DSR Knowledge LibraryReusable design knowledge and grounded research support
HomeLibraryChatGive feedback ↗

DSR Knowledge Library

Research prototype · Native Open Knowledge Format

LibraryChatImprintPrivacyEvaluation survey ↗
Library/DP2 - Use a highly secure off-chain mapping architecture for attribution

Design Principle

DP2 - Use a highly secure off-chain mapping architecture for attribution

If a use case requires that data on the blockchain be attributable to a natural person, use a highly secure off-chain mapping architecture.

OverviewLinked conceptsRelationshipsGraphRaw metadata

01

Overview

Producer metadata and the represented concept document.

Concept identity

design-knowledge/gdpr-workflow-asylum-dp2
Open concept record
Producer label
DP2
Source paper
How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure
Timestamp
2026-07-16T00:00:00+00:00
Bundle path
design-knowledge/gdpr-workflow-asylum-dp2.md
cross-organizationaldesign-principlegdpr-privacygdpr-workflow-asylumpublic-sectorworkflow-management

Design principle DP2: Use a highly secure off-chain mapping architecture for attribution

Certain use cases require that information propagated and stored on the blockchain can be attributed to a natural person. As Design Principle 1 also applies in these use cases, the information on the blockchain must not allow attribution without further information, and blockchain solution architects should employ a pseudonymization solution. The information required for attribution, such as a mapping of abstract blockchain IDs with specific IDs, has to remain off-chain and should be propagated using secure information channels. With such a solution, data controllers can rectify, through the propagation of rectification transactions, and they can erase, through the deletion of the information required for attribution.

Source paper

This design principle is proposed by How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure (Florian Guggenmos, Annette Wenninger, Alexander Rieger, Gilbert Fridgen, Jannik Lockl, 2020).

Addresses

  • Design principle DP1: Do not store personal data on a blockchain

02

Linked concepts

Concepts connected by incoming or outgoing native Markdown links.

1 Design Principle

design-knowledge/gdpr-workflow-asylum-dp1

DP1 - Do not store personal data on a blockchain

Blockchain's paradigm of tamper-resistant storage jars profoundly with the right to rectification and erasure, so blockchain solution architects should keep personal data off-chain.

cross-organizationaldesign-principlegdpr-privacygdpr-workflow-asylum+2

1 Paper

papers/gdpr-workflow-asylum

How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure

Drawing on the German Federal Office for Migration and Refugees (BAMF) case, the paper presents two actionable design principles for GDPR-compliant blockchain solutions in cross-organizational workflow management: do not store personal data on a blockchain, and, where attribution is required, use a highly secure off-chain mapping architecture.

blockchaincross-organizationaldesign-science-researchgdpr-privacy+3

03

Relationships

Directed links from Markdown. Heading context is displayed as derived metadata, not as a formal OKF predicate.

Outgoing links

2
  • →

    DP1 - Do not store personal data on a blockchain

    Design Principle
    Source
    DP2 - Use a highly secure off-chain mapping architecture for attribution
    Target
    DP1 - Do not store personal data on a blockchain
    Link label
    Design principle DP1: Do not store personal data on a blockchain
    Status
    Resolved

    Derived heading context: Addresses

  • →

    How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure

    Paper
    Source
    DP2 - Use a highly secure off-chain mapping architecture for attribution
    Target
    How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure
    Link label
    How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure
    Status
    Resolved

    Derived heading context: Source paper

Incoming backlinks

1
  • ←

    How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure

    Paper
    Source
    How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure
    Target
    DP2 - Use a highly secure off-chain mapping architecture for attribution
    Link label
    Design principle DP2: Use a highly secure off-chain mapping architecture for attribution
    Status
    Resolved

    Derived heading context: Design knowledge

04

Local graph

One-hop by default, with an optional bounded two-hop view. Nodes are concept files and arrows are Markdown links.

Knowledge graph

3 of 3 concepts · 5 directed relationships

Concept types
Press enter or space to select a node.You can then use the arrow keys to move the node around. Press delete to remove it and escape to cancel.
Press enter or space to select an edge. You can then press delete to remove it or escape to cancel.
Design PrincipleSeed

Use a highly secure off-chain mapping architecture for attribution

Concept identity

Concept ID
design-knowledge/gdpr-workflow-asylum-dp2
Producer label
DP2
Native type
design-principle

Description

Certain use cases require that information propagated and stored on the blockchain can be attributed to a natural person. As Design Principle 1 also applies in these use cases, the information on the blockchain must not allow attribution without further information, and blockchain solution architects should employ a pseudonymization solution. The information required for attribution, such as a mapping of abstract blockchain IDs with specific IDs, has to remain off-chain and should be propagated using secure information channels. With such a solution, data controllers can rectify, through the propagation of rectification transactions, and they can erase, through the deletion of the information required for attribution.

Tags

  • cross-organizational
  • design-principle
  • gdpr-privacy
  • gdpr-workflow-asylum
  • public-sector
  • workflow-management
Description and publication link from the library record.

05

Raw metadata

The complete producer frontmatter, serialized without server paths or runtime data.

Show producer frontmatter+
{
  "type": "design-principle",
  "title": "DP2 - Use a highly secure off-chain mapping architecture for attribution",
  "description": "If a use case requires that data on the blockchain be attributable to a natural person, use a highly secure off-chain mapping architecture.",
  "resource": "https://hdl.handle.net/10125/64234",
  "source_paper": "How to Develop a GDPR-Compliant Blockchain Solution for Cross-Organizational Workflow Management: Evidence from the German Asylum Procedure",
  "label": "DP2",
  "tags": [
    "gdpr-workflow-asylum",
    "design-principle",
    "gdpr-privacy",
    "cross-organizational",
    "public-sector",
    "workflow-management"
  ]
}