The AI governance and AI literacy glossary
628 terms, defined plainly. Every one is taught in more than one GAGE program, and most carry several definitions, because a word like deployer means something different to a lawyer, a data officer and an engineer. Each page shows all of them.
These are definitions, not lessons. Free to read, no account.
A
- A/B test
- A2A (Agent2Agent)
- Acceptance authority
- Access drift
- Accountability
- Accountability Gap
- Accountability principle
- Action3 programs
- Action space
- Adequacy decision4 programs
- ADMT (automated decision-making technology)
- Adversarial attack
- Adversarial manipulation
- Agent3 programs
- Agent (agentic AI)
- Agent (AI agent)
- Agentic AI3 programs
- Agentic AI value chain
- Agentic system
- Aggregation3 programs
- AI Agent3 programs
- AI Literacy (Article 3(56))
- AI Office5 programs
- AI Verify3 programs
- AI Verify Foundation3 programs
- AI-washing4 programs
- AIGP (Artificial Intelligence Governance Professional)
- Alarm fatigue4 programs
- Alert fatigue7 programs
- Algorithmic disgorgement3 programs
- Allowlist
- Anchor
- Annex I
- Annex I (AI Act)
- Annex III3 programs
- Annex III (EU AI Act)3 programs
- Annex IV3 programs
- Annex VI (internal control)
- Annex XII
- Anonymization3 programs
- API (Application Programming Interface)3 programs
- Approval gate3 programs
- Article 4 (EU AI Act)
- Article 50 (transparency obligations)
- Article 6(3) filter
- Article 74 (market surveillance)
- Artifact chain
- Artificial Intelligence (AI)
- As-of date4 programs
- ASEAN Digital Economy Framework Agreement (DEFA)
- ASEAN Secretariat
- Assurance
- Attribution4 programs
- Audit right3 programs
- Audit trail4 programs
- Automated Employment Decision Tool (AEDT)5 programs
- Automation Bias7 programs
- Automation complacency
- Autonomy5 programs
- Autonomy level
B
- Backdrivability
- Backlash
- Base Rate6 programs
- Baseline7 programs
- Benchmark
- Bias audit
- Binding constraint3 programs
- Biometric data
- Biometric identifier3 programs
- Blameless postmortem3 programs
- Blast Radius6 programs
- BLUF (Bottom Line Up Front)3 programs
- Board inspection
- Borrowed authority
- Branch
- Briefcase backup (export)
- Build Log6 programs
- Business email compromise (BEC)
C
- C2PA (Coalition for Content Provenance and Authenticity)5 programs
- Cadence4 programs
- Calibrated trust3 programs
- Calibration6 programs
- Callback
- Caller ID spoofing
- Capability versus reliability
- Capstone4 programs
- Caremark duty
- Cascading failure4 programs
- CE marking
- Certification
- Chain of custody6 programs
- Change control
- Change management3 programs
- Change management trigger
- Change narrative
- Chargeback
- Chief AI Officer (CAIO)4 programs
- Chokepoint
- CI (continuous integration)
- Circuit breaker3 programs
- Claim
- Coalition
- Cognitive load
- Cold-read test
- Common-mode failure
- Compatibility test
- Compensating control3 programs
- Completeness4 programs
- Compliance3 programs
- Compliance calendar
- Compounding errors
- Computer-use agent3 programs
- Concentration
- Concept drift
- Concession3 programs
- Confabulation3 programs
- Confidence Score
- Configuration3 programs
- Conformity assessment4 programs
- Conformity file
- Confused deputy
- Consumer Financial Protection Bureau (CFPB)
- Containment3 programs
- Contemporaneous record4 programs
- Content credentials
- Content provenance3 programs
- Context window5 programs
- Contributing factor
- Control
- Controller3 programs
- Conway's Law
- COPPA (Children's Online Privacy Protection Act)3 programs
- Corrective action5 programs
- Corrective action plan
- Correlation versus Causation
- Counterfactual4 programs
- Counterfactual test
- Coupling
- Cross-border transfer mechanism
- CSAM (child sexual abuse material)
- Currency statement
- Currency watch
- Cyberspace Administration of China (CAC)
D
- Dark data
- Dark pattern
- Data broker
- Data classification3 programs
- Data Dictionary3 programs
- Data domain3 programs
- Data lineage
- Data localization
- Data minimization4 programs
- Data poisoning8 programs
- Data Processing Agreement (DPA)4 programs
- Data Protection Impact Assessment (DPIA)6 programs
- Data provenance
- Data sovereignty
- Data subject
- Datasheet for a dataset
- Debrief
- Decision log3 programs
- Decision record5 programs
- Decision rights3 programs
- Deduplication
- Deep Learning
- Deepfake4 programs
- Default deny
- Defense in depth4 programs
- Definition of done
- Deliberate practice3 programs
- Demo-to-deployment gap
- Denominator
- Dependency3 programs
- Deployer7 programs
- Deployer (Article 3(4))
- Deployer (EU AI Act)
- Deployment4 programs
- Design defect3 programs
- Desirable difficulty3 programs
- Difference-in-differences
- Differential Privacy5 programs
- Digital Omnibus (Regulation (EU) 2026/1744)
- Digital Omnibus on AI5 programs
- Digital Omnibus on AI (Regulation (EU) 2026/1744)3 programs
- Digital replica3 programs
- Digital twin3 programs
- Direct prompt injection5 programs
- Disclosure line
- Discount rate
- Discovery3 programs
- Discovery (legal)
- Disparate impact4 programs
- Disposition3 programs
- Distribution shift5 programs
- Documentation debt
- Documentation gap
- Domain3 programs
- Domain randomization
- DORA (Digital Operational Resilience Act)
- Dossier3 programs
- Downstream provider
- DPIA (Data Protection Impact Assessment)
- Drift7 programs
- Drift monitoring
- Dunning-Kruger effect3 programs
- Duty cycle
- Duty of care6 programs
E
- EDPB (European Data Protection Board)
- Effect size
- Embedded AI3 programs
- Embedding3 programs
- End-user responsibility (Dimension 4)
- Error budget3 programs
- Escalation3 programs
- Escalation channel
- Escalation ladder8 programs
- Escalation path8 programs
- Escalation Protocol3 programs
- Escalation trigger5 programs
- ESTABLISHED / EMERGING / SPECULATIVE4 programs
- EU AI Act5 programs
- EU AI Act (Regulation (EU) 2024/1689)4 programs
- EU declaration of conformity
- EU declaration of conformity (Article 47)
- EU Product Liability Directive (Directive (EU) 2024/2853)
- European AI Office
- Evidence gap4 programs
- Evidence hierarchy
- Evidence index4 programs
- Evidence tier
- Evidence type
- Excessive agency3 programs
- Exclusion
- Executive Order 141103 programs
- Executive Order 141793 programs
- Expanded ASEAN Guide on AI Governance and Ethics, Generative AI
- Expected loss
- Expected value3 programs
- Exposure4 programs
- Extraterritorial reach4 programs
- Extraterritorial scope
F
- Fail-operational
- Failure Mode4 programs
- Failure Mode and Effects Analysis (FMEA)3 programs
- Fair Credit Reporting Act (FCRA)
- Fair use3 programs
- False precision3 programs
- Feature flag3 programs
- Feature store
- Federal Trade Commission (FTC)
- Federated Learning4 programs
- Feedback loop4 programs
- Fiduciary duty
- Field checklist
- Finding4 programs
- Fine-Tuning5 programs
- Five Whys4 programs
- Force density
- Forgetting curve3 programs
- Form 990
- Foundation model3 programs
- Four-bar linkage
- Frame
- Fundamental rights impact assessment (FRIA)
G
- Gap register4 programs
- Gate
- GDPR (General Data Protection Regulation)5 programs
- GDPR Article 224 programs
- Gear ratio
- General-purpose AI (GPAI)3 programs
- General-Purpose AI (GPAI) Model3 programs
- General-purpose AI assistant
- General-purpose AI model (GPAI model)
- Generalization
- Generative AI3 programs
- Goodhart's Law4 programs
- Governance operating model
- Governance theater
- GPAI (general-purpose AI)4 programs
- GPAI Code of Practice
- Graceful degradation3 programs
- Graceful exit3 programs
- Gravity compensation
- Ground truth4 programs
- Grounding4 programs
H
- Hallucination5 programs
- Handoff3 programs
- Handover
- Happy path
- Hard case3 programs
- Hardware interlock
- Harmonised standard
- Harmonized standard4 programs
- High-risk AI system4 programs
- Hindsight bias
- HIPAA (Health Insurance Portability and Accountability Act)
- Historical bias
- Holding statement3 programs
- Holding torque
- Horizon scanning3 programs
- Human override rate
- Human-in-the-loop3 programs
- Human-in-the-Loop (HITL)3 programs
- Human-on-the-loop3 programs
- Human-on-the-Loop (HOTL)
- Hybrid architecture3 programs
- Hysteresis
I
- IMDA (Infocomm Media Development Authority)
- Impedance control
- Implementing act
- Incentive gap
- Incident Command System
- Incident commander6 programs
- Incident log3 programs
- Incident response
- Indemnification3 programs
- Indemnification clause
- Indemnity
- Independence
- Independent verification4 programs
- Indirect prompt injection5 programs
- Inference4 programs
- Infocomm Media Development Authority (IMDA)3 programs
- Institutional memory
- Institutional review board (IRB)
- Intended purpose
- Intended use
- Internal audit
- Internet Crime Complaint Center (IC3)
- ISO/IEC 420016 programs
- ISO/IEC 42001:20236 programs
- ISO/TS 15066:2016
J
- Jitter
- Judgment
- Judgment Layer3 programs
- Jurisdiction3 programs
- Just culture
K
- Kill criteria4 programs
- Kill criterion3 programs
- Kill switch4 programs
L
- Lagging indicator6 programs
- Large Language Model (LLM)3 programs
- Latency budget
- Lawful basis
- Layering
- Leading indicator6 programs
- Least privilege7 programs
- Legal hold5 programs
- Legitimate interest
- Legitimate interest assessment (LIA)
- Liability cap
- Likelihood4 programs
- Litigation hold3 programs
- Living credential5 programs
- Living document
- Living Repository of AI Literacy Practices3 programs
- Load-bearing claim4 programs
- Loaded labor rate
- Lock-in
- Lost in the Middle
M
- Machine Learning (ML)
- Machine Unlearning4 programs
- Machinery Regulation (EU) 2023/1230
- Management review3 programs
- Mandate
- Mandatory subject of bargaining
- Manufactured urgency3 programs
- Market Surveillance Authority4 programs
- MAS AI Risk Management Guidelines (AIRG)3 programs
- Material change4 programs
- Materiality
- MCP (Model Context Protocol)3 programs
- Meaningful human oversight
- MECE (Mutually Exclusive, Collectively Exhaustive)
- Membership inference
- Membership Inference Attack3 programs
- Metric3 programs
- Mitigation
- Model AI Governance Framework (MGF)3 programs
- Model AI Governance Framework for Agentic AI
- Model AI Governance Framework for Agentic AI (Agentic MGF)
- Model AI Governance Framework for Generative AI
- Model card6 programs
- Model card / system card
- Model collapse
- Model Context Protocol (MCP)5 programs
- Model Drift4 programs
- Model provenance3 programs
- Model registry3 programs
- Model risk management
- Model risk management (SR 11-7)3 programs
- Monetary Authority of Singapore (MAS)3 programs
- Monitoring cadence
- Moral crumple zone3 programs
- Morphological computation
- Multi-Agent System3 programs
N
- Named risk
- National market surveillance authority3 programs
- Near miss5 programs
- Net present value (NPV)3 programs
- NIS2 Directive
- NIST (National Institute of Standards and Technology)3 programs
- NIST AI Risk Management Framework (AI RMF)5 programs
- NIST AI RMF3 programs
- Node
- Normalization of deviance3 programs
- Notification clock
- Notified body6 programs
O
- OECD AI Principles4 programs
- OMB M-25-21
- OMB M-25-22
- Opportunity cost5 programs
- Optimism bias
- Out-of-band verification3 programs
- Outsider test
- Overfitting
- Overlap
- Override3 programs
- Override authority
- Override rate4 programs
- Oversight theater
- OWASP (Open Worldwide Application Security Project)
- OWASP Top 10 for LLM Applications
- Owner3 programs
P
- Passkey3 programs
- Password manager
- Payback period5 programs
- PDPA (Personal Data Protection Act)
- Personal Data Protection Act (PDPA)
- Personal Data Protection Commission (PDPC)3 programs
- Phase gate
- Phishing
- Physics engine
- Pilot5 programs
- Pilot purgatory
- PIPA (Personal Information Protection Act)
- PIPC (Personal Information Protection Commission)
- PIPL (Personal Information Protection Law)
- Plan-Do-Check-Act (PDCA)
- Population Stability Index (PSI)
- Post-incident review3 programs
- Post-market monitoring
- Pre-mortem6 programs
- Pre-registration
- Precision4 programs
- Predetermined Change Control Plan (PCCP)3 programs
- Preemption
- prEN 18286
- Preprint
- Presumption of conformity4 programs
- Primary source6 programs
- Private right of action4 programs
- Profiling
- Profiling override
- Program Mastery Exam3 programs
- Prompt injection9 programs
- Provenance5 programs
- Provider4 programs
- Provider (Article 3(3))
- Provider (EU AI Act)3 programs
- Proximate cause
- Pseudonymisation3 programs
- Psychological Safety3 programs
- Public Utility Commission (PUC)
- Publicly Available Exception
- Pull request (PR)
- Purpose drift
- Purpose limitation5 programs
- Pyramid Principle3 programs
Q
R
- Race condition
- RAG (Retrieval-Augmented Generation)
- Rail
- Rate limit
- Re-review trigger
- Reach3 programs
- Reasonably foreseeable misuse
- Rebuttable presumption3 programs
- Recall3 programs
- Recommendation4 programs
- Records of processing activities (ROPA)3 programs
- Recoverability
- Red team3 programs
- Red-teaming
- Redeployment3 programs
- Redundancy3 programs
- Referral
- Register
- Regression
- Regulatory sandbox3 programs
- Reinforcement
- Reinforcement learning from human feedback (RLHF)
- Replication
- Reproducibility4 programs
- Residual Risk7 programs
- Reskilling
- Responsible disclosure
- Retention period5 programs
- Retention schedule
- Retrieval-Augmented Generation (RAG)6 programs
- Return on investment (ROI)4 programs
- Reverse image search
- Reversibility5 programs
- Review trigger4 programs
- Revocation4 programs
- Reward hacking
- Right of publicity5 programs
- Risk cost
- Risk owner
- Risk register4 programs
- Risk tier
- Risk tiering4 programs
- Root cause6 programs
- ROS 2 (Robot Operating System 2)
- Rubber-stamp failure
- Rubber-Stamping3 programs
S
- Safe harbor3 programs
- Satisficing
- Scope boundary3 programs
- Scope check
- Scope creep4 programs
- Scope statement3 programs
- Scoping3 programs
- Seam3 programs
- Section 230
- Sector weighting
- Self-attestation4 programs
- Self-disclosure
- Semantic search
- Sensitivity analysis5 programs
- Sequencing
- Series elastic actuator
- Series elastic actuator (SEA)
- Serious incident (EU AI Act)
- Service
- Service account
- Severity4 programs
- Shadow AI6 programs
- Shadow IT
- Shared Responsibility Model3 programs
- Silent failure4 programs
- Sim-to-real gap
- Single point of failure5 programs
- SME simplified form (Article 11(1))
- Social engineering
- Software as a Medical Device (SaMD)3 programs
- Software bill of materials (SBOM)
- Spacing effect3 programs
- Split-view poisoning
- Spoliation3 programs
- SR 11-7
- Staged rollout4 programs
- Stakes3 programs
- Standard Contractual Clauses (SCCs)3 programs
- Statement of reasons
- Statistical significance
- Stop mechanism
- Storage limitation3 programs
- Stranger test4 programs
- Strict liability3 programs
- Structural control
- Structural fix
- Sub-processor5 programs
- Substantial modification
- Sunk cost3 programs
- Sunk cost fallacy
- Supervision tax
- Supervisory authority
- Surveillance audit
- Survivorship Bias3 programs
- Sycophancy
- Synthetic data7 programs
- System card
- System prompt
- Systemic risk3 programs
- Systemic-risk GPAI3 programs
T
- Tabletop drill3 programs
- Tabletop exercise
- Tacit Knowledge3 programs
- TAKE IT DOWN Act3 programs
- Task Decomposition
- Technical debt4 programs
- Technical documentation
- Technical report
- Technology readiness level (TRL)
- Teleoperation
- Text and data mining (TDM) opt-out
- Three lines model3 programs
- Threshold4 programs
- Time horizon3 programs
- Timeliness4 programs
- Token4 programs
- Tokenization
- Tool
- Tool call3 programs
- Total cost of ownership (TCO)4 programs
- Traceability3 programs
- Trade secret3 programs
- TRAIGA (Texas Responsible Artificial Intelligence Governance Act)3 programs
- Training3 programs
- Training cutoff
- Training Data4 programs
- Training-serving skew
- Transfer
- Triangulation4 programs
- Trigger7 programs
- Trigger event3 programs
- Trilogue
- Trust boundary3 programs
- Turing Test
U
V
W
- Watch item3 programs
- Watchdog timer
Z
- Zero trust3 programs