2022/05/10 by Jose M. Del Alamo, José M. Del Álamo, Danny S. Guamán +3 · 1 citation
Computer Science · Social Sciences · #Cybercrime and Law Enforcement Studies #Ethics and Social Impacts of AI #Privacy, Security, and Data Protection
paper · pdf · doi:10.1007/s00607-022-01076-3
crossref issued 2022/05/10 · crossref published 2022/05/10 · crossref published-online 2022/05/10 · openalex publication_date 2022/05/10 · crossref created 2022/05/10 · crossref deposited 2022/08/22 · crossref published-print 2022/09/01 · openalex created_date 2025/10/10 · crossref indexed 2026/08/01 · openalex updated_date 2026/08/02
Abstract A privacy policy describes the operations an organization carries out on its users’ personal data and how it applies data protection principles. The automated analysis of privacy policies is a multidisciplinary research topic producing a growing but scattered body of knowledge. We address this gap by conducting a systematic mapping study which provides an overview of the field, identifies research opportunities, and suggests future research lines. Our study analyzed 39 papers from the 1097 publications found on the topic, to find what information can be automatically extracted from policies presented as textual documents, what this information is applied to, and what analysis techniques are being used. We observe that the techniques found can identify individual pieces of information from the policies with good results. However, further advances are needed to put them in context and provide valuable insight to end-users, organizations dealing with data protection laws and data protection authorities.