Re: ACTION-120: further text on "explanations" bullet

Proposed Text to be added to section 9.1


9.1.8 Provide explanations, justifying the advice or information given

If the user is expected to carry out a task or an action to achieve  
the desired level of security, they should have access to an  
explanation that justifies why it is necessary.



Reference

Andrew S. Patrick, Pamela Briggs, and Stephen Marsh, "Designing  
Systems That People Will Trust", Security and Usability: Designing  
Secure Systems that People Can Use, ed. Lorrie Faith Cranor and  
Simson Garfinkel.






- Maritza

http://www.cs.columbia.edu/~maritzaj/

Received on Monday, 12 February 2007 13:06:47 UTC