Camera Permission
Privacy
OS permission gating access to camera APIs.
Glossary
Plain-language explanations for encryption, tracking, compliance, and security concepts.
Privacy
OS permission gating access to camera APIs.
Security
Bot mitigation challenge-response mechanism.
Privacy
California privacy statute defining consumer rights and business obligations.
Security
PKI entity that signs and validates X.509 certificates.
Encryption
Management of certificate issuance, renewal, rotation, monitoring, and revocation to maintain secure trust.
Security
Restricting TLS trust to specific keys/certificates.
Encryption
Mechanisms to invalidate certificates before expiry (CRLs/OCSP), with ecosystem reliability considerations.
Encryption
Public append-only logs for TLS certificates enabling monitoring and detection of CA mis-issuance.
Web Security
UI redressing attacks using overlays/iframes.
Consent
Contract formation mechanism requiring an affirmative click to accept terms.
Encryption
Encryption performed at the endpoint under user control.
Encryption
Encryption applied to cloud-stored data and services.
Data Management
Third-party vendor providing compute/storage/networking services, often acting as a processor.
Security
Security controls for cloud environments: identity, network segmentation, encryption, monitoring, and governance.
Data Management
Remote object/file storage service with access control, durability, and often integrated sharing.
Security
Use of digital signatures to authenticate software publishers and ensure integrity of executables and updates.
Consent
A lawful basis where an individual freely gives informed, specific permission.
Consent
Decision fatigue caused by repeated consent prompts and complex choices.
Consent
Platform to collect, manage, and propagate consent signals across vendors and purposes.
Consent
Mechanism allowing a user to revoke previously granted consent; should be as easy as giving consent.
Security
OS-level virtualization that packages apps and dependencies into isolated runtime units.
Web Security
Security header restricting resource loading/execution to mitigate XSS and data exfiltration.
Privacy
Privacy theory (Nissenbaum) focusing on appropriate information flows within social contexts and norms.
Privacy
Concept that privacy norms depend on context, roles, and appropriate information flow.