Glossary

Privacy terms glossary

Plain-language explanations for encryption, tracking, compliance, and security concepts.

411 terms (page 11 of 18)
Browse by letter: All A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
πŸ“¨

MTA-STS

Security

Email security mechanism allowing domains to publish policy requiring TLS for SMTP delivery and preventing downgrade attacks.

tls data in transit phishing
πŸ›‘οΈ

Multi-Factor Authentication (MFA)

Authentication

Authentication using multiple factor categories.

two factor authentication totp biometric authentication
🧭

Multihop VPN

Network Privacy

Chained VPN routing through multiple gateways.

vpn double vpn dedicated ip
🀝

Mutual TLS (mTLS)

Encryption

TLS configuration requiring client certificates, providing strong transport-layer mutual authentication.

tls certificate authority pki
🌐

Network Privacy

Network Privacy

Controls that limit observability and linkability at the network layer and related metadata.

ip address dns vpn
🌐

Networking

Network Privacy

Protocols, addressing, routing, and transport used to move data between systems (TCP/IP, DNS, TLS, etc.).

dns ip address https
🧾

No‑Log Policy

Network Privacy

Operational claim limiting retention of identifiable logs.

vpn ip logging privacy notice
πŸ”‘

OAuth 2.0

Authentication

Authorization framework that issues scoped access tokens to clients instead of sharing user credentials.

authorization access token refresh token
πŸ“‘

OCSP

Encryption

Online Certificate Status Protocol; privacy mitigations include OCSP stapling and short-lived certificates.

certificate revocation pki tls
πŸ“¦

Offline Backup

Data Management

Backup stored on disconnected media or isolated storage to reduce exposure to online attacks and ransomware.

backups ransomware secure storage
🧩

Open Source

Security

Software with publicly available source code under an open license; enables review and reuse.

security audit transparency encryption
πŸͺͺ

OpenID Connect (OIDC)

Authentication

Identity layer on OAuth 2.0 providing authentication via ID tokens (typically JWT) from an IdP.

oauth 2 single sign on identity provider
βœ…

Opt‑in

Consent

Consent model where processing occurs only after explicit affirmative action.

consent user consent privacy settings
πŸšͺ

Opt‑out

Consent

Consent model where processing is enabled by default and users must disable it to stop processing.

consent user consent privacy settings
πŸ”

Passkey

Authentication

Passwordless credential based on public-key cryptography, typically stored on a device or synced securely.

webauthn fido2 two factor authentication
πŸ”

Passkeys

Authentication

FIDO/WebAuthn credentials using public-key cryptography for phishing-resistant authentication (often synced across devices).

webauthn fido2 passwordless authentication
πŸ§ͺ

Password Leak

Threats

Exposure of password material or password hashes.

data breach hashing credential stuffing
πŸ”’

Password Management

Security Techniques

Storing and handling passwords securely.

authentication two factor authentication
πŸ”‘

Password Manager

Authentication

Encrypted credential vault and generator.

strong password password reuse two factor authentication
πŸ”

Password Reset

Authentication

Account recovery flow to set a new credential; must resist takeover via token theft, email compromise, and social engineering.

account recovery two factor authentication phishing
♻️

Password Reuse

Security

Credential re-use across relying parties.

password manager credential stuffing account takeover
🚫

Passwordless Authentication

Authentication

Authentication model that avoids shared secrets; typically uses public-key credentials or magic links.

passkey webauthn multi factor authentication
🩹

Security Patch

Security

Remediation update for known vulnerabilities.

zero day exploit endpoint security
πŸ‡ΊπŸ‡ΈπŸ“œ

Patriot Act

Privacy

US statute expanding investigative authorities; relevant to legal access risk discussions.

jurisdiction data sovereignty mass surveillance