Check-in and access this session from the IGF Schedule.

IGF 2024 DC-CRIDE & DC-IoT Age aware IoT - Better IoT

    DC

    Dynamic Coalition on Children's Rights in the Digital Environment & DC on the Internet of Things

    Roundtable
    Duration (minutes): 90
    Format description: The room layout should be an invitation to everyone taking part at this session sharing their knowledge and concerns regarding the topic. As we are all users of digital environments, we are all experts with experiences and perceptions. All views are welcome. Therefor the layout of the room should underline and support this awareness.

    Description

    The Internet of Things offers many opportunities to make our everyday lives more convenient, safer and more efficient. Due to the advancing use cases, digital applications will be omnipresent in the future and also offer the benefit of being at our side almost unnoticed. However, this can also result in risks, such as unwanted data processing, the provision of information that may be inappropriate or even harmful to individuals or the initiation of processes that are based on false assumptions. These risks can be countered by identifying the users. If the devices in the surroundings know who the user is, the Internet of Things can work adequately according to their needs and with specific measures and serve the user. One area of identification is the verification of age or assignment to an age group. Knowing this, smart speakers would, for example, generate information in child-friendly language for very young users or sensors that check whether older residents have fallen and may be lying helplessly on the floor would not be triggered incorrectly if a child is playing on the carpet in the living room.

    According to the DC IoT Internet of Things Good Practice aims at developing loT systems, products, and services taking ethical considerations into account from the outset, in the development, deployment and use phases of the life cycle, thus finding an ethical, sustainable way ahead using loT to help to create a free, secure and rights enabling based environment: a future we want.

    DC CRIDE based their understanding on the findings of the Global Age Assurance Standards Summit held with about 700 participants from around the world in Manchester in April 2024. The Summit’s Communiqué sets out the assumption that age assurance is a way to create a safe environment for users of all ages where they can exercise their rights and securely enjoy also the benefits of new and emerging technologies.
    In the following we will outline how age assurance contributes to the four IoT subjects as key to tackle in the joint session:

    1. IoT Data governance: IoT especially AI-enhanced is relying heavily on data and at the same time, guarding privacy is a clear priority. One of the questions the session shall address is: How can we ensure the reliable usage of necessary data and safeguarding privacy of users in a world that is full of IoT devices, many of which are connected via a global Internet, and increasingly governed by AI systems? While knowledge of the user’s age or simply to which age cohort they belong can help to shape digital services according to age specific needs of the user. The date of birth of a user counts as sensitive data in the sense of the GDPR and thus needs to be handled carefully. DC CRIDE is exploring how age assurance systems can be designed to ensure both adherence to the principle of data minimization AND privacy protection. When IoT goes hand in hand with such age assurance systems also IoT good practice data governance will benefit.
    2. IoT Labelling and certification: At the level of devices, there need to be robust mechanisms for finding, labelling, authenticating and trusting devices (and classes of devices). Labels provide a powerful tool; many countries have developed and adopted IoT trust marks, and the time has come to start working towards their international harmonization. For all age-related decisions in the use of IoT reliable and trustworthy age assurance mechanisms could be an additional criterion to label IoT devices as good practice.
    3. The impact of AI on IoT systems: The convergence of AI and IoT, often referred to as AIoT (Artificial Intelligence of Things), is driving innovation across various sectors. With AI, IoT systems can make autonomous decisions based on real-time data. This reduces the need for human intervention and can lead to more efficient operations. While such AIoT operations need to be trained by reliable non-biased data the quality and efficiency of autonomous decisions taken by the system will benefit from data provided by reliable age assurance mechanisms, f. e. an AI driven cashier system will be able to decide autonomously whether a client shall be allowed to buy alcoholic beverages or not due to their respective age.
    4. IoT Capacity Development: IoT has been coming up rapidly, and good practice applications can inspire use of IoT systems and services around the world – also in the regions where IoT application is currently lagging. At the same time age assurance has become a rapidly evolving issue and systems are being developed or already in place to ensure users of all ages get the best service appropriate to their age. Thus, a common understanding is beginning to spread that age assurance is not a tool to restrict access to and usage of a service but to improve the appropriateness of services according to the age of the user. Therefore, capacity building for IoT could and should go hand in hand with capacity building for meaningful implementation of age assurance systems.
    Organizers

    1. Torsten Krause, German Digital Opportunities Foundation, CSO WEOG 2. Jutta Croll, German Digital Opportunities Foundation, CSO WEOG 3. Maarten Botterman, Technical Community WEOG

    Speakers

    Dr. Jonathan A.K. Cave, Alan Turing Institute, Academia, UK
    Mr. Dan Caprio, Providence Group, Private industry, USA 
    Sonia Livingstone, London School of Economics, UK 
    Abhilash Nair, onsite (academia, WEOG) 
    Pratishtha Arora, onsite (Social Media Matters India, Asia-Pacific)
    Sabrina Vorbau (European Schoolnet, WEOG)

    Onsite Moderator

    Maarten Botterman, Technical Community WEOG

    Online Moderator

    Torsten Krause, German Digital Opportunities Foundation, CSO WEOG

    Rapporteur

    Jutta Croll, German Digital Opportunities Foundation, CSO WEOG

    SDGs

    3.5
    3.6

    3.7
    3.a
    4.a
    5.1
    5.b
    16.1
    16.2

    Targets: Through the lens of age assurance, the proposal addresses and will facilitate dialogue around the protection and promotation of children's rights as enshrined in the Convention on the Rights of the Child, its Optional Protocols, and in the General Comment 25 on Children's Rights in Relation to the Digital Environment. In so doing, the proposal will reflect upon the implications of age assurance for children in relation to accessing information and education, non-discrimination, protection from violence and empowerment through technology. 3.7 By 2030, ensure universal access to sexual and reproductive health-care services, including for family planning, information and education, and the integration of reproductive health into national strategies and programmes 4.a Build and upgrade education facilities that are child, disability and gender sensitive and provide safe, non-violent, inclusive and effective learning environments for all 5.1 End all forms of discrimination against all women and girls everywhere 5.2 Eliminate all forms of violence against all women and girls in the public and private spheres, including trafficking and sexual and other types of exploitation 5b Enhance the use of enabling technology, in particular information and communications technology, to promote the empowerment of women 16.1 significantly reduce all forms of violence and related death rates everywhere 16.2 end all forms of violence against children

    Key Takeaways (* deadline at the end of the session day)
    1. Need to have a global understanding of good practice, backed up by (global/industry) standards and (regional/national legislation), all informed by global insights
    2. Capacity development for all stakeholders to (1) be aware; (2) be able to express; (3) be able to act
    3. Accountability is key: who is accountable to what
    Call to Action (* deadline at the end of the session day)
    1. Involve governments in the design development and backing of good practice standards regarding children in and their use of IoT (including child’s rights impact assessment)
    2. Identify good practice examples and approaches from around the world (including privacy preserving age verification methods) and consider shared lessons regarding children’s rights
    Session Report (* deadline 9 January) - click on the ? symbol for instructions

    The Internet of Things offers many opportunities to make our everyday lives more convenient, safer and more efficient. Due to the advancing use cases, digital applications will be omnipresent in the future and also offer the benefit of being at our side almost unnoticed. However, this can also result in risks, such as unwanted data processing, the provision of information potentially inappropriate or even harmful to individuals, or the initiation of processes that are based on false assumptions. These risks can be counteracted by categorising the users according to their needs. If the devices in the surroundings better understand their users, the Internet of Things can work adequately, react with specific measures and serve the user. One aspect of this adaptation process is the determination of age or assignment to an age group. Knowing the age, smart speakers would, for example, generate information in child-friendly language for very young users or sensors that check whether older residents have fallen and may be lying helplessly on the floor would not be triggered incorrectly if a child is playing on the carpet in the living room.

    In the session panelists and participants discussed advantages and risks coming along with the categorization of users according to their needs. In his contribution Jonathan Cave  focused on data as a source that must be protected from unwanted profiling or manipulation. He also pointed out that it is not always possible to predict which data are sensitive and therefore need particular protection. He also suggested discussing whether the age of a user or their maturity, experience and knowledge may be decisive for being able to use certain functionalities. Sonia Livingstone took this up and referred to the rights of the child, which must also be guaranteed in the digital environment, which is challenging without knowledge whether a user is a child or an adult. It is therefore important to develop and design IoT applications with the best interests of the child in mind. Sonia recommended to involve children in these processes and let them participate. Age assurance measures must focus on the safety of the child and the protection of their privacy and should not be used to restrict access and participation of young people unreasonably.

    Referring to existing legal frameworks that may require age verification, Abilash Nair  formulated the statement that it is not necessary to establish further laws but to invest in the usability and feasibility of the existing legal framework in order to increase its acceptance.

    Returning to the previously mentioned aspect of development and maturity of a child, Pratishtha Arora  explained that children should be viewed holistically and that their experiences, education and use of technology should be taken into account in order to make IoT user-friendly. She also pointed out that, unlike mobile phones, IoT has not yet achieved a comparable level of distribution, thus the opportunities and risks associated with it are currently only aimed at certain groups in society. “Regardless of this”, she said, “it is important to continue investing in all young people's media skills.”

    Building on this, Sabrina Vorbau   presented the European Commission's initiative for a Better Internet for Kids. Acquiring and training the skills and competencies of children to use the digital environment safely plays a central role in this. In addition, the EC recognises measures for age-appropriate use of the Internet as a key to protecting children and enabling them to have safe online experiences. In order to promote developments in this area, the European Commission has mapped existing age assurance procedures and requirements and commissioned European Schoolnet  developed a self-assessment tool available to all providers, thus supporting them to make their services more age-appropriate for children.

    Last but not least, Maarten Botterman  emphasised at the outset that the aim is to use emerging technologies and the opportunities they bring for humanity to make life more convenient and safer. To this end, categorising users in relation to technologies so that these become more targeted, more effective and therefore more useful for users and better meet their needs. In order to pursue this goal further, however, the workshop showed that it is necessary to develop a common understanding of this objective, lay it down in globally accepted standards for the Internet of Things and to include and involve all stakeholders in this process.