<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.idesg.org/index.php?action=history&amp;feed=atom&amp;title=Meeting_notes_from_June_30%2C_2014</id>
	<title>Meeting notes from June 30, 2014 - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.idesg.org/index.php?action=history&amp;feed=atom&amp;title=Meeting_notes_from_June_30%2C_2014"/>
	<link rel="alternate" type="text/html" href="https://wiki.idesg.org/index.php?title=Meeting_notes_from_June_30,_2014&amp;action=history"/>
	<updated>2026-05-26T16:33:23Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.38.4</generator>
	<entry>
		<id>https://wiki.idesg.org/index.php?title=Meeting_notes_from_June_30,_2014&amp;diff=4767&amp;oldid=prev</id>
		<title>Omaerz: 1 revision imported: Initial Upload of old pages from IDESG Wiki</title>
		<link rel="alternate" type="text/html" href="https://wiki.idesg.org/index.php?title=Meeting_notes_from_June_30,_2014&amp;diff=4767&amp;oldid=prev"/>
		<updated>2018-06-28T04:02:17Z</updated>

		<summary type="html">&lt;p&gt;1 revision imported: Initial Upload of old pages from IDESG Wiki&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;&amp;#039;&amp;#039;&amp;#039;6/30/14 [[Privacy Requirements]] Working Group Meeting Notes&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
== Agenda ==&lt;br /&gt;
* 4:00-4:05pm: Meeting begins, call for note-taker&lt;br /&gt;
* 4:05-4:25: Complete requirement review: &amp;quot;Organizations shall be accountable for how information is actually used and provide mechanisms for compliance, audit, and verification.&amp;quot;&lt;br /&gt;
** &amp;quot;Used&amp;quot; is too narrow -  does not cover transmission, collection, etc.&lt;br /&gt;
** Other requirements don&amp;#039;t relate to use - do we need to change them to include use, or can changes be made to this requirement to be broader?&lt;br /&gt;
** Are any other uses of data outside of the user&amp;#039;s agreement allowed (based on other requirements)?&lt;br /&gt;
** How can we include the concept of appropriate use?&lt;br /&gt;
* 4:25-4:40: Review requirement - &amp;quot;Organizations shall protect, transfer at the individual’s request, and securely destroy information when terminating business operations or overall participation in the Identity Ecosystem.&amp;quot;&lt;br /&gt;
** This requirement was tabled last week.&lt;br /&gt;
* 4:40-4:55: Review requirement - &amp;quot;Organizations shall provide effective redress mechanisms for, and advocacy on behalf of, individuals who believe their data may have been misused.&amp;quot;&lt;br /&gt;
* 4:55-5:00: Review next steps/actions, set agenda for next week.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Meeting Notes ==&lt;br /&gt;
&lt;br /&gt;
Requirement: &amp;quot;Organizations shall be accountable for how information is actually used and provide mechanisms for compliance, audit, and verification.&amp;quot;&lt;br /&gt;
* Requirement clarified to provide broader mandate. &amp;quot;Organizations shall be accountable for conformance to these requirements, and provide mechanisms for auditing, validation, and verification.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Requirement: &amp;quot;Organizations shall protect, transfer at the individual’s request, and securely destroy information when terminating business operations or overall participation in the Identity Ecosystem.&amp;quot;&lt;br /&gt;
* Proactive Privacy Subcommittee work provided language to clarify: &amp;quot;When terminating business operations or overall participation in the Identity Ecosystem, organizations shall, while maintaining the security of individuals&amp;#039; information, transfer it upon their request and destroy it unless they request otherwise.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Requirement: &amp;quot;Organizations shall provide effective redress mechanisms for, and advocacy on behalf of, individuals who believe their data may have been misused.&amp;quot;&lt;br /&gt;
* Committee should reference comments from Requirement.&lt;br /&gt;
* Is &amp;quot;data&amp;quot; and &amp;quot;misuse&amp;quot; too limiting of a scope for redress? It could, for example, include asking for too much data.&lt;br /&gt;
* Redress should be available to correct a wider range of concerns about the relationship between individuals and organizations&lt;br /&gt;
* Next PRWG meeting will begin with a discussion of how to reflect these concerns in a clarifying edit. Likely will focus on changing the end clause: &amp;quot;individuals who believe their data may have been misused.&amp;quot;&lt;/div&gt;</summary>
		<author><name>Omaerz</name></author>
	</entry>
</feed>