{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,24]],"date-time":"2026-06-24T18:49:00Z","timestamp":1782326940864,"version":"3.54.5"},"publisher-location":"New York, NY, USA","reference-count":32,"publisher":"ACM","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,7,8]]},"DOI":"10.1145\/3750555.3811906","type":"proceedings-article","created":{"date-parts":[[2026,6,24]],"date-time":"2026-06-24T18:14:56Z","timestamp":1782324896000},"page":"149-155","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["A Causal Framework for Explainable Access Control: [Work in Progress Paper]"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0007-9163-1279","authenticated-orcid":false,"given":"Gelareh","family":"Hasel Mehri","sequence":"first","affiliation":[{"name":"Eindhoven University of Technology, Eindhoven, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5718-8276","authenticated-orcid":false,"given":"Clemens","family":"Dubslaff","sequence":"additional","affiliation":[{"name":"Eindhoven University of Technology, Eindhoven, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3049-7962","authenticated-orcid":false,"given":"Tim A. C.","family":"Willemse","sequence":"additional","affiliation":[{"name":"Eindhoven University of Technology, Eindhoven, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9081-5996","authenticated-orcid":false,"given":"Nicola","family":"Zannone","sequence":"additional","affiliation":[{"name":"Eindhoven University of Technology, Eindhoven, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,7,8]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.2307\/795047"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-50726-8_53"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/TC.1986.1676819"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"crossref","unstructured":"M. Cooper and L. Amgoud. 2023. Abductive Explanations of Classifiers Under Constraints: Complexity and Properties. Frontiers in Artificial Intelligence and Applications (2023).","DOI":"10.3233\/FAIA230305"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-28641-4_21"},{"key":"e_1_3_2_1_6_1","volume-title":"On Missing Attributes in Access Control: Non-deterministic and Probabilistic Attribute Retrieval. In Symposium on Access Control Models and Technologies (SACMAT '15)","author":"Crampton J.","unstructured":"J. Crampton, C. Morisset, and N. Zannone. 2015. On Missing Attributes in Access Control: Non-deterministic and Probabilistic Attribute Retrieval. In Symposium on Access Control Models and Technologies (SACMAT '15). ACM, New York, NY, USA, 99\u2013109."},{"key":"e_1_3_2_1_7_1","volume-title":"International Conference on Collaboration Technologies and Systems (CTS). 142-149","author":"Damen S.","unstructured":"S. Damen, J. den Hartog, and N. Zannone. 2014. CollAC: Collaborative access control. In International Conference on Collaboration Technologies and Systems (CTS). 142-149."},{"key":"e_1_3_2_1_8_1","first-page":"860","article-title":"SMT-Based Verification of NGAC Policies","author":"Dubrovenski V.","year":"2023","unstructured":"V. Dubrovenski, E. Chen, and D. Xu. 2023. SMT-Based Verification of NGAC Policies. In Annual Computers, Software, and Applications Conference (COMPSAC). 860-869.","journal-title":"Annual Computers, Software, and Applications Conference (COMPSAC)."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2023.111915"},{"key":"e_1_3_2_1_10_1","volume-title":"International Conference on Software Engineering (ICSE). 196-205","author":"Fisler K.","unstructured":"K. Fisler, S. Krishnamurthi, L.A. Meyerovich, and M.C. Tschantz. 2005. Verification and change-impact analysis of access-control policies. In International Conference on Software Engineering (ICSE). 196-205."},{"key":"e_1_3_2_1_11_1","volume-title":"Workshop on Assurable and Usable Security Configuration (SafeConfig '10)","author":"Ghai S. K.","unstructured":"S. K. Ghai, P. Nigam, and P. Kumaraguru. 2010. Cue: a framework for generating meaningful feedback in XACML. In Workshop on Assurable and Usable Security Configuration (SafeConfig '10). ACM, 9\u201316."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"crossref","unstructured":"J. Y. Halpern. 2016. Actual Causality. MIT Press.","DOI":"10.7551\/mitpress\/10809.001.0001"},{"key":"e_1_3_2_1_13_1","volume-title":"International Joint Conferences on Artificial Intelligence. Morgan Kaufmann Publishers, 27-34","author":"Halpern J. Y.","unstructured":"J. Y. Halpern and J. Pearl. 2001. Causes and explanations: a structural-model approach-part II: explanations. In International Joint Conferences on Artificial Intelligence. Morgan Kaufmann Publishers, 27-34."},{"key":"e_1_3_2_1_14_1","volume-title":"International Conference on Information Systems Security. 109-130","author":"Hartog J.","unstructured":"J. Hartog and N. Zannone. 2016. Collaborative Access Decisions: Why Has My Decision Not Been Enforced?. In International Conference on Information Systems Security. 109-130."},{"key":"e_1_3_2_1_15_1","volume-title":"WiP: Enhancing the Comprehension of XACML Policies. In Symposium on Access Control Models and Technologies (SACMAT","author":"Hasel Mehri G.","year":"2024","unstructured":"G. Hasel Mehri, T. D. Le, B. Cappers, J. Hartog, and N. Zannone. 2024. WiP: Enhancing the Comprehension of XACML Policies. In Symposium on Access Control Models and Technologies (SACMAT 2024). ACM, New York, NY, USA, 41\u201346."},{"key":"e_1_3_2_1_16_1","volume-title":"Symposium on Access Control Models and Technologies (SACMAT '25)","author":"Hasel Mehri G.","unstructured":"G. Hasel Mehri, C. Morisset, and N. Zannone. 2025. Towards Explainable Access Control [BlueSky Paper]. In Symposium on Access Control Models and Technologies (SACMAT '25). ACM, New York, NY, USA, 117\u2013126."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1017\/S0960129512000266"},{"key":"e_1_3_2_1_18_1","volume-title":"An Explainable Machine Learning Approach to Risk-Adaptive Access Control. Thesis","author":"Houtsma R.","unstructured":"R. Houtsma. 2022. An Explainable Machine Learning Approach to Risk-Adaptive Access Control. Thesis. University of Twente, Enschede."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSMCC.2010.2047856"},{"key":"e_1_3_2_1_20_1","volume-title":"Conference on Computer and Communications Security (CCS '04)","author":"Kapadia A.","unstructured":"A. Kapadia, G. Sampemane, and R. H. Campbell. 2004. KNOW Why your access was denied: regulating feedback for usable security. In Conference on Computer and Communications Security (CCS '04). ACM, 52\u201361."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10207-016-0314-4"},{"key":"e_1_3_2_1_22_1","first-page":"199","article-title":"Data Governance and Transparency for Collaborative Systems. In Data and Applications Security and Privacy XXX, Vol. 9766","author":"Mahmudlu R.","year":"2016","unstructured":"R. Mahmudlu, J. Hartog, and N. Zannone. 2016. Data Governance and Transparency for Collaborative Systems. In Data and Applications Security and Privacy XXX, Vol. 9766. Springer, 199-216.","journal-title":"Springer"},{"key":"e_1_3_2_1_23_1","volume-title":"Symposium on Usable Privacy and Security (SOUPS '12)","author":"Mazzia A.","unstructured":"A. Mazzia, K. LeFevre, and E. Adar. 2012. The PViz comprehension tool for social network privacy settings. In Symposium on Usable Privacy and Security (SOUPS '12). ACM, New York, NY, USA, Article 13, 12 pages."},{"key":"e_1_3_2_1_24_1","volume-title":"Cybersecurity","volume":"2","author":"Morisset C.","year":"2019","unstructured":"C. Morisset, T. A. C. Willemse, and N. Zannone. 2019. A framework for the extended evaluation of ABAC policies. Cybersecurity, Vol. 2 (2019)."},{"key":"e_1_3_2_1_25_1","volume-title":"Symposium on Access Control Models and Technologies (SACMAT '14)","author":"Morisset C.","unstructured":"C. Morisset and N. Zannone. 2014. Reduction of access control decisions. In Symposium on Access Control Models and Technologies (SACMAT '14). ACM, 53\u201362."},{"key":"e_1_3_2_1_26_1","volume-title":"DEBAC: Dynamic Explainable Behavior-Based Access Control. In EuCNC\/6G Summit. 733-738.","author":"Rodr\u00edguez L.","year":"2025","unstructured":"L. Rodr\u00edguez, J. Montes-Lopez, D. L\u00f3pez, and P. Serrano. 2025. DEBAC: Dynamic Explainable Behavior-Based Access Control. In EuCNC\/6G Summit. 733-738."},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10458-019-09408-y"},{"key":"e_1_3_2_1_28_1","volume-title":"International Enterprise Distributed Object Computing Conference (EDOC). IEEE, 159-164","author":"Sergeev A.","unstructured":"A. Sergeev and R. Matulevicius. 2017. An Approach to Capture Role-Based Access Control Models from Spring Web Applications. In International Enterprise Distributed Object Computing Conference (EDOC). IEEE, 159-164."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2017.01.009"},{"key":"e_1_3_2_1_30_1","volume-title":"Explainable Security. In European Symposium on Security and Privacy Workshops (EuroS&PW). IEEE, 293-300","author":"Vigano L.","unstructured":"L. Vigano and D. Magazzeni. 2020. Explainable Security. In European Symposium on Security and Privacy Workshops (EuroS&PW). IEEE, 293-300."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.4204\/EPTCS.271.8"},{"key":"e_1_3_2_1_32_1","volume-title":"VeilMe: An Interactive Visualization Tool for Privacy Configuration of Using Personality Traits. In Conference on Human Factors in Computing Systems (CHI '15)","author":"Wang Y.","unstructured":"Y. Wang, L. Gou, A. Xu, M. X. Zhou, H. Yang, and H. Badenes. 2015. VeilMe: An Interactive Visualization Tool for Privacy Configuration of Using Personality Traits. In Conference on Human Factors in Computing Systems (CHI '15). ACM, New York, NY, USA, 817\u2013826."}],"event":{"name":"SACMAT '26: The 31st ACM Symposium on Access Control Models and Technologies","location":"Waterloo ON Canada","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 31st ACM Symposium on Access Control Models and Technologies"],"original-title":[],"deposited":{"date-parts":[[2026,6,24]],"date-time":"2026-06-24T18:17:22Z","timestamp":1782325042000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3750555.3811906"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7,8]]},"references-count":32,"alternative-id":["10.1145\/3750555.3811906","10.1145\/3750555"],"URL":"https:\/\/doi.org\/10.1145\/3750555.3811906","relation":{},"subject":[],"published":{"date-parts":[[2026,7,8]]},"assertion":[{"value":"2026-07-08","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}