DSR Knowledge LibraryReusable design knowledge and grounded research support
HomeLibraryChatGive feedback ↗

DSR Knowledge Library

Research prototype · Native Open Knowledge Format

LibraryChatImprintPrivacyEvaluation survey ↗
Library/Papers/Yes, I Do: Marrying Blockchain Applications with GDPR

Research paper

Yes, I Do: Marrying Blockchain Applications with GDPR

The paper offers comprehensive guidance for developing GDPR-compliant blockchain solutions, contributing a generic framework and four design principles, and emphasizing the distinction between applications based on blockchain's data-integrity versus computational-integrity guarantees.

Paper
OverviewDSR gridPaper design mapDesign knowledgePublication metadata

01

Overview

Publication metadata and narrative from the current library record.

Authors
Benjamin Schellinger, Fabiane Voelter, Nils Urbach, Johannes Sedlmeir
Year
2022
Venue
HICSS 55 (2022)
Methodology
Action design research; structured literature review; derivation of a generic framework and design principles.
Publication
View publication
Design knowledge
View design knowledge on GitHub
blockchaincompliancedesign-science-researchenergyframeworkgdpr-privacyyes-i-do-gdpr

Summary

The paper offers comprehensive guidance for developing GDPR-compliant blockchain solutions, contributing a generic framework and four design principles, and emphasizing the distinction between applications based on blockchain's data-integrity versus computational-integrity guarantees.

Artifact

A generic framework and design principles for GDPR-compliant blockchain applications (energy-sector use case).

Methodology

Action design research; structured literature review; derivation of a generic framework and design principles.

02

DSR grid

Six dimensions represented in the current paper record.

01

Problem description

Because of blockchains' intrinsic transparency and immutability, blockchain applications are challenged by privacy regulation such as the GDPR, so use cases often fail to scale to production.

02

Input knowledge

GDPR requirements; the distinction between blockchains' data-integrity and computational-integrity guarantees; cryptographic and anonymization techniques; an energy-sector use case.

03

Research process

Action design research: a structured literature review and derivation of a generic framework and design principles.

04

Key concepts

Blockchain, GDPR, data integrity, computational integrity, privacy, design principles.

05

Solution description

A generic framework and four design principles for developing GDPR-compliant blockchain applications. Solution-space representation: Model/framework plus four design principles (design theory).

06

Output knowledge

Four design principles: GDPR compliance by design, state-of-the-art cryptography, differentiate the aims of data processing, and review all relevant laws.

03

Paper design map

The default semantic design map canonicalizes stored design relationships; Raw links retains the complete technical Markdown-link view.

Design-knowledge map

4 stored concepts / 0 canonical semantic relationships

Concept types
Design Principles
Press enter or space to select a node.You can then use the arrow keys to move the node around. Press delete to remove it and escape to cancel.
Press enter or space to select an edge. You can then press delete to remove it or escape to cancel.

04

Design knowledge

Directly linked concepts, grouped by their represented design-knowledge category.

4 Design Principles

design-knowledge/yes-i-do-gdpr-dp1

DP1 - Acknowledge GDPR compliance by design

Consider the requirements of the GDPR throughout the whole development cycle of the blockchain application.

compliancedesign-principleenergyframework+2
design-knowledge/yes-i-do-gdpr-dp2

DP2 - Use state-of-the-art cryptography

Always use the latest but established cryptographic techniques for hiding personal data.

compliancedesign-principleenergyframework+2
design-knowledge/yes-i-do-gdpr-dp3

DP3 - Differentiate aims of data processing

Differentiate the aims of data processing, since different anonymization techniques allow proving data integrity or computational integrity.

compliancedesign-principleenergyframework+2
design-knowledge/yes-i-do-gdpr-dp4

DP4 - Review all relevant laws

Do not only evaluate reconciliation with the GDPR but also further industry-specific laws.

compliancedesign-principleenergyframework+2

05

Publication metadata

Additional metadata represented in the current library record.

Show additional metadata+
{
  "type": "paper",
  "title": "Yes, I Do: Marrying Blockchain Applications with GDPR",
  "description": "The paper offers comprehensive guidance for developing GDPR-compliant blockchain solutions, contributing a generic framework and four design principles, and emphasizing the distinction between applications based on blockchain's data-integrity versus computational-integrity guarantees.",
  "resource": "https://hdl.handle.net/10125/79900",
  "authors": "Benjamin Schellinger, Fabiane Voelter, Nils Urbach, Johannes Sedlmeir",
  "year": 2022,
  "venue": "HICSS 55 (2022)",
  "methodology": "Action design research; structured literature review; derivation of a generic framework and design principles.",
  "dsr_grid": true,
  "dsr_solution_space": "Model/framework plus four design principles (design theory).",
  "tags": [
    "yes-i-do-gdpr",
    "gdpr-privacy",
    "energy",
    "compliance",
    "framework",
    "design-science-research",
    "blockchain"
  ]
}