Revocability

Name Revocability
Sources (Yee, 2002)
Synonyms None
Intent The interface should allow the user to easily revoke authorities that the user has granted wherever revocation is possible.
Motivation It is inevitable that people will make mistakes; any well-designed system should help recover from them. In the context of granting authorities, recovery from error amounts to revocation. One might intentionally grant an authority to an application and later discover that the application is misguided or malicious; or one might inadvertently grant the wrong authority and want to correct the mistake. In both of these cases, the granting decision should be reversible.
Examples None
Guidelines Design guidelines for security management systems
Designing Graphical Authentication Mechanism Interfaces
Usable set-up of security policies
Tags Access Control, Controllability
Log history [02/14/2016]: Added to repository

References

Yee, K.-P., 2002. User interaction design for secure systems, in: Proceedings of the 4th International Conference on Information and Communications Security, ICICS ’02. Springer-Verlag, London, UK, UK, pp. 278–290.