Detected Bias Types
🔧
Windows Tools
Windows First
Powershell Heavy
Missing Linux Example
Summary
The documentation page demonstrates a notable Windows bias, especially in its references to Windows-specific cryptographic APIs (CNG, CAPI, Win32/64, .NET), tools (BitLocker, TPM on Windows IoT Core), and features (AlwaysEncrypted, SQL Server EKM). Examples and recommendations frequently mention Windows technologies first or exclusively, with limited or no Linux equivalents or examples. Where alternatives are mentioned (e.g., Apple, Java), they are brief and lack parity in detail or code samples. There are no Linux-specific cryptographic tool recommendations, nor are open-source or cross-platform alternatives discussed for key areas such as device encryption, random number generation, or hardware security modules.
Recommendations
- Provide Linux-specific examples and recommendations for cryptographic APIs (e.g., OpenSSL, /dev/urandom, GnuPG, dm-crypt/LUKS for disk encryption).
- Include parity in code samples for Linux and macOS, especially for IoT and device security (e.g., using Linux TPM tools, OpenSSL, or PKCS#11).
- Mention cross-platform alternatives to Windows-only features like BitLocker (e.g., LUKS/dm-crypt for Linux, FileVault for macOS).
- Discuss open-source and cross-platform libraries for cryptography (e.g., libsodium, OpenSSL, BouncyCastle) alongside .NET and Windows APIs.
- Add references and links to Linux and macOS documentation for cryptographic best practices.
- Ensure that recommendations for database encryption and key management include options for PostgreSQL, MySQL, and other non-Microsoft platforms.