Skip to main content

Glossary

TermMeaning in Zero
OrganizationThe customer's tenant. The boundary of access, metering, and audit
ProjectThe application. It has a public address, version history, and configuration
EnvironmentThe target of a deployment and the scope of a configuration. Every project is born with Production
ServiceA unit that runs inside the project: web application, internal service, continuous process, or scheduled task
BuildThe process that turns code into an artifact
ArtifactThe built image, immutable, identified by a unique fingerprint
VersionThe complete configuration of a deployment: artifact, variables, resources, and address. Immutable
Active versionThe version receiving traffic
DeploymentA deployment, with its state machine and its history
Deployment attemptA deployment request that may have failed before committing a version
OperationThe unit of long-running work: it has state, progress, and a cancellation window
EvidenceThe object correlating logs, events, and failures from a moment, with secrets protected
VariableReadable configuration the application reads from its environment
SecretA sensitive value. It goes in once and cannot be read afterwards
SourceThe repository the project deploys from — one per project. Each service chooses the folder and the reference
Canonical addressA project's public address. Each web service has only one: changing it releases the previous one once the new one is live
ZoneThe subzone of your company's domain delegated to Zero
DelegationPublishing the four NS records that hand the subzone to Zero
CatalogThe set of what the platform accepts. Outside it, nothing is expressible
ReadyAn instance that accepts TCP connections on the service's port. Only ready instances receive traffic
Verification levelHow much the deployment proved: Image checked → Configuration applied → Application answering → Address confirmed
NetworkGroups projects of the organization that can be authorized to call each other. A project joins with one of its environments
Access permissionLets a project in the network reach another project's service, on the service's port. Given by the called project
ExposurePublic, with an internet address, or Internal, reachable only through the network
Name on the networkA service's internal name: <name>.zero.internal, unique in the network and resolved by the network of whoever asks
Internal entryA Gateway entry that exists only inside a network and leads each path to a service
ReservedWhat a service is guaranteed in CPU or memory
MaximumThe ceiling a service may reach

Words Zero avoids​

We do not sayWe sayWhy
"Application" as an objectProjectThe project is the application; two names for one thing confuse
"Rollback" in the interfaceRestoreIt describes the result, not the mechanism
Infrastructure vocabularyProduct conceptsYou declare what you want, not how the platform does it

Next steps​