Loading…
Tuesday June 10, 2025 11:05am - 11:20am PDT
Diana Marsala, Meta


Purpose limitation is a foundational principle in data privacy, ensuring that the use of data is strictly confined to the explicitly stated purpose(s) disclosed at the time of collection. This presentation is a retrospective analysis on early iterations of Policy Zones, one of Meta's technical solutions designed to enforce purpose limitation.

By examining the evolution of Policy Zones, including lessons learned and key insights into why certain approaches were effective or ineffective, we aim to provide a deeper understanding of the complexities and opportunities in implementing purpose limitation at scale.

In particular, we'll focus on three common purpose limitation paradigms:


  • Set it and forget it: Dynamically propagating policies from service to service, throughout the stack

  • One size fits all: Leveraging a single policy for all purpose-limitation-based privacy requirements

  • Run checks everywhere: Running privacy checks server-side for every data store, in a single chokepoint that covers all callers


These three paradigms were initially adopted by Meta. Although they appeared sound and facilitated a faster system build-out, we later identified several gaps that necessitated a redesign of our systems to enhance operational maturity and make them more viable at scale.


https://www.usenix.org/conference/pepr25/presentation/marsala
Speakers
avatar for Diana Marsala

Diana Marsala

Meta
Diana Marsala is a Software Engineer on Meta's Privacy Infrastructure team, where she plays a pivotal role in shaping the company's approach to privacy. As an early adopter of privacy infrastructure technologies, she has successfully leveraged these tools to uphold critical privacy... Read More →
Tuesday June 10, 2025 11:05am - 11:20am PDT
Santa Clara Ballroom

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link