From 67832a96cbeee3194034133c19f3fcb4b80f643e Mon Sep 17 00:00:00 2001 From: Rahmadi Trimananda Date: Thu, 5 Sep 2024 15:51:22 -0400 Subject: [PATCH] Update xCOMPASS.md Filled out a missing LINDDUN category. --- xCOMPASS/xCOMPASS.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/xCOMPASS/xCOMPASS.md b/xCOMPASS/xCOMPASS.md index 8b49c25..76bf81d 100644 --- a/xCOMPASS/xCOMPASS.md +++ b/xCOMPASS/xCOMPASS.md @@ -294,11 +294,12 @@ The questions are categorized by Inside Neutral,
Unawareness
If there is a personal data deletion or modification request, would it be possible to implement it across the application?
Answer "Yes" if your app accomodates deletion/modification request for collected data. For example, when there is deletion request, the application can automatically remove records from all databases, servers, and other containers, including third party transfers. There should be clear description of how to request a deletion or modification. + Rectification/erasure (U.2.3) Outside Neutral,
Non-compliance
Does your application automatically pull information from the user or their device without consent?
Answer "Yes" if your app automatically collects data from users without asking for consent. Note that for "full informed consent", it should be (a) clearly indicated by a user by performing an action, like checking a box or clicking a button, (b) have specific details on what is being collected and who will be receiving the information, and (b) be freely given without coercion.

Is it possible that this automatic collection may include data that is not needed for the functionality of your application?
Answer "Yes" if your app also automatically collect data other than for functionality. Note that for "full informed consent", it should be (a) clearly indicated by a user by performing an action, like checking a box or clicking a button, (b) have specific details on what is being collected and who will be receiving the information, and (b) be freely given without coercion. - Rectification/erasure (U.2.3), Preferences (U.2.1) + Preferences (U.2.1) Data Reduction, Transparency and Disclosure