Apply taint tracing to track untrusted data
Is this legally binding?
Guidance. Voluntary guidance. Best practice, not obligation, until a contract or a regulator cites it.
Complement threat modelling with taint tracing - a methodology to track how untrusted data moves through the system. Tainted components should be isolated; detection and guardrails are prioritised at tainted zone boundaries.
What this connects to
1 relations. Official relations are the ones the source documents state; anything marked GAGE analysis is our reading, not an agency's.
Maps across to1
- External frameworkArticle 15: Accuracy, robustness and cybersecurityBindingGAGE analysis, not official
Taint tracing is a cybersecurity control technique supporting Article 15 robustness
Verified against the official source on 2026-08-17. GAGE is not affiliated with or endorsed by any agency named here, and nothing on this page is legal advice. How this is built and checked.