w3cping / privacy-request

tracking privacy reviews of W3C specifications
10 stars 2 forks source link

RDF Dataset Canonicalization 2023-06-09 #118

Closed philarcher closed 10 months ago

philarcher commented 1 year ago

We have conducted a self-review of our spec RDF Dataset Canonicalization and the results can be found at https://github.com/w3c/rdf-canon/issues/70.

Please check our findings.

Other comments:

This is a data processing spec, not an interaction spec, and therefore whether privacy is at risk is a property of the dataset being canonicalized rather than of the canonicalization algorithm itself. However, the need to support selective disclosure in Verifiable Credentials leads to the warning highlighted in our text.

npdoty commented 10 months ago

I believe kdenhartog did a review of the data integrity spec, but that no one conducted a separate privacy review of just this canonicalization spec in time for the RDF-CANON CR transition. We are closing for now, although if there is interest or need in reviewing the privacy considerations here, please re-raise.