Archive for the 'Commentable' Category

PSB Review 2: The Digital Opportunity

Tuesday, April 29th, 2008

Please leave comments (by clicking on the bar) to help us respond to Ofcom’s ‘Digital Opportunity’ consultation. We plan to respond only to the Section 6 questions (”Meeting audience needs in a digital age”), which are laid out below. We have also reproduced the headlines of that section although strongly recommend that you read the entire section of the consultation document before commenting on the questions. Our submission will call for distribution of PSB productions to be in non-DRMed and remixable. Also, we will suggest a new exception should be introduced to encourage a culture of transformative works.

Introduction and headlines from Section 6: Meeting audience needs in a digital age

6.1 The preceding section described the future prospects for delivery of public purposes across multiple platforms. This section sets out a vision for the future provision of public service content, based on audiences’ priorities and the new opportunities emerging for delivery of public purposes on interactive platforms. We assess whether the existing model for public service broadcasting is sufficiently flexible to adapt to the potentially radical change in audience requirements over the next ten years and beyond, and argue that a new model is likely to be needed to secure the ongoing benefits of public service content.

6.2 We investigate two core underlying principles of the existing model – universal availability of free-to-view content, and plural provision – and argue that although these principles remain valid, a more nuanced understanding of their implications will be needed for a new era characterised by greater choice, variety and flexibility in media consumption.

A vision for public service content in a digital age

The value of public service broadcasting is a function of availability, reach, impact and the cost of intervention

Intervention to achieve public purposes will need to take different forms in future

Public service content should continue to be widely available, but some more targeted interventions may maximise overall reach, impact and value

Plural provision delivers significant benefits to audiences

The existing model for public service broadcasting will struggle to adapt to the changing environment

Relevant questions - Section 6: Meeting audience needs in a digital age

i) Do you agree with Ofcom’s vision for public service content?

ii) How important are plurality and competition for quality in delivering the purposes and characteristics of public service broadcasting, and in what areas?

iii) In maximising reach and impact of public service content in the future, what roles can different platforms and services play?

iv) Do you agree that the existing model for delivering public service broadcasting will not be sufficient to meet changing needs in future?

Creative Content Online

Wednesday, January 30th, 2008

The European Commission are planning legislation to encourage a Single Market in online delivery of copyright works. They are canvassing opinions as part of a public consultation on DRM, multi-territory rights licensing and piracy. We will draft a submission by the end of February. Please help us by commenting on the questions below.

Please note that we have reproduced the annex (questions) of the European Commission’s consultation on ‘Creative Content Online in the Single Market’. If you want more context on their proposal then have a read of the launch page (click to see) or download the 10 page document (click to download)

Digital Rights Management

1) Do you agree that fostering the adoption of interoperable DRM systems should support the development of online creative content services in the Internal Market? What are the main obstacles to fully interoperable DRM systems? Which commendable practices do you identify as regards DRM interoperability?

2) Do you agree that consumer information with regard to interoperability and personal data protection features of DRM systems should be improved? What could be, in your opinion, the most appropriate means and procedures to improve consumers’
information in respect of DRM systems? Which commendable practices would you identify as regards labelling of digital products and services?

3) Do you agree that reducing the complexity and enhancing the legibility of end-user licence agreements (EULAs) would support the development of online creative content services in the Internal Market? Which recommendable practices do you identify as regards EULAs? Do you identify any particular issue related to EULAs that needs to be addressed?

4) Do you agree that alternative dispute resolution mechanisms in relation to the application and administration of DRM systems would enhance consumers’ confidence in new products and services? Which commendable practices do you identify in that respect?

5) Do you agree that ensuring a non-discriminatory access (for instance for SMEs) to DRM solutions is needed to preserve and foster competition on the market for digital content distribution?

Multi-territory rights licensing

6) Do you agree that the issue of multi-territory rights licensing must be addressed by means of a Recommendation of the European Parliament and the Council?

7) What is in your view the most efficient way of fostering multi-territory rights licensing in the area of audiovisual works? Do you agree that a model of online licences based on the distinction between a primary and a secondary multi-territory market can facilitate EU-wide or multi-territory licensing for the creative content you deal with?

8) Do you agree that business models based on the idea of selling less of more, as illustrated by the so-called “Long tail” theory, benefit from multi-territory rights licences for back-catalogue works (for instance works more than two years old)?

Legal offers and piracy

9) How can increased, effective stakeholder cooperation improve respect of copyright in the online environment?

10) Do you consider the Memorandum of Understanding, recently adopted in France, as an example to followed?

11) Do you consider that applying filtering measures would be an effective way to prevent online copyright infringements?

Taking forward Gowers: Copyright Exceptions

Tuesday, January 8th, 2008

This consultation is intended to bring greater flexibility to the UK copyright regime by strengthening existing and introducing some entirely new exceptions.

The point of copyright law is to engineer a market in creative expressions and in doing so the law tries to balance the competing interests of creators, publishers and the general public. In this mechanism, exceptions to monopoly rights protect a range of socially-important activities, such as education or reportage. They operate as a kind of safety valve.

We have not reproduced the entire consultation document because its 106 pages long. Instead, extracted below is the more-manageable Executive Summary, which outlines the consultation’s concerns. The Open Rights Group submission will concentrate on the ‘format shifting’ and ‘parody’ exceptions but you’re invited to leave comments on any aspect of the consultation. Scroll down to read and comment on the questions, or click here to get the full document.

EXECUTIVE SUMMARY

1. The Gowers Review of Intellectual Property (“the Gowers Review”) reported in December 2006. The Government announced, as part of the December Pre Budget Report, its intention to take forward the recommendations made to it.

2. A number of the recommendations from the Gowers Review suggest changes to copyright exceptions or the introduction of new exceptions. These changes concerning educational use, libraries and archives, format shifting and parody, are intended to provide more balance and flexibility in the intellectual property (“IP”) system by enabling consumers to use copyright material in ways that do not damage the interests of rights holders. They are also designed to provide clarity concerning the extent of the exceptions in the face of changing technologies.

3. This consultation considers how the Gowers recommendations on exceptions to copyright might be implemented in the UK. A number of options are set out in this paper and your views are sought on the specific questions contained in each chapter and on the issues generally.

Educational Exceptions

4. Two changes to the educational exceptions are proposed. The first is to amend section 35 of the Copyright, Designs and Patents Act 1988 (“CDPA”) which currently allows the recording and showing of broadcasts to students physically present at an educational establishment. The expanded section would allow distance learning students to receive and view these recordings remotely. The consultation paper considers the following issues:

  • Should the exception just apply to traditional broadcasts or be expanded to on-demand communications?
  • Who should have access to the recordings that are provided remotely?
  • How to ensure that material that is communicated to distance learning students is not communicated to others, including through secure environments?

5. The second proposed change is to section 36 of the CDPA which allows educational establishments to copy (usually by photocopier) passages from published works and provide hand outs to students. It is proposed that educational establishments be able to communicate such passages using interactive whiteboards and electronically to distance learners. This proposed change raises the following issues:

  • What limits should be placed on communication of material using interactive whiteboards and to distance learners? Should it be limited to secure virtual learning environments? Should regular email be allowed?
  • How would we prevent onward communication of material to persons not authorised to receive it?
  • Should the exception continue to be limited to literary, dramatic and musical works, or should teachers be able to take advantage of technologies that use a range of different works, including extracts from films, sound recordings and broadcasts?

Format Shifting

6. It is proposed to create a new exception that would allow consumers to make a copy of a work they legally own, so that they can make the work accessible in another format for playback on a device in their lawful possession. The exception would only apply to personal or private use. The owner would not be permitted to sell, loan or give away the copy or share it more widely (for example in a file sharing system or on the internet). Multiple copying would not be allowed. The development of this exception raises the following questions:

  • What classes of works would it apply to? Sound recordings and films or works of all kinds?
  • Exactly what acts would be non-infringing? What is meant by personal and private use?
  • How many format shifts would be allowed? Should consumers be allowed to format shift to a range of play back devices and to format shift again when certain technologies become obsolete?
  • Would the exception apply to works created or purchased after the exception was introduced or would it be acceptable to format shift back catalogues?

Research and Private Study

7. A number of policy issues are identified in response to the recommendation that the exception for research should be expanded to cover all forms of content, not just literary, artistic, dramatic and musical works:

  • What benefits can the expanded exception be expected to deliver?
  • Should the expanded exception cover both research and private study?
  • Should all forms of content be covered?
  • Should the exception cover all fields of study or just specific areas?
  • What might be the impact of the expanded exception on rights holders and other affected parties?
  • What action, if any, should be taken to address possible concerns about misuse of the expanded exception?

Libraries and Archives

8. Section 42 of the CDPA currently allows prescribed libraries or archives to make a copy of a literary, dramatic or musical work held in their permanent collection for the purpose of preservation and replacement. It is proposed that the exception be expanded to also allow copies of sound recordings, films and broadcasts to be made. It is further proposed that these prescribed bodies be able to format shift to address the problem that occurs where works are held on unstable media, and that more than a single copy be permitted where successive copying may be required to preserve permanent collections in an accessible format. This proposal raises a number of issues:

  • What would be the impact on right holders, and beneficiaries, if section 42 was expanded to cover all classes of works?
  • Is it necessary to place restrictions on the number of copies that can be made by prescribed bodies?
  • Should the exception be available to museums and galleries as well as prescribed libraries and archives?

Parody

9. The paper considers whether a new exception for parody should be introduced. A fair dealing style exception is proposed. The following issues arise:

  • What impact would the exception have? What problem would it address? What costs or benefits would accrue to right holders and users of copyright works?
  • Could an unlimited exception undermine the interests of owners of copyright in the underlying work by allowing the advertising or the endorsement of products which are contrary to the commercial interests of the copyright owners?
  • Should there be a requirement to acknowledge the underlying work and its author?
  • It is necessary to have a definition of parody, caricature or pastiche?
  • Is there any reason to exclude particular classes of work from the exception or should it apply to all?
  • Should it be an exception to all exclusive rights (e.g. reproduction, communication to the public, distribution and rental) of the copyright owner or only some?
  • Should the exception only apply where the underlying work has been made available to the public, and should the parody be limited to the underlying work or allow broader social commentary?

General

10. In relation to each of the proposed or expanded exceptions:

  • Should the corresponding provisions of the CDPA relating to performers’ rights be amended?
  • Should the beneficiaries of the exceptions be able to make use of the remedy in the CDPA where technological protection measures prevent the exercise of permitted acts?
  • Do you agree with our assessments of the three step test?
  • What impact would the expansion of the existing exception or introduction of a new exception have? What costs or benefits would accrue to right holders and users of copyright? Please comment on the partial impact assessments contained in Annex C and provide relevant evidence of the potential impacts of the proposed changes to copyright exceptions, including information on the financial or economic impacts.

Freedom of Information: Designation of Additional Public Authorities

Tuesday, December 18th, 2007

NOTES TO USERS

It is most helpful if you direct your comments specifically to the consultation’s questions, although we also welcome more general comments.

Introduction

This paper sets out for consultation proposals for increasing (subject to further consultation) the types of public organisations from which the public can access information. The consultation is aimed at:

  • public authorities working with organisations that are not covered by the Freedom of Information Act 2000;
  • those organisations carrying out public functions that are not currently covered; and the general public and others interested in access to public information in England, Wales and Northern Ireland.
  • members of the public

(Did not include standard formalities re stakeholders - which does not include ORG - and observing consultations code of practice criteria)

The proposals

1. The Freedom of Information Act 2000 (the Act) came into force on 1 January 2005. The Act makes provision for the disclosure of information held by public authorities. This contributes to the Government’s aim to strengthen the connection between citizens and the state. The Act aims to enable greater transparency, accountability and engagement, for example by providing more information about how taxpayers’ money is spent or by providing the context for better informed public debate.

2. The Act applies to over 100,000 public authorities. These include central government departments, local authorities, schools, colleges and universities, the health service, the police and a range of other public authorities. Those to which the Act applies are required to have a publication scheme, which sets out what information they routinely make available and how, and to answer requests for information in a timely manner. There are three categories to which the Act applies:

  • persons or organisations listed in Schedule 1 to the Act, either by name or by a description (such as ‘any government department’)
  • companies which are wholly-owned by a public authority
  • persons or organisations ‘designated’ by the Secretary of State as public authorities for the purposes of the Act.

The Act terms these persons or organisations ‘public authorities’. This paper uses the term ‘public authority’ to mean a person or an organisation covered by the Act. In the rest of the paper we discuss the coverage of organisations; however individuals who hold a specific office, for example the Auditor General for Wales, can also be covered in the same way.

3. There are clearly defined criteria for an organisation to be listed in Schedule 1 to the Act. Broadly speaking:

  • the body must be established under the Prerogative, or legislation, or
  • by a Minister, government department, or by the Welsh Ministers; and
  • appointments to the body or office must be made by the Crown, a Minister, a government department or the Welsh Ministers.

Organisations that meet these criteria are periodically brought within the scope of the Act by orders made under section 4. If a company is wholly-owned by a public authority, then it is automatically covered by the Act.

4. No organisation has yet been designated by the Secretary of State for Justice as a public authority for the purposes of the Act (the third category in paragraph 2).

5. The experience of the first years of FOI suggests that the Act is working well and has been successfully implemented across more than 100,000 public authorities. Now is the time to review the coverage of the Act, based on this experience, although the Government recognises that this experience may not directly translate to the private and voluntary sectors.

6. Section 5 of the Act enables the Secretary of State to designate two types of person or organisations as public authorities: those which:

  • appear to the Secretary of State to exercise functions of a public nature, or
  • are providing, under a contract made with a public authority, any service whose provision is a function of that authority.

The Secretary of State makes a designation by making what is called a section 5 order. Section 5 is a residual category: that is, a section 5 order cannot cover any organisation that could be listed in Schedule 1 to the Act by the making of a section 4 order, or is already covered by virtue of being wholly-owned by a public authority.

7. Section 7 of the Act requires that any section 5 order must state the functions or services provided under contract for which an organisation is designated. The Act will not apply to any other information held and therefore will not necessarily cover all the work carried out by an organisation. There will be some organisations all of whose functions could be designated under section 5 because they perform only functions of a public nature. In other cases the application of section 5 will be more limited.

8. It is possible in some situations for a section 5 order to designate a class of organisations rather than listing individual organisations. For example, it might be considered appropriate to designate as a class those contracted to run prisons under Part IV of the Criminal Justice Act 1991, rather than listing each individual contractor. This would help reduce the number of orders needed and ensure greater consistency of coverage.

9. The Secretary of State must consult with each organisation, or with representative organisations, before designation can take place. In addition, Impact Assessments would have to be carried out before designating any private bodies.

10. Once this consultation period is completed, the responses will be analysed and policy proposals formulated. In accordance with the Act, representatives of the relevant organisations will then be consulted further. Depending on the responses to the consultations, the Government would hope that any initial section 5 order could be brought into effect by the end of the next Parliamentary session.

Part 1: The case for reviewing coverage of the Act

11. The Government believes that there are good reasons for reviewing coverage of the Act:

  • some organisations receive large amounts of taxpayers’ money to carry out functions of a public nature but are not currently subject to the Act. In fulfilling those functions it would seem appropriate that they be subject to the same scrutiny as public authorities within the scope of the Act. To include such organisations within the scope of the Act would increase transparency in the distribution and expenditure of public funds;
  • some organisations have contracts to carry out important work that would otherwise be done by the public authority they contract with. For example, prisons run by HM Prison Service are currently covered by the Act but prisons operated by private contractors are not. The prisons provide similar services and apply similar standards regardless of whether they are run directly by the state or privately under contract;
  • access to information about a particular service may vary across the country if in some areas it is provided by a public authority, such as the local authority, and in other areas it is provided under contract by a private company or by a charity or voluntary organisation in receipt of a grant;
  • the coverage of the Act is narrower than that of the Environmental Information Regulations 2004 (EIRs). The EIRs apply to almost all the public authorities that are listed in Schedule 1 to the Act, as well as organisations that are under the control of these public authorities and are responsible for developing, managing, regulating or inspecting the environment on behalf of the public. It may be appropriate for some of the organisations that are covered by the EIRs also to be covered by the Act;
  • some non-public authorities consider that they carry out work of a public nature and would readily accept that they should be included within the scope of the Act.

12. The Government also believes that in considering how and when to extend coverage of the Act, a balance needs to be struck to ensure that the advantages of openness are considered alongside the potential impact on organisations to be covered. It will need to take account of reasons against extending coverage of the Act to at least some of the organisations to which section 5 could potentially apply. In particular:

  • any review needs to take account of FOI costs and the potential effect on the cost of provision of services and the willingness of businesses to contract to deliver services in the future. The requirements of FOI could have particular implications for smaller organisations as they may have less capacity to absorb extra costs. Evidence from organisations already covered shows that complying with the requirements of the Act places additional financial and administrative burdens on the public authorities. While some costs may be offset, for example by charging for the provision of information through publication schemes and through charging for disbursements, this would not cover the majority of the set-up and running costs of FOI;
  • the Government is committed to supporting the voluntary and community sector in its provision of public services and to reducing unnecessary burdens, in particular on small businesses, and so does not wish to regulate unnecessarily.

13. The Government considers it important to balance the potential benefits of increased information access against the impact on the delivery of public services, on businesses and on the voluntary and community sector. Any decisions on section 5 orders will need to be made on a case-by-case basis in the context of the overall policy objectives. The potential impact would be discussed in the required consultation with the suggested organisations or their representatives and analysed in an Impact Assessment.

14. In considering whether to extend the application of the Act to organisations with functions of a public nature or to public service contractors, the Government has considered a number of alternatives to using section 5 orders to increase information access. The options considered for the use of section 5 orders and for alternatives are set out below, with some of the considerations needing to be taken into account.

Option 1: take no action at this time. If no changes were made to the scope of the Act, the statutory right of access to information would continue to be limited to information held by those public authorities currently covered by the Act. There would be no new rights of access to information from other organisations providing public services under contract or which have functions of a public nature. As noted above, some such organisations are significantly involved in delivering public services but are under no general obligation to provide information about these activities. This may be thought anomalous and inconsistent with the objectives underlying freedom of information.

Option 2: self-regulation by relevant organisations. Organisations that meet the conditions of section 5 of the Act would be encouraged to provide information about their public activities on a voluntary basis instead of being required by a section 5 order to make information available in accordance with the Act. One possibility would be to draw up a Code of Practice for private organisations that are providing public services. If such a code could be agreed and generally observed, this might provide the benefits of increased access to information while minimising disruption and regulation of private organisations. The key questions that would need to be addressed are how far and how consistently organisations could be expected to abide by any non-statutory guidance and whether any sanctions could be brought to bear on organisations that failed to do so. Anecdotal evidence suggests that while some such organisations are already choosing to make information available, others are unwilling to do so.

Option 3: build information access obligations into contracts with organisations delivering public services. This would provide for some form of information access in relation to services provided under contract, but would not be an option in relation to organisations exercising functions of a public nature in their own right, rather than under contract. Information could be supplied either directly from the contractor or by requiring the contractor to send information to the public authority that would then be accessible from them under the Act. This is likely to be less burdensome to the contractor than being designated as a public authority. Standard clauses could be produced to include conditions and exemptions similar to those found in the Act. These could be adapted to meet the individual needs of the organisation providing the service. However, there would then be the risk of inconsistency in the level of information access from different contractors. That risk would be exacerbated if it were decided to introduce such obligations only into new
contracts (since reviewing all contracts already held by public authorities would be time consuming and costly). We would need to consider whether such contracts should be enforceable not just by the public authority, but also by members of the public seeking access to information. Another
disadvantage of this option would be that enforcement would take place ultimately through civil claims for breach of contract, rather than the enforcement machinery contained in the Act.

Option 4: introduce a single section 5 order covering a specified set of organisations. This option would increase public access to information from specific organisations that provide public services while leaving others outside the ambit of FOI. It would allow for FOI coverage to be extended only to those organisations in respect of which the government was satisfied that the benefits of information access outweighed any negative impacts. Possible criteria for identifying the most appropriate organisations to be covered by any section 5 orders are discussed in more detail in Parts 2 and 3 of this paper. It would of course be feasible to introduce further section 5 orders in future, but under this Option there would be no specific expectation on the Government to do so in the short term.

Option 5: introduce a series of section 5 orders so as progressively to widen coverage of the Act over time. This option would provide for progressive extension of the coverage of
FOI. Designation of new public authorities could be implemented in waves by means of successive section 5 orders. Organisations could be brought within the ambit of the FOIA in order of priority; this would also allow for evaluation of the benefits of each order before any new order was made.
Rigorous impact assessment would be needed to ensure that the benefits of access to the information held by any organisation or class of organisations outweighed any negative impact, for example on their ability to work effectively.

Data Sharing Review: A consultation on the use and sharing of personal information in the public and private sectors

Friday, December 14th, 2007

This consultation ends on 15 February 2008

A paper produced by the Data Sharing Review. This information is also available on the Review’s website.

Introduction

On 25 October the Prime Minister asked Richard Thomas, the Information Commissioner, and Dr Mark Walport, Director of the Wellcome Trust, to carry out an independent review of the use and sharing of personal information in the public and private sectors.

This review will consider whether there should be any changes to the way the Data Protection Act 1998 operates and the options for implementing any such changes. It will include recommendations on the powers and sanctions available to the regulator and courts in the legislation governing data sharing and data protection. It will also make recommendations on how data sharing policy should be developed in a way that ensures proper transparency, scrutiny and accountability.

The recommendations will seek to take account of technological advances and strike a balance that ensures appropriate privacy and other safeguards for individuals and society, whilst enabling the sharing of information to protect the public, increasing transparency, enhancing public service delivery and reducing the burden on business.

This paper sets out a series of questions relating to the use of personal information by the public and private sectors. Not all of these questions will be of relevance to all respondents. However, we would be grateful if you could answer those questions that are most relevant to you.

Personal information is shared and used every day by both public authorities and private organisations. The scope and methods of information sharing varies greatly – ranging from an individual piece of personal information being shared once between two public authorities to the regular and wholesale sharing of personal information between two or more databases. Across this spectrum, the key question that arises – in terms of the public good (such as law enforcement, child protection or improved public services) – is what is the rationale for the sharing of personal information that is being sought. This then leads to such questions as whether the personal information being shared is being used for the purpose for which it was collected and not for incompatible purposes, and whether the amount of information being shared (and access to it) is proportionate. The safeguards needed in such situations need to be sufficient to command public trust and confidence. This consultation paper, therefore, seeks views on the scope of personal information sharing – i.e. what personal information is shared – and on the spectrum of information sharing – i.e. in what way is personal information shared.

We would also be grateful for any additional suggestions or observations you may have – from both the public and private sector – that you believe to be relevant to the review. We would welcome case studies of information-sharing initiatives that have been successful in delivering benefits to individuals and to society. We would also welcome frank appraisals of examples where information sharing has either not been successful or has failed to materialise – for example due to funding problems or the legal framework; due to a lack of political, institutional or cultural will; or because of public objections. We would further welcome case studies where problems were encountered in the sharing of personal information or where the sharing of such information generated unacceptable risks.

The consultation is aimed primarily at experts and practitioners in the field of data sharing and data protection in the public and private sectors; government departments and agencies with an interest in data sharing and privacy; the devolved administrations; the European Commission; the general public; and relevant organisations in the UK.

We would be grateful for responses by Friday, 15 February 2008.

QUESTIONNAIRE

This document assumes a working knowledge of the Data Protection Act and other relevant legislation.

Section 1: Background

Question 1

Please explain what your interest in information sharing is. If you have an active involvement in personal information sharing, we would be grateful for the following information:

  • What kinds of personal information do you collect, hold and share?
  • How do you collect, hold and share such personal information?
  • For what purposes do you collect, hold and share such personal information?

Section 2: Scope of personal information sharing, including benefits, barriers and risks of data sharing and data protection

Question 2

What in your view are the key benefits of sharing personal information to
a) individuals and b) society? Please provide examples.

Question 3

What in your view are the key risks of sharing personal information to a) individuals and b) society? Please provide examples.

Question 4

As mentioned in the introduction, there are wide variations in the scope and methods of personal information sharing. What scope and what methods, in your view, pose the greatest opportunities or risks? Please explain the reasoning behind your response.

Question 5

Please provide examples of where, in your view, the public authorities hold too much data or not enough personal information, and the reasoning behind your response.

Question 6

Please provide examples of where, in your view, private sector organisations hold too much personal information or not enough personal information, and the reasoning behind your response.

Question 7

Please provide examples of cases where you believe the sharing of personal
information between two or more bodies would be beneficial, but where it is not currently taking place.

Please explain as fully as possible why information is not being shared, detailing what the barriers to the sharing of personal information are – e.g. legal, cultural, inancial, institutional – and how these barriers can be overcome.

Question 8

Please provide examples of cases where you believe that personal information is being shared between two or more bodies, but where this should not be taking place.

Please describe the information-sharing concerned and why you believe it should not be talking place, including the risks involved in such information-sharing.

Section 3: The legal framework

The Data Protection Act (DPA) regulates the processing of information, including its obtaining, holding, use and disclosure. The second principle of the DPA is as follows: “Personal data shall be obtained only for one or more specified and lawful purposes and shall not be further processed in any manner incompatible with that purpose or those purposes.”

Question 9

In your view, how well does the DPA work? Please outline the DPA’s main strengths and weaknesses and any proposals for changes you would like to see made, including suggestions for their implementation.

Question 10

In your view, how well do public authorities and private organisations adhere to the second principle of the DPA? How valuable do you believe the second principle is? Please provide examples and the reasoning behind your response.

Question 11

What technical, institutional or societal barriers stand in the way of the effectiveness of the DPA? Please provide examples.

Question 12

What further powers, safeguards, sanctions or provisions do you believe should be included in the DPA.

Question 13

Are there any other aspects of UK or EU law (such as EU Directive 95/46/EC) that impact positively or negatively on data sharing or data protection? Please provide examples.

Question 14

Are there any statutory powers unavailable that would enable better and more secure sharing of personal information – for example for identity authentication purposes – between a) public authorities and b) public authorities and private organisations? If so, what are they? Please provide examples and any steps you believe could be taken to improve matters.

Question 15

Are there any parts of the legal framework that place an unreasonable burden on business? Please provide examples. Please outline your proposals for streamlining the legislation to ensure that such burdens are minimised.

Section 4: Consent and transparency

Question 16

Is it clear whether and when you need individuals’ consent to share information about them? Are you clear about the form that consent should take? Please provide examples. Please provide details of any initiative you have been involved in that has been based on consent.

Question 17

What, if any, barriers would a requirement for gaining consent create to the sharing of personal information? Please explain your reasoning.

Question 18

Do you have any suggestions on how to make the sharing of information more
transparent? For example, should individuals be given strengthened access rights? And if so, how?

Should organisations be expected to do more to explain their use and sharing of personal information to the public? And if so, how?

Question 19

How can we best ensure that information sharing policy is developed in a way that ensures proper transparency, scrutiny and accountability? For example: In your view, how valuable is the Information Commissioner’s recently published Framework code of practice for sharing personal information. In your view, how valuable are privacy impact assessments along the lines
announced by the Information Commissioner on 11 December?

Section 5: Technology

Question 20

What impact in your view have technological advances had on the sharing and
protection of personal information? Please provide examples.

Question 21

Should the law mandate specific technical safeguards for protecting personal
information? For example, should there be an explicit requirement that all personal information held on portable devices be encrypted to a particular standard?

Question 22

How, in your view, could ‘privacy enhancing techniques’, such as the anonymisation or pseudonymisation of personal information, help safeguard personal privacy, whilst facilitating activities such as performing medical research? Is sufficient advice about the deployment of such techniques available? Are you confident about using them? What are the barriers to using them?

Section 6: International comparisons

Question 23

Are you aware of any jurisdictions whose legal framework for sharing and protecting personal information contains features that could be useful in a UK context? Please provide examples.

Question 24

Do you have any international examples of good practice in the sharing of personal information that could or should be adopted by the UK?

Question 25

Do you have any knowledge of jurisdictions that have adopted a particularly
permissive or restrictive approach to sharing personal information? What have the consequences of this been?

Question 26

Are you aware of significant differences in public attitudes to the sharing of personal information in other countries? Please provide examples and an explanation for why you believe this to be the case.

Section 7: Additional questions

Question 27

Are there any additional issues on the sharing of personal information and protection of personal information that this review should be considering? Do any of these issues apply specifically to your sector?

Question 28

Please set out any additional suggestions or observations you have that you believe will be of assistance to the review.

The Byron Review

Monday, October 22nd, 2007

TO ADD YOUR OWN COMMENT OR VIEW OTHER COMMENTS, CLICK ON THE BLUE BAR. THIS SERVICE IS IN BETA - PLEASE ALSO FEEDBACK ON BUGS AND SUGGESTED FUNCTIONS.

Launch Date 9 October 2007. Respond by 30 November 2007

The Byron Review is an independent review of the risks to children from exposure to potentially harmful or inappropriate material on the internet and in video games. This consultation calls for evidence from all groups and individuals. The Byron Review is an independent review supported by officials from the Department for Children, Schools and Families and the Department for Culture Media and Sport.

Skip to:

The review will conclude with a report to the Secretaries of State at the end of March 2008. Dr Tanya Byron will be supported by a team of officials from the Departments for Children Schools and Families and Culture, Media and Sport.

This call for evidence has been launched to gather information and advice from the widest possible range of people involved with the issues of the review. It is open to any interested person. Responses will be received and considered directly by the Review team and should not assume knowledge of any prior positions established in correspondence with the Departments. Details on how to submit your responses and views can be found later in this document. The Review will also be launching targeted consultation activity on these issues for children and young people.

2 Introduction

2.1 Children and young people are at the heart of this review. Video games and the internet are an established part of most children and young people’s lives, providing huge benefits and opportunities but also presenting potential risks. The Review’s starting point is that risks are a reality of life and that it is important that children and young people learn to understand, assess and manage risks as part of growing up. Nevertheless, some levels of risk may simply be unacceptable and the Review will explore how we can promote shared responsibility for the safety and wellbeing of children and young people.

Play and exploration are essential to healthy child development and positive childhood experiences, and rapidly changing technologies mean new and exciting play and learning opportunities are now available to our children. To make sure that playing video games is healthy, happy and fun, we need to check that games are suitable for the children who play them. This Review will look at video games in all their forms: hard copy, download and played online.

The Review will also be looking more widely at material and experiences available to children on the internet. The internet is a global community that is expanding at a phenomenal and exhilarating pace and with ever-changing ways of accessing it, including through new mobile technologies. Like the front door of a house, the internet is a portal to the community beyond. And while going online can offer children many new and positive experiences, they need to be prepared for what they might find on the web and helped to enjoy it and benefit from it safely. Just as we show our children how to use the local shop by walking the route with them, teaching them how to cross the road and how to spot potential danger, so we need to show them how to find their way safely and confidently around the internet. But we also need to feel confident that this virtual community has its own system of rules, safety checks and local people who care about protecting our children just as much as we hope those outside our front door do.

Throughout the review process we will seek to balance the value of qualitative and quantitative evidence with the views and experiences of all those who are affected by the issues under consideration. Everyone can contribute and the Review team has no doubt that strong opinions will be expressed alongside facts and evidence. The views, attitudes and beliefs we will hear have a significant role to play in our assessment and analysis because of the crucial role they will play shaping the social and cultural context of our work and recommendations.

Key questions for the review are:

What are the benefits and opportunities that new technologies offer for children, young people, their families, society and the economy?

What are the potential or actual risks to children’s safety and wellbeing of going online and playing video games and how do children, young people and parents feel about those risks?

To what extent do children, young people and parents understand and manage those risks and how can they be supported to do so?

What, if anything, could be changed in order to help children, young people and parents manage the potential or actual risks of going online or playing video games, and what are the pros and cons of different approaches?

Over the course of the Review the team will consider views gathered from a wide range of stakeholders: parents, children and young people (0-18); those involved in the welfare, education and safety of children; the academic and research community; the video gaming industry; gamers; the internet industry (producers, content aggregators, web hosts, internet service providers, search and navigation providers, consumer device manufacturers and retailers and the representative bodies of these groups); advertising and retail bodies; government agencies; other statutory and non-statutory public bodies and third sector organisations.

This Review will consider all potentially harmful or inappropriate material that children and young people might access or experience online or in video games. The Review will not tackle the existence of illegal content or activity online given that there is legislation and enforcement activity in place to address this – for example: online grooming of children, the creation and distribution of abusive images of children, under-age online gambling or content that incites racial or religious hatred. Nevertheless, the recommendations of the Review will no doubt be relevant to protecting children and young people from such illegal content and activity, because the primary objective of the Review is to help children, young people and parents understand, assess and manage the potential risks of going online and playing video games. The Review will also need to take into account the emergence of new ways of accessing the internet and video games such as mobile technology to ensure that the analysis and recommendations remain relevant in the future.

This Review will not cover television content as there is already extensive statutory regulation in this area, but the team welcomes any contributions on this or other areas where there may be lessons, examples or comparative approaches which would deepen our understanding of the issues.

We welcome all feedback and opinions and would encourage any person with views relating to this review to participate. Respondents do not need to answer all of the questions. This call for evidence closes at 5pm on Friday 30 November. In addition to this call for evidence, the Review will also be launching targeted consultation activities for children and young people.

  1. Video Gaming;
  2. The Internet;
  3. General comments

You can respond on-line or in writing (to DCSF, Area 1A, Castleview House, Runcorn, Cheshire, WA7 2GJ) or by email.

5 - Additional Copies

Additional copies are available electronically and can be downloaded

6 - Plans for making results public

This consultation will be used as evidence for the review, and will be published at the end of March 2008, on the DCSF website.

Sharing Personal Information (ICO)

Friday, August 24th, 2007

TO ADD YOUR OWN COMMENT OR VIEW OTHER COMMENTS, CLICK ON THE BLUE BAR. THIS SERVICE IS IN BETA - PLEASE ALSO FEEDBACK ON BUGS AND SUGGESTED FUNCTIONS.

Framework code of practice for sharing personal information

Content

About the Code

Code of practice recommended content:
1. Deciding to share personal information
2. Fairness and transparency3. Information standards
4. Retention of shared information
5. Security of shared information
6. Access to personal information
7. Freedom of Information
8. Review

Appendix 1 –Other relevant guidance from the Information Commissioner.

About the Code:

Why a framework code of practice?

The Information Commissioner’s first statutory duty is to promote the following of good practice in the handling of personal information. ‘Good practice’ means practice that appears to the Commissioner to be desirable, having regard to the interests of individuals and the organisations that process personal information about them. Good practice includes, but is not limited to, compliance with the requirements of the Data Protection Act 1998.

The Commissioner has produced this framework code to help organisations to adopt good practice when sharing information about people. The framework code is intended to be of use to all organisations involved in information sharing. Using the framework code will help organisations to ensure that they address all the main data protection compliance issues that are likely to arise when personal information is being shared. This in turn should help front-line practitioners to make well-informed decisions about sharing personal information.

The benefits of using the framework code of practice

The framework code breaks down compliance with a fairly complex piece of legislation into a series of logical steps. These should be easy for you to follow in practice, even if you’re not a data protection expert. Organisations will face different compliance issues, and may adopt their own approaches to dealing with them. However, using the framework code should help organisations to develop a common understanding and a consistency of approach.

Producing your own code of practice, and using it, will help you to establish good practice an to comply with the law. It will also help you to strike the balance between sharing personal information and protecting the people it’s about. This should engender the trust of the public and ensure that they understand, and participate in, your information sharing initiatives. Following a good quality code of practice will also give your staff the confidence to make well informed decisions, reducing the considerable uncertainty that can surround information sharing.

Ultimately, the following of good practice will make your information sharing more effective and will enhance the reputation of your organisation in the eyes of the people you handle information about.

What do we mean by ‘information sharing’?

There are two main sorts of information sharing. The first involves two or more organisations sharing information between them. This could be done by giving access to each others’ information systems or by setting up a separate shared database. The second involves the sharing of information between the various parts of a single organisation, for example between a local authority’s various departments. The content of the framework code should be relevant to both sorts of information sharing.

The framework code is for use primarily in circumstances where information is being shared on a routine, systematic basis. However in some cases information is shared in a more ad hoc way. For example, a teacher might decide to share information with a social worker because there is concern about a particular child’s welfare. The framework code is not intended for use in circumstances like that, although professionals may still find it useful.

How to use the framework code of practice.

This framework should be used by organisations that want to produce their own codes of practice for sharing information. It says what content a code of practice should have if it is to support good practice in the sharing of personal information. Organisations using the framework code must populate it with their own detailed content, reflecting their own business needs. Where a number of organisations are working collaboratively on an information sharing project, it is important that any codes of practice do not contradict each other or overlap confusingly. In many cases it is best to have a single code of practice that all the organisations involved in the information sharing comply with.

We recognise that different organisations have different needs, depending on the sort of information sharing they’re involved in. Some of the framework’s content won’t be relevant to some organisations. We expect a considerable degree of flexibility in how the framework is used. For example, some organisations will use it to produce a stand-alone document, whilst others may want to integrate some or all of its content into their existing policies and procedures. The content of this document could also be used as a checklist for an organisation to evaluate its existing policies and procedures.

The Information Commissioner will endorse a code of practice based on the framework provided it addresses all its substantive content. For a code to be meaningful it must be adhered to in practice. In order to provide an endorsement we would normally expect an organisation to agree to our auditing compliance with its code.

Drawing up a code and following its recommendations in practice cannot guarantee compliance with the Data Protection Act 1998. However, adherence to a properly drafted code of practice would constitute a significant step to achieving compliance with the Act.

Each part of the framework code begins with a clear statement of what the Act requires. However, some of the content of the framework code goes beyond the strict legal requirements of the law. We have done this as part of our statutory duty to promote good practice in the handling of personal information.

Code of practice recommended content:

1. Deciding to share personal information

The law:

Any information sharing must be necessary. Any information shared must be relevant and not excessive.

Your code of practice should:

1. Set out why you want