熬中药用什么锅| 嘴硬是什么意思| 阴唇外翻是什么原因| 备孕男性吃什么精子强| 灰指甲用什么药膏| 什么是前鼻音和后鼻音| 水银中毒会出现什么状况| 日本樱花什么时候开| 医美是什么专业| 做b超能查出什么| 亥时是什么时候| 郭富城属什么生肖| 什么米叫粳米| 女人吃什么提高性激素| 同样的药为什么价格相差很多| 孕晚期呕吐是什么原因| 胡萝卜炒什么好吃| 口什么腹什么| 尿素氮高吃什么药| 什么中药减肥| 出脚汗是什么原因| 直肠给药对小孩身体有什么影响| rh血型阳性什么意思| 鸟字旁与什么有关| 谢邀什么意思| 滑板鞋是什么鞋| 发烧吃什么药退烧快| 金瓜是什么瓜| 吃了龙虾后不能吃什么| 日斤读什么字| 小鹦鹉吃什么食物| 青春期什么时候结束| 出水痘吃什么药| 什么样的人| 枯草芽孢杆菌治什么病| 山炮是什么意思| 糟卤是什么| 吃什么对甲状腺有好处| 混合性皮肤用什么护肤品比较好| 代价是什么意思| 多饮多尿可能是什么病| 高血压不能吃什么水果| 梅干菜是什么菜| 丽珠兰是什么| 什么猫最好养| 男生喜欢什么样的女生| 七月六号是什么日子| 什么是配速| 牙齿上有黑点是什么原因| 太后是皇上的什么人| joway是什么牌子| 不务正业是什么意思| 梦见前女友是什么预兆| hvi是什么病| 法器是什么意思| 夏天有什么花| 属猴的是什么命| 祖师香是什么意思| 梦见好多死鱼是什么意思| 嗓子干痒咳嗽吃什么药| 脸上为什么会长痣| 什么是平行世界| 脸色发黑是什么原因| 明油是什么油| 什么是正颌手术| 闰月是什么| 红苋菜不能和什么一起吃| 介入超声是什么意思| 5到7点是什么时辰| 28年属什么生肖| 薄荷泡水喝有什么好处| 吃了安宫牛黄丸要禁忌什么不能吃| kcal是什么意思| 扁桃体是什么样子图片| 左侧上颌窦炎症是什么意思| 心里害怕紧张恐惧是什么症状| 绿松石五行属什么| 三伏天要注意什么| 湿气重吃什么蔬菜| 草龟吃什么食物| 季度是什么意思| 山今读什么| 百香果配什么好喝| 甲沟炎是什么样子的| 喝黄芪水有什么好处| 南极被称为什么| jeans什么意思| 肾积液是什么原因造成的| 真心话大冒险问什么| 试管是什么| laurel是什么牌子| 血脂高看什么科| 心衰吃什么食物好| 为什么总是放屁| 缺金的人戴什么最旺| 什么是血清| 林冲到底属什么生肖的| 亲友是什么意思| msm是什么药| 感冒什么症状| 口腔溃疡是缺什么维生素| 下放是什么意思| 戒色有什么好处| 老来得子是什么意思| 花胶和什么煲汤最适合| 手腕凸起的骨头叫什么| 孕妇查凝血是检查什么| 爸爸的哥哥叫什么| 睡觉流口水是什么情况| 减少什么| 三月生日是什么星座| 复方板蓝根和板蓝根有什么区别| 什么是腺样体面容| 乳腺结节看什么科| 甘露醇是治什么的| gd是什么意思| 腿脚肿胀是什么原因引起的| 狗皮肤病用什么药| 业力是什么意思| 白带是什么颜色| 咂嘴是什么意思| 亲亲抱抱举高高什么意思| 香肠炒什么菜好吃| 喝酒肚子疼是什么原因| 3月18是什么星座| 奕字属于五行属什么| 睡眠障碍应该挂什么科室| 什么是执念| 风湿挂什么科| 白介素6升高说明什么| 月经推迟一个月不来什么原因| 儿白是什么意思| 植树节是什么季节| 密云有什么好玩的地方| 不放屁是什么原因| 济南有什么好吃的| 电饭煲煮粥为什么会溢出来| 10月3号是什么星座| 开火是什么意思| 尿道口有灼热感是什么原因| 唏嘘是什么意思| 梦见跑步是什么意思| 什么人容易得心梗| 狗属于什么科| 同妻是什么意思| 鸟吃什么东西| 北海有什么好玩的| 2000年属什么的| 康乃馨的花语代表什么| 升阳是什么意思| 宫颈柱状上皮外移是什么意思| scc是什么检查项目| 御史相当于现在什么官| 喜什么自什么| 路旁土命什么意思| 左下腹痛挂什么科| 87岁属什么生肖| 王为念和王芳什么关系| 哈士蟆是什么东西| 失恋什么意思| 胸部dr是什么| 作陪是什么意思| 肾结水有什么危害| 什么鱼吃泥鳅| 911是什么电话| 店长的工作职责是什么| 心字旁的字有什么| 昙花是什么意思| 酱油色尿是什么原因| 三什么道中| 塑形是什么| 1981年属什么生肖| 不约而至是什么意思| 什么病会吐血| 左心室舒张功能减退是什么意思| 手信是什么意思| wl是什么意思| 南辕北辙什么意思| 乔迁送什么花| 妊娠是什么意思| 安宫牛黄丸什么时候吃最好| 阴性和阳性是什么意思| 犹太是什么意思| bae是什么意思| 5月7日是什么星座| 咽炎咳嗽吃什么| 脸部麻木是什么原因引起的| 内分泌失调有什么症状| 彪悍是什么意思| TPS什么意思| 吲达帕胺片是什么药| 眼皮浮肿是什么原因引起的| 红豆生南国什么意思| 脚掌痒是什么原因| 龟粮什么牌子的好| 吃什么预防脑梗| 口腹蜜剑什么意思| 院感是什么意思| 亭亭净植是什么意思| 周围神经炎是什么症状| 肖想是什么意思| 鸡冠花什么时候开花| 梦见被雷劈什么意思| 排卵期出血是什么原因引起的| 艾滋病潜伏期有什么症状| 臭虫长什么样| 触及是什么意思| 手指甲紫色是什么原因| 最小的一位数是什么| 经期能吃什么水果| 睡觉喜欢流口水是什么原因| 陶渊明是什么先生| 什么好| 猫能吃什么水果| 童话故事有什么| 第二视角是什么意思| 磨牙是什么原因| 舌中间有裂纹是什么原因| 寂灭是什么意思| 不让看朋友圈显示什么| 槐米是什么| 甲醇和乙醇有什么区别| 超敏c反应蛋白高是什么意思| 天哭星是什么意思| 梦泪什么意思| 肺纤维灶是什么意思| 贪恋是什么意思| 什么叫做基本工资| 阳虚是什么原因引起的| 骨质增生吃什么药| senda是什么牌子| 早谢是什么症状| 齿痕舌吃什么药| 鼻塞喉咙痛吃什么药| 晨僵是什么症状| 肩膀疼挂什么科室最好| 阴道是什么味道| 省纪委常委是什么级别| 苏格兰牧羊犬吃什么| 万年青是什么菜| 插入是什么感觉| 拉k是什么意思| 七夕节什么时候| 小腿痛什么原因| 伊朗用什么语言| 绿豆的功效与作用是什么| 科学解释什么叫上火| 呼吸胸口疼是什么原因| 手臂酸痛什么原因| 提高免疫力吃什么维生素| 胃烧心吃什么能缓解| 立冬吃什么| 射精太快吃什么好| 红楼梦为什么是四大名著之首| 心肌炎用什么药治疗最好| 教师节应该送老师什么花| 中字五行属什么| 不感冒什么意思| 阴道炎用什么药效果好| 检查血脂挂什么科| 吃荔枝有什么好处| 小腹左侧疼是什么原因| 女人吃什么疏肝理气| 首套房有什么优惠政策| 百度Jump to content

有一群人叫“青岛企业家”,专注一件事就干一辈子!

From Wikimedia Foundation Governance Wiki
百度 长城小镇位于京北大七环内,项目距北京市区约120公里,未来将计划接驳S5号线京郊铁路。

The right to privacy is at the core of how communities contribute to Wikimedia projects — upholding this right is a central aspect of WMF’s human rights commitments. These data collection guidelines outline best practices at the Wikimedia Foundation for managing privacy risk in data collection. They complement WMF’s data retention and data publication guidelines, providing guidance about how to handle potentially sensitive data through the entirety of its life cycle at WMF. Taken together, these guidelines contribute to our commitment to protect users' data as elaborated in our privacy policy.

The breadth of what constitutes data collection can vary widely as many teams at the Foundation engage in some kind of data collection behavior. To provide guidance in meaningfully evaluating a potential data collection activity, we primarily look to understand information pertaining to five general categories:

  • Data subjects (e.g. readers, editors, app users, donors)
  • Data senders (e.g. WMF tools like a browser, app, or extension; or third-party software providers)
  • Data recipients (e.g. WMF, WME, affiliates, third-party software providers, the public)
  • Type of data (e.g. user account information, page information, telemetry data, demographic information, attitudinal or behavioral information, geographic information, event information)
  • Data usage and changes to data usage (e.g. published in raw format, published anonymously, not published; de-identified, aggregated, and kept in perpetuity)

The following Data Collection Risk Tiering Grid presents those categories as criteria to help staff assess the risk tier of their data collection activity.

Data collection risk tiering grid

Low risk criteria
  • The data subject is subject to an applicable WMF Privacy Policy;
  • The data sender is subject to an applicable WMF Privacy Policy;
  • The data recipient of the data is WMF, or a WMF-approved third-party software provider that does not use cookies;
    • Note: if the third-party software provider is using cookies or other client-side storage, this immediately becomes medium or high risk activity
  • The data will be kept for a typical retention period and then deleted, aggregated, or de-identified and sanitized;
  • The data collected does not include:
    • multiple items of unhashed personal information[1]
    • personal information + username/user ID or app ID
    • long-term viewing history[2]+ unique ID[3]
    • granular geographic data[4]+ unique ID[3]
    • sensitive data[5]
Risk level Tier 1: High risk Tier 2: Medium risk Tier 3: Low risk
Data that could certainly expose data subjects or recipients to risk of harm. Data that could likely or possibly expose data subjects or recipients to risk of harm. Data that is unlikely to expose data subjects or recipients to risk of harm.
Criteria The data collected is ongoing[6]and fails TWO OR MORE of the low risk criteria.

OR

The data collected is one-off[7]and fails THREE OR MORE of the low risk criteria.

The data collected is ongoing[6]and fails ONE of the low risk criteria.

OR

The data collected is one-off[7]and fails TWO of the low risk criteria.

The data collected is ongoing[6]and fails ZERO of the low risk criteria.

OR

The data collected is one-off[7]and fails ONE OR ZERO of the low risk criteria. The single criterion failed cannot be collecting sensitive data.

Response time goal 3 work weeks 5 work days N/A
Expected % of requests (internal metric) 15% 35% 50%
What should WMF teams do next?
Things to do for all risk tiers
  • Once you have assessed your tier of risk using this tiering grid, log data collection activity in the data collection activity log form.
  • If you decide later to use the data obtained for a new purpose, please reassess your tier of risk using the tiering grid and submit a new data collection activity log form.
Additional things to do depending on your data collection activity and risk tier For surveys: Fill out the survey privacy statement to supplement your data collection activity log form.
For all other data collection activities: Submit data collection activity to the L3SC request form to supplement your data collection activity log form, for review by Privacy Engineering and Privacy Legal (+ other teams if needed). Reviewers will suggest mitigation measures to make it low or medium risk.

During the L3SC process, the reviewers will request approval of the data collection activity from a director or higher that the team that owns the data collection activity in order to proceed with high-risk collection activities.

For all other data collection activities: Submit data collection activity to the L3SC request form for review by Privacy Engineering and Privacy Legal (+ other teams if needed). Reviewers will suggest mitigation measures to make it low risk.

During the L3SC process, reviewers will request approval of the data collection activity from the engineering manager of the team that owns the data collection activity in order to proceed with medium-risk collection activities.

For all other data collection activities: No additional review by Privacy Engineering or Privacy Legal is necessary.

Recurring or changes to existing data collection activities

If a data collection activity is recurring,[8] subsequent reviews will be of a known risk, and will require less stringent review standards. For example:

  • A high risk one-off survey in the first quarter would be deemed a known high risk (faster response and decision cadence) in later quarters if the information collected is the same.
  • A medium risk ongoing data collection activity on iOS would be deemed a known medium risk (only requiring entry into the log form) if an identical schema had already been reviewed for Android.

Proposed changes to existing ongoing data collection activities should be considered to involve a change in the type of data collected, and should be considered a new entry in the data collection activity log form/a new data collection to review.

Mitigations

Here are a list of example mitigation measures you can take to lower the risk of your data collection activity:

  • Because it is trivially easy for a bad actor to derive granular geographic data from a full IP address, for the purposes of these guidelines, collecting complete versions of IP addresses are considered to be both a unique identifier[3] and to leak granular geographic data — therefore, collecting IP address is a medium risk data collection activity. Relevant mitigations include:
    • dropping the last two octets of IP addresses (e.g. 192.168.xxx.xxx)
    • hashing IP address + user-agent (similarly to actor signature)
  • For circumstances in which granular geographic data is critical, consider collecting sub-national geographic data and then dropping all unique IDs.
  • To collect riskier unique IDs (like IP address) and maintain a low-risk status, it may be necessary to hash them.

Definitions

  1. Personal information: (from the Wikimedia Foundation Privacy Policy): Information you provide us or information we collect that could be used to personally identify you. To be clear, while we do not necessarily collect all of the following types of information, we consider at least the following to be "personal information" if it is otherwise nonpublic and can be used to identify you:
    1. your real name, address, phone number, email address, password, identification number on government-issued ID, IP address, user-agent information, payment account number;
    2. when associated with one of the items in subsection (1), any sensitive data such as date of birth, gender, sexual orientation, racial or ethnic origins, marital or familial status, medical conditions or disabilities, political affiliation, and religion.
  2. Long-term viewing history data: Data that logs pageview histories >90 days for logged-out users or >1 pageview for logged-in users.
  3. 3.0 3.1 3.2 Unique identifier (ID): An expansion of "Personal Information" as defined in the WMF Privacy Policy. To this list we add username/user ID, and app install ID. Hashed versions of plaintext unique IDs are still considered to be unique IDs, since they may still uniquely identify a user.
  4. Granular geographic data: Data that identifies the location of a user at a sub-national resolution.
  5. Sensitive data: (from the Wikimedia Foundation Privacy Policy): date of birth, gender, sexual orientation, racial or ethnic origins, marital or familial status, medical conditions or disabilities, political affiliation, and religion.
  6. 6.0 6.1 6.2 Ongoing data collection: Data collected in an ongoing manner, typically through automated means. This covers telemetry data from app/web interactions. Importantly, it is data collected through implicit consent just by using WMF projects. It can be long term (for monitoring usage over an indefinite amount of time) or short term (for conducting experiments that have a definite end).
  7. 7.0 7.1 7.2 One-off data collection: Data collected in a single instance, typically through a survey. Data subjects in this context may explicitly consent to sharing data by acknowledging a privacy statement, filling out a survey, and clicking a "Submit" button.
  8. Recurring data collection: Instances of data collection that either:
    • recur after some time period (e.g. each month, quarter, or year) or
    • have equivalent data collection schemas across some set of contexts (e.g. iOS and Android).
高密度脂蛋白偏高是什么原因 同型半胱氨酸偏高吃什么药 梦见自己生男孩是什么意思 浑圆是什么意思 跑路什么意思
做梦梦到大蟒蛇是什么意思 cefiro是什么品牌 四川的耗儿鱼是什么鱼 洋葱和什么不能一起吃 梦见自己被绑架了是什么意思
浇花的水壶叫什么 双顶径是什么 扁桃体有什么用 宝宝拉肚子能吃什么 八点半是什么时辰
梦见地震是什么意思 没晨勃说明什么问题 胃痛胃胀什么原因引起的 四不像长什么样 咿呀咿呀哟是什么歌
肾阴虚有什么症状hcv7jop9ns4r.cn 胃痛吃什么hcv9jop3ns9r.cn 女性安全期是什么时候hcv8jop2ns1r.cn 火龙果有什么好处hcv8jop3ns5r.cn 一级警长是什么级别bysq.com
1924年属什么生肖hcv8jop2ns2r.cn 音字五行属什么hcv9jop1ns7r.cn 棉絮是什么意思hcv7jop7ns0r.cn 多吃蔬菜有什么好处hcv8jop6ns7r.cn 下肢水肿吃什么药hcv9jop2ns7r.cn
下肢静脉血栓挂什么科hcv8jop6ns3r.cn suki是什么意思hcv7jop6ns6r.cn 觉是什么结构1949doufunao.com 空腹血糖受损是什么意思hcv9jop2ns7r.cn 87年属什么的生肖hcv9jop4ns2r.cn
吃桂圆有什么好处beikeqingting.com 儿童乐园有什么好玩的hcv8jop8ns7r.cn sp是什么面料成分beikeqingting.com 八字七杀是什么意思hcv9jop4ns2r.cn 太阳穴疼吃什么药hcv9jop2ns2r.cn
百度