Access Control
Security
Enforcement of permissions on resources and actions.
Glossary
Plain-language explanations for encryption, tracking, compliance, and security concepts.
Security
Enforcement of permissions on resources and actions.
Session Management
Bearer credential used to authorize API requests; should be short-lived and scoped.
Authentication
Control limiting authentication attempts by locking accounts or requiring additional verification after repeated failures.
Authentication
Processes and factors used to re-establish account access after loss of credentials.
Threats
Unauthorized control over a user account.
Threats
Manipulation of digital advertising measurement and delivery (click fraud, impression fraud, attribution fraud).
Tracking
Data collection for targeting, attribution, and measurement.
Authentication
Authentication that adjusts required steps based on computed risk from contextual signals and behavior.
Tracking
Platform-provided identifier intended for advertising measurement and targeting.
Privacy
EU regulation establishing a risk-based framework for AI governance.
Privacy
Privacy controls and governance for data used to train, fine-tune, and run AI systems.
Privacy
Risk category covering inference, re-identification, memorization, and sensitive attribute extraction.
Security
Physical isolation of a system from untrusted networks to reduce remote attack surface.
Privacy
Systematic error or unfair disparity introduced by data, modeling, or deployment choices.
Privacy
Alternate identifier used to reduce linkability while preserving account functionality.
Tracking
Collection of telemetry for measurement and optimization.
Privacy
Set of indistinguishable subjects given an attackerβs observations and prior knowledge.
Privacy
Transforming data to eliminate identifiability, ideally irreversibly.
Privacy
Feature set aimed at reducing identifiability within a specific service context.
Security
Endpoint protection that detects, quarantines, and remediates malicious code using signatures and behavior analysis.
Security
Static credential used to authenticate/identify an API client; should be scoped, rotated, and protected.
Tracking
Instrumentation capturing usage events and metrics from a mobile application.
Privacy
OS-managed capability grants to apps.
Privacy
Japanβs Act on the Protection of Personal Information regulating personal data handling.