Overview

For privacy transparency and accountability  to ensure trustworthiness for decentralized use of digital identity identifiers are required for decentralized data governance with digital identity, without the use of federated systems for access control

Privacy Controller Credential 

In privacy regulations globally the notice and notification requirements in legislation are the most consistent across jurisdictions. In all regulations the identity of the PII Controller is required to be provided to the person before, at the time, or as soon as possible, when processing personal information. 

This specification uses ISO/IEC standard semantics to generate a notice of controller receipt for each digital identifier based relationship, in order to implement privacy rights to control the use of the personal information the digital identifier relates too. 

Key Security Challenge 

The credential is use for - credential - 

The credential has 0-3 levels of Privacy Controller Credential Assurance specifiedL: 

  1. Self Asserted Notice Controller
  2. Privacy Controller 
  3. Operating Privacy Controller 

Each level requires addition verification of th4e accountable person, their role and the providence of the LEI processing personal data. 

This specification formalizes the format for these 3 tiers of Privacy Assurance 


Format is using ISO etc, 

Tier 1  Notice Controller Credential 

Tier 2 Privacy Notice Controller Credential (AKA PII/Data Controller)

Tier 3 High Transparency Assurance over the providence of processing -