Glossary
This glossary defines the acronyms and technical terms used in the GCBoK. It follows the BoK convention (cf. PMBOK, SWEBOK, DMBOK): an alphabetical index with cross-references to the respective axes.
A
| Acronym | Term | Explanation | See |
|---|---|---|---|
| AO | Fiscal Code | Federal law on taxation; basis for non-profit status determinations (§ 60a AO). | Axis 7: Governance |
| AFJD | Axel Franz Johann Druschel | Natural person, registrant of the GitCover Commons gUG; permanent holder of all protection rights. | Axis 7: Governance |
| Apache 2.0 | Apache License Version 2.0 | OSS license with patent clause (Patent Grant + Patent Retaliation); GitCover publishes code under this license. | Licenses & Evidence |
| ArbZG | Working Hours Act | Act on working time; § 22 ArbZG (fine for missing working time recording). | Article Series |
B
| Acronym | Term | Explanation | See |
|---|---|---|---|
| B2B | Business-to-Business | Business relationship between companies; e-invoicing obligation from 2025 for B2B transactions. | Article Series |
| B2G | Business-to-Government | Business relationship between companies and the public sector; Directive 2014/55/EU mandates the receipt of B2G e-invoices. | Article Series |
| BA | Federal Employment Agency | Federal agency for job placement and employment promotion; issues the social insurance company number. | Article Series |
| BEM | Company Integration Management | Employer obligation for employees with frequent illness-related absences (§ 167 Abs. 2 SGB IX). | Article Series |
| BMF | Federal Ministry of Finance | Publisher of the GoBD and BMF letters (e.g., FAQ on e-invoicing). | Article Series |
| BFF | Backend-for-Frontend | Architectural pattern: Blazor WASM client communicates with APIs via a server-side BFF. | Axis 3: Components |
| BSFZ | Federal Office for Information Security / Research Allowance | Assessment body for research projects under § 6 FZulG (Research Allowance Act). | Axis 10: Research |
| BUrlG | Federal Holiday Act | Act on minimum leave; § 1 BUrlG (24 working days on a 6-day week). | Article Series |
| BZSt | Federal Central Tax Office | Federal agency; issues the W-IdNr (economic identification number) and USt-IdNr. | Article Series |
| BSI | Federal Office for Information Security | Federal agency for cybersecurity; publisher of the IT-Grundschutz Compendium (BSI GS++). | Axis 1: Fundamentals |
| BSIG | BSI Act | Act on the Federal Office for Information Security; § 8a BSIG defines KRITIS operators. | Axis 1: Fundamentals |
C
| Acronym | Term | Explanation | See |
|---|---|---|---|
| CEN | Comité Européen de Normalisation | European Committee for Standardization; CEN/TC 434 develops EN 16931 (e-invoicing). | Article Series |
| CC | Creative Commons | License family for open content; GCBoK aims for CC BY-SA 4.0. | Axis 7: Governance |
| CDN | Content Delivery Network | Distributed cache network for static assets (CSS, JS, Fonts). | Axis 3: Components |
| CNCF | Cloud Native Computing Foundation | Linux Foundation project; standardization body for cloud-native infrastructure. | Axis 1: Fundamentals |
| CRM | Customer Relationship Management | Customer relationship management; not a component in the GitCover context. | - |
D
| Acronym | Term | Explanation | See |
|---|---|---|---|
| DA | Data Submission | Format for electronic data transmission to the tax administration; predecessor of eXTra. | Article Series |
| DATEV | Datenverarbeitungs- und Telekommunikationsgesellschaft | Software ecosystem for tax advisors and accounting in Germany. | Axis 5: Approaches |
| DEÜV | Data Transmission Ordinance | Ordinance on notifications to social insurance; defines the social insurance notification formats. | Article Series |
| DKIM | DomainKeys Identified Mail | Email authentication method; signature verification for incoming mails. | Article Series |
| DMS | Document Management System | System for managing electronic documents; in the GitCover context: GCDMS. | Axis 3: Components |
| DRV | German Pension Insurance | Carrier of the statutory pension insurance; conducts social insurance company audits under § 28p SGB IV. | Article Series |
| DLR | German Aerospace Center | Sponsoring organization for research funding; assessment of FZulG projects. | Axis 10: Research |
| DMBOK | Data Management Body of Knowledge | BoK of DAMA International for data management; reference for the GCBoK structure. | Axis 1: Fundamentals |
| DPMA | German Patent and Trade Mark Office | Federal agency for patents, utility models and trademarks. | Axis 9: Protection Rights |
| DSGVO | General Data Protection Regulation | EU Regulation 2016/679 on the protection of personal data. | Axis 1: Fundamentals |
| Dual-Licensing | Dual Licensing | OSS code under Apache 2.0 (free of charge), process patents under commercial license via AD Assets UG (commercial, for remuneration). | Licenses & Evidence |
E
| Acronym | Term | Explanation | See |
|---|---|---|---|
| EFZG | Continued Payment of Remuneration Act | Act on continued payment of remuneration in case of illness (§ 3 EFZG: up to 6 weeks). | Article Series |
| ELStAM | Electronic Wage Tax Deduction Characteristics | Electronic procedure for wage tax collection; replaced the paper wage tax card. | Article Series |
| ELSTER | Electronic Tax Declaration | Online portal of the German tax administration for tax returns and filings. | Article Series |
| EN | European Standard | Standard adopted by CEN; e.g., EN 16931 for e-invoices. | Article Series |
| ENISA | European Union Agency for Cybersecurity | EU agency for cybersecurity; partner of the BSI. | Axis 1: Fundamentals |
| EStG | Income Tax Act | Federal law on income tax; § 3 Nr. 26/26a EStG (flat-rate amounts in case of non-profit status). | Article Series |
| euBP | Electronic Company Audit | Data access procedure of the tax administration during external audit (Z3 data medium transfer). | Article Series |
| eXTra | Electronic Data Exchange Platform | XML-based transmission procedure; required by DRV for social insurance audit data. | Article Series |
| ERP | Enterprise Resource Planning | Business software for resource planning; example of a vertical domain application. | Axis 1: Fundamentals |
| EU | European Union | Political and economic union of European states; legal framework for NIS2, GDPR. | Axis 1: Fundamentals |
F
| Acronym | Term | Explanation | See |
|---|---|---|---|
| FLOSS | Free/Libre and Open Source Software | Free and open-source software; GitCover publishes code as FLOSS under Apache 2.0. | Licenses & Evidence |
| FQN | Fully Qualified Name | Fully qualified path; in the GCBoK context: identical mount points on workstation and AI server for consistent path addressing. | Axis 5: Approaches |
| FZulG | Research Allowance Act | Federal law on the tax promotion of research and development (§ 6 FZulG). | Axis 10: Research |
G
| Acronym | Term | Explanation | See |
|---|---|---|---|
| GCAL | GitCover Advisory Lock | Distributed lock mechanism between Git repos at repo level; prerequisite for GCEP. | Axis 3: Components |
| GCC | GitCover Commons gUG | Non-profit entrepreneurial company (limited liability); operator of the GCBoK. | Axis 7: Governance |
| GCDMS | GitCover Document Management System | Document management component; audit-proof voucher archiving in Git repositories. | Axis 3: Components |
| GCEP | GitCover Exchange Protocol | Instance-to-instance exchange protocol between Git repos; semantically determined by OSCAL catalogs and OPA hooks. IETF track planned. | Axis 3: Components |
| GCPN | GitCover PrimaNota | Metadata mechanism for forming audit-proof evidence chains (predecessor/successor) for business documents; UUIDv7-based, non-chronological chaining, GoBD Rz. 80. Utility model 20 2026 000 272.7. |
Axis 3: Components |
| GCSYNC | GitCover Sync | Synchronization component; Git sync between repositories and external systems. | Axis 3: Components |
| GCUCB | GitCover Unified Communication Bus | Shared-memory-based context bus with deterministic V7GUID addressing; central data hub between AI agents, OPA validators and audit systems. | Axis 3: Components |
| GoBD | Principles of Proper IT-Based Accounting Systems | Administrative guideline of the BMF for electronic accounting; Rz. 151-157. | Axis 1: Fundamentals |
| GPG | GNU Privacy Guard | Free implementation of OpenPGP; signing of Git commits and vouchers. | Axis 4: Techniques |
H
| Acronym | Term | Explanation | See |
|---|---|---|---|
| HTML | HyperText Markup Language | Markup language for web pages; in the GCBoK context: build output of the WebStaticBuilder. | Axis 3: Components |
I
| Acronym | Term | Explanation | See |
|---|---|---|---|
| IAM | Identity and Access Management | Identity and access management; Git repositories as SSOT for IAM. | Axis 3: Components |
| ICLR | International Conference on Learning Representations | ML conference; reference for the AgentTaxo paper (multi-agent token overhead). | Axis 10: Research |
| IEC | International Electrotechnical Commission | International standardization organization; together with ISO for ISO/IEC 24773 (BoK structure). | Axis 1: Fundamentals |
| IETF | Internet Engineering Task Force | Standardization body for Internet protocols; IETF track planned for GCEP. | Axis 3: Components |
| IP | Intellectual Property | Intellectual property; in the GCBoK context: IP usage rights strategy for OSS. | Axis 9: Protection Rights |
| ISMS | Information Security Management System | Management system for information security; target audience of the GCBoK. | Axis 1: Fundamentals |
| ISO | International Organization for Standardization | International standardization organization; ISO 27001, ISO/IEC 24773. | Axis 1: Fundamentals |
K
| Acronym | Term | Explanation | See |
|---|---|---|---|
| KI | Artificial Intelligence | German abbreviation for AI; in the GCBoK context: AI agents, guard rails. | Axis 3: Components |
| KK | Health Insurance Fund | Carrier of the statutory health insurance; reimbursement office for social insurance contributions. | Article Series |
| KMU | Small and Medium-Sized Enterprises | Target audience of the GCBoK; onboarding approach for SMEs. | Axis 5: Approaches |
L
| Acronym | Term | Explanation | See |
|---|---|---|---|
| LLM | Large Language Model | Large language model; in the GCBoK context: typed bus for LLM result quality. | Axis 10: Research |
J
| Acronym | Term | Explanation | See |
|---|---|---|---|
| JSON | JavaScript Object Notation | Lightweight data format; in the GitCover context: schema-first for diary artifacts. | Axis 2: Concepts |
M
| Acronym | Term | Explanation | See |
|---|---|---|---|
| MCP | Model Context Protocol | Protocol for LLM tool integration; in the GCSYNC context: outbound interface. | Axis 3: Components |
| MiLoG | Minimum Wage Act | Act on the setting of minimum wages; documentation obligation for employers. | Article Series |
N
| Acronym | Term | Explanation | See |
|---|---|---|---|
| Nextcloud | Nextcloud | Open-source file sharing platform; in the GCBoK context only suitable as a read-only share frontend for Git-hosted documents. | Axis 5: Approaches |
| NIS2 | Network and Information Security Directive 2 | EU Directive 2022/2555; risk management and reporting obligations for critical infrastructures. | Axis 1: Fundamentals |
| NIST | National Institute of Standards and Technology | US federal agency; NIST 800-53 as control definition for OSCAL catalogs. | Axis 4: Techniques |
| NPO | Non-Profit Organization | Non-profit organization; distinction GCBoK (knowledge work) vs. GCC (NPO). | Axis 1: Fundamentals |
O
| Acronym | Term | Explanation | See |
|---|---|---|---|
| OIDC | OpenID Connect | Authentication protocol based on OAuth 2.0; in the GCBoK context: claims-based tenant isolation and access control. | Axis 5: Approaches |
| OPA | Open Policy Agent | Policy-as-code engine; Rego rules as pre-receive hooks in Git. | Axis 4: Techniques |
| OSCAL | Open Security Controls Assessment Language | NIST standard for machine-readable security controls; three layers: Catalogs, Profiles, Assessments. | Axis 4: Techniques |
| OSS | Open Source Software | Freely available software; GitCover is OSS-first. | Axis 1: Fundamentals |
| OSSH | Odysseus SSH Script Host | Mechanism for controlled SSH-based access of an AI container to the host toolchain (compiler, Git, .NET SDK); stream-based, without file transfer. | Axis 5: Approaches |
| OWUI | Open WebUI | Browser-based AI web interface; in the GCBoK context as the recommended client layer for SME users (WebUI-first approach). | Axis 1: Fundamentals |
P
| Acronym | Term | Explanation | See |
|---|---|---|---|
| Portable Document Format | Platform-independent document format; since 2025 no longer an e-invoice (only "other invoice"). | Article Series | |
| PGP | Pretty Good Privacy | Cryptographic method; decentralized identity credentials (PGP identities). | Axis 1: Fundamentals |
| PII | Personally Identifiable Information | Personal data; addressed in the V7GUID structure. | Axis 2: Concepts |
| PMBOK | Project Management Body of Knowledge | BoK of the PMI; reference for the GCBoK structure. | Axis 1: Fundamentals |
| POA&M | Plan of Action and Milestones | Action plan in the OSCAL assessment layer. | Axis 3: Components |
| PWA | Progressive Web App | Web application with a native-app-like user experience; in the GCBoK context: client access for SME users. | Axis 1: Fundamentals |
R
| Acronym | Term | Explanation | See |
|---|---|---|---|
| RAG | Retrieval-Augmented Generation | AI architecture pattern; in the GCSYNC context as outbound interface. | Axis 3: Components |
| RFC | Request for Comments | IETF standardization process; RFC 4122 defines UUID. | Axis 2: Concepts |
S
| Acronym | Term | Explanation | See |
|---|---|---|---|
| SGB | Social Code | Collective term for German social insurance laws; e.g., SGB IV (§ 28p: company audit), SGB IX (§ 167: BEM). | Article Series |
| SHA | Secure Hash Algorithm | Cryptographic hash function; SHA-256 for Git commit hashes and voucher chaining. | Axis 2: Concepts |
| SPDX | Software Package Data Exchange | Standard for license identifiers; Apache-2.0, CC-BY-SA-4.0 etc. |
Licenses & Evidence |
| SSH | Secure Shell | Protocol for encrypted network connections; SSH signatures in Git. | Axis 4: Techniques |
| SSOT | Single Source of Truth | Principle: one canonical data inventory; Git repositories as SSOT for IAM. | Axis 3: Components |
| SWEBOK | Software Engineering Body of Knowledge | BoK of the IEEE Computer Society; reference for the GCBoK structure. | Axis 1: Fundamentals |
T
| Acronym | Term | Explanation | See |
|---|---|---|---|
| TLS | Transport Layer Security | Encryption protocol; TLS 1.2/1.3 for HTTPS. | Axis 7: Governance |
| TMG | Telemedia Act | Federal law for telemedia services; § 5 TMG (imprint obligation). | Axis 7: Governance |
| TOP | TOp-level .gitcover repository |
GitCover repository for tenant/doc/class/action dictionaries; definition of the V7GUID vectors. | Axis 2: Concepts |
U
| Acronym | Term | Explanation | See |
|---|---|---|---|
| UStG | Value Added Tax Act | Federal law on value added tax; § 14 UStG (e-invoicing obligation from 2025), § 14b UStG (retention). | Article Series |
| UUID | Universally Unique Identifier | 128-bit identifier; RFC 4122; version 7 (time-based) as the basis for V7GUID. | Axis 2: Concepts |
V
| Acronym | Term | Explanation | See |
|---|---|---|---|
| V7GUID | Version-7 GUID (Categorized UUIDv7) | GitCover categorization scheme based on UUIDv7; 14-bit class identifier + deterministic vectors. | Axis 2: Concepts |
| VBG | Verwaltungsberufsgenossenschaft | Accident insurance association for the public sector; exemption of non-profit organizations under § 3 Nr. 26/26a EStG. | Article Series |
| ViDA | VAT in the Digital Age | EU initiative on digital VAT; planned EU-wide e-invoicing obligation and transaction reporting system. | Article Series |
| VPRM | Verifiable Process Reward Model | OPA/Rego as a verifiable process reward model; guardrails for AI agents. | Axis 4: Techniques |
W
| Acronym | Term | Explanation | See |
|---|---|---|---|
| WASM | WebAssembly | Binary format for browser-based execution; Blazor WASM as frontend technology. | Axis 3: Components |
| WCAG | Web Content Accessibility Guidelines | W3C standard for accessibility; WCAG 2.1 AA as the target. | Axis 1: Fundamentals |
| WebDAV | Web Distributed Authoring and Versioning | HTTP extension for file access over the web; in the GCBoK context: mount interface for Git repos in share frontends. | Axis 5: Approaches |
X
| Acronym | Term | Explanation | See |
|---|---|---|---|
| XML | eXtensible Markup Language | Markup language for structured data; in the e-invoicing context: original document (XRechnung, ZUGFeRD). | Article Series |
| XRechnung | XML-based invoice format | EU Directive 2014/55/EU; standard for electronic invoices in the public sector. | Axis 5: Approaches |
Z
| Acronym | Term | Explanation | See |
|---|---|---|---|
| ZUGFeRD | Zentraler User Guide der Fachanwender Rechnung in Deutschland | Hybrid invoice format (PDF + embedded XML); national implementation of EN 16931. | Article Series |