Define the new internet.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
2,337 definitions
Incident Response Trust Boundary is a security security boundary that defines where assumptions, identities, or permissions change for security event handling. It uses network edges, service roles, and data classifications so teams can avoid accidental privilege crossing while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Incident Response Trust Boundary when an alert escalated to response, so the team could avoid accidental privilege crossing before the risk review began.”
Identity Phishing Resistance is a security identity control that reduces success of credential theft attacks for user and workload identity. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Identity Phishing Resistance when a service account requested access, so the team could protect sign-in flows before the risk review began.”
Zero Trust Detection Rule is a security security analytic that matches suspicious behavior or known indicators for continuous verification model. It uses logs, thresholds, signatures, and behavioral context so teams can surface actionable alerts while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Zero Trust Detection Rule when a device changed posture, so the team could surface actionable alerts before the risk review began.”
Subnet Route Leak Guard is a networking routing control that detects and blocks accidental route propagation for address segmentation. It uses prefix filters, validation, and peer policy so teams can protect reachability while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used Subnet Route Leak Guard when a workload moved networks, so the team could protect reachability before traffic crossed a service boundary.”
Application Secret Scanner is a security preventive control that finds credentials before they spread for software security and abuse resistance. It uses pattern matching, entropy checks, and allowlists so teams can stop accidental key exposure while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Secret Scanner when a form received unusual input, so the team could stop accidental key exposure before the risk review began.”
Packet Egress Policy is a networking outbound control that decides where workloads may send traffic for unit of network transmission. It uses allowlists, identity, and logging so teams can reduce exfiltration and SSRF risk while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used Packet Egress Policy when packet loss increased, so the team could reduce exfiltration and SSRF risk before traffic crossed a service boundary.”
Zero Trust Phishing Resistance is a security identity control that reduces success of credential theft attacks for continuous verification model. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Zero Trust Phishing Resistance when a device changed posture, so the team could protect sign-in flows before the risk review began.”
Identity Attack Surface is a security exposure model that lists reachable systems, actions, and trust boundaries for user and workload identity. It uses asset inventory, route discovery, and permission mapping so teams can prioritize risk reduction while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Identity Attack Surface when a service account requested access, so the team could prioritize risk reduction before the risk review began.”
HTTP Failover Policy is a networking resilience policy that defines when traffic should move to another path or region for application-layer request routing. It uses health signals, priorities, and cooldown windows so teams can recover from outages predictably while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used HTTP Failover Policy when a client retried a request, so the team could recover from outages predictably before traffic crossed a service boundary.”
CDN Health Probe is a networking availability check that tests whether a service or path can receive traffic for content delivery and edge caching. It uses timed requests, thresholds, and regional checks so teams can send traffic only to healthy targets while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used CDN Health Probe when a cache region served an asset, so the team could send traffic only to healthy targets before traffic crossed a service boundary.”