Deceptive patterns are design practices embedded in digital platforms to manipulate users, representing a widespread and long-standing issue in the web and mobile software development industry. Legislative actions highlight the urgency of globally regulating deceptive patterns. However, despite advancements in detection tools, a significant gap exists in assessing deceptive pattern risks. In this study, we introduce a comprehensive approach involving the interactions between the Adversary, Watchdog (e.g., detection tools), and Challengers (e.g., users) to formalize and decode deceptive pattern threats. Based on this, we propose a quantitative risk assessment system. Representative cases are analyzed to showcase the practicability of the proposed risk scoring system, emphasizing the importance of involving human factors in deceptive pattern risk assessment.
翻译:欺骗性模式是嵌入数字平台中用于操纵用户的设计实践,代表了网络和移动软件开发行业中一个普遍且长期存在的问题。立法行动突显了全球范围内监管欺骗性模式的紧迫性。然而,尽管检测工具取得了进展,但在评估欺骗性模式风险方面仍存在显著差距。在本研究中,我们引入了一种综合方法,涉及对抗者、监督者(例如检测工具)和挑战者(例如用户)之间的交互,以形式化并解码欺骗性模式威胁。基于此,我们提出了一套定量风险评估系统。通过分析代表性案例来展示所提出的风险评分系统的实用性,强调了在欺骗性模式风险评估中纳入人为因素的重要性。