Skip to content

Lexicon · term

The revocation window

Also called Privacy window, Revocation gap.

The interval between access being revoked on a server and the revoked material ceasing to be readable on every device already holding a copy. Ordinarily seconds when the devices are connected, and unbounded for a device that never reconnects, because a copy already resting on an unreachable device cannot be removed by any server action. The window is inherent to every offline-first and synchronizing system, including cached mail, file sync folders, offline document caches, and every product that offers to unsend, which makes naming it rather than eliminating it the available honesty. The one setting that closes it is refusing to let the material reach devices at all, paid for in offline access.

Used in

This entry is a node in the site's knowledge graph (org:concepts:revocation-window), served with everything it connects to at /kg.json.