In this paper, we introduce a data capsule model, a self-contained and self-enforcing data container based on emerging self-sovereign identity standards, blockchain, and attribute-based encryption. A data capsule allows for a transparent, privacy-respecting, and secure exchange of personal data, enabling a progressive trust scheme in a semi-trusted environment. Each data capsule is bundled with its own access policy structure and verifiable data, drastically reducing the number of interactions needed among the user, the service providers, and data custodians. Moreover, by relying on the decentralized nature of blockchain and attribute-based encryption our proposed model ensures the access policies published by service providers are public, transparent, and strictly followed.
翻译:在本文中,我们引入了一个数据胶囊模型,一个基于新兴的自我主权身份标准、安全链和基于属性的加密的自足和自强化数据容器。一个数据胶囊可以透明、尊重隐私和安全地交换个人数据,在半受信任的环境中促成一个渐进式信任计划。每个数据胶囊都有自己的访问政策结构和可核查的数据,大大减少了用户、服务提供商和数据保管人之间所需的互动次数。 此外,通过依赖封闭链的分散性质和基于属性的加密,我们提议的模型确保服务供应商公布的访问政策是公开、透明和严格遵循的。