A Promise Is A Promise: The Effect of Commitment Devices on Computer Security Intentions

Privacy by Design & User ControlPasswords & AuthenticationPrivacy Perception & Decision-MakingCybersecurity EngineersPrivacy Policy Makers

Commitment devices are a technique from behavioral economics that have been shown to mitigate the effects of present bias---the tendency to discount future risks and gains in favor of immediate gratifications. In this paper, we explore the feasibility of using commitment devices to nudge users towards complying with varying online security mitigations. Using two online experiments, with over 1,000 participants total, we offered participants the option to be reminded or to schedule security tasks in the future. We find that both reminders and commitment nudges can increase users' intentions to install security updates and enable two-factor authentication, but not to configure automatic backups. Using qualitative data, we gain insights into the reasons for postponement and how to improve future nudges. We posit that current nudges may not live up to their full potential, as the timing options offered to users may be too rigid.

Quick Actions

Share

Share this page

ios_share

https://hci.top/en/papers/chi/6833/2019

AdRecommended

Learn AI Coding at CodeNow

At a Glance

Paper Snapshot

fact_check
dataset
Source
CHI
calendar_month
Year
2019
emoji_events
Award
No award tagged
group
Authors
5 authors
sell
Subtopics
Privacy by Design & User Control, Passwords & Authentication, Privacy Perception & Decision-Making
work
Professions
Cybersecurity Engineers, Privacy Policy Makers
article
Content Status
Abstract only
hub
Related Papers
10 related papers