Privacy has social, legal, commercial, and technological dimensions, where each dimension deeply influences the others. Worldwide, citizens have in many cases asked their governments to provide them with basic privacy assurances for their interactions with businesses. Such regulations can be complicated and impede businesses from effective operation. This project focused on the formal description and analysis of privacy regulations with an aim to understand their consequences and contribute to efforts to build compliant information systems.


Strong and Weak Policy Relations
Michael J. May, Insup Lee, Carl A. Gunter and Steve Zdancewic
IEEE International Symposium on Policies for Distributed Systems and Networks (POLICY ’09), London, UK, July 2009.

Privacy APIs: Formal Models for Analyzing Legal Privacy Requirements
Michael J. May
Doctoral Thesis, University of Pennsylvania, March 2008.

Securing the Drop-Box Architecture for Assisted Living
Michael J. May, Wook Shin, Carl A. Gunter and Insup Lee
ACM Formal Methods in Security Engineering (FMSE '06), Alexandria, VA, November 2006.

Privacy APIs: Access Control Techniques to Analyze and Verify Legal Privacy Policies
Michael J. May, Carl A. Gunter and Insup Lee
IEEE Computer Security Foundations Workshop (CSFW  '06), Venice, Italy, July 2006.

Privacy Sensitive Location Information Systems in Smart Buildings
Jodie P. Boyer, Kaijun Tan and Carl A. Gunter
Springer Security in Pervasive Computing (SPC '06), Lecture Notes in Computer Science, pages 149-164, York, UK, April 2006.

The Consistency of Task-Based Authorization Constraints in Workflow Systems,
Kaijun Tan, Jason Crampton, Carl A. Gunter.
IEEE Computer Security Foundations Workshop (CSFW 04), Monterey, CA, July 2004.

A Formal Privacy System and its Application to Location Based Services,
Carl A. Gunter, Michael J. May, Stuart Stubblebine.
Workshop on Privacy Enhancing Technologies (PET 04), Toronto, Canada, May 2004.

