Show simple item record

[conference paper]

dc.contributor.authorRehak, Rainerde
dc.contributor.authorKühne, Christian R.de
dc.contributor.authorBock, Kirstende
dc.contributor.editorGryszczyńska, Agnieszkade
dc.contributor.editorPolański, Przemysławde
dc.contributor.editorGruschka, Nilsde
dc.contributor.editorRannenberg, Kaide
dc.contributor.editorAdamczyk, Monikade
dc.date.accessioned2024-08-14T13:05:22Z
dc.date.available2024-08-14T13:05:22Z
dc.date.issued2022de
dc.identifier.isbn978-3-031-07315-1de
dc.identifier.urihttps://www.ssoar.info/ssoar/handle/document/96004
dc.description.abstractOn June 15, 2020, the official data protection impact assessment (DPIA) for the German Corona-Warn-App (CWA) was made publicly available. Shortly thereafter, the app was made available for download in the app stores. However, the first version of the DPIA had significant weaknesses, as this paper argues. However since then, the quality of the official DPIA increased immensely due to interventions and interactions such as an alternative DPIA produced by external experts and extensive public discussions. To illustrate the development and improvement, the initial weaknesses of the official DPIA are documented and analyzed here. For this paper to meaningfully do this, first the purpose of a DPIA is briefly summarized. According to Article 35 of the GDPR, it consists primarily of identifying the risks to the fundamental rights and freedoms of natural persons. This paper documents at least specific methodological, technical and legal shortcomings of the initial DPIA of the CWA: 1) It only focused on the app itself, neither on the whole processing procedure nor on the infrastructure used. 2) It only briefly touched on the main data protection specific attacker, the processing organization itself. And 3) The discussion of effective safeguards to all risks including such as the ones posed by Google and Apple has only insufficiently been worked out. Finally, this paper outlines the constructive criticism and suggestions uttered, also by the authors of this paper, regarding the initial release. As of now, some of those constructive contributions have been worked into the current DPIA, such as 1) and 2), but some central ones still haven't, such as 3). This paper aims to provide an opportunity to improve the practical knowledge and academic discourse regarding high-quality DPIAs.de
dc.languageende
dc.publisherSpringer International Publishingde
dc.subject.ddcPublizistische Medien, Journalismus,Verlagswesende
dc.subject.ddcNews media, journalism, publishingen
dc.subject.ddcRechtde
dc.subject.ddcLawen
dc.subject.otherCWA; Corona apps; DPIA; GDPR; data protection impact assessment; decentralization; digital contact tracingde
dc.titleAnalysis and Constructive Criticism of the Official Data Protection Impact Assessment of the German Corona-Warn-Appde
dc.description.reviewbegutachtetde
dc.description.reviewrevieweden
dc.source.collectionPrivacy Technologies and Policy - 10th Annual Privacy Forum, APF 2022, Warsaw, Poland, June 23-24, 2022; Proceedingsde
dc.source.volume13279de
dc.publisher.countryCHEde
dc.publisher.cityChamde
dc.source.seriesLecture Notes in Computer Science (LNCS)
dc.subject.classozinteraktive, elektronische Mediende
dc.subject.classozInteractive, electronic Mediaen
dc.subject.classozRechtde
dc.subject.classozLawen
dc.subject.thesozDigitale Mediende
dc.subject.thesozdigital mediaen
dc.subject.thesozDatenschutzde
dc.subject.thesozdata protectionen
dc.subject.thesozPrivatsphärede
dc.subject.thesozprivacyen
dc.rights.licenceCreative Commons - Namensnennung 4.0de
dc.rights.licenceCreative Commons - Attribution 4.0en
ssoar.contributor.institutionWZBde
internal.statusformal und inhaltlich fertig erschlossende
internal.identifier.thesoz10083753
internal.identifier.thesoz10040560
internal.identifier.thesoz10055257
dc.type.stockincollectionde
dc.type.documentKonferenzbeitragde
dc.type.documentconference paperen
dc.source.pageinfo119-134de
internal.identifier.classoz1080404
internal.identifier.classoz40101
internal.identifier.document16
internal.identifier.ddc070
internal.identifier.ddc340
dc.identifier.doihttps://doi.org/10.1007/978-3-031-07315-1_8de
dc.description.pubstatusPreprintde
dc.description.pubstatusPreprinten
internal.identifier.licence16
internal.identifier.pubstatus3
internal.identifier.review2
internal.identifier.series1470
internal.dda.referencehttps://www.econstor.eu/oai/request@@oai:econstor.eu:10419/261838
dc.identifier.handlehttp://hdl.handle.net/10419/261838de
ssoar.urn.registrationfalsede


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record