




版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
ELECTRONICPAYMENTS—THESMARTCARDSMARTCARDS,E-PAYMENTS,&LAW–PARTIDrSimonNewmanandGavinSutter,QueenMaryCollege,UniversityofLondonThisarticleinthreepartsexaminesthelegalissuesraisedbythedevelopmentofthesmartcard.Itexplorescontractual,liabilityandintellectualpropertyrightsissuesandassesseswhetherasuitablelegalframeworkexistsinwhichsmartcardusecanflourishandgrow.A.INTRODUCTIONTOSMARTCARDSANDELECTRONICPAYMENTSSYSTEMSAsmartcardissimplyaplasticrectanglecontaininganelectronicchip,andholdingacertainamountofreadabledata.OnecommonconsumeruseintheUKisindigitaltelevision,wheretheyareusedassecuritydevicestounscrambletheincomingdigitaltelevisionsignal.TheyarealsonowcommonlyusedinGSMstandarddigitalmobilephonesasSubscriberIdentityModule(SIM)cards.However,mostattentionfocusesontheirpotentialasanindependentlycarried,easilyportable,meansofbothidentificationandelectronicpayment-forexampleasan“e-purse”holdingelectroniccoinsforlow-valuetransactions,eitherheldsolelyonthecard,1orlinkedtoacentraldatabase.Smartcardtechnologyisnotnew,butatleastuntilveryrecentlyithaslargelyfailedtoachievewidespreadusewithinthecountriesoftheEuropeanUnion.Thisisnowbeginningtochangeassmartcardsbecomeincreasinglyubiquitous,althoughasyettheirprofileremainslowamongstthegeneralpublic-manypeoplemaycarryaroundoneormoresmart-chippedcreditcardsintheirwalletorpursewithoutbeingawarethatitholdsmorethantheusualmagneticstrip.PreviousEuropeansmartcardsdevelopmentcentredonmultiplenationalsystems,2allnon-compatible,whichhaveneverachievedgoodcustomertake-up.Evenwherealargenumberofcardshavebeencirculated,aswithProtoninBelgium,thefrequencyofusehasremaineddiscouraginglylow.TheEuropeanCommission’sEuropeSmartCardCharter,afterashakystartin2000,istryingtorectifythisbymovingfromitsoriginallytechnology-orientedstancetowardsamuchmorecustomer-centredapproach.Previouslyitfocusedontechnologicaldevelopmentofcompetingsystems,withinteroperabilityadistantgoal.Thishaschanged.Anew“user-centric”approachtoallaspectsofsmartcardsisintendedtohelpenfranchisethecitizenandgivehim/herfulleraccesstotheInformationSocietywhichisdevelopinginallaspectsofdailylife,includinggovernmentandlocalauthorityapplications.3Itacknowledgesinparticulartheneedforeasy“anytimeanywhere”access,inordertoachievethemasstakeupofsmartcardsthatiscurrentlylacking.Itseemsthattheprincipalcustomerspushingdevelopmentinthisinstancearenotindividualconsumers,noreventhebankingcorporations,buttheEuropeanUnion’snationaltransportnetworks.Transporthasproventohaveakeyroletoplayinthisareaasithasthemasscross-culturalusercommunityandrelativelysimple,extremelyhigh-volumeapplications4thatareneededtomakesmartcardspartofeveryone’sdailylife.ParticularlyprominentinthisfieldisTransportforLondon.5Inspiredbythesuccessofthe‘Octopus’smartcardintheHongKongtransitsystem,theirPrestigeProjecthasdevelopedasmartcardsystemforeasyautomatedticketing.Thisisa‘contactless’card,initiallyintendedasaseasonticket,withanexpirydaterecordedinthecard,allowinganunlimitednumberofjourneysuptothatdate.ContactlesssmartcardreadershavealreadyasofSeptember2001beeninstalledatsomeLondonUndergroundstations,andthesystemislikelytobeingeneralusebytheendof2002.Anepursefacilitycardisintendedtobeaddedshortlythereafter,withnotimelimit,butwithprepaidelectronictokensdeductedfromthecardoneachjourney,thatcanbe‘refilled’withtokensthroughoccasionalpaymentatanelectronicticketingmachine.Inter-operabilitywithothernationalandEuropeantransportnetworksisahighpriority–ultimatelyallowingthesamecardtobeusedonrail,busandothermasstransportsystemsfromLondontoMadridtoHelsinkiandbeyond.Aswithallnetworksystems,frommobilephonestotheInternet,smartcardapplicationsmustbeinteroperablewithcommonstandardsinordertobenefitexponentiallyfromwiderusethroughouttheEUandbeyond.Itisthereforecriticalboththatsuitabletechnologicalstandardsarereached,andthatasuitablelegalframeworkexistsinwhichsmartcardusecanflourishandgrow.Onequestionraisedbythemulti-functionalnatureofsmartcardsisoneofownership:standard,singleusemagneticstripcardsarecommonlyunderstoodtobeissuedby,forinstance,abank,tobeusedbythecustomerbutremainingthepropertyoftheissuer.Multi-functionalcardsmayhaveseveraldifferentapplicationsfromseveraldifferentsourcesloadedonthem–bankingdetails,creditcard,healthrecords–sowhoownsthecard?Isthereasinglecardowner,orwilleachinterestedpartybesaidtoownonlytheirownapplicationstoredonthecard?Arelatedquestionaskswhoispermittedtoissuean“electronicpurse”smartcard.Willthisbelimitedtobanks?Willpersonaldatacardsbeissuedsolelybygovernment?Especiallyincountriessuchas,forinstance,GermanyorFrancewhereagovernment-issuedIDcardisanecessity,couldthegovernmentinsuchastateissueitsownsmartcardsforIDpurposeswhichtheuserwouldthenaddotherapplicationssuchaspaymentfacilitiesto?Governmentownedcardswouldraisethefurtherissueofcitizens’rightstoaccessgovernmentinformationasrelatingtothemselves.Alternatively,willitbelegally,asitistechnically,possibleforacompanysimplytoproduceandsell‘empty’smartcardswhichtheusercanthenaddhisowndetailsto?Ormusttheissuerbealicensedperson,realorlegal?Afurtherimportantissuerequiringanalysisiswhethertheuserofacardwillbepermittedtoaddandremoveapplicationsfromthesmartcardatwill,orwhetheritwillcarryfixedapplicationsasinstalledbytherelevantcompanieswithwhichtheusermaynottamper.Thevoluntarynatureofsuchsystemsmustbeemphasized-themulti-application“smartwallet”maycontainsoftwarefromnumerousdifferentorganisations,butitscontentsmustbeundertheuser’scontrol,justlikeaphysicalwallet.Ifitistobecommerciallysuccessfulitmustbeseenasbothsafeandconvenientfortheenduser.Thisislikelytorequireeasynotificationproceduresincaseoflossortheft,withthecardanditscontentsbeingmadequickandeasytoreplace.Thecontractualissuesinvolvedrequireconsideration.Forinstance,thecontractualrelationshipbetweenissueranduserwillremainsubstantiallysimilarasfortheissueofastandardmagneticstripsingleusecard.However,amulti-functionalcardraisesanumberofotherrelationshipssuchasthatbetweencardissuerandapplicationprovider,orbetweenoneapplicationandanother.Anareaofgreatsignificanceisliability.Liabilityforloss,damage,fraudulentusage,etcofastandardmagneticstrippaymentcard(credit,debit,etc)issubjecttoaclearcontractbetweentheissuerandtheuser.However,whenamulti-functionalsmartcardisinvolved,theissuesbecomemuchmorecomplex.Forexample,inthecaseoflossortheft,whobearstheresponsibilityifnottheuser?Isthereasingleapplicationwhichwillberesponsibleforensuringadequatesecurityforthecard’sgeneralfunctions,forexample,preventionoffraudulentuseofthecardinpayment,orofadigitalsignatureencodedintoitinordertoidentifytherightfuluser?Security,fraudprevention,andsoonwillalsoariseasissuesofconsumerprotectionprovisions.Theapplicationofdataprotectionrequirementswillbeofgreatsignificanceinensuringadequateconsumerprotectionstrategiesareinplace.Thisislikelytoentailtheuseofsomemethodofencryption,raisingfurtherissuesastoavailabilityofdecryptioninformation.Lastly,intellectualpropertyrights(IPR)inthesmartcardtechnologywillbeanalyzedinthestudy.Howwilltheprotectionofsuchrightsbeachieved–willitbeprimarilybypatents,ratherthancopyright?Howarethosecommercialinterestsinvolvedintheproductionofsmartcardscurrentlyprotectingtheirinterestsinthetechnology1.TheDevelopmentofSmartCardsRapidgrowthinelectronicbusinesshasledtothedevelopmentofpaymentsystemstailoredtomeettheneedsofonlinepurchasing.Althoughcreditcardshaveprovedthemostpopularmethodforonlinepaymentssofar,theymaynotbethemostappropriatemethodinalltransactions.Forexample,theymayprovetoocostlyforthepurchaseoflowvaluegoodsandservices,andarenotsuitableformakingpaymentstoconsumers.TheincreasedinterestinauctionschemessuchaseBay6leadstoanincreasingneedforsystemswhichallowforthetransferofvaluebetweenconsumers,ratherthanonlybetweenconsumersandbusinesses.Theperceivedsecurityrisksofsendingcreditcarddetailsonlinehavealsoprovedabarriertotheiruse,leadingtoaninterestindevelopingmoresecurealternatives.Avastarrayofelectronicpaymentsystemshavebeen(andarebeing)developedaroundtheworld.Theseareeithersmartcardsystems,wherethevalueisstoredonachiponamultipurposecard,orsoftwaresystemswherethevalueisstoredaselectronictokensinthememoryofthecomputer.However,althoughsomeofthesesystemshavebeenavailabletotheconsumerforseveralyearsnonehasbecomeuniversallyaccepted.Furthermore,becausethevarioussystemsandtechnologiesarenotinteroperable,consumersandmerchantsareforcedtochoosewhichorhowmanyofthesystemstouse.Manyonlinebuyersandsellershavethereforeelectedtousethetraditionalcreditcardduetoitsgreateruniversalacceptance.Manysystemshavebeendevelopedintrialformbuthavenotimmediatelybeenfollowedupbycommercialexploitation,andothershavebeenchangingandmodifyingtheirservicestomeettheneedsofthemarket.Itseemsthereforethatthemarketisstillinastateoffluxandthatcommercialbarriersarehinderingtheadoptionofthesenewsystems.Variousstepshavebeentakentowardsremedyingthelackofinteroperabilitysuchasthedevelopmentofastandardprotocolwhichmayovercomethecommercialdifficulties.AsfarasthelegalissuesareconcernedthesehavetoadegreebeenovershadowedbythecommercialproblemsalthoughintheEuropeanUnionthecreationofaregulatoryframeworkforelectronicmoneyissuersisunderway.However,otherissuessuchasthecontractualrelationshipbetweentheissuerandtheconsumerhavenotbeenaddressed.2.ElectronicPaymentSystems:Software(a)CreditandDebitCardsCreditanddebitcardsmaybegroupedtogetherasexamplesof‘debttransferencesystems’.Theuseofeitherinmakingpaymentsassociatedwithonlinepurchaseisbroadlysimilartotheothermainmethodsofcarryingoutdistancecardpurchases–bymail,faxorbytelephone–inthattheactualcarditselfandthesignaturethereonarenothandledorseenbythepayee,butthedetails(numberandexpirydate)aretransmittedovertheinternet,eitherviaawebsiteorbyemail.Currentlysuchincorporationof‘traditional’creditcardsystemsintoelectroniccommerceremainsthemostpopularmethodofpaymentovertheinternet,presumablyatleastinpartbecauseitsusedoesnotrequireinvestmentoftimeandmoneyintoacquiringandbecomingfamiliarwithnewsystems.Also,thereisaperceived‘comfort’factorinthesecurityofferedbyanestablishedbrandsuchasVisa.Therestillexists,however,somedegreeofconcernamongconsumersgenerallyaboutthesecurityofmakingsuchtransactions.Whiletheriskofinterceptionofcreditcardinformationbyathirdparty,orarecordofitbeingmadebyanunscrupuloussalesassistant,andsubsequentfraudulentusagedoeslittletodetermostfrommakingsuchpurchasesbytelephoneorinperson,fearsaboundthatthiswillhappeniftheydosoovertheinternet.Governmentshaveaclearinterestinsuchissues,aswiderconsumerspendingininternetsaleswillservetobolsterthenewdigitaleconomy.Technologicalmethodsmaygiveconsumerstheconfidencetotakeadvantageofwhatthenewmarketplacehastooffer.Theymayalsohelptopreventcreditcardfraud,thuscontributingtoreductionofsuchcrimes,anotherattractivefeatureforgovernments.(b)SecureSocketLayer(SSL)ProtocolTheSSLprotocolcreatesasecurechannelforthetransmissionofencryptedpaymentcarddetailsbetweenretailerandconsumerandisinwideusageacrosstheinternet,incorporatedintomanydifferentsoftwaresystems.PatentedbyNetscapeandsubmittedtotheWorldWideWebConsortium(W3C)earlyin1998asastandard,ithasnowbecomethenormforsecurecommunicationofpaymentcardinformationovertheinternet.Inoperation,SSLutilizesamixofpublicandprivatekeyencryption.Privatekeyencryptioninvolvestheuseofonesingle‘key’–analgorithmiccode–whichallowsamessagetobeencrypted.Onceencrypted,themessagecanonlybereopenedwiththekey.Accesstoamessagecanthusbecontrolledbycontrollingdistributionofthekey.Thepublickeytechniqueisbroadlysimilar,however,thereisaseparate,publickeywhichisgiventoBtoeitherdecodemessageswhichhavebeenencryptedusingA’sprivatekeyortoencryptamessagetosendtoAwhichcanthenonlybeopenedwiththeprivatekey.Itisaversionofthissystemwhichonlineretailersgenerallyuse.Thepublickeyismadefreelyavailabletotheconsumerviathewebsite:thepayment
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 梳理知识点实现高效复习的2024年纺织机械操作证书考试策略试题及答案
- 2025年中国天然钻石微型砂成型刀数据监测研究报告
- 2024年机械工程师资格预测试题及答案
- 2025年中国多功位成型机市场调查研究报告
- 2025年中国复合门数据监测报告
- 商务礼仪师考试的跨文化适应能力试题及答案
- 2024年机械工程师资格证书考试价值分析试题及答案
- 焊接工程师资格考试真题试题及答案
- 2025年中国卧式明装冷热风幕数据监测研究报告
- 2025年中国办公纸市场调查研究报告
- 中建悬挑卸料平台专项施工方案
- 中建总工程师的职业基本素养
- 【房地产项目成本控制问题研究文献综述2300字】
- 中等职业学校语文课程标准(2020年版)(word精排版)
- 《一般将来时》教学设计
- 小学数学-青岛版五四制五年级数学上册第七单元《比的意义》教学设计学情分析教材分析课后反思
- 单面彩钢酚醛复合风管施工工法
- 浙江省温州环大罗山联盟2022-2023学年高一下学期4月期中联考物理试题
- 托管专项施工方案
- 风电项目开发流程教学课件
- 泌尿外科前列腺增生一病一品
评论
0/150
提交评论