GLOSSARY
ISO 27001
International standard for information security management systems (ISMS).
ISO 27001 defines requirements for an ISMS, covering risk management, policies, and controls (Annex A). Certification demonstrates a systematic approach to protecting information.
Often paired with SOC 2 and privacy laws like GDPR or CCPA. Continuous risk assessments and internal audits are required to maintain certification.
In the product
Where this term matters in operation.
The glossary is not meant to be academic. It explains the language teams use in Kotao while selling, planning, paying, reporting, and automating.
In sales
Terms like this appear inside POS, checkout, bookings, offers, and customer communication.
In back office
Finance, inventory, HR, and reporting need the same meaning so reports do not drift apart.
In integrations
APIs, imports, webhooks, and exports work better when teams use the same definitions.
Related terms.
Acquirer
Bank or payment institution that signs merchants and routes their card transactions into the card networks.
Apple Pay
Mobile wallet by Apple that tokenizes cards for contactless and in-app payments.
Card Fraud
Unauthorized card use or theft of credentials to initiate transactions.
Card Network
Payment network (e.g., Visa/Mastercard) that sets rules and routes card transactions between issuers and acquirers.