System, method, and business methods for enforcing privacy preferences on personal-data exchanges across a network

An exemplary embodiment of the present invention includes a method to enforce privacy preferences on exchanges of personal data of a data-subject. The method comprises the steps of: specifying data-subject authorization rule sets having subject constraints, receiving a request message from a request...

Full description

Saved in:
Bibliographic Details
Main Authors CHESS CATHERINE A, SINGH MONINDER, HOCH ROBERT L, LIU XUAN, KESDOGAN DOGAN, BOHRER KATHRYN A, SCHONBERG EDITH G, KARAT JOHN
Format Patent
LanguageEnglish
Published 13.01.2009
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:An exemplary embodiment of the present invention includes a method to enforce privacy preferences on exchanges of personal data of a data-subject. The method comprises the steps of: specifying data-subject authorization rule sets having subject constraints, receiving a request message from a requester and a requester privacy statement, comparing the requester privacy statement to the subject constraints, and releasing the data-subject data in a response message to the requester only if the subject constraints are satisfied. The requester privacy statement includes purpose, retention, recipient, and access information, wherein the purpose information specifies the purpose for which the requested data is acquired, the retention information specifies a retention policy for the requested data, the recipient information specifies the recipients of the requested data, and the access information specifies whether the requested data should be accessing to the data-subject after the data has been released.
Bibliography:Application Number: US20010046034