skip to main content
10.1145/985692.985752acmconferencesArticle/Chapter ViewAbstractPublication PageschiConference Proceedingsconference-collections
Article

Privacy policies as decision-making tools: an evaluation of online privacy notices

Published:25 April 2004Publication History

ABSTRACT

Studies have repeatedly shown that users are increasingly concerned about their privacy when they go online. In response to both public interest and regulatory pressures, privacy policies have become almost ubiquitous. An estimated 77% of websites now post a privacy policy. These policies differ greatly from site to site, and often address issues that are different from those that users care about. They are in most cases the users' only source of information.This paper evaluates the usability of online privacy policies, as well as the practice of posting them. We analyze 64 current privacy policies, their accessibility, writing, content and evolution over time. We examine how well these policies meet user needs and how they can be improved. We determine that significant changes need to be made to current practice to meet regulatory and usability requirements.

References

  1. Adkinson, W. F., Eisenach, J. A., and Lenard T. M. "Privacy Online: A Report on the Information Practices and Policies of Commercial Web Sites" Progress and Freedom Foundation, Washington DC. March 2002]]Google ScholarGoogle Scholar
  2. Anton, A. I., Earp, J. B. and Reese, A. "Analyzing Web Site Privacy Requirements Using a Privacy Goal Taxonomy", IEEE Requirements Engineering Conference (RE'02), Essen, Germany, September 2002.]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  3. BBBOnLine. "Third-Party Assurance Boosts Online Purchasing: BBBOnLine Privacy, Reliability Seals Increase Consumer Confidence; Privacy Remains Public's Chief Concern (survey summary)". Arlington VA, October 17, 2001.]]Google ScholarGoogle Scholar
  4. Bellotti, V. and Sellen. A. "Designing for Privacy in Ubiquitous Computing Environments". European Conference on Computer-Supported Cooperative Work, ECSCW '93, Milan, Italy., ACM Press. 1993]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. Culnan, M. J. and Milne, G. R. "The Culnan-Milne Survey on Consumers & Online Privacy Notices: Summary of Responses". Washington DC: FTC, December 2001.]]Google ScholarGoogle Scholar
  6. Dourish, P. and Bellotti., V. "Awareness and Coordination in Shared Work Spaces." Computer-Supported Cooperative Work, CSCW'92, Toronto, Canada, ACM Press. 1992]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  7. Flesch, M. "The Art of Readable Writing", Macmillan Publishing, 1949]]Google ScholarGoogle Scholar
  8. Hochhauser, M. "Lost in the Fine Print: Readability of Financial Privacy Notices." Privacy Rights Clearinghouse, July 2001.]]Google ScholarGoogle Scholar
  9. Jupiter Research, "Security and Privacy Data." FTC Security Workshop, May 20, 2002]]Google ScholarGoogle Scholar
  10. Langheinrich, M. "Privacy by Design: Principles of Privacy-Aware Ubiquitous Systems." Proceedings of Ubicomp 2001, Springer. 2001]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  11. National Telecommunications and Information Administration. "A Nation Online: How Americans Are Expanding Their Use of the Internet" Washington, D.C. February 2002]]Google ScholarGoogle Scholar
  12. Palen, L. and Dourish, P. "Unpacking 'Privacy' for a networked world" Conference on Human Factors in Computing Systems, CHI'03, Ft. Lauderdale, FL. 2003]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  13. U.S. Children's Online Privacy Protection Act of 1998, Public Law No. 105--277, October 21, 1998.]]Google ScholarGoogle Scholar
  14. U.S. Gramm-Leach-Bliley Financial Modernization Act of 1999, Public Law No. 106--102, November 1, 1999.]]Google ScholarGoogle Scholar
  15. U.S. Health Insurance Portability and Accountability Act of 1996, Public Law No. 104--191, August 21, 1996.]]Google ScholarGoogle Scholar
  16. U.S. Regulatory Fair Warning Act of 1999. H.R. 881 One Hundred Sixth Congress, June 29, 1999 478.]]Google ScholarGoogle Scholar

Index Terms

  1. Privacy policies as decision-making tools: an evaluation of online privacy notices

        Recommendations

        Comments

        Login options

        Check if you have access through your login credentials or your institution to get full access on this article.

        Sign in
        • Published in

          cover image ACM Conferences
          CHI '04: Proceedings of the SIGCHI Conference on Human Factors in Computing Systems
          April 2004
          742 pages
          ISBN:1581137028
          DOI:10.1145/985692

          Copyright © 2004 ACM

          Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

          Publisher

          Association for Computing Machinery

          New York, NY, United States

          Publication History

          • Published: 25 April 2004

          Permissions

          Request permissions about this article.

          Request Permissions

          Check for updates

          Qualifiers

          • Article

          Acceptance Rates

          Overall Acceptance Rate6,199of26,314submissions,24%

        PDF Format

        View or Download as a PDF file.

        PDF

        eReader

        View online with eReader.

        eReader