The digital technological evolution is driving exponential growth in connected sensors and objects within smart environments such as homes, workplaces, and social spaces. While automations bring new opportunities, they also introduce risks and challenges. It is essential to provide users with End-User Development (EUD) approaches and tools that let them create, modify, and control automations. In this perspective, a key challenge is enabling non-professional developers to understand and manage security and privacy risks. This paper presents a Systematic Literature Review analysing the intersection of EUD, the Internet of Things, and security and privacy issues, with particular attention to automations and trigger-action programming. We examined the research to identify major risks in smart environments, their sources, and consequences. We analysed approaches and tools designed to mitigate these risks, their user presentation, validation methods, user control levels, and application domains. Our findings offer an overview of current solutions and highlight opportunities for future research into tools that help non-professional developers understand IoT security, usability, and privacy.

Human control of privacy and security aspects in IoT settings

Di Serio A.
;
Paterno' F.
2025

Abstract

The digital technological evolution is driving exponential growth in connected sensors and objects within smart environments such as homes, workplaces, and social spaces. While automations bring new opportunities, they also introduce risks and challenges. It is essential to provide users with End-User Development (EUD) approaches and tools that let them create, modify, and control automations. In this perspective, a key challenge is enabling non-professional developers to understand and manage security and privacy risks. This paper presents a Systematic Literature Review analysing the intersection of EUD, the Internet of Things, and security and privacy issues, with particular attention to automations and trigger-action programming. We examined the research to identify major risks in smart environments, their sources, and consequences. We analysed approaches and tools designed to mitigate these risks, their user presentation, validation methods, user control levels, and application domains. Our findings offer an overview of current solutions and highlight opportunities for future research into tools that help non-professional developers understand IoT security, usability, and privacy.
2025
Istituto di Scienza e Tecnologie dell'Informazione "Alessandro Faedo" - ISTI
979-8-4007-2015-4
End-User Development, Internet of Things, Trigger-action programming, Usability and Security
File in questo prodotto:
File Dimensione Formato  
3771882.3771909.pdf

accesso aperto

Descrizione: Human Control of Privacy and Security Aspects in IoT Settings
Tipologia: Versione Editoriale (PDF)
Licenza: Creative commons
Dimensione 943.36 kB
Formato Adobe PDF
943.36 kB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/559279
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact