Skip to content
This repository has been archived by the owner on Apr 14, 2021. It is now read-only.

Please clarify “... is then transferred to the venue owner“ #7

Closed
ralfr opened this issue Mar 9, 2021 · 2 comments
Closed

Please clarify “... is then transferred to the venue owner“ #7

ralfr opened this issue Mar 9, 2021 · 2 comments

Comments

@ralfr
Copy link

ralfr commented Mar 9, 2021

Thanks for providing the Security Concept behind Luca. In the introductory paragraphs you’re stating:

This Check-In is encrypted in a way that only the public health authorities can read it. The encrypted Check-In is then transferred to the venue owner via a QR code, where the Check-In is encrypted once again by the venue owner so that nobody can access the user’s personal information at this stage.

Since there is no Luca “server“ infrastructure operated or owned by the venue owner, what exactly does “transferred to the venue owner” mean?

@reneme
Copy link
Contributor

reneme commented Mar 9, 2021

You are right, that formulation mixes the person "venue owner" with the technical component "Scanner Frontend". Please see this glossary for a short description of both. Obviously, the actions described in the quoted text are performed by a software component, rather than the venue owner personally.

We'll adapt the formulation.

@ralfr
Copy link
Author

ralfr commented Mar 9, 2021

We'll adapt the formulation.

Thanks. I understand this document is undergoing continuous development. I assume that similar ambiguities will be addressed in future releases.

@reneme reneme closed this as completed Mar 9, 2021
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants