Skip to main content

Showing 1–6 of 6 results for author: Pandit, H J

Searching in archive cs. Search in all archives.
.
  1. arXiv:2406.18211  [pdf, other

    cs.CY cs.AI

    AI Cards: Towards an Applied Framework for Machine-Readable AI and Risk Documentation Inspired by the EU AI Act

    Authors: Delaram Golpayegani, Isabelle Hupont, Cecilia Panigutti, Harshvardhan J. Pandit, Sven Schade, Declan O'Sullivan, Dave Lewis

    Abstract: With the upcoming enforcement of the EU AI Act, documentation of high-risk AI systems and their risk management information will become a legal requirement playing a pivotal role in demonstration of compliance. Despite its importance, there is a lack of standards and guidelines to assist with drawing up AI and risk documentation aligned with the AI Act. This paper aims to address this gap by provi… ▽ More

    Submitted 26 June, 2024; originally announced June 2024.

  2. arXiv:2405.04528  [pdf, other

    cs.CR

    Implementing ISO/IEC TS 27560:2023 Consent Records and Receipts for GDPR and DGA

    Authors: Harshvardhan J. Pandit, Jan Lindquist, Georg P. Krog

    Abstract: The ISO/IEC TS 27560:2023 Privacy technologies - Consent record information structure provides guidance for the creation and maintenance of records regarding consent as machine-readable information. It also provides guidance on the use of this information to exchange such records between entities in the form of 'receipts'. In this article, we compare requirements regarding consent between ISO/IEC… ▽ More

    Submitted 1 May, 2024; originally announced May 2024.

  3. arXiv:2404.13426  [pdf, other

    cs.CY

    Data Privacy Vocabulary (DPV) -- Version 2

    Authors: Harshvardhan J. Pandit, Beatriz Esteves, Georg P. Krog, Paul Ryan, Delaram Golpayegani, Julian Flake

    Abstract: The Data Privacy Vocabulary (DPV), developed by the W3C Data Privacy Vocabularies and Controls Community Group (DPVCG), enables the creation of machine-readable, interoperable, and standards-based representations for describing the processing of personal data. The group has also published extensions to the DPV to describe specific applications to support legislative requirements such as the EU's G… ▽ More

    Submitted 20 April, 2024; originally announced April 2024.

  4. arXiv:2208.05786  [pdf, ps, other

    cs.CY

    Proposals for Resolving Consenting Issues with Signals and User-side Dialogues

    Authors: Harshvardhan J. Pandit

    Abstract: Consent dialogues are a source of annoyance, malicious intent, dark patterns, illegal practices and a plethora of other issues. This work presents known problems based on GDPR requirements grouped into two categories: (i) UI/UX for consenting; and (ii) power imbalance in expressing consent. To resolve this, it presents two proposals: First, the use of automation through privacy signals to better g… ▽ More

    Submitted 9 August, 2022; originally announced August 2022.

  5. A Common Semantic Model of the GDPR Register of Processing Activities

    Authors: Paul Ryan, Harshvardhan J. Pandit, Rob Brennan

    Abstract: The creation and maintenance of a Register of Processing Activities (ROPA) is an essential process for the demonstration of GDPR compliance. We analyse ROPA templates from six EU Data Protection Regulators and show that template scope and granularity vary widely between jurisdictions. We then propose a flexible, consolidated data model for consistent processing of ROPAs (CSM-ROPA). We analyse the… ▽ More

    Submitted 1 February, 2021; originally announced February 2021.

  6. arXiv:2008.00877  [pdf

    cs.CY cs.CR

    Towards a Semantic Model of the GDPR Register of Processing Activities

    Authors: Paul Ryan, Harshvardhan J. Pandit, Rob Brennan

    Abstract: A core requirement for GDPR compliance is the maintenance of a register of processing activities (ROPA). Our analysis of six ROPA templates from EU data protection regulators shows the scope and granularity of a ROPA is subject to widely varying guidance in different jurisdictions. We present a consolidated data model based on common concepts and relationships across analysed templates. We then an… ▽ More

    Submitted 3 August, 2020; originally announced August 2020.