Propose to drop from the strawman: requirement for privacy policy disclosure

Section 6.4 of the Compliance and Scope document states, "In order to be 
compliant with this specification, an operator of a third-party domain 
must clearly and unambiguously assert in the privacy policy governing 
that domain that it is in compliance with this specification." Such a 
requirement is out of scope of this standard and should not be included 
in the strawman. While it may be in scope to create tools that 
facilitate auditing and enforcement by other entities, it is not the 
role of this technical standard to impose legal requirements for 
compliance. Any such requirements will come from entities with relevant 
authority, e.g. Congress or the FTC in the US.

Received on Tuesday, 25 October 2011 21:16:58 UTC