{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,29]],"date-time":"2026-05-29T08:54:53Z","timestamp":1780044893720,"version":"3.53.1"},"publisher-location":"Cham","reference-count":36,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030023010","type":"print"},{"value":"9783030023027","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-030-02302-7_15","type":"book-chapter","created":{"date-parts":[[2018,10,11]],"date-time":"2018-10-11T01:54:50Z","timestamp":1539222890000},"page":"238-254","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["Modeling and Reasoning About Privacy-Consent Requirements"],"prefix":"10.1007","author":[{"given":"Marco","family":"Robol","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Elda","family":"Paja","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mattia","family":"Salnitri","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Paolo","family":"Giorgini","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,10,12]]},"reference":[{"key":"15_CR1","unstructured":"DLVSYSTEM S.r.l. | DLV. http:\/\/www.dlvsystem.com\/dlv\/"},{"key":"15_CR2","unstructured":"The Health Insurance Portability and Accountability Act (HIPAA). U.S. Department of Labor, Employee Benefits Security Administration, Washington, D.C. (2004)"},{"issue":"3","key":"15_CR3","doi-asserted-by":"publisher","first-page":"241","DOI":"10.1007\/s00766-008-0067-3","volume":"13","author":"C Kalloniatis","year":"2008","unstructured":"Kalloniatis, C., Kavakli, E., Gritzalis, S.: Addressing privacy requirements in system design: the PriS method. Requir. Eng. 13(3), 241\u2013255 (2008)","journal-title":"Requir. Eng."},{"key":"15_CR4","unstructured":"Ashley, P., Hada, S., Karjoth, G., Powers, C., Schunter, M.: Enterprise privacy authorization language (epal). IBM Res. (2003)"},{"key":"15_CR5","doi-asserted-by":"crossref","unstructured":"Ashley, P., Hada, S., Karjoth, G., Schunter, M.: E-p3p privacy policies and privacy authorization. In: Workshop on Privacy in the Electronic Society, pp. 103\u2013109. ACM (2002)","DOI":"10.1145\/644527.644538"},{"issue":"3","key":"15_CR6","doi-asserted-by":"publisher","first-page":"281","DOI":"10.1007\/s00766-013-0190-7","volume":"19","author":"Travis D. Breaux","year":"2013","unstructured":"Breaux, T.D., Hibshi, H., Rao, A.: Eddy, a formal language for specifying and analyzing data flow specifications for conflicting privacy requirements. J. Requir. Eng. 19(3), 281\u2013307 (2014)","journal-title":"Requirements Engineering"},{"issue":"3","key":"15_CR7","doi-asserted-by":"publisher","first-page":"203","DOI":"10.1023\/B:AGNT.0000018806.20944.ef","volume":"8","author":"Paolo Bresciani","year":"2004","unstructured":"Bresciani, P., Giorgini, P., Giunchiglia, F., Mylopoulos, J., Perini, A.: Tropos: an Agent-Oriented Software Development Methodology. JAAMAS 8(3), 203\u2013236 (2004)","journal-title":"Autonomous Agents and Multi-Agent Systems"},{"key":"15_CR8","unstructured":"Cadwalladr, C., Graham-Harrison, E.: Revealed: 50 million Facebook profiles harvested for Cambridge Analytica in major data breach. The Guardian 17 (2018)"},{"key":"15_CR9","unstructured":"Cranor, L., Langheinrich, M., Marchiori, M., Presler-Marshall, M., Reagle, J.: The platform for privacy preferences 1.0 (p3p1. 0) specification. W3C recommendation 16 (2002)"},{"key":"15_CR10","doi-asserted-by":"publisher","unstructured":"Cranor, L.F.: Platform for privacy preferences (P3P). In: Encyclopedia of Cryptography and Security, pp. 940\u2013941. Springer, Boston (2011). https:\/\/doi.org\/10.1007\/978-1-4419-5906-5","DOI":"10.1007\/978-1-4419-5906-5"},{"key":"15_CR11","unstructured":"Dalpiaz, F., Paja, E., Giorgini, P.: Security requirements engineering: designing secure socio-technical systems. MIT Press, Cambridge (2016)"},{"key":"15_CR12","unstructured":"Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95\/46\/EC (General Data Protection Regulation). Official Journal of the European Union L119\/59 (May 2016)"},{"key":"15_CR13","doi-asserted-by":"crossref","unstructured":"Garfinkel, S.L.: De-Identification of Personal Information. Technical report (2015)","DOI":"10.6028\/NIST.IR.8053"},{"key":"15_CR14","doi-asserted-by":"crossref","unstructured":"Giorgini, P., Massacci, F., Mylopoulos, J., Zannone, N.: Modeling security requirements through ownership, permission and delegation. In: Proceedings of 13th IEEE International Conference on Requirements Engineering, pp. 167\u2013176. IEEE (2005)","DOI":"10.1109\/RE.2005.43"},{"issue":"2","key":"15_CR15","doi-asserted-by":"publisher","first-page":"159","DOI":"10.1016\/j.engappai.2004.11.017","volume":"18","author":"P Giorgini","year":"2005","unstructured":"Giorgini, P., Mylopoulos, J., Sebastiani, R.: Goal-oriented requirements analysis and reasoning in the tropos methodology. Eng. Appl. Artif. Intell. 18(2), 159\u2013171 (2005)","journal-title":"Eng. Appl. Artif. Intell."},{"issue":"2","key":"15_CR16","doi-asserted-by":"publisher","first-page":"337","DOI":"10.1016\/j.infsof.2008.04.004","volume":"51","author":"Paolo Guarda","year":"2009","unstructured":"Guarda, P., Zannone, N.: Towards the development of privacy-aware systems. Inf. Softw. Technol. 51(2), 337\u2013350 (2009)","journal-title":"Information and Software Technology"},{"key":"15_CR17","unstructured":"G\u00fcrses, S., Troncoso, C., Diaz, C.: Engineering privacy by design (2011)"},{"key":"15_CR18","unstructured":"He, Q., Ant\u00f3n, A.I., et al.: A framework for modeling privacy requirements in role engineering. Proc. REFSQ. 3, 137\u2013146 (2003)"},{"key":"15_CR19","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"446","DOI":"10.1007\/978-3-642-55415-5_38","volume-title":"ICT Systems Security and Privacy Protection","author":"J-H Hoepman","year":"2014","unstructured":"Hoepman, J.-H.: Privacy design strategies. In: Cuppens-Boulahia, N., Cuppens, F., Jajodia, S., Abou El Kalam, A., Sans, T. (eds.) SEC 2014. IAICT, vol. 428, pp. 446\u2013459. Springer, Heidelberg (2014). https:\/\/doi.org\/10.1007\/978-3-642-55415-5_38"},{"key":"15_CR20","doi-asserted-by":"crossref","first-page":"275","DOI":"10.1007\/978-3-319-12206-9_22","volume-title":"Conceptual Modeling","author":"Silvia Ingolfo","year":"2014","unstructured":"Ingolfo, S., Siena, A., Mylopoulos, J.: Goals and compliance in Nomos 3. In: International Conference on Conceptual Modeling, pp. 275\u2013288 (2014)"},{"key":"15_CR21","doi-asserted-by":"crossref","unstructured":"Li, N., Li, T., Venkatasubramanian, S.: t-closeness: privacy beyond k-anonymity and l-diversity. In: IEEE 23rd International Conference on Data Engineering, pp. 106\u2013115 (2007)","DOI":"10.1109\/ICDE.2007.367856"},{"key":"15_CR22","doi-asserted-by":"crossref","unstructured":"Liu, L., Yu, E., Mylopoulos, J.: Security and privacy requirements analysis within a social setting. In: 11th International Requirements Engineering Conference, pp. 151\u2013161. IEEE (2003)","DOI":"10.1109\/ICRE.2003.1232746"},{"issue":"1","key":"15_CR23","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1145\/1217299.1217302","volume":"1","author":"Ashwin Machanavajjhala","year":"2007","unstructured":"Machanavajjhala, A., Kifer, D., Gehrke, J.: l-Diversity: privacy beyond k-anonymity. ACM Trans. Knowl. Discov. Data 1(52) (2007)","journal-title":"ACM Transactions on Knowledge Discovery from Data"},{"key":"15_CR24","unstructured":"Moses, T., et al.: Extensible access control markup language (xacml) version 2.0. Oasis Standard 200502 (2005)"},{"issue":"02","key":"15_CR25","doi-asserted-by":"publisher","first-page":"285","DOI":"10.1142\/S0218194007003240","volume":"17","author":"HARALAMBOS MOURATIDIS","year":"2007","unstructured":"Mouratidis, H., Giorgini, P.: Secure Tropos: A security-oriented extension of the tropos methodology. Int. J. Soft. Eng. Knowl. Eng. 17(2), 285\u2013309 (2007)","journal-title":"International Journal of Software Engineering and Knowledge Engineering"},{"issue":"1","key":"15_CR26","doi-asserted-by":"publisher","first-page":"128","DOI":"10.1145\/984334.984339","volume":"7","author":"Jaehong Park","year":"2004","unstructured":"Park, J., Sandhu, R.: The ucon abc usage control model. ACM Trans. Inf. Syst. Secur. (TISSEC) 7(1), 128\u2013174 (2004)","journal-title":"ACM Transactions on Information and System Security"},{"key":"15_CR27","doi-asserted-by":"crossref","unstructured":"Robol, M., Salnitri, M., Giorgini, P.: Toward GDPR-Compliant Socio-Technical Systems: modeling language and reasoning framework. Leuven (2017)","DOI":"10.1007\/978-3-319-70241-4_16"},{"key":"15_CR28","doi-asserted-by":"crossref","unstructured":"Siena, A., Jureta, I., Ingolfo, S., Susi, A., Perini, A., Mylopoulos, J.: Capturing variability of law with n\u00f3mos 2. ER 7532, pp. 383\u2013396 (2012)","DOI":"10.1007\/978-3-642-34002-4_30"},{"key":"15_CR29","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"472","DOI":"10.1007\/978-3-642-04840-1_35","volume-title":"Conceptual Modeling - ER 2009","author":"A Siena","year":"2009","unstructured":"Siena, A., Mylopoulos, J., Perini, A., Susi, A.: Designing law-compliant software requirements. In: Laender, A.H.F., Castano, S., Dayal, U., Casati, F., de Oliveira, J.P.M. (eds.) ER 2009. LNCS, vol. 5829, pp. 472\u2013486. Springer, Heidelberg (2009). https:\/\/doi.org\/10.1007\/978-3-642-04840-1_35"},{"key":"15_CR30","unstructured":"Siena, A., Susi, A.: Engineering Law-Compliant Requirements - The Nomos Framework. Ph.D. thesis, University Of Trento (2010)"},{"key":"15_CR31","doi-asserted-by":"crossref","unstructured":"Solove, D.J.: A Taxonomy of Privacy (2005)","DOI":"10.2307\/40041279"},{"key":"15_CR32","unstructured":"Solove, D.J.: Introduction: Privacy self-management and the consent dilemma. Harv. L. Rev. 126(7), 1880 (2012)"},{"issue":"1","key":"15_CR33","doi-asserted-by":"publisher","first-page":"67","DOI":"10.1109\/TSE.2008.88","volume":"35","author":"S. Spiekermann","year":"2009","unstructured":"Spiekermann, S., Cranor, L.: Engineering privacy. IEEE Trans. Softw. Eng. 35(1), 67\u201382 (2009)","journal-title":"IEEE Transactions on Software Engineering"},{"issue":"05","key":"15_CR34","doi-asserted-by":"publisher","first-page":"557","DOI":"10.1142\/S0218488502001648","volume":"10","author":"LATANYA SWEENEY","year":"2002","unstructured":"Sweeney, L.: k-anonymity: a model for protecting privacy. Int. J. Uncertain. Fuzziness Knowl. Based Syst.10(5), 557\u2013570 (2002)","journal-title":"International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems"},{"key":"15_CR35","doi-asserted-by":"crossref","unstructured":"Van Lamsweerde, A., Darimont, R., Letier, E.: Managing conflicts in goal-driven requirements engineering. IEEE Trans. Softw. Eng. 24(11), 908\u2013926 (1998)","DOI":"10.1109\/32.730542"},{"key":"15_CR36","doi-asserted-by":"crossref","unstructured":"Yu, E.: Modelling strategic relationships for process reengineering. Soc\u2019. Model. Requir. Eng. 11 (2011)","DOI":"10.7551\/mitpress\/7549.003.0005"}],"container-title":["Lecture Notes in Business Information Processing","The Practice of Enterprise Modeling"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-02302-7_15","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,3]],"date-time":"2026-04-03T19:28:31Z","timestamp":1775244511000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-02302-7_15"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783030023010","9783030023027"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-02302-7_15","relation":{},"ISSN":["1865-1348","1865-1356"],"issn-type":[{"value":"1865-1348","type":"print"},{"value":"1865-1356","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]},"assertion":[{"value":"12 October 2018","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"PoEM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP Working Conference on The Practice of Enterprise Modeling","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Vienna","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Austria","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31 October 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2 November 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"poem2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/poem2018.omilab.org\/home","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"64","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"21","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"5","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"33% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}