W3C

DPVCG Meeting Call

10 JUL 2025

Attendees

Present
DelaramGolpayegani, HarshPandit, JulianFlake, JulioHernandez, PaulRyan, TyttiRintamaki
Regrets
BeatrizEsteves, GeorgKrog
Chair
HarshPandit
Scribe
HarshPandit

Meeting minutes

Repository: w3c/dpv

Agenda: https://www.w3.org/events/meetings/178d1c71-a92d-4da7-a196-6a89d0fe2277/20250710T133000/

Meeting minutes: https://w3id.org/dpv/meetings

Persistent ID for current minutes: https://w3id.org/dpv/meetings/meeting-2025-07-10

Weekly Meeting Poll

see https://lists.w3.org/Archives/Public/public-dpvcg/2025Jul/0002.html

fill your preferences here: https://www.when2meet.com/?31247113-2tTGs

ACTION: everyone to fill in preferences for weekly meeting poll

v2.2

HarshPandit: there is a delay in producing the release drafts, see https://lists.w3.org/Archives/Public/public-dpvcg/2025Jul/0005.html

discussed the following timeline for reviewing and release:

Harsh completes producing draft release and emails reviewers and mailing list on Monday JUL-14

First review discussion: JUL-17

Second review discussion: JUL-24

Final review discussion: JUL-31

IF no major issues and no further fixes needed, release on AUG-01. If further fixes needed, review discussion: AUG-07

v2.3 topics

topics of priority

ODRL

<ghurlbot> Issue 130 Alignment with ODRL (by besteves4)

we are aiming for a formally defined/specified alignment with ODRL, and for this we will have a joint CG-report that outlines the role and placement of DPV for use with ODRL alongside declaring DPV as a profile of ODRL (separate from the DPV specs)

Beatriz is leading this work

EHDS

<ghurlbot> Issue 238 Update EHDS extension with practical concepts (by coolharsh55)

there is work proposed by Georg and Beatriz (PACSOI project)

AI Act

HarshPandit: focus on expanding the scope and coverage of the AI Act extension with legal developments. The Code of Conduct was published today - https://digital-strategy.ec.europa.eu/en/policies/contents-code-gpai which includes a transparency model form which is a word document which contains fields related to "acceptable use policy" and "intended use" -- so we know the conversations we had in the past months were on the right track and valuable for this;

HarshPandit: However, this work lacks a machine-readable version of the form, so that is something that can be our incentive and where DPV is useful

DelaramGolpayegani: There is also work on Prohibited systems which can be incorporated into DPV. I am working on updating VAIR with these concepts which will then be proposed to the DPV.

HarshPandit: Related here is MLDCAT-AP which is not aligned with the AI Act (that's kind of a low hanging fruit to see what is the extent of this to cover/support GPAI code of conduct and where our work can fit in)

DelaramGolpayegani: MLDCAT-AP doesn't address the AI Act (there is no mention of AI Act in the document)

HarshPandit: It contains "intended purpose" which comes from the AI Act

DelaramGolpayegani: They created this before the AI Act, so it only references models and other concepts for the portal

HarshPandit: yes, though GPAI models and LLMs under AI Act are what this specification should have been describing, otherwise its a waste of effort if the specification does not incoporate or support auditability and just assumes compliance

DelaramGolpayegani: There is space here to combine this with AICat and DPV and other work to show what is possible or a better way of doing things

HarshPandit: Let's discuss this offline, and then report back our proposed contributions. IF interested in this work, contact Delaram.

Guides

HarshPandit: There are a number of guides which have been proposed and which are yet to be written. I'll be writing them up, aiming to get them out as 1 per month. They also make for neat papers, so that's a good incentive. IF interested in joining this, contact me.

Examples and Use-Cases

HarshPandit: Likewise, we have examples but no use-cases. So for the v2.3 development, I want to insist and set up a structure where we always have at least one use-case for each concept (at the broad level) so that we document what the concept is and why we decided to add it. Same for examples - we have them, but let's aim to add them for each concept (at a broad level).

DelaramGolpayegani: This will be useful - for use-cases - as they will also help represent and check for compliance etc.

HarshPandit: Yes, and then they can be helpful later to further explore aspects such as Tytti's PhD will require use-cases for the impact assessments. So we can have the shorter textual descriptions in DPV which gives an idea of what use-case are and what are the concepts/concerns involved.

AI training, GPAI uses, Agents

HarshPandit: These are topics that are all the hype at the moment, and we need a way to reference them. So this should be a focus for the AI extension.

AOB

HarshPandit: My paper "Simple now, Complex later: The Questionable Efficacy of Diluting GDPR Article 30(5)" https://doi.org/10.31235/osf.io/t3d9w_v1 accepted for APF

HarshPandit: PhD Job for enhancing DPV: https://lists.w3.org/Archives/Public/public-dpvcg/2025Jul/0004.html please share in network

Next Meeting

The next meeting will be on JUL-17 Thursday 13:30WET/14:30CET

Agenda will be reviewing DPV v2.2 draft release, deciding on weekly meeting slot, and starting work on v2.3

Minutes manually created (not a transcript), formatted by scribe.perl version 217 (Fri Apr 7 17:23:01 2023 UTC).