. The paper traces the socio-technical imaginaries that have fueled India's digital transformation strategy and how India Stack acquired its central place in that scheme. Drawing upon India's performance on global ICT-related indices and the OECD's Good Practice Principles for Public Service Design and Delivery, the paper also examines how the country is faring in translating its visions of digital transformation into outcomes. It identifies reliance on coercive digital adoption strategies, lack of participative decision-making, and insufficient accountability safeguards as some of the fault lines in India's path to fair and equitable digital transformation.

印度正在经历数字化进程中的转型阶段。随着 "India Stack "品牌的成套技术解决方案渗透到数字身份、即时支付、数字商务和同意管理等领域,其中很大一部分正在数字公共基础设施领域展开。本文追溯了推动印度数字化转型战略的社会技术想象,以及 India Stack 如何在该计划中占据核心地位。根据印度在全球信息和通信技术相关指数上的表现以及经合组织的《公共服务设计与交付良好实践原则》,本文还探讨了印度在将其数字化转型愿景转化为成果方面的进展情况。它指出,依赖强制性的数字化采用战略、缺乏参与性决策以及问责保障不足是印度通往公平公正的数字化转型道路上的一些绊脚石。
{"title":"Stack is the New Black?: Evolution and Outcomes of the ‘India-Stackification’ Process","authors":"Smriti Parsheera","doi":"10.1016/j.clsr.2024.105947","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105947","url":null,"abstract":"<div><p>India is going through a transformative phase in its digital journey. A large part of this is enfolding in the field of digital public infrastructures as the ‘India Stack’ branded suite of technological solutions permeates through areas like digital identity, instant payments, digital commerce, and consent management. The paper traces the socio-technical imaginaries that have fueled India's digital transformation strategy and how India Stack acquired its central place in that scheme. Drawing upon India's performance on global ICT-related indices and the OECD's Good Practice Principles for Public Service Design and Delivery, the paper also examines how the country is faring in translating its visions of digital transformation into outcomes. It identifies reliance on coercive digital adoption strategies, lack of participative decision-making, and insufficient accountability safeguards as some of the fault lines in India's path to fair and equitable digital transformation.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-02-28","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139986333","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
DLA Piper EU update 欧共体最新情况
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-02-27 DOI: 10.1016/j.clsr.2023.105859
{"title":"DLA Piper EU update","authors":"","doi":"10.1016/j.clsr.2023.105859","DOIUrl":"https://doi.org/10.1016/j.clsr.2023.105859","url":null,"abstract":"","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-02-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139985546","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
Findings from the Polish InsurTech market as a roadmap for regulators 作为监管机构路线图的波兰保险科技市场调查结果
IF 2.9 3区 社会学 Q1 Social Sciences Pub Date : 2024-02-23 DOI: 10.1016/j.clsr.2024.105948
Piotr Tereszkiewicz , Ewa Cichowicz

The dynamic development of modern technologies has changed the rules of the game in the financial market, including the insurance sector. While introducing digital business models may bring certain advantages for insurers, there is a widespread expectation of consumers to manage their financial affairs anytime and anywhere. This article sets out by demonstrating recent phenomena on the insurance market arising from its digitalisation, i.e., automation, personalisation, insurance on-demand, machine learning & artificial intelligence, Big Data, concluding distance contracts; along with the threats to consumer safety they pose a cyber risk that may materialise at different stages of the digital insurance selling process. Further, to provide insights into how modern digital insurance markets work, the article presents the results of a study conducted by the authors on a representative sample of 2,136 respondents from Poland. The study allows one to identify certain behaviour patterns of customers in their dealings with providers of insurance products and services as well as their approach to technological innovations introduced by the traders. Crucially, the study shows that insurance consumers have a positive attitude towards the use of modern technologies in insurance, however, their knowledge on this subject is still limited. Specifically, insurance consumers tend to be more afraid of cyber risks than any legal risks resulting from deploying new technologies in the insurance sector. In conclusion, the article maps out key regulatory challenges related to ensuring consumer protection on digital insurance markets.

现代科技的蓬勃发展改变了包括保险业在内的金融市场的游戏规则。在引入数字化商业模式为保险公司带来一定优势的同时,消费者也普遍期望能够随时随地管理自己的财务。本文首先展示了保险市场因数字化而产生的最新现象,即自动化、个性化、按需保险、机器学习&amp;人工智能、大数据、签订远程合同;以及它们在数字化保险销售过程的不同阶段可能带来的网络风险对消费者安全的威胁。此外,为了深入了解现代数字保险市场是如何运作的,文章介绍了作者对波兰 2,136 名有代表性的受访者进行研究的结果。通过这项研究,我们可以确定客户在与保险产品和服务提供商打交道时的某些行为模式,以及他们对交易商引入的技术创新的态度。最重要的是,研究表明,保险消费者对现代技术在保险中的应用持积极态度,但他们在这方面的知识仍然有限。具体而言,保险消费者往往更害怕网络风险,而不是在保险领域应用新技术所带来的任何法律风险。最后,文章列出了与确保数字保险市场消费者保护相关的主要监管挑战。
{"title":"Findings from the Polish InsurTech market as a roadmap for regulators","authors":"Piotr Tereszkiewicz ,&nbsp;Ewa Cichowicz","doi":"10.1016/j.clsr.2024.105948","DOIUrl":"https://doi.org/10.1016/j.clsr.2024.105948","url":null,"abstract":"<div><p>The dynamic development of modern technologies has changed the rules of the game in the financial market, including the insurance sector. While introducing digital business models may bring certain advantages for insurers, there is a widespread expectation of consumers to manage their financial affairs anytime and anywhere. This article sets out by demonstrating recent phenomena on the insurance market arising from its digitalisation, i.e., automation, personalisation, insurance on-demand, machine learning &amp; artificial intelligence, Big Data, concluding distance contracts; along with the threats to consumer safety they pose a cyber risk that may materialise at different stages of the digital insurance selling process. Further, to provide insights into how modern digital insurance markets work, the article presents the results of a study conducted by the authors on a representative sample of 2,136 respondents from Poland. The study allows one to identify certain behaviour patterns of customers in their dealings with providers of insurance products and services as well as their approach to technological innovations introduced by the traders. Crucially, the study shows that insurance consumers have a positive attitude towards the use of modern technologies in insurance, however, their knowledge on this subject is still limited. Specifically, insurance consumers tend to be more afraid of cyber risks than any legal risks resulting from deploying new technologies in the insurance sector. In conclusion, the article maps out key regulatory challenges related to ensuring consumer protection on digital insurance markets.</p></div>","PeriodicalId":51516,"journal":{"name":"Computer Law & Security Review","volume":null,"pages":null},"PeriodicalIF":2.9,"publicationDate":"2024-02-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"139941748","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":3,"RegionCategory":"社会学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 0
期刊
Computer Law & Security Review
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1