Mobile privacy and security can be a collaborative process where individuals seek advice and help from their trusted communities. To support such collective privacy and security management, we developed a mobile app for Community Oversight of Privacy and Security ("CO-oPS") that allows community members to review one another's apps installed and permissions granted to provide feedback. We conducted a four-week-long field study with 22 communities (101 participants) of friends, families, or co-workers who installed the CO-oPS app on their phones. Measures of transparency, trust, and awareness of one another's mobile privacy and security behaviors, along with individual and community participation in mobile privacy and security co-management, increased from pre- to post-study. Interview findings confirmed that the app features supported collective considerations of apps and permissions. However, participants expressed a range of concerns regarding having community members with different levels of technical expertise and knowledge regarding mobile privacy and security that can impact motivation to participate and perform oversight. Our study demonstrates the potential and challenges of community oversight mechanisms to support communities to co-manage mobile privacy and security.
翻译:移动隐私与安全可以是一个协作过程,个体从信任的社区中寻求建议和帮助。为支持这种集体隐私与安全管理,我们开发了一款名为“社区隐私与安全监督(CO-oPS)”的移动应用,允许社区成员相互审查已安装的应用和授予的权限以提供反馈。我们与22个社区(101名参与者)的亲友或同事进行了为期四周的实地研究,这些参与者在手机上安装了CO-oPS应用。研究前后对比显示,透明度、信任度、对他人移动隐私与安全行为的认知,以及个体和社区在移动隐私与安全协同管理中的参与度均有所提升。访谈结果证实,该应用功能支持对应用和权限进行集体考量。然而,参与者对社区成员在移动隐私与安全方面不同技术水平与知识储备的差异表示担忧,这可能影响参与动机和监督效果。本研究展示了社区监督机制支持社区共同管理移动隐私与安全的潜力与挑战。