Principles are based on scientific sources.
Name | Revocability |
Sources | (Yee, 2002) |
Synonyms | None |
Intent | The interface should allow the user to easily revoke authorities that the user has granted wherever revocation is possible. |
Motivation | It is inevitable that people will make mistakes; any well-designed system should help recover from them. In the context of granting authorities, recovery from error amounts to revocation. One might intentionally grant an authority to an application and later discover that the application is misguided or malicious; or one might inadvertently grant the wrong authority and want to correct the mistake. In both of these cases, the granting decision should be reversible. |
Examples | None |
Guidelines | Design guidelines for security management systems Designing Graphical Authentication Mechanism Interfaces Usable set-up of security policies |
Tags | Access Control, Controllability |
Log history | [02/14/2016]: Added to repository |
Yee, K.-P., 2002. User interaction design for secure systems, in: Proceedings of the 4th International Conference on Information and Communications Security, ICICS ’02. Springer-Verlag, London, UK, UK, pp. 278–290.