77 research outputs found

    Modelling legal knowledge for GDPR compliance checking

    Get PDF
    In the last fifteen years, Semantic Web technologies have been successfully applied to the legal domain. By composing all those techniques and theoretical methods, we propose an integrated framework for modelling legal documents and legal knowledge to support legal reasoning, in particular checking compliance. This paper presents a proof-of-concept applied to the GDPR domain, with the aim to detect infringements of privacy compulsory norms or to prevent possible violations using BPMN and Regorous engine

    Akoma Ntoso: Flexibility and Customization to Meet Different Legal Traditions

    Get PDF
    We present different techniques to manage customization of Akoma Ntoso XSD, an OASIS XML vocabulary for legal documents, using native elements, like or , general elements, modules or tools

    Efficient Management of Multi-version XML Documents for e-Government Applications

    Full text link

    From Words to Images Through Legal Visualization

    Get PDF
    One of the common characteristics of legal documents is the absolute preponderance of text and their specific domain language, whose complexity can result in impenetrability for those that have no legal expertise. In some experiments, visual communication has been introduced in legal documents to make their meaning clearer and more intelligible, whilst visualizations have also been automatically generated from semantically-enriched legal data. As part of an ongoing research that aims to create user-friendly privacy terms by integrating graphical elements and Semantic Web technologies, the process of creation and interpretation of visual legal concepts will be discussed. The analysis of current approaches to this subject represents the point of departure to propose an empirical methodology that is inspired by interaction and human-centered design practices

    Hybrid Refining Approach of PrOnto Ontology

    Get PDF
    This paper presents a refinement of PrOnto ontology using a validation test based on legal experts’ annotation of privacy policies combined with an Open Knowledge Extraction (OKE) algorithm. To ensure robustness of the results while preserving an interdisciplinary approach, the integration of legal and technical knowledge has been carried out as follows. The set of privacy policies was first analysed by the legal experts to discover legal concepts and map the text into PrOnto. The mapping was then provided to computer scientists to perform the OKE analysis. Results were validated by the legal experts, who provided feedbacks and refinements (i.e. new classes and modules) of the ontology according to MeLOn methodology. Three iterations were performed on a set of (development) policies, and a final test using a new set of privacy policies. The results are 75,43% of detection of concepts in the policy texts and an increase of roughly 33% in the accuracy gain on the test set, using the new refined version of PrOnto enriched with SKOS-XL lexicon terms and definitions

    ODRL Policy Modelling and Compliance Checking

    Get PDF
    This paper addresses the problem of constructing a policy pipeline that enables compliance checking of business processes against regulatory obligations. Towards this end, we propose an Open Digital Rights Language (ODRL) profile that can be used to capture the semantics of both business policies in the form of sets of required permissions and regulatory requirements in the form of deontic concepts, and present their translation into Answer Set Programming (via the Institutional Action Language (InstAL)) for compliance checking purposes. The result of the compliance checking is either a positive compliance result or an explanation pertaining to the aspects of the policy that are causing the noncompliance. The pipeline is illustrated using two (key) fragments of the General Data Protect Regulation, namely Articles 6 (Lawfulness of processing) and Articles 46 (Transfers subject to appropriate safeguards) and industrially-relevant use cases that involve the specification of sets of permissions that are needed to execute business processes. The core contributions of this paper are the ODRL profile, which is capable of modelling regulatory obligations and business policies, the exercise of modelling elements of GDPR in this semantic formalism, and the operationalisation of the model to demonstrate its capability to support personal data processing compliance checking, and a basis for explaining why the request is deemed compliant or not
    • …
    corecore