Term Kind Topic What it is
Consent Architecture pattern Consent Architecture Capturing, storing and enforcing a person's permissions for specific processing purposes, across every system that acts on their data.
Deemed Status Provisional Outcome, Presumed Result, Timeout Resolution Rule pattern Financial Services Regulation A provisional outcome assigned to a transaction whose true result is unknown after a timeout, resolved later by reconciliation - because a payments rail cannot leave money in an indeterminate state indefinitely.
External Key Store Hold Your Own Key, External Key Manager, HYOK pattern Digital Sovereignty Holding the key-unwrapping function in a system the cloud provider does not operate so that a decrypt requires a call outward, converting a contractual promise about foreign access into a technical dependency.
Fail-Open Audit Boundary Audit Fail-Open Rule, Accountability Degradation Policy pattern Healthcare Data Protection A pre-declared rule saying which classes of access may proceed when the audit trail cannot be written and which must be refused, so a logging failure does not become a safety failure or an invisible one.
Key-Custodian Separation Token Vault Separation, Split-Custody Pseudonymisation pattern Pseudonymisation Keeping the mapping or key that re-identifies pseudonymised data in a system with a different access path from the data itself - so a breach of the analytical store yields behaviour without people.
Objection Register Opt-Out Register pattern Lawful Basis & Purpose Limitation The durable default-allow counterpart to a consent store, holding every objection and opt-out and consulted at use time by every job, because switching a lawful basis from consent to legitimate interests inver…
Screening Enforcement Point Sanctions Control Placement, Party Screening Gate pattern Geo-Restriction & Sanctions The place in a system where a restriction is actually enforced - which must match what the obligation is about, since sanctions apply to parties and licensing restrictions apply to locations, and a control pla…
Suppression List Do-Not-Reprocess List, Erasure Tombstone Registry pattern Data Subject Rights A durable record of identifiers that must not be re-ingested, preventing an in-flight or replayed pipeline from recreating data that was just erased.