Glossary

secure enclave

Beginner

A locked-off part of the chip that guards secrets like fingerprints and payment keys. Even the phone’s main processor can’t read them.

Novice

A walled-off part of a chip, with its own small processor, memory protection and encryption hardware, that keeps secrets such as keys and fingerprint data safe even if the main processor’s software is compromised.

Expert

A separate trust domain with a dedicated core, encrypted and authenticated memory, a true random number generator and a key hierarchy. Its physical design must also resist side-channel and fault-injection attacks.