CAEP
Continuous Access Evaluation Profile, an OpenID Shared Signals Framework profile that defines security events such as device compliance changes and session revocation. CAEP carries the state change; receiver policy determines whether to deny access, revoke a session, require reauthentication, or take another action.
CAIQ
Consensus Assessment Initiative Questionnaire, a Cloud Security Alliance questionnaire aligned with the Cloud Controls Matrix (CCM) that cloud providers use to document security controls for customers, auditors, and CSA STAR Level 1 review. A completed CAIQ is a self-assessment, not a certification.
Data streaming
The event-processing layer Gideon uses to correlate identity and endpoint state in real time.
FIDO2
A phishing-resistant authentication standard used by modern passkeys.
GitOps
A model where infrastructure and security state are declared in version control and enforced automatically.
MCP
Model Context Protocol, a standard interface that lets AI agents interact with tools and data sources safely.
OIDC
OpenID Connect, an identity layer used for modern authentication flows.
SCIM
A protocol for provisioning and deprovisioning identities across SaaS systems.
Secure Enclave
A hardware security subsystem that protects cryptographic keys on supported Apple devices.
SSF
OpenID Shared Signals Framework, a standard for establishing event streams and exchanging signed Security Event Tokens between trusted transmitters and receivers through push or poll delivery.
TPM
Trusted Platform Module, a hardware root of trust commonly used on Windows devices.