End user privacy management of accessed device data
Disclosed are various examples for controlling and managing data access to increase user privacy and minimize intentional or inadvertent misuse of accessed information. Upon detecting a request for an administrator review of a user client device, permission for administrator access can be obtained from a user associated with the user client device. The client device identifier can be obfuscated such that the administrator accessing the data is not provided the actual device identifier. An administrator review session between the user client device and an administrator client device can be established to allow the administrator client device access to the permitted client device data.
1 . A system, comprising:
at least one computing device; and
at least one application executable in the at least one computing device, wherein the at least one application, when executed, causes the at least one computing device to:
detect a request for an administrator review of a user client device;
obtain permission for administrator access to client device data from a user associated with the user client device;
generate an obfuscated client device identifier from an actual client device identifier associated with the user client device;
initiate an administrator review session between the user client device and an administrator client device, the administrator client device identifying the user client device via the obfuscated client device identifier, the actual client device identifier being neither provided to nor obtainable by the administrator client device;
identify a type of computer technology issue occurring on the user client device and associated with the administrator review session based on a type of the user client device and user account data of the user, the computer technology issue being of performance of at least one of the user client device, an application in the user client device, and a network connected to the user client device;
determine a type of client device data that is permitted to access based on the identified type of computer technology issue; and
during the administrator review session, correlate client device data of the determined type with the obfuscated client device identifier, instead of the actual client device identifier, and provide the client device data of the determined type and the obfuscated client device identifier correlated therewith to the administrator client device.
2 . The system of claim 1 , wherein the request is detected in response to at least one of a user request obtained from the user client device, an automated trigger associated with a client application being executed on the user client device, or an administrator request obtained from the administrator client device.
3 . The system of claim 1 , wherein, when executed, the at least one application further causes the at least one computing device to at least generate a notification requesting permission for an administrator to access the client device data, the permission being obtained in response to a user interaction with the notification.
4 . The system of claim 1 , wherein, when executed, the at least one application further causes the at least one computing device to at least:
generate an audit log associated with the administrator review session, the audit log identifying activity by an administrator during access session and including how the computer technology issue was diagnosed and how the computer technology issue was resolved; and
write the audit log to a distributed ledger.
5 . The system of claim 1 , wherein, when executed, the at least one application further causes the at least one computing device to at least terminate the administrator review session in an instance in which a user-defined time period for the administrator access has expired.
6 . The system of claim 1 , wherein, when executed, the at least one application further causes the at least one computing device to at least obtain user-defined permissions associated with an access of the client device data, wherein the client device data is provided to the administrator client device based at least in part on the user-defined permission.
7 . The system of claim 1 , wherein
the type of computer technology issue is identified using a machine-learning model, and
when executed, the at least one application further causes the at least one computing device to at least train, based on the client device data of the determined type, the machine-learning model.
8 . A computer-implemented method, comprising:
detecting, by at least one computing device, a request for an administrator review of a user client device;
obtaining, by the at least one computing device, permission for administrator access to client device data from a user associated with the user client device;
generating, by the at least one computing device, an obfuscated client device identifier from an actual client device identifier associated with the user client device;
initiating, by the at least one computing device, an administrator review session between the user client device and an administrator client device, the administrator client device identifying the user client device via the obfuscated client device identifier, the actual client device identifier being neither provided to nor obtainable by the administrator client device;
identifying a type of computer technology issue occurring on the user client device and associated with the administrator review session based on a type of the user client device and user account data of the user, the computer technology issue being of performance of at least one of the user client device, an application in the user client device, and a network connected to the user client device;
determining a type of client device data that is permitted to access based on the identified type of computer technology issue; and
by the at least one computing client device, during the administrator review session, correlating the client device data of the determined type with the obfuscated client device identifier, instead of the actual client device identifier, and providing the client device data of the determined type and the obfuscated client device identifier correlated therewith to the administrator client device.
9 . The computer-implemented method of claim 8 , wherein the request is detected in response to at least one of a user request obtained from the user client device, an automated trigger associated with a client application being executed on the user client device, or an administrator request obtained from the administrator client device.
10 . The computer-implemented method of claim 8 , further comprising generating a notification requesting permission for an administrator to access the client device data, the permission being obtained in response to a user interaction with the notification.
11 . The computer-implemented method of claim 8 , further comprising:
generating an audit log associated with the administrator review session, the audit log identifying activity by an administrator during access session and including how the computer technology issue was diagnosed and how the computer technology issue was resolved; and
writing the audit log to a distributed ledger.
12 . The computer-implemented method of claim 8 , further comprising terminating the administrator review session in an instance in which a user-defined time period for the administrator access has expired.
13 . The computer-implemented method of claim 8 , further comprising obtaining user-defined permissions associated with an access of the client device data, wherein the client device data is provided to the administrator client device based at least in part on the user-defined permission.
14 . The computer-implemented method of claim 8 , wherein
the type of computer technology issue is identified using a machine-learning model, and
the method further comprises training, based on the client device data of the determined type, a machine-learning model to identify the type of issue.
15 . A non-transitory computer-readable medium embodying executable instructions, which, when executed by a processor, cause at least one computing device to at least:
detect a request for an administrator review of a user client device;
obtain permission for administrator access to client device data from a user associated with the user client device;
generate an obfuscated client device identifier from an actual client device identifier associated with the user client device;
initiate an administrator review session between the user client device and an administrator client device, the administrator client device identifying the user client device via the obfuscated client device identifier, the actual client device identifier being neither provided to nor obtainable by the administrator client device;
identify a type of computer technology issue occurring on the user client device and associated with the administrator review session based on a type of the user client device and user account data of the user, the computer technology issue being of performance of at least one of the user client device, an application in the user client device, and a network connected to the user client device;
determine a type of client device data that is permitted to access based on the identified type of computer technology issue; and
during the administrator review session, correlate the client device data of the determined type with the obfuscated client device identifier, instead of the actual client device identifier, and provide the client device data of the determined type and the obfuscated client device identifier correlated therewith to the administrator client device.
16 . The non-transitory computer-readable medium of claim 15 , wherein the request is detected in response to at least one of a user request obtained from the user client device, an automated trigger associated with a client application being executed on the user client device, or an administrator request obtained from the administrator client device.
17 . The non-transitory computer-readable medium of claim 15 , wherein, when executed, the executable instructions further cause the at least one computing device to at least generate a notification requesting permission for an administrator to access the client device data, the permission being obtained in response to a user interaction with the notification.
18 . The non-transitory computer-readable medium of claim 15 , wherein, when executed, the executable instructions further cause the at least one computing device to at least:
generate an audit log associated with the administrator review session, the audit log identifying activity by an administrator during access session and including how the computer technology issue was diagnosed and how the computer technology issue was resolved; and
write the audit log to a distributed ledger.
19 . The non-transitory computer-readable medium of claim 15 , wherein, when executed, the executable instructions further cause the at least one computing device to at least terminate the administrator review session in an instance in which a user-defined time period for the administrator access has expired.
20 . The non-transitory computer-readable medium of claim 15 , wherein
the type of computer technology issue is identified using a machine-learning model, and
when executed, the executable instructions further cause the at least one computing device to at least train, based on the client device data of the determined type, the machine-learning model.