Research articles on PRIVACY & SECURITY

‘Cookie-less’ identification for/against privacy?

Ido Sivan-Sevilla, University of Maryland
Patrick Parham, University of Maryland
Lee McGuigan, University of North Carolina at Chapel Hill
PUBLISHED ON: 6 Aug 2025 DOI: 10.14763/2025.3.2025

The online advertising industry is shifting content monetisation mechanisms to rely on first-party user identification architectures. The paper evaluates these architectures based on a novel typology to assess their privacy implications.

The impact of zero-knowledge proofs on data minimisation compliance of digital identity wallets

Emanuela Podda, Università degli Studi di Milano
Pol Hölzmer, University of Luxembourg
Alexandre Amard, University of Luxembourg
Johannes Sedlmeir, University of Münster
Gilbert Fridgen, University of Luxembourg
PUBLISHED ON: 30 Jul 2025 DOI: 10.14763/2025.3.2019

Zero-knowledge proofs allow the implementation of the data minimisation principle imposed by the GDPR in digital identity wallets and the related personal data transactions, therefore representing a reasonable option to be enforced by lawmakers.

Transparency and content moderation are becoming increasingly interconnected within legislation. It is time for tech companies to recognise this in the context of borderline terrorist and violent extremist content moderation.

This paper uncovers the risks inherent in facial recognition within law enforcement, exploring multidimensional aspects affecting data protection vs public security within the regulatory frameworks of the General Data Protection Regulation and the Artificial Intelligence Act.

The death of privacy policies: How app stores shape GDPR compliance of apps

Julia Krämer, Erasmus University Rotterdam
PUBLISHED ON: 2 Apr 2024 DOI: 10.14763/2024.2.1757

This paper delivers a legal analysis that explores whether the privacy labels of the Apple App Store and Google Play Store meet the requirements of the General Data Protection Regulation (GDPR), along with insights into the adoption of app developers to map the extent of the problem.

This paper explores the economics of software vulnerabilities, evaluates three policy alternatives for vulnerability discovery and disclosure and argues that bug bounty programs, which leverage two-sided digital market platforms to connect organisations and ethical hackers, yield the highest effectiveness, legality and trustworthiness impacts.

Over the past fifty years, surveillance practices once considered untenable due to their incompatibility with democratic rights and values have been rebranded as tolerable, neutral, or even desirable.

The grey-zones of public-private surveillance: Policy tendencies of facial recognition for public security in Brazilian cities

André Ramiro, Alexander von Humboldt Institute for Internet and Society
Luã Cruz, State University of Campinas (Unicamp)
PUBLISHED ON: 31 Mar 2023 DOI: 10.14763/2023.1.1705

The article explores the regulatory “grey zones” in the deployment of facial recognition (FRT) in policing in Brazil, and the policy and civic responses to them.

An analysis of the EU data protection legislation and the AI Act proposal to assess, in light of the principle of proportionality, whether or not law enforcement authorities should be prohibited from using these technologies in "real time".