After Brazil’s General Data Protection Law: Authorization in Decentralized Web Applications

dc.contributor.authorSilva, Jefferson de Oliveira
dc.contributor.authorCalegari, Newton
dc.contributor.authorGomes, Eduardo S.
dc.date.accessioned2024-05-16T14:53:41Z
dc.date.available2024-05-16T14:53:41Z
dc.date.issued22019-05-13
dc.description.abstractDecentralized web applications do not offer fine-grained access controls to users’ data, which potentially creates openings for data breaches. For software companies that need to comply with Brazil’s General Data Protection Law (LGPD), data breaches not only might harm application users but also could expose the companies to hefty fines. In this context, engineering fine-grained authorization controls (that comply with the LGPD) to decentralized web application requires creating audit trails, possibly in the source code. Although the literature offers some solutions, they are scattered. We present Esfinge Guardian, an authorization framework that completely separates authorization from other concerns, which increases compliance with the LGPD. We conclude the work with a brief discussion.
dc.format.monthMay
dc.format.pages819-822
dc.format.year2019
dc.identifier.doihttps://doi.org/10.1145/3308560.3316461
dc.identifier.urihttps://bibliotecadigital.acervo.nic.br/handle/123456789/2217
dc.language.isoInglês
dc.publisher2Companion Proceedings of the 2019 World Wide Web Conference (WWW ’19 Companion)
dc.rightsCC BY
dc.subject.keywordsEngenharia de software
dc.subject.keywordsLei Geral de Proteção de Dados (LGPD)
dc.titleAfter Brazil’s General Data Protection Law: Authorization in Decentralized Web Applications
dc.typeArtigos Científicos
Arquivos associados a este item:
Pacote Original
Agora exibindo 1 - 1 de 1
Carregando...
Imagem de Miniatura
Nome:
SCG-LAWEB-2019
Tamanho:
525.52 KB
Formato:
Adobe Portable Document Format