Bavendiek, KaiKaiBavendiekAdams, RobinRobinAdamsSchupp, SibylleSibylleSchupp2019-04-092019-04-092018-10-292018 16th Annual Conference on Privacy, Security and Trust, PST 2018: 1-10 (2018-10-29)http://hdl.handle.net/11420/2289Violations of the privacy of users can happen if data protection is not a fundamental part of the development process of a software system. The principle of Privacy by Design (PbD) therefore stipulates the consideration of privacy as a default feature. We have developed an integrated tool environment called CAPVerDE that provides a formal description language of software architectures and helps a designer by automatically verifying data minimization properties at the architectural level. Our logic includes probabilistic properties that introduce uncer- tainty into the architectures. These properties can be used to model attack scenarios that rely on chance. This paper presents the logic of the description language of CAPVerDE and illustrates the verification process by applying it to a smart energy metering scenario. © 2018 IEEE.enPrivacy-Preserving Architectures with Probabilistic GuarantiesConference Paper10.1109/PST.2018.8514160Other