Perennial Semantic Data Terms of Use for Decentralized Web
Rui Zhao, Jun Zhao
摘要
In today's digital landscape, the Web has become increasingly centralized, raising concerns about user privacy violations. Decentralized Web architectures, such as Solid, offer a promising solution by empowering users with better control over their data in their personal 'Pods'. However, a significant challenge remains: users must navigate numerous applications to decide which application can be trusted with access to their data Pods. This often involves reading lengthy and complex Terms of Use agreements, a process that users often find daunting or simply ignore. This compromises user autonomy and impedes detection of data misuse. We propose a novel formal description of Data Terms of Use (DToU), along with a DToU reasoner. Users and applications specify their own parts of the DToU policy with local knowledge, covering permissions, requirements, prohibitions and obligations. Automated reasoning verifies compliance, and also derives policies for output data. This constitutes a "perennial" DToU language, where the policy authoring only occurs once, and we can conduct ongoing automated checks across users, applications and activity cycles. Our solution is built on Turtle, Notation 3 and RDF Surfaces, for the language and the reasoning engine. It ensures seamless integration with other semantic tools for enhanced interoperability. We have successfully integrated this language into the Solid framework, and conducted performance benchmark. We believe this work demonstrates a practicality of a perennial DToU language and the potential of a paradigm shift to how users interact with data and applications in a decentralized Web, offering both improved privacy and usability. CCS CONCEPTS • Computing methodologies → Knowledge representation and reasoning; • Security and privacy → Usability in security and privacy; • Information systems → Semantic web description languages.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper2
- Libertas: Privacy-Preserving Collaborative Computation for Decentralised Personal Data StoresRui Zhao, Naman Goel, Nitin Agrawal, Jun Zhao 等CSCW 2025 · 被引用 1 次
- Pistis: A Decentralized Knowledge Graph Platform Enabling Ownership-Preserving SPARQL QueryingEnyuan Zhou, Song Guo, Zicong Hong, Christian S. Jensen 等VLDB 2025 · 被引用 1 次
它引用的顶会 Paper6
- Automated Analysis of Privacy Requirements for Mobile AppsSebastian Zimmeck, Ziqi Wang, Lieyong Zou, Roger Iyengar 等NDSS 2017 · 被引用 255 次
- Privacy-preserving AI Services Through Data DecentralizationChristian Meurisch, Bekir Bayrak, Max MühlhäuserWWW 2020 · 被引用 34 次
- Thoth: Comprehensive Policy Compliance in Data Retrieval SystemsEslam Elnikety, Aastha Mehta, Anjo Vahldiek-Oberwagner, Deepak Garg 等USENIX Security 2016 · 被引用 30 次
- It's the Wild, Wild West: Lessons Learned From IRB Members' Risk Perceptions Toward Digital Research DataJina Huh-Yoo, Emilee RaderCSCW 2020 · 被引用 26 次
- 'You are you and the app. There's nobody else.': Building Worker-Designed Data Institutions within Platform HegemonyJake M. L. Stein, Vidminas Vizgirda, Max Van Kleek, Reuben Binns 等CHI 2023 · 被引用 23 次
相关 Paper
- Enabling Personal Consent in DatabasesGeorge Konstantinidis, Jet Holt, Adriane ChapmanVLDB 2022 · 被引用 17 次
- SmartIFSyn: Automated Information Flow Security Policy Synthesis for Smart ContractsYinghao Wu, Miaomiao Zhang, Fu Song, John W. Baugh Jr.FSE 2026
- SISSI: An Architecture for Semantic Interoperable Self-Sovereign Identity-based Access Control on the WebChristoph H.-J. Braun, Vasil Papanchev, Tobias KäferWWW 2023 · 被引用 16 次
- DECO: Liberating Web Data Using Decentralized Oracles for TLSFan Zhang, Deepak Maram, Harjasleen Malvai, Steven Goldfeder 等CCS 2020 · 被引用 110 次
- AgentODRL: A Large Language Model-based Multi-agent System for ODRL GenerationWanle Zhong, Keman Huang, Xiaoyong DuAAAI 2026
