DPDPA - Solving Consent Fatigue via Portable Consent Artifacts (PCA)

Consent fatigue is a real issue that can derail the DPDP compliance. There has to be a simpler way for the data principals to modify/withdraw consents across the data fiduciaries that they engage with. An open, interoperable DPDP Wallet holding Portable Consent Artifacts (PCA) may be just the answer.

A PCA is a machine-readable, cryptographically signed digital receipt. A data principal should be able to download the consent artifact immediately to the DPDP Wallet after providing consent, or load it by scanning the QR code in the user dashboard.

The DPDP Wallet not only stores these artifacts but also manages the lifecycle of consents across multiple fiduciaries from a single location. If we adopt a unified PCA standard, we can address consent fatigue initially around consent management and withdrawal. Onboarding can also be enabled via the DPDP wallet. This can provide a UPI like standardized experience for consent management and alleviate consent fatigue to a greater extent.

More details here. Look forward to your inputs.

3 Likes