2. Distinguish between authenticatedand unauthenticated data
Information can be published at many levels and by many people
Some will remain under direct internal control (and should)
Much won't (and shouldn’t)
- the balance depends on other decisions
- e.g., the degree of decentralisation
Who authenticates?
- The author? (may not have the authority)
- The provider? (may not have the expertise)
- Third party? (webmaster? someone else?)