posted on 2024-10-09, 12:47authored byYusra Elbitar, Alexander Hart, Sven BugielSven Bugiel
Rationales offer a method for app developers to convey their permission needs to users. While guidelines and recommendations exist on how to request permissions, developers have the creative freedom to design and phrase these rationales. In this work, we explore the characteristics of real-world rationales and how their building blocks affect users’ permission decisions and their evaluation of those decisions. Through an analysis of 720 sentences and 428 screenshots of rationales from the top apps of Google Play, we identify the various phrasing and design elements of rationales. Subsequently, in a user study involving 960 participants, we explore how different combinations of phrasings impact users’ permission decision-making process. By aligning our insights with established recommendations, we offer actionable guidelines for developers, aiming to make rationales a usable security instrument for users.
History
Primary Research Area
Secure Connected and Mobile Systems
Secondary Research Area
Empirical and Behavioral Security
Name of Conference
Network and Distributed System Security Symposium (NDSS)
BibTeX
@conference{Elbitar:Hart:Bugiel:2025,
title = "The Power of Words: A Comprehensive Analysis of Rationales and Their Effects on Users’ Permission Decisions",
author = "Elbitar, Yusra" AND "Hart, Alexander" AND "Bugiel, Sven",
year = 2025,
month = 2
}