A BERT Based Approach to Measure Web Services Policies Compliance With GDPR

Data confidentiality is an issue of increasing importance. Several authorities and regulatory bodies are creating new laws that control how web services data is handled and shared. With the rapid increase of such regulations, web service providers face challenges in complying with these evolving reg...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: Lavanya Elluri, Sai Sree Laya Chukkapalli, Karuna Pande Joshi, Tim Finin, Anupam Joshi
Formato: article
Lenguaje:EN
Publicado: IEEE 2021
Materias:
Acceso en línea:https://doaj.org/article/2cf991d11c1c49d6bd7239f20a910a33
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
id oai:doaj.org-article:2cf991d11c1c49d6bd7239f20a910a33
record_format dspace
spelling oai:doaj.org-article:2cf991d11c1c49d6bd7239f20a910a332021-11-18T00:10:29ZA BERT Based Approach to Measure Web Services Policies Compliance With GDPR2169-353610.1109/ACCESS.2021.3123950https://doaj.org/article/2cf991d11c1c49d6bd7239f20a910a332021-01-01T00:00:00Zhttps://ieeexplore.ieee.org/document/9592800/https://doaj.org/toc/2169-3536Data confidentiality is an issue of increasing importance. Several authorities and regulatory bodies are creating new laws that control how web services data is handled and shared. With the rapid increase of such regulations, web service providers face challenges in complying with these evolving regulations across jurisdictions. Providers must update their service policies regularly to address the new regulations. The challenge is that regulatory documents are large text documents and require substantial human effort to comprehend and enforce. On the other hand, web service provider privacy policies are relatively short compared to the regulatory texts, so it is hard to determine if an organization’s policy document addresses the regulation’s essential elements. We have developed a framework to automatically compare web service policies with regulatory policies to measure how closely the web service provider complies with a regulation. In this paper, we present our framework’s details along with the results of analyzing a corpus of 3,000 privacy policies against GDPR. Our framework uses BiLSTM multi-class classification and a BERT extractive summarizer. We evaluate the framework’s efficacy by checking the context similarity score between summarized GDPR and web service provider privacy policies.Lavanya ElluriSai Sree Laya ChukkapalliKaruna Pande JoshiTim FininAnupam JoshiIEEEarticleWeb service privacy policiesdeep learningcontext extractionBERT summarizationknowledge discoveryElectrical engineering. Electronics. Nuclear engineeringTK1-9971ENIEEE Access, Vol 9, Pp 148004-148016 (2021)
institution DOAJ
collection DOAJ
language EN
topic Web service privacy policies
deep learning
context extraction
BERT summarization
knowledge discovery
Electrical engineering. Electronics. Nuclear engineering
TK1-9971
spellingShingle Web service privacy policies
deep learning
context extraction
BERT summarization
knowledge discovery
Electrical engineering. Electronics. Nuclear engineering
TK1-9971
Lavanya Elluri
Sai Sree Laya Chukkapalli
Karuna Pande Joshi
Tim Finin
Anupam Joshi
A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
description Data confidentiality is an issue of increasing importance. Several authorities and regulatory bodies are creating new laws that control how web services data is handled and shared. With the rapid increase of such regulations, web service providers face challenges in complying with these evolving regulations across jurisdictions. Providers must update their service policies regularly to address the new regulations. The challenge is that regulatory documents are large text documents and require substantial human effort to comprehend and enforce. On the other hand, web service provider privacy policies are relatively short compared to the regulatory texts, so it is hard to determine if an organization’s policy document addresses the regulation’s essential elements. We have developed a framework to automatically compare web service policies with regulatory policies to measure how closely the web service provider complies with a regulation. In this paper, we present our framework’s details along with the results of analyzing a corpus of 3,000 privacy policies against GDPR. Our framework uses BiLSTM multi-class classification and a BERT extractive summarizer. We evaluate the framework’s efficacy by checking the context similarity score between summarized GDPR and web service provider privacy policies.
format article
author Lavanya Elluri
Sai Sree Laya Chukkapalli
Karuna Pande Joshi
Tim Finin
Anupam Joshi
author_facet Lavanya Elluri
Sai Sree Laya Chukkapalli
Karuna Pande Joshi
Tim Finin
Anupam Joshi
author_sort Lavanya Elluri
title A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
title_short A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
title_full A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
title_fullStr A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
title_full_unstemmed A BERT Based Approach to Measure Web Services Policies Compliance With GDPR
title_sort bert based approach to measure web services policies compliance with gdpr
publisher IEEE
publishDate 2021
url https://doaj.org/article/2cf991d11c1c49d6bd7239f20a910a33
work_keys_str_mv AT lavanyaelluri abertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT saisreelayachukkapalli abertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT karunapandejoshi abertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT timfinin abertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT anupamjoshi abertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT lavanyaelluri bertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT saisreelayachukkapalli bertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT karunapandejoshi bertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT timfinin bertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
AT anupamjoshi bertbasedapproachtomeasurewebservicespoliciescompliancewithgdpr
_version_ 1718425151915163648