{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,1]],"date-time":"2026-05-01T18:51:39Z","timestamp":1777661499758,"version":"3.51.4"},"reference-count":90,"publisher":"Association for Computing Machinery (ACM)","issue":"5","license":[{"start":{"date-parts":[[2024,10,31]],"date-time":"2024-10-31T00:00:00Z","timestamp":1730332800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/100000001","name":"U.S. National Science Foundation","doi-asserted-by":"crossref","award":["CNS-1817249"],"award-info":[{"award-number":["CNS-1817249"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"crossref"}]},{"name":"U.S.\u2013Israel Binational Science Foundation","award":["2017751"],"award-info":[{"award-number":["2017751"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Trans. Comput.-Hum. Interact."],"published-print":{"date-parts":[[2024,10,31]]},"abstract":"<jats:p>\n            Internet users often neglect important security actions (e.g., installing security updates or changing passwords) because they interrupt users\u2019 main task at inopportune times. Commitment devices, such as reminders and promises, have been found to be effective at reducing procrastination in other domains. In a series of online experiments (\n            <jats:inline-formula content-type=\"math\/tex\">\n              <jats:tex-math notation=\"LaTeX\" version=\"MathJax\">\\(n{\\gt}3{,}000\\)<\/jats:tex-math>\n            <\/jats:inline-formula>\n            ), we explored the effects of reminders and promises on users\u2019 willingness to change a compromised password. We find that adding an option to delay the task increases the share of people willing to eventually change their password considerably. Critically, the option to delay yields this overall increase without reducing the share of people choosing to change their password immediately. Additionally, most participants who promised to change their password later, or asked to be reminded to do so, indeed followed through on their commitment, leading to a net positive effect. Reminding participants of their previous commitment further increased this effect.\n          <\/jats:p>","DOI":"10.1145\/3689038","type":"journal-article","created":{"date-parts":[[2024,8,16]],"date-time":"2024-08-16T15:10:56Z","timestamp":1723821056000},"page":"1-25","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":5,"title":["\u201cProtect Me Tomorrow\u201d: Commitment Nudges to Remedy Compromised Passwords"],"prefix":"10.1145","volume":"31","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9891-5297","authenticated-orcid":false,"given":"Eyal","family":"Peer","sequence":"first","affiliation":[{"name":"Hebrew University of Jerusalem, Jerusalem, Israel"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8477-7276","authenticated-orcid":false,"given":"Alisa","family":"Frik","sequence":"additional","affiliation":[{"name":"International Computer Science Institute, Berkeley, California, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-2720-5139","authenticated-orcid":false,"given":"Conor","family":"Gilsenan","sequence":"additional","affiliation":[{"name":"University of California, Berkeley, California, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2288-0785","authenticated-orcid":false,"given":"Serge","family":"Egelman","sequence":"additional","affiliation":[{"name":"International Computer Science Institute, Berkeley, California, USA and University of California, Berkeley, California, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,11,9]]},"reference":[{"key":"e_1_3_2_2_2","doi-asserted-by":"crossref","first-page":"21","DOI":"10.1145\/988772.988777","volume-title":"Proceedings of the ACM Electronic Commerce Conference (EC \u201904)","author":"Acquisti Alessandro","year":"2004","unstructured":"Alessandro Acquisti. 2004. Privacy in electronic commerce and the economics of immediate gratification. In Proceedings of the ACM Electronic Commerce Conference (EC \u201904). ACM Press, New York, NY, 21\u201329. Retrieved from http:\/\/www.heinz.cmu.edu\/acquisti\/papers\/privacy-gratification.pdf"},{"issue":"3","key":"e_1_3_2_3_2","first-page":"44","article-title":"Nudges for privacy and security: Understanding and assisting users\u2019 choices online","volume":"50","author":"Acquisti Alessandro","year":"2017","unstructured":"Alessandro Acquisti, Idris Adjerid, Rebecca Balebako, Laura Brandimarte, Lorrie Faith Cranor, Saranga Komanduri, Pedro Giovanni Leon, Norman Sadeh, Florian Schaub, Manya Sleeper, Yang Wang, and Shomir Wilson. 2017. Nudges for privacy and security: Understanding and assisting users\u2019 choices online. ACM Computing Surveys (CSUR) 50, 3 (2017), 44.","journal-title":"ACM Computing Surveys (CSUR)"},{"key":"e_1_3_2_4_2","volume-title":"Your Location has been Shared 5,398 Times! A Field Study on Mobile App Privacy Nudging","author":"Almuhimedi Hazim","year":"2014","unstructured":"Hazim Almuhimedi, Florian Schaub, Norman Sadeh, Idris Adjerid, Alessandro Acquisti, Joshua Gluck, Lorrie Cranor, and Yuvraj Agarwal. 2014. Your Location has been Shared 5,398 Times! A Field Study on Mobile App Privacy Nudging. Technical Report CMU-ISR-14-116. Carnegie Mellon University."},{"key":"e_1_3_2_5_2","doi-asserted-by":"publisher","DOI":"10.1111\/1467-9280.00441"},{"key":"e_1_3_2_6_2","doi-asserted-by":"crossref","unstructured":"Gabriel Bassett C. David Hylender Philippe Langlois Alexandre Pinto and Suzanne Widup. 2021. 2021 Data Breach Investigations Report. Verizon. Retrieved from https:\/\/www.verizon.com\/business\/resources\/reports\/2021\/2021-data-breach-investigations-report.pdf","DOI":"10.1016\/S1361-3723(21)00061-0"},{"issue":"3","key":"e_1_3_2_7_2","doi-asserted-by":"crossref","first-page":"467","DOI":"10.1007\/s10551-018-4030-z","article-title":"Can honesty oaths, peer interaction, or monitoring mitigate lying?","volume":"163","author":"Beck Tobias","year":"2020","unstructured":"Tobias Beck, Christoph B\u00fchren, Bj\u00f6rn Frank, and Elina Khachatryan. 2020. Can honesty oaths, peer interaction, or monitoring mitigate lying? Journal of Business Ethics 163, 3 (2020), 467\u2013484.","journal-title":"Journal of Business Ethics"},{"key":"e_1_3_2_8_2","unstructured":"Sruti Bhagavatula Lujo Bauer and Apu Kapadia. 2021. (How) Do People Change Their Passwords After a Breach? ;login: Retrieved December 1 2021 from https:\/\/www.usenix.org\/publications\/loginonline\/how-do-people-change-their-passwords-after-breach"},{"key":"e_1_3_2_9_2","doi-asserted-by":"publisher","DOI":"10.1017\/S1930297500000334"},{"key":"e_1_3_2_10_2","doi-asserted-by":"crossref","DOI":"10.1037\/11622-000","volume-title":"Explorations in Cognitive Dissonance","author":"Brehm Jack W.","year":"1962","unstructured":"Jack W. Brehm and Arthur R. Cohen. 1962. Explorations in Cognitive Dissonance. John Wiley & Sons Inc."},{"issue":"11","key":"e_1_3_2_11_2","doi-asserted-by":"crossref","first-page":"1349","DOI":"10.1016\/j.jpubeco.2011.05.004","article-title":"Give more tomorrow: Two field experiments on altruism and intertemporal choice","volume":"95","author":"Breman Anna","year":"2011","unstructured":"Anna Breman. 2011. Give more tomorrow: Two field experiments on altruism and intertemporal choice. Journal of Public Economics 95, 11\u201312 (2011), 1349\u20131357.","journal-title":"Journal of Public Economics"},{"key":"e_1_3_2_12_2","doi-asserted-by":"publisher","DOI":"10.1146\/annurev.economics.102308.124324"},{"key":"e_1_3_2_13_2","doi-asserted-by":"publisher","DOI":"10.1207\/s15327752jpa4803_13"},{"key":"e_1_3_2_14_2","doi-asserted-by":"crossref","unstructured":"Tobias Cagala Ulrich Glogowsky and Johannes Rincke. 2019. Does Commitment to a No-Cheating Rule Affect Academic Cheating? Available at SSRN 3111855 (2019).","DOI":"10.2139\/ssrn.3111855"},{"issue":"1","key":"e_1_3_2_15_2","doi-asserted-by":"crossref","first-page":"23","DOI":"10.1007\/s10551-014-2504-1","article-title":"Pledging integrity: Oaths as forms of business ethics management","volume":"136","author":"Bruin Boudewijn de","year":"2016","unstructured":"Boudewijn de Bruin. 2016. Pledging integrity: Oaths as forms of business ethics management. Journal of Business Ethics 136, 1 (2016), 23\u201342.","journal-title":"Journal of Business Ethics"},{"key":"e_1_3_2_16_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00779-004-0308-5"},{"key":"e_1_3_2_17_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00779-004-0308-5"},{"key":"e_1_3_2_18_2","doi-asserted-by":"publisher","DOI":"10.1145\/1600176.1600182"},{"key":"e_1_3_2_19_2","first-page":"750","volume-title":"Proceedings of the 2014 ACM SIGSAC Conference on Computer & Communications Security (CCS \u201914)","author":"Egelman Serge","year":"2014","unstructured":"Serge Egelman, Sakshi Jain, Rebecca S. Portnoff, Kerwell Liao, Sunny Consolvo, and David Wagner. 2014. Are you ready to lock? Understanding user motivations for smartphone locking behaviors. In Proceedings of the 2014 ACM SIGSAC Conference on Computer & Communications Security (CCS \u201914). ACM, New York, NY, 750\u2013761."},{"key":"e_1_3_2_20_2","doi-asserted-by":"publisher","DOI":"10.1145\/2470654.2481329"},{"key":"e_1_3_2_21_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.chb.2015.04.075"},{"key":"e_1_3_2_22_2","doi-asserted-by":"publisher","DOI":"10.5555\/2372387.2372394"},{"key":"e_1_3_2_23_2","doi-asserted-by":"publisher","DOI":"10.1145\/2556288.2557292"},{"key":"e_1_3_2_24_2","doi-asserted-by":"publisher","DOI":"10.1515\/9781503620766"},{"key":"e_1_3_2_25_2","doi-asserted-by":"publisher","DOI":"10.1038\/scientificamerican1062-93"},{"key":"e_1_3_2_26_2","doi-asserted-by":"publisher","DOI":"10.1086\/209351"},{"key":"e_1_3_2_27_2","first-page":"97","volume-title":"Proceedings of the 12th Symposium on Usable Privacy and Security (SOUPS \u201916)","author":"Forget Alain","year":"2016","unstructured":"Alain Forget, Sarah Pearman, Jeremy Thomas, Alessandro Acquisti, Nicolas Christin, Lorrie Faith Cranor, Serge Egelman, Marian Harbach, and Rahul Telang. 2016. Do or do not, there is no try: User engagement may not improve security outcomes. In Proceedings of the 12th Symposium on Usable Privacy and Security (SOUPS \u201916). USENIX Association, 97\u2013111."},{"key":"e_1_3_2_28_2","doi-asserted-by":"publisher","DOI":"10.1145\/3290605.3300834"},{"key":"e_1_3_2_29_2","doi-asserted-by":"publisher","DOI":"10.2200\/S00594ED1V01Y201408SPT011"},{"key":"e_1_3_2_30_2","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243767"},{"key":"e_1_3_2_31_2","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2012.162"},{"key":"e_1_3_2_32_2","doi-asserted-by":"publisher","DOI":"10.1145\/2556288.2556978"},{"key":"e_1_3_2_33_2","doi-asserted-by":"publisher","DOI":"10.1145\/3025453.3025788"},{"key":"e_1_3_2_34_2","unstructured":"U.S. Cybersecurity and Infrastructure Security Agency. Choosing and Protecting Passwords. 2019. Retrieved from https:\/\/www.cisa.gov\/news-events\/news\/choosing-and-protecting-passwords"},{"key":"e_1_3_2_35_2","first-page":"327","volume-title":"Proceedings of the 11th Symposium On Usable Privacy and Security (SOUPS \u201915)","author":"Ion Iulia","year":"2015","unstructured":"Iulia Ion, Rob Reeder, and Sunny Consolvo. 2015. \u201c\u2026No one can hack my mind\u201d: Comparing expert and non-expert security practices. In Proceedings of the 11th Symposium On Usable Privacy and Security (SOUPS \u201915). USENIX Association, 327\u2013346."},{"key":"e_1_3_2_36_2","doi-asserted-by":"publisher","DOI":"10.1287\/mnsc.2017.2892"},{"issue":"6","key":"e_1_3_2_37_2","doi-asserted-by":"crossref","first-page":"705","DOI":"10.1017\/S1930297500003259","article-title":"\u201cLeaving it to chance\u201d\u2013Passive risk taking in everyday life","volume":"7","author":"Keinan Ruty","year":"2012","unstructured":"Ruty Keinan and Yoella Bereby-Meyer. 2012. \u201cLeaving it to chance\u201d\u2013Passive risk taking in everyday life. Judgment & Decision Making 7, 6 (2012), 705\u2013715.","journal-title":"Judgment & Decision Making"},{"key":"e_1_3_2_38_2","first-page":"1","volume-title":"Proceedings of the Military Communication Conference 2012","author":"Khan Moazzam","year":"2012","unstructured":"Moazzam Khan, Zehui Bi, and John A. Copeland. 2012. Software updates as a security metric: Passive identification of update trends and effect on machine infection. In Proceedings of the Military Communication Conference 2012. IEEE, 1\u20136."},{"key":"e_1_3_2_39_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.euroecorev.2019.02.006"},{"key":"e_1_3_2_40_2","doi-asserted-by":"publisher","DOI":"10.1162\/003355397555253"},{"issue":"4","key":"e_1_3_2_41_2","first-page":"647","article-title":"Trait procrastination, time management","volume":"8","author":"Lay Clarry H.","year":"1993","unstructured":"Clarry H. Lay and Henri C. Schouwenburg. 1993. Trait procrastination, time management. Journal of Social Behavior and Personality 8, 4 (1993), 647\u2013662.","journal-title":"Journal of Social Behavior and Personality"},{"key":"e_1_3_2_42_2","volume-title":"Self-Consistency; A Theory of Personality","author":"Lecky Prescott","year":"1945","unstructured":"Prescott Lecky. 1945. Self-Consistency; A Theory of Personality. Island Press."},{"key":"e_1_3_2_43_2","first-page":"175","volume-title":"Proceedings of the 13th Symposium on Usable Privacy and Security (SOUPS \u201917)","author":"Mathur Arunesh","year":"2017","unstructured":"Arunesh Mathur and Marshini Chetty. 2017. Impact of user characteristics on attitudes towards automatic mobile application updates. In Proceedings of the 13th Symposium on Usable Privacy and Security (SOUPS \u201917). USENIX Association, 175\u2013193. Retrieved from https:\/\/www.usenix.org\/conference\/soups2017\/technical-sessions\/presentation\/mathur"},{"key":"e_1_3_2_44_2","first-page":"43","volume-title":"Proceedings of the 12th USENIX Conference on Usable Privacy and Security (SOUPS \u201916)","author":"Mathur Arunesh","year":"2016","unstructured":"Arunesh Mathur, Josefine Engel, Sonam Sobti, Victoria Chang, and Marshini Chetty. 2016. \u201cThey keep coming back like zombies\u201d: Improving software updating interfaces. In Proceedings of the 12th USENIX Conference on Usable Privacy and Security (SOUPS \u201916). USENIX Association, 43\u201358. Retrieved from https:\/\/www.usenix.org\/conference\/soups2016\/technical-sessions\/presentation\/mathur"},{"key":"e_1_3_2_45_2","doi-asserted-by":"publisher","DOI":"10.14722\/usec.2018.23036"},{"key":"e_1_3_2_46_2","doi-asserted-by":"crossref","unstructured":"Arunesh Mathur Nathan Malkin Marian Harbach Eyal Peer and Serge Egelman. 2018. Quantifying users\u2019 beliefs about software updates. arXiv:1805.04594.","DOI":"10.14722\/usec.2018.23036"},{"key":"e_1_3_2_47_2","first-page":"393","volume-title":"Proceedings of the 30th USENIX Security Symposium (USENIX Security \u201921)","author":"Mayer Peter","year":"2021","unstructured":"Peter Mayer, Yixin Zou, Florian Schaub, and Adam J. Aviv. 2021. \u201cNow I\u2019m a bit angry: \u201d Individuals\u2019 awareness, perception, and responses to data breaches that affected them. In Proceedings of the 30th USENIX Security Symposium (USENIX Security \u201921). Michael Bailey and Rachel Greenstadt (Eds.), USENIX Association, 393\u2013410. Retrieved from https:\/\/www.usenix.org\/conference\/usenixsecurity21\/presentation\/mayer"},{"issue":"3","key":"e_1_3_2_48_2","doi-asserted-by":"crossref","first-page":"466","DOI":"10.1002\/jcpy.1031","article-title":"If you are going to pay within the next 24 hours, press 1: Automatic planning prompt reduces credit card delinquency","volume":"28","author":"Mazar Nina","year":"2018","unstructured":"Nina Mazar, Daniel Mochon, and Dan Ariely. 2018. If you are going to pay within the next 24 hours, press 1: Automatic planning prompt reduces credit card delinquency. Journal of Consumer Psychology 28, 3 (2018), 466\u2013476.","journal-title":"Journal of Consumer Psychology"},{"key":"e_1_3_2_49_2","first-page":"175","volume-title":"Proceedings of the 25th USENIX Security Symposium (USENIX Security \u201916)","author":"Melicher William","year":"2016","unstructured":"William Melicher, Blase Ur, Sean M. Segreti, Saranga Komanduri, Lujo Bauer, Nicolas Christin, and Lorrie Faith Cranor. 2016. Fast, lean, and accurate: Modeling password guessability using neural networks. In Proceedings of the 25th USENIX Security Symposium (USENIX Security \u201916). USENIX Association, 175\u2013191. Retrieved from https:\/\/www.usenix.org\/conference\/usenixsecurity16\/technical-sessions\/presentation\/melicher"},{"key":"e_1_3_2_50_2","unstructured":"Microsoft Corporation. 2023. Protect Your Online Accounts Using Password Monitor. Retrieved from https:\/\/support.microsoft.com\/en-us\/topic\/protect-your-online-accounts-using-password-monitor-6f660aae-65aa-476c-871a-7fe2bcb0c4c1"},{"key":"e_1_3_2_51_2","first-page":"26 10415","volume-title":"Proceedings of the National Academy of Sciences","volume":"108","author":"Milkman Katherine L.","year":"2011","unstructured":"Katherine L. Milkman, John Beshears, James J. Choi, David Laibson, and Brigitte C. Madrian. 2011. Using implementation intentions prompts to enhance influenza vaccination rates. Proceedings of the National Academy of Sciences 108, 26 (2011), 10415\u201310420."},{"key":"e_1_3_2_52_2","first-page":"20","volume-title":"Proceedings of the National Academy of Sciences","volume":"118","author":"Milkman Katherine L.","year":"2021","unstructured":"Katherine L. Milkman, Mitesh S. Patel, Linnea Gandhi, Heather N. Graci, Dena M. Gromet, Hung Ho, Joseph S. Kay, Timothy W. Lee, Modupe Akinola, John Beshears, Jonathan E. Bogard, Alison Buttenheim, Christopher F. Chabris, Gretchen B. Chapman, James J. Choi, Hengchen Dai, Craig R. Fox, Amir Goren, Matthew D. Hilchey, Jillian Hmurovic, Leslie K. John, Dean Karlan, Melanie Kim, David Laibson, Cait Lamberton, Brigitte C. Madrian, Michelle N. Meyer, Maria Modanu, Jimin Nam, Todd Rogers, Renante Rondina, Silvia Saccardo, Maheen Shermohammed, Dilip Soman, Jehan Sparks, Caleb Warren, Megan Weber, Ron Berman, Chalanda N. Evans, Christopher K. Snider, Eli Tsukayama, Christophe Van den Bulte, Kevin G. Volpp, and Angela L. Duckworth. 2021. A megastudy of text-based nudges encouraging patients to get vaccinated at an upcoming doctor\u2019s appointment. Proceedings of the National Academy of Sciences 118, 20 (2021)."},{"key":"e_1_3_2_53_2","unstructured":"MrC4meron. 2021. An Under-Appreciated Feature of Safari. Retrieved January 23 2023 from https:\/\/www.reddit.com\/r\/mac\/comments\/mcw5xa\/an_underappreciated_feature_of_safari\/"},{"key":"e_1_3_2_54_2","first-page":"426","volume-title":"Proceedings of the International Workshop on Recent Advances in Intrusion Detection","author":"Nayak Kartik","year":"2014","unstructured":"Kartik Nayak, Daniel Marino, Petros Efstathopoulos, and Tudor Dumitra\u015f. 2014. Some vulnerabilities are different than others. In Proceedings of the International Workshop on Recent Advances in Intrusion Detection. Springer, 426\u2013446."},{"key":"e_1_3_2_55_2","doi-asserted-by":"crossref","first-page":"103","DOI":"10.1257\/aer.89.1.103","article-title":"Doing it now or later","author":"O\u2019Donoghue Ted","year":"1999","unstructured":"Ted O\u2019Donoghue and Matthew Rabin. 1999. Doing it now or later. American Economic Review (1999), 103\u2013124.","journal-title":"American Economic Review"},{"key":"e_1_3_2_56_2","first-page":"215","article-title":"Incentives and self-control","volume":"42","author":"O\u2019Donoghue Ted","year":"2006","unstructured":"Ted O\u2019Donoghue, and Matthew Rabin. 2006. Incentives and self-control. Econometric Society Monographs 42 (2006), 215.","journal-title":"Econometric Society Monographs"},{"key":"e_1_3_2_57_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jesp.2017.01.006"},{"key":"e_1_3_2_58_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.chb.2020.106347"},{"issue":"5","key":"e_1_3_2_59_2","doi-asserted-by":"crossref","first-page":"761","DOI":"10.1080\/13501763.2021.1912149","article-title":"Honesty pledges for the behaviorally-based regulation of dishonesty","volume":"28","author":"Peer Eyal","year":"2021","unstructured":"Eyal Peer and Yuval Feldman. 2021. Honesty pledges for the behaviorally-based regulation of dishonesty. Journal of European Public Policy 28, 5 (2021), 761\u2013781.","journal-title":"Journal of European Public Policy"},{"key":"e_1_3_2_60_2","unstructured":"Pew Research Center. 2017. Americans and Cybersecurity. Technical Report. Retrieved April 11 2018 from http:\/\/assets.pewresearch.org\/wp-content\/uploads\/sites\/14\/2017\/01\/26102016\/Americans-and-Cyber-Security-final.pdf"},{"key":"e_1_3_2_61_2","doi-asserted-by":"publisher","DOI":"10.2307\/2296547"},{"key":"e_1_3_2_62_2","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978307"},{"key":"e_1_3_2_63_2","doi-asserted-by":"publisher","DOI":"10.1002\/1097-4679(198201)38:1<119::AID-JCLP2270380118>3.0.CO;2-I"},{"key":"e_1_3_2_64_2","doi-asserted-by":"publisher","DOI":"10.1353\/bsp.2015.0011"},{"key":"e_1_3_2_65_2","doi-asserted-by":"publisher","DOI":"10.1002\/ijop.12042"},{"key":"e_1_3_2_66_2","doi-asserted-by":"publisher","DOI":"10.1109\/MIC.2017.75"},{"issue":"2","key":"e_1_3_2_67_2","doi-asserted-by":"crossref","first-page":"530","DOI":"10.1007\/s10683-018-9567-2","article-title":"Why do people keep their promises? A further investigation","volume":"22","author":"Schwartz Steven","year":"2019","unstructured":"Steven Schwartz, Eric Spires, and Rick Young. 2019. Why do people keep their promises? A further investigation. Experimental Economics 22, 2 (2019), 530\u2013551.","journal-title":"Experimental Economics"},{"key":"e_1_3_2_68_2","first-page":"7","volume-title":"Proceedings of the 8th Symposium on Usable Privacy and Security","author":"Shay Richard","year":"2012","unstructured":"Richard Shay, Patrick Gage Kelley, Saranga Komanduri, Michelle L. Mazurek, Blase Ur, Timothy Vidas, Lujo Bauer, Nicolas Christin, and Lorrie Faith Cranor. 2012. Correct horse battery staple: Exploring the usability of system-assigned passphrases. In Proceedings of the 8th Symposium on Usable Privacy and Security. ACM, 7."},{"key":"e_1_3_2_69_2","doi-asserted-by":"publisher","DOI":"10.1080\/14792772143000003"},{"key":"e_1_3_2_70_2","doi-asserted-by":"publisher","DOI":"10.1111\/spc3.12265"},{"key":"e_1_3_2_71_2","volume-title":"Design and Evaluation of Security and Privacy Nudges: From Protection Motivation Theory to Implementation Intentions","author":"Story Peter","year":"2021","unstructured":"Peter Story. 2021. Design and Evaluation of Security and Privacy Nudges: From Protection Motivation Theory to Implementation Intentions. CMU-ISR-21-107. Carnegie Mellon University, Institute for Software Research, School of Computer Science."},{"key":"e_1_3_2_72_2","doi-asserted-by":"publisher","DOI":"10.1037\/0022-3514.66.4.742"},{"key":"e_1_3_2_73_2","first-page":"399","volume-title":"Proceedings of the 18th USENIX Security Symposium (SSYM \u201909)","author":"Sunshine Joshua","year":"2009","unstructured":"Joshua Sunshine, Serge Egelman, Hazim Almuhimedi, Neha Atri, and Lorrie Faith Cranor. 2009. Crying wolf: An empirical study of SSL warning effectiveness. In Proceedings of the 18th USENIX Security Symposium (SSYM \u201909). USENIX Association, Berkeley, CA, 399\u2013416. Retrieved from http:\/\/dl.acm.org\/citation.cfm?id=1855768.1855793"},{"key":"e_1_3_2_74_2","doi-asserted-by":"publisher","DOI":"10.1037\/a0039729"},{"key":"e_1_3_2_75_2","doi-asserted-by":"publisher","DOI":"10.1086\/380085"},{"key":"e_1_3_2_76_2","doi-asserted-by":"publisher","DOI":"10.1145\/2808117.2808124"},{"key":"e_1_3_2_77_2","unstructured":"Kevin C. Tofel. 2019. Chrome OS 78 Bringing Password Leak Detection Similar to \u201cHave I Been Pwned?\u201d. Retrieved January 23 2023 from https:\/\/www.aboutchromebooks.com\/news\/chrome-os-78-bringing-password-leak-detection-similar-to-have-i-been-pwned\/"},{"key":"e_1_3_2_78_2","unstructured":"Unisys. 2021. 2021 Unisys Security Index. Retrieved November 29 2021 from https:\/\/www.unisys.com\/siteassets\/microsites\/unisys-security-index-2021\/report-usi-2021.pdf"},{"key":"e_1_3_2_79_2","first-page":"65","volume-title":"Proceedings of the USENIX Security Symposium","author":"Ur Blase","year":"2012","unstructured":"Blase Ur, Patrick Gage Kelley, Saranga Komanduri, Joel Lee, Michael Maass, Michelle L Mazurek, Timothy Passaro, Richard Shay, Timothy Vidas, Lujo Bauer, Nicolas Christin, and Lorrie Faith Cranor. 2012. How does your password measure up? The effect of strength meters on password creation. In Proceedings of the USENIX Security Symposium. 65\u201380."},{"key":"e_1_3_2_80_2","doi-asserted-by":"publisher","DOI":"10.5555\/2831143.2831173"},{"key":"e_1_3_2_81_2","doi-asserted-by":"publisher","DOI":"10.1145\/2858036.2858303"},{"key":"e_1_3_2_82_2","doi-asserted-by":"publisher","DOI":"10.1145\/2858036.2858303"},{"key":"e_1_3_2_83_2","doi-asserted-by":"publisher","DOI":"10.1145\/2556288.2557413"},{"key":"e_1_3_2_84_2","first-page":"309","volume-title":"Proceedings of the 11th Symposium On Usable Privacy and Security (SOUPS \u201915)","author":"Wash Rick","year":"2015","unstructured":"Rick Wash and Emilee Rader. 2015. Too much knowledge? Security beliefs and protective behaviors among united states internet users. In Proceedings of the 11th Symposium On Usable Privacy and Security (SOUPS \u201915). USENIX Association, 309\u2013325."},{"key":"e_1_3_2_85_2","first-page":"175","volume-title":"Proceedings of the 12th Symposium on Usable Privacy and Security (SOUPS \u201916)","author":"Wash Rick","year":"2016","unstructured":"Rick Wash, Emilee Rader, Ruthie Berman, and Zac Wellmer. 2016. Understanding password choices: How frequently entered passwords are re-used across websites. In Proceedings of the 12th Symposium on Usable Privacy and Security (SOUPS \u201916). USENIX Association, 175\u2013188. Retrieved from https:\/\/www.usenix.org\/conference\/soups2016\/technical-sessions\/presentation\/wash"},{"key":"e_1_3_2_86_2","first-page":"89","volume-title":"Proceedings of the Symposium on Usable Privacy and Security (SOUPS \u201914)","author":"Wash Rick","year":"2014","unstructured":"Rick Wash, Emilee Rader, Kami Vaniea, and Michelle Rizor. 2014. Out of the loop: How automated software updates cause unintended security consequences. In Proceedings of the Symposium on Usable Privacy and Security (SOUPS \u201914). 89\u2013104."},{"key":"e_1_3_2_87_2","doi-asserted-by":"publisher","DOI":"10.1145\/1330311.1330320"},{"key":"e_1_3_2_88_2","first-page":"157","volume-title":"Proceedings of the 25th USENIX Security Symposium (USENIX Security \u201916)","author":"Wheeler Daniel Lowe","year":"2016","unstructured":"Daniel Lowe Wheeler. 2016. zxcvbn: Low-budget password strength estimation. In Proceedings of the 25th USENIX Security Symposium (USENIX Security \u201916). USENIX Association, 157\u2013173. Retrieved from https:\/\/www.usenix.org\/conference\/usenixsecurity16\/technical-sessions\/presentation\/wheeler"},{"key":"e_1_3_2_89_2","doi-asserted-by":"crossref","first-page":"423","DOI":"10.1016\/B978-012057770-5\/50018-7","volume-title":"Handbook of Communication and Emotion","author":"Witte Kim","year":"1996","unstructured":"Kim Witte. 1996. Fear as motivator, fear as inhibitor: Using the extended parallel process model to explain fear appeal successes and failures. In Handbook of Communication and Emotion. Elsevier, 423\u2013450."},{"key":"e_1_3_2_90_2","doi-asserted-by":"crossref","first-page":"302","DOI":"10.1007\/978-3-319-07127-5_27","volume-title":"Persuasive Technology","author":"Zhang-Kennedy Leah","year":"2014","unstructured":"Leah Zhang-Kennedy, Sonia Chiasson, and Robert Biddle. 2014. Stop clicking on \u201cupdate later\u201d: Persuading users they need up-to-date antivirus protection. In Persuasive Technology. Anna Spagnolli, Luca Chittaro, and Luciano Gamberini (Eds.), Springer International Publishing, Cham, 302\u2013322."},{"key":"e_1_3_2_91_2","unstructured":"Zeljka Zorz. 2020. Firefox 76 Delivers New Password Security Features and Security Fixes. Help Net Security. Retrieved from https:\/\/www.helpnetsecurity.com\/2020\/05\/07\/firefox-password-security\/"}],"container-title":["ACM Transactions on Computer-Human Interaction"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3689038","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3689038","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3689038","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T01:18:59Z","timestamp":1750295939000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3689038"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10,31]]},"references-count":90,"journal-issue":{"issue":"5","published-print":{"date-parts":[[2024,10,31]]}},"alternative-id":["10.1145\/3689038"],"URL":"https:\/\/doi.org\/10.1145\/3689038","relation":{},"ISSN":["1073-0516","1557-7325"],"issn-type":[{"value":"1073-0516","type":"print"},{"value":"1557-7325","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,10,31]]},"assertion":[{"value":"2022-05-12","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2023-11-29","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-11-09","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}