AI Security Glossary
The authoritative reference for agentic security, cryptographic verification, and the VEX Protocol.
Threat Vectors
Adversarial surfaces at the intersection of LLM reasoning and the Model Context Protocol.
Prompt Injection
Foundational LLM vulnerability involving instruction override.
Indirect Injection
Adversarial instructions embedded in retrieved external content.
SSRF (AI Context)
Agent-driven exploitation of cloud metadata and internal services.
Tool-Call Hijacking
Unauthorized invocation of sensitive MCP tool capabilities.
Data Exfiltration
Covert transmission of context data via outbound tool parameters.
Context Poisoning
Persistence-oriented attacks against agent memory and beliefs.
LLM Jailbreak
Bypassing model-layer behavioral constraints via engineering.
Path Traversal
Unauthorized filesystem access via tool parameter manipulation.
Privilege Escalation
Acquisition of unauthorized capabilities via semantic drift.
Permission Drift
Incremental expansion of agent scope beyond initial intent.
Architecture & Primitives
Cryptographic and architectural constructs that form the ProvnAI governance layer.
Evidence Capsule
The four-pillar cryptographic attestation of agent execution.
Silicon Identity
TPM 2.0 and TEE-anchored cryptographic agent identity.
Deterministic Proxy
Binary, rule-based enforcement at the proxy boundary.
Merkle Audit Trail
Tamper-evident, append-only cryptographic logging.
Execution Boundary
Formally defined perimeter for authorized agent actions.
Authority Control
Binding actions to verified principals and intent scopes.
Intent Attestation
Cryptographic binding of sessions to declared user goals.
TEE Isolation
Hardware-enforced enclave isolation for agent runtimes.
MCP Tool Manifest
Signed registry of authorized tool schemas and capabilities.
Zero-Trust Agent
Per-action verification architecture for autonomous AI.
Witness Log
Granular execution provenance for every tool invocation.
MCP Standard
The open standard for AI model-resource interaction.
VEX Protocol
Governance layer for real AI actions.