Skip to main content
QUICK REVIEW

[논문 리뷰] Improving Privacy Protection in the area of Behavioural Targeting

Frederik Zuiderveen Borgesius|ArXiv.org|2025. 12. 15.
Privacy, Security, and Data Protection인용 수 22
한 줄 요약

유럽 연합 데이터 보호법이 온라인 행동 타깃팅에서 프라이버시 보호를 강화하는 방법을 검토하는 박사 학위 논문으로, 동의에 의한 완전한 권한 부여만으로의 접근에서 보호 우선의 결합된 접근 방식으로의 전환을 제안한다.

ABSTRACT

This PhD thesis discusses how European law could improve privacy protection in the area of behavioural targeting. Behavioural targeting, also referred to as online profiling, involves monitoring people's online behaviour, and using the collected information to show people individually targeted advertisements. To protect privacy in the area of behavioural targeting, the EU lawmaker mainly relies on the consent requirement for the use of tracking technologies in the e-Privacy Directive, and on general data protection law. With informed consent requirements, the law aims to empower people to make choices in their best interests. But behavioural studies cast doubt on the effectiveness of the empowerment approach as a privacy protection measure. Many people click "I agree" to any statement that is presented to them. Therefore, to mitigate privacy problems such as chilling effects, this study argues for a combined approach of protecting and empowering the individual. Compared to the current approach, the lawmaker should focus more on protecting people. The PhD thesis is a legal study, but it also incorporates insights from other disciplines, such as computer science, behavioural economics, and media studies. This study is among the first to discuss the implications of behavioural research for European data protection policy. The topic of whether data protection law should apply to pseudonymous data is discussed in depth. The study contains a detailed analysis of the role of informed consent in data protection law, and gives much attention to the tension between protecting and empowering the individual within data protection law.

연구 동기 및 목표

  • 행동 타깃팅에 대한 EU e-Privacy Directive와 GDPR 하에서 정보에 입각한 동의의 효과를 평가한다.
  • 온라인 프로파일링에서 개인을 더 잘 보호할 수 있도록 데이터 보호법의 가능성을 탐구한다.
  • 가명 데이터의 역할과 보호와 권한 부여 사이의 긴장을 검토한다.
  • 보호를 권한 부여와 함께 강조하는 결합된 법적 접근 방식을 제안한다.

제안 방법

  • EU 데이터 보호 및 e-Privacy Directive 개념에 대한 법적 분석.
  • 컴퓨터 과학, 행동경제학, 미디어 연구를 포괄하는 학제간 합성을 제시한다.

실험 결과

연구 질문

  • RQ1유럽 데이터 보호법은 행동 타깃팅과 가명 데이터에 어떻게 적용되어야 하는가?
  • RQ2온라인 프로파일링 맥락에서 프라이버시를 보호하는 데 있어 정보에 입각한 동의의 역할은 무엇인가?
  • RQ3법이 행동 타깃팅 영역에서 개인을 보호하는 것과 권한 부여하는 것을 어떻게 균형 있게 조정할 수 있는가?

주요 결과

  • 동의 기반 접근은 행동 타깃팅에서 사용자를 권한 부여하고 프라이버시를 보호하기에 부족할 수 있다.
  • 권한 부여를 강조하는 것 외에 보호를 강조하는 결합된 접근 방식이 프라이버시 결과를 개선할 수 있다.
  • 본 연구는 행동 연구가 유럽 데이터 보호 정책에 미치는 함의를 논의한다.
  • 이 연구는 데이터 보호법에서 가명 데이터가 어떻게 다뤄지는지 이해하는 데 기여한다.
  • 분석은 데이터 보호법 내에서 개인의 보호와 권한 부여 사이의 긴장을 강조한다.

더 나은 연구,지금 바로 시작하세요

논문 읽기부터 검토까지, 연구 시간을 획기적으로 줄여보세요.

카드 등록 없음 · 무료 플랜 제공

이 리뷰는 AI가 만들고, 인간 에디터가 검토했습니다.