8
views
0
recommends
+1 Recommend
0 collections
    0
    shares
      • Record: found
      • Abstract: found
      • Article: found
      Is Open Access

      GDPR-Compliant Personal Data Management: A Blockchain-based Solution

      Preprint
      , , ,

      Read this article at

      Bookmark
          There is no author summary for this article yet. Authors can add summaries to their articles on ScienceOpen to make them more accessible to a non-specialist audience.

          Abstract

          The General Data Protection Regulation (GDPR) gives control of personal data back to the owners by appointing higher requirements and obligations on service providers (SPs) who manage and process personal data. As the verification of GDPR-compliance, handled by a supervisory authority, is irregularly conducted; it is challenging to be certify that an SP has been continuously adhering to the GDPR. Furthermore, it is beyond the data owner's capability to perceive whether an SP complies with the GDPR and effectively protects her personal data. This motivates us to envision a design concept for developing a GDPR-compliant personal data management platform leveraging the emerging blockchain (BC) and smart contract technologies. The goals of the platform are to provide decentralised mechanisms to both SPs and data owners for processing personal data; meanwhile empower data provenance and transparency by leveraging advanced features of the BC. The platform enables data owners to impose data usage consent, ensures only designated parties can process personal data, and logs all data activities in an immutable distributed ledger using smart contract and cryptography techniques. By honestly participating in the platform, an SP can be endorsed by the BC network that it is fully GDPR-compliant; otherwise any violation is immutably recorded and is easily figured out by associated parties. We then demonstrate the feasibility and efficiency of the proposed design concept by developing a profile management platform implemented on top of a permissioned BC framework, following by valuable analysis and discussion.

          Related collections

          Most cited references15

          • Record: found
          • Abstract: not found
          • Article: not found

          Bitcoin and Beyond: A Technical Survey on Decentralized Digital Currencies

            Bookmark
            • Record: found
            • Abstract: not found
            • Article: not found

            Blockchain Meets IoT: An Architecture for Scalable Access Management in IoT

            Oscar Novo (2018)
              Bookmark
              • Record: found
              • Abstract: not found
              • Article: not found

              Untangling Blockchain: A Data Processing View of Blockchain Systems

                Bookmark

                Author and article information

                Journal
                05 April 2019
                Article
                1904.03038
                c8c18237-19ed-441e-973e-b07b3c36be90

                http://arxiv.org/licenses/nonexclusive-distrib/1.0/

                History
                Custom metadata
                13 pages; 7 figures; currently under review of IEEE Transactions on Information Forensics and Security
                cs.CR

                Security & Cryptology
                Security & Cryptology

                Comments

                Comment on this article