Define the new internet.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
2,337 definitions
Firewall Ingress Rule is a networking boundary rule that controls how external traffic enters a service for network traffic filtering. It uses hostnames, paths, protocols, and policy checks so teams can keep entry points predictable while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used Firewall Ingress Rule when a new rule matched traffic, so the team could keep entry points predictable before traffic crossed a service boundary.”
Application Evidence Chain is a security audit record that preserves how security evidence was collected and handled for software security and abuse resistance. It uses timestamps, hashes, owners, and storage controls so teams can support trustworthy investigation while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Evidence Chain when a form received unusual input, so the team could support trustworthy investigation before the risk review began.”
Latency Route Leak Guard is a networking routing control that detects and blocks accidental route propagation for time between request and response. It uses prefix filters, validation, and peer policy so teams can protect reachability while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used Latency Route Leak Guard when a user saw slow responses, so the team could protect reachability before traffic crossed a service boundary.”
Packet Egress Policy is a networking outbound control that decides where workloads may send traffic for unit of network transmission. It uses allowlists, identity, and logging so teams can reduce exfiltration and SSRF risk while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used Packet Egress Policy when packet loss increased, so the team could reduce exfiltration and SSRF risk before traffic crossed a service boundary.”
Access Detection Rule is a security security analytic that matches suspicious behavior or known indicators for authorization and privilege control. It uses logs, thresholds, signatures, and behavioral context so teams can surface actionable alerts while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Access Detection Rule when a role gained new permissions, so the team could surface actionable alerts before the risk review began.”
Identity Patch Window is a security remediation schedule that sets when a fix should be applied for user and workload identity. It uses risk severity, testing needs, and maintenance constraints so teams can repair systems without unnecessary disruption while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Identity Patch Window when a service account requested access, so the team could repair systems without unnecessary disruption before the risk review began.”
Vulnerability Phishing Resistance is a security identity control that reduces success of credential theft attacks for weakness tracking and remediation. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Vulnerability Phishing Resistance when a scanner found a critical issue, so the team could protect sign-in flows before the risk review began.”
Data Loss Containment Plan is a security response plan that limits damage after a suspected compromise for sensitive data exposure risk. It uses isolation steps, credential rotation, and communication paths so teams can reduce attacker dwell time while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Containment Plan when a report included private metadata, so the team could reduce attacker dwell time before the risk review began.”
Vulnerability Data Redaction is a security privacy control that removes sensitive values before data leaves a protected context for weakness tracking and remediation. It uses field rules, hashing, and safe logging so teams can share evidence without leaking secrets while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Vulnerability Data Redaction when a scanner found a critical issue, so the team could share evidence without leaking secrets before the risk review began.”
Endpoint Patch Window is a security remediation schedule that sets when a fix should be applied for user device and server protection. It uses risk severity, testing needs, and maintenance constraints so teams can repair systems without unnecessary disruption while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Endpoint Patch Window when a workstation reported suspicious activity, so the team could repair systems without unnecessary disruption before the risk review began.”