11I/ Identity Escrow - Accountability AND Privacy
Identity Escrow - Accountability AND Privacy
Wednesday 11I
Convener: Sam Curren, Ken Ebert, Suresh Batchu, Kiran Addepalli
Notes-taker(s): Kiran Addepalli [kiran@digitaltrust.net]
Discussion notes, key understandings, outstanding questions, observations, and, if appropriate to this discussion: action items, next steps:
Link to Slides: https://docs.google.com/presentation/d/1kHoDZ-4BFjjJpVL1NnQVRMZdzTIDCddg31Q23Q4AwAw/edit?ts=606f6eab#slide=id.gd2e8d1fc4c_3_4
Can the escrow hold the "Proof of the information" as opposed to the information itself.
Mortgage Service - might seem to be an authorization to access the data directly or the issuer present directly.
What gets put into escrow is flexible.
Trigger event or a lockbox kind of capability. How is the claim released to relying parties? How does it eliminate mischief and false claims.
There needs to be some accountability on the service provider to claim false releases. Automation may not be able to completely eliminate false triggers, some level of human intervention for complex cases.
Contractual wrapper for
Technical and legal framework for accountability.
Don’t have data but key to unlock the escrow. So that no insider can unlock the data. Separating the data release from the encryption release would be better.
It is better to hold proof of data. Because of the risk and liability, it can create incentives to escrow providers.
We should chat about the CDDE (Community Distributed Data Escrow) that we have developed with UN, WEF, NYU Gov lab for data handling in disaster settings. Very related to this. Blind trust, etc. for self shielding.
Niels van Dijk - Encrypt the personal data with a future data - polymorphic pseudonyms one would encrypt using the keys of the future recipient. polymorphic pseudonyms one would encrypt using the keys of the future recipient.
In terms of using standard semantics for this (with receipts as a mechanism for escrow) then e.g. A contract notice receipt would have the rights for the contract associated - and the notice/rights are the escrow container (or semantic container)
Incentivizing the users to keep the data fresh with the escrow service.
Escrow is nice concept because of its “just in time” element of availability. NFT market would benefit from Identity escrow.
Escrow concept is also great to explain what we might see as a transaction receipt with a credit card. In which payment is shown in escrow - at checkout..
Legal interoperability across escrow agreements can be partial and still useful.
Just like ALL contracts now have identical bankruptcy clauses, whatever the context. All escrow agreements may share a subset of terms.
Agree. Seems like this could be very useful for Estate Planning/generational transfers etc, where there are not only multiple parties involved in a transaction, but transactions that unravel over time?
Acting from beyond the grave! Like trusts. Beware the rule against perpetuities!
Guardian in case of incapacitation
If escrow takes liability without knowing what data is being saved. Daniel - Verifiable Encryption . If the key is the one that is generated by the Escrow service, then they know that they…https://link.springer.com/chapter/10.1007/978-3-540-45146-4_8
There needs to be uniformity of standardized contracts. That constitutes governance itself. Constructions , bankruptcy clauses, like standard contracts. Escrow can be provisional things but practices will grow and become institutionalized down the line.
Community initiated distributed escrow - every holder of the data and escrow agent. If there is a trigger, the data sharing.
Scott ! - that’s why we should use internationally standards semantics for the Escrow framework .. Identity Governance like a PII controller.
Cryptographic commitment - potential substitute for escrow service.
Humans dwell in cure periods for default. We defaulters all!
Contracts can be formed by mere humans among themselves (P2P duty creation) - Public laws cannot
Contracts require less process and are more nimble. Public law isn’t
No administrative procedures act for contracts.
Harder to pre-consent. Query whether might have a problem under the EU “derogation” position on GDPR. Does pre consent to trigger of release of Identity constitute an unpermitted “too general” consent?
If contracts cannot be understood, there cannot be a meeting of the minds. If there is no meeting of the minds, the contract is voidable from formation. How deal with unconscionability issue in consumer/citizen facing contexts. Interesting note: Most people have no idea how escrows work.
Standardized contracts are reviewed by an "AI Lawyer".
So, here is another possibility. Identity escrow makes it possible to instantiate GDPR type rights IN ANY JURISDICTION. We can form GDPR community in US?
So, here is another possibility. Identity escrow makes it possible to instantiate GDPR type rights IN ANY JURISDICTION. We can form GDPR community in US?
Links that came up during the call:
• https://onlinelibrary.wiley.com/doi/abs/10.1111/j.1430-9134.2001.00173.x
• https://dhh1128.github.io/zkpcreds/trust-paradox-rebuttal.html
• Feedback loop into privacy law: https://kantarainitiative.org/confluence/display/WA/Privacy+as+Expected%3A+UI+Signalling+a+Consent+Gateway+For+Human+Consent
https://link.springer.com/chapter/10.1007/978-3-540-45146-4_8