Security Authentication and Financial Attribute Services
By separating private identity data from financial services and using reference numbers for identity authentication and financial transactions, the high cost and security risks brought about by identity data transmission in the prior art are solved, and higher data protection and security are achieved.
Patent Information
- Application Number
- CN201880008255.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Priority Date
- 2017-01-27
- Filing Date
- 2018-01-26
- Publication Date
- 2025-05-30
- Estimated Expiration
- 2038-01-26
AI Technical Summary
The prior art requires the transmission of personal identity data when providing identity verification and financial services, resulting in high costs and risks for enterprises, while consumers face the possibility of private identity data breaches.
By separating private identity data from public identity data and financial services, using reference numbers instead of social insurance numbers for identity authentication and financial transactions, limiting the transmission of private data, and providing consumers with control over their identity data.
Reduces the security costs of businesses protecting consumer information, reduces the high costs that credit card companies bear for fraudulent credit activities, and improves consumers' control and security of their private identity data.
Smart Images

Figure CN110494842B_ABST
Abstract
Description
Technical Field Background Art
[0001] There is a fundamental need to protect personal identity data while making that identity data available for processing financial transactions. While a great deal of practice has focused on authentication, encryption, protection, and security, these practices rely on the transmission of data for processing financial transactions. Personal identity data is typically transmitted during the authentication and financial service processes in order to process transactions. However, this approach exposes businesses to excessive liability and consumers to the possibility of private identity data breaches. For businesses, reducing the cost of protecting against private consumer data leaks can lead to higher profitability, while for consumers, reducing private identity data exposure can improve security.
[0002] Authentication and financial service systems typically rely on applications to provide information in a manner suitable for verifying identity and obtaining financial services. For example, a consumer provides personal identity data when taking out a loan and enters that information into a database. After the data is checked and processed, the consumer record remains in the business database. Identity information typically includes private data such as a social security number that may or may not be encrypted and is transmitted in other transactions or within an organization. Such data is an essential identifying characteristic for consumers and is also vulnerable because it is a number assigned to a person for life. Therefore, there is a practice and service that allows consumers to obtain improved authentication and financial transactions that can advantageously protect both businesses and consumers.
[0003] Additional transactions involve the transmission of private data of consumers that is not public information. As another example, credit card numbers are typically stored in business systems in order to process transactions on behalf of consumers. The business of recording credit card numbers results in high costs for businesses to secure consumer information. In addition, the costs of compensating for and detecting fraudulent credit activity are expensive for credit card companies. Therefore, there is a practice and service that allows businesses to transact financial services such as credit card transactions without exposing credit card numbers, advantageously protecting credit card companies, credit-dependent businesses, and consumers. Summary of the Invention
[0004] The purpose of security authentication and financial attribute services is to provide authentication and financial services using personal identity data while preserving the privacy of certain identity and financial attributes. These services operate in a way that separates private identity data and public identity data from authentication and financial services to varying degrees. During the use of private identity data, the data is saved separately from financial transactions at different times to limit the transmission of private data. Enterprises can deduct the costs and practices of holding private consumer data, as well as the responsibilities and risks associated with having such data. As a result, consumers can exercise various controls over their private identity data, use the data for authentication and financial transactions, and afford to ensure that this data cannot be obtained as a general rule. Providing extensive controls to consumers of identity data and financial attributes gives great confidence for all levels of purchase transactions. Configurable controls are provided for the business of authentication and financial services, thus providing greater protection for profits and interests. The practice of security authentication and financial attribute services includes devices, methods, and systems that utilize these controls to achieve advantages for both enterprises and consumers. The breadth of financial services includes transactions in any monetized format.
[0005] One of the basic and vulnerable types of private data that any and all consumers need is an identification number. In the United States, government agencies assign a social security number to each citizen at birth. This record static identification number is retained by the consumer throughout their life cycle. However, this number is also reused to obtain and qualify for financial services such as applications, credit, loans, and taxes. However, if this number is obtained by a malicious third party, it can be a factor in performing what is commonly referred to as "identity theft". Therefore, one of the most preferred uses of this practice is to address the steps required for authenticating a consumer's identity for financial transactions without sending the social security number.
[0006] For purposes of illustrative example, this practice retains the consumer's private data information within a de-networked system and responds to a loan request with a yes or no decision. However, the scope and span of the practice provide a flexible modular system where any and all financial transactions can be processed without transmitting private data over a networked channel. Although embodiments of the present invention are illustrated by using an identification number on a form interface, the prior art is illustrated by using a social security number ( Figure 7A , 7B) on a form interface, but the full scope of identity authentication encompasses any way of referring to a person or entity. BRIEF DESCRIPTION OF THE DRAWINGS
[0007] Figure 1 is a data input and memory device. The data input device allows a consumer to enter identity information into one or more memory storage devices.
[0008] Figure 2It is about memory devices and data retrieval. Data is accessed from a memory device that has a memory process connected to a processor and the cloud.
[0009] Figure 3 It is about data identification and security verification. A flowchart of data identification security verification.
[0010] Figure 4 It is about financial service requests, third party. A flowchart of data identification security verification and financial attribute service request responses.
[0011] Figure 5 It is about financial service requests, consumer.
[0012] A flowchart of financial service requests for point-of-sale consumers.
[0013] Figure 6 It is about point-of-sale purchasing cards. Consumer purchasing cards with optional features.
[0014] Figure 7 is a sample table of financial services. A financial service application form with or without an SSN. Detailed Description
[0015] Security authentication begins by first receiving an identification number of an individual or entity. The identification number or record is stored in a data memory. The consumer identification number can be a social security number. The identification number of an entity can be an employer identification number. The data memory can be in the form of a solid-state device, or it can also be a network, such as the Internet, intranet, extranet, deep web, and / or a device on the cloud. The identification record is stored in a memory that can be accessed by a processor. The processor can perform at least basic operations, such as comparison and calculation. The processor is interfaced with the data memory to retrieve at least a portion of the identification record (such as the number).
[0016] For each specific identification number, a reference number is also stored in the record, which the consumer uses to refer to the identity record. In this example, the identification number can be a social security number. The reference number includes parts that the consumer can use for applications and form filling, rather than the social security number. The reference number can include static and / or dynamic parts. The reference number can mask or encrypt the identification number. The data record includes at least features equivalent to the identity of the person being identified.
[0017] The processor receives a reference number to authenticate the identity of the consumer. The processor also receives identification information regarding the identity of a person. The identification information may include public and / or private information. The identification information may request authentication upon receipt, or request authentication according to a desired time difference. Public identification information may include an address, a telephone number, or any type of information available on public records. Private identification information may include characteristics identifying the consumer privately, such as biographical details, taxable income, and / or personal information. The identification information may also include a private verification protocol via a telephone number, a text message, a fingerprint, or other unique reference identifier or authentication protocol
[0018] The consumer can control access to the identification number using a desired method that provides accompanying identification information. For verification purposes, the consumer may provide settings for the availability of access to the identification number. The settings may include: the number of accesses, the access time, the location address, entity permission, rendezvous time, repeated access, and / or desired rules for customizing the security level of the consumer identification number. The authentication request may be notified to the consumer via a digital interface, such as a telephone prompt, a text message, an email, a voicemail, or other alert or notification of a request to access private identity information
[0019] The processor receives public and / or private identification information from the consumer and / or a third party. The consumer provides the identification information to the processor and / or a data record. The consumer provides the identification information from an interface that has connectivity via the Internet, an intranet, an extranet, the cloud, solid-state memory, a chip, a physical input of a node, or a non-electronic input method. The identification information may be saved in a data record with an identification number and a reference number, or may be saved in another memory port that is accessible to the processor, or the processor receives data from the other memory port. The size of such memory may range from one bit or less, a chip card, an identification card, to a macro memory device such as a drive, a shared resource, or a network resource such as the cloud. The information may be recorded and / or stored in any manner that allows the processor to receive information or request information when queried to authenticate the identity of the consumer. Data transfer to, from, with, and accompanying the processor and memory may be performed using any desired protocol such as a secure channel, private key encryption, integrated circuits, and non-electronic transmission
[0020] The processor receives public and / or private identification information of the consumer from a third party. The third party provides information or requests information on behalf of the consumer
[0021] A consumer may provide consent or authorization for identification authentication. The consumer may provide a static or dynamic reference code to authorize the authentication. The consumer may provide rules or settings to control access to the authentication protocol. Authentication may require input from the consumer to complete the authentication request.
[0022] The processor then performs a process of verifying the consumer's identity based on the provided data.
[0023] For example, a third party may provide the consumer's physical address, phone address, name, and postal code. The consumer may be notified that the third party is requesting authentication.
[0024] The processor uses the identification data to retrieve data from one or more memory records or to provide data to the processor. Authentication of identity is accomplished by any practice of checking, validating, convolving, or comparing the data for validity and / or matching the values of the data. The processor responds to a request to verify identity with a binary response, such as yes / no and conditions, status, requests, bits, codes, quantities, and / or data provided. The response may further cause additional requests and data transmissions.
[0025] The processor's response to an authentication request provides a way for the system to respond to the authentication of the consumer's identity in a multi-valued manner. A multi-valued response allows authentication to respond by confirming identity as well as more complex responses. Examples of complex multi-valued responses include: temporary authentication, authentication with indications, authentication with requests, and / or negative authentication with one or more error codes. Error codes can indicate data mismatches, missing data, suspicious data, and proprietary markers. Additionally, an authentication response or its negative may additionally increment payments, fees, charges, and / or tokens.
[0026] A third party may request various levels of information authentication that may include a fee structure based on the level of detail. The third party may require: a superficial match of a social insurance reference to an address match; a historical match related to purchases and debts; a more extensive background check that cross-checks personal accounts with detailed details; or an exhaustive investigation that reveals the results of a thorough check of all of the consumer's personal and financial records. Thus, the consumer's data record may also include: data for and / or access to public and private records that contain financial attributes such as credit reports, tax bills, court records, medical records, and / or any type of record that involves, depends on, references, or is associated with the identity of a person and / or entity. The third party may also transfer data to or with an authentication request before or after the authentication request.
[0027] Services and practices for identity authentication can be provided by a computer or digital system. The interface for a consumer's processor can be an Internet website, a wireless connection, an automated programming interface (API), an automated clean room, batch processing, a secure socket, direct coding, and / or a software call. A consumer can input data through an artificial memory interface, which is assisted by nodes, terminals, websites, and / or computer interfaces. The interface can include: physical components that are transmitted or transported to or from the consumer.
[0028] The physical interface can include a solid-state memory device, which can be accessible only once, a limited number of times, or an unlimited number of times to record the consumer's personal data. Personal data can include: social security number, account number, biometric data, and / or life history information. A physical-digital interface can be provided to the consumer to input the data in alphanumeric, numeric, audio, electromagnetic, and / or frequency inputs. The interface can be sent to and received from the consumer. Data from the interface can be recorded on, in, through, and / or encoded into a data memory record. The processor can access the data record directly or indirectly. The memory device can include a processor connected to the authentication request processor, or can be accessed through another processor interpreted between the processors.
[0029] The data memory device may be inaccessible to signals or make electronic signals inaccessible. The processor accessing the data memory device may be inaccessible to electronic signals or make electronic signals inaccessible. The processor retrieving data from the data memory device can include: detectors or sensors that send and / or receive signals in optical, wavelength, electromagnetic, molecular compound, combination, thermal, and / or structural forms.
[0030] Digital devices receive and / or send data signals in optical, wavelength, electromagnetic, molecular compound, combination, thermal, and / or structural forms.
[0031] A memory device and / or a processor may receive an electronic signal and then render the electronic signal inaccessible. A memory device and / or a processor may receive an electronic signal and then render the electronic signal inaccessible. The memory device may be made inaccessible to protect data from electronic reading and / or writing. The storage device may undergo physical, chemical, structural, crystallographic, electrical, thermal, and / or phase transformations. Data may be stored, written, encoded, and / or incorporated into or combined with physical, chemical, structural, crystallographic, electrical, electronic, optical, thermal, and / or phase substances. A memory device and / or a processor may have been made inaccessible to electronic signals and accessible to electronic signals. A device or processor may be made accessible or inaccessible by physical, electromagnetic, interference, and / or thermal devices or means such as shielding or scramblers. By a combination of timing means, sensors, detectors, radiation, heat, and / or chemical sequences or exposures, a device or processor may be made accessible or inaccessible.
[0032] The memory device transfers signals to the processor using one or more accessible methods and / or transformation states. The memory device and the processor may also communicate in electronic format by means of rule cifer, interpreter, key, quantum, piranha, rubrix, password, signal, sublimate, token, and / or encrypted data. The processor may read, sense, determine, or record the signal or state of the memory device. The memory device and the processor may be programmed with rules regarding the accessibility of data and / or the device. Accessibility, signals, states, and / or rules are implemented to protect the integrity and security of data. One or more routines or sequences among the above signals, states, and / or rules may be programmed, calculated, determined, and / or processed to grant access reachability for the processor to retrieve data. In one or more of these ways, data is transferred to and from one or more memory devices and processors.
[0033] To authenticate consumer data, the processor retrieves data from a memory device and receives consumer data from an authentication request. One or more processors perform operations to authenticate the consumer data. The processor responds with a determined signal or status of the consumer identity. The processor can also respond with one or more acknowledgments or complex responses as defined above. The processor that retrieves data from the memory device can be a transmission chip or a simple query device that responds with data in a format for a processor to perform authentication checks. Dividing the processor functions into low-level operations and data storage can protect the integrity and security of consumer data. Implementing a memory device that can respond non-electronically provides a degree of separation that protects data and keeps it secure. The practice of using a memory device that can be accessed non-electronically to perform authentication of consumer data can further protect the integrity and security of consumer data.
[0034] A preferred embodiment of a method for protecting data and keeping it secure is to protect credit card information during a transaction. For example, data for a financial transaction is transferred from a consumer to an enterprise to a credit card company to an enterprise to a business transaction. By using a reference number, a new purchase and sales card can be provided to the consumer, which allows the use of remote b2b transactions to process credit card purchases. Merchants and sellers do not need to store credit card information to process transactions. One or more reference numbers of the consumer in static and / or dynamic format will allow the purchase card to be processed at a point-of-sale system and provide the information needed to approve the transaction without transmitting the credit card number from the point-of-sale device. A smartphone or electronic device with an optional account can also be used at the point-of-sale device. Instead, using one or more reference numbers, the shopping card provides data that the point-of-sale device uses to process a transaction with a system having a processor that processes the transaction with the credit card company on behalf of the consumer.
[0035] In this embodiment, there is one or more reference numbers and a credit card. The processing of the transaction can be first carried out using the method of authenticating the identity as described above. The processing of the transaction can be carried out without a response for authenticating the identity or with a multi-valued response as described above. In a part of the data storage device, the credit card number can be stored. The consumer may have provided these numbers through a graphical user interface or a device that allows the input of an account number. The consumer can select the account for the purchase and / or the account to be used at the point of sale. The consumer can use one card to make a purchase while withdrawing money from one or more payment debit, credit, money, derivative, resource buffer, futures, mutual funds, donations, and / or bank accounts.
[0036] Consumers can also provide settings for automatically selecting one or more credit card accounts to process one or more transactions. Previous settings regarding the priority or preferred use of credit card accounts allow consumers to preselect cards for specific purposes, such as for food, grocery stores, fuel, utilities, transactions, markets, and / or bids. The selection of an account can activate a shopping card for use and / or configure a chip or barcode for use at a point-of-sale device. The shopping card can be a smart card that can be programmed by the consumer or a third party for use at the POS. Consumers can track and trace details regarding requests by third parties for financial services, such as regarding the time of the request and the type of financial service performed. One or more reports or statements can be generated or caused to be generated through any one or more contacts, inquiries, requests, transactions, notifications, authorizations, purchases, and / or sales. Receive / access one or more consumers, entities, networks, systems, commissions, agents, registrations, logs, queries, referees, bots, people, and / or transcripts to track and / or trace one or more systems and / or practices for implementing one or more financial services.
[0037] The shopping card can be used to work on and / or with existing merchant accounts, automated clearinghouses, debit cards, automated teller machines, and / or credit card transaction systems, or to work in conjunction with them. Arrangements and configurations can be used to mechanically and / or automate transaction purchases. Purchases and / or transaction purchases can be initiated by one or more consumers and / or entities, or on behalf of one or more consumers and / or entities.
[0038] Similarly, a system such as a sales card instead of a shopping card can be used for sales. Thus, such households can allocate budget funds to accounts accessible by one or more individuals. Commercial entities can provide purchase and / or sales cards to acquire and / or purchase materials, goods, services, contracts, transactions, and / or exchanges. Consumers and / or entities can combine an account with access to shared resources. An entity can cause one or more purchase and / or sales actions to occur and / or operate.
[0039] Arrangements for accounts, purchases, and / or sales can be automatically accomplished using triggers, timing, ranges, thresholds, notifications, authorizations, or any consumer or vendor controls. Consumers may also or alternatively use programmable shopping cards or shopping devices that send a code for an account to be used or select an account to be used with a reference number. The shopping card or device can include: a chip, display, buttons, markers, touchscreens, and / or touch-sensitive areas that are selected at the time of purchase, at other desired times at the point-of-sale device, and / or by the consumer. Similarly, the point-of-sale device can also be equipped with such features to process consumer accounts and / or process coupons and / or incentives from retailers or vendors. The above selections can be provided at the point of sale device at the time of sale to adjust the price. A preferred embodiment of the system allows one or more consumers and / or entities to arrange and configure a customizable system and / or infrastructure to make purchases and / or sales based on personal means that are undetectable in a public network. Portions of the system can contain or not contain private, personal, financial, and / or identity information on a public network, the Internet, an intranet, an extranet, and / or the cloud.
[0040] The preferred embodiment provides financial decisions based on consumer information and third-party data. The processing of a transaction can first be performed using the method of authenticating an identity as described above. Processing a transaction can be performed without a response for authenticating an identity or with a multi-valued response as described above. The third party defines a process for making financial decisions that includes one or more rules, procedures, regulations, calculations, formulas, guidelines, and / or evaluations that require a response to requests for financial services such as auctions, transactions, credit, derivatives, transactions, futures, hedging, loans, purchases, re-loans, value-added, stocks, bonds, trades, authorizations, distributions, approvals, conditions, requests, substitutions, transfers, debts, claims, collections, and / or sales of monetary values and / or queries for the above financial services.
[0041] A system can be implemented to extend, expand, reclaim, cancel, and / or recall one or more financial services. Any entity using a financial service can implement a process for providing financial decisions. A purchase, sale, service, and / or transaction system can be implemented as an alternative to, competitive with, complementary to, favorably positioned, priced, and / or perform an auxiliary function to one or more existing financial systems, exchanges, markets, and / or networks. One or more processes from one or more entities can be implemented to provide one or more financial decisions to one or more consumers and / or entities.
[0042] The entity can be an insurer, bank, government, revenue, insurance, medical, manufacturer, exchange, market, consumer goods, and / or service company or organization that uses or references a social security number and / or employer identification number.
[0043] A third party requests the consumer's reference number and additional identifying characteristics, such as the address and telephone number defined above. The consumer's identifying information can be used to authenticate the identity of the consumer, entity, and / or third party. The request can be in paper form, digital format, graphical interface, website, automated programming interface, auditory format, keyboard, telephone format, and / or electronic input. Similarly, an entity can define a process through one or more request formats for the input process. The process can be converted into one or more programs, scripts, interfaces, languages, codes, symbols, and encryption formats. The process can be sent along with the request or can be requested from another entity, consumer, processor, and / or data storage.
[0044] The process can run in one or more automated forms, batch processing, switching centers, registers, and / or shells.
[0045] The processor retrieves the third-party process and the processor retrieves the consumer information. The processor processes the consumer information according to the third-party process. The third-party process is implemented to apply custom logic to the consumer's data. The processor responds to a request for verification of the financial attributes of the third party. Specific financial data and / or identifying data may or may not be provided in the response from the processor to the third party. The consumer may or may not be notified of the request. The consumer may or may not be prompted to grant permission to access identity and / or financial data. The consumer may or may not have set financial data similar to the identifying information described above in the data storage record. The consumer may or may not be prompted regarding a conditional response that may or may not require permission for a decision regarding the third-party process. The consumer may or may not receive information about further actions to obtain financial products from one or more third parties. The consumer may or may not receive advertisements from the third party. The consumer data and response may or may not be forwarded to one or more third parties, such as financial service entities or markets. The consumer, third party, or entity processing the authentication and / or request may receive an incentive, compensation, reward, credit, or commission for processing and / or completing the request.
[0046] A third-party process may be defined by, on behalf of, or for a third party. The process may be defined by one or more processes from one or more individuals, entities, organizations, and / or groups. A process defines a set of logical conditions, including one or more rules, definitions, procedures, regulations, calculations, formulas, guidelines, and / or evaluations required to respond to a request and / or query for financial services, such as auctions, transactions, credit, derivatives, trading, futures, hedging, loans, purchases, re-loans, value-added, stocks, bonds, trade, authorization, distribution, approval, conditional, request, substitution, transfer, and / or sale of monetary values. The process may be used to shield financial services. The process may be used to hide information about the consumer and / or third party from transmitting information related to financial services. A processor completes the process, which may or may not result in a response. The processor completes the process, which may or may not result in a read, write, or update of the data memory. The process may require additional steps or sequences, request information, exchange data, or obtain a process to complete the request. The processor or process may respond with a multi-valued response. The multi-valued response may be accompanied by authentication. The multi-valued response may also include: one or more indications, conditions, requests for more information, time-sensitive responses, quotes, purchases, sales, instructions, recommendations, rejections, transcripts, titles, liens, deeds, bills, records, receipts, or statements.
[0047] The process defines a set of logical conditions that establish a way to evaluate the process or request. Generally, the process refers to identity and / or financial data, where the process requests at least one of these types of data to respond to the request. One of the purposes of the process is to define a process for authenticating identity. For example, identity in a form may need to be authenticated based on time, location, probability, and / or likelihood. Identity may also need to be authenticated using financial data, such as tax records, credit card transactions, purchases, sales, and other types of transactions that indicate the time and location of a person. The process of authenticating identity may also or may not be responded to with one or more responses in a multi-price format. The process may be defined in a way that is common to computational and / or human methods for authenticating information based on the sensitivity level of the person and / or information.
[0048] An automated system for operating services can define processes that can be used by third parties. One or more processes can define government regulations for conducting insurance, commerce, business, pricing, exchange, transactions, transfers, purchases, sales, taxes, tariffs, risks, and / or loans. Alternatively, third parties can define processes for providing services for customized authentication and / or responses. The processes can be programmed using one or more flowcharts, process diagrams, scripts, programs, executable programs, tags, codes, languages, assemblers, in-chip and / or on-chip tools. The process can be defined as a software program or a hardware circuit. The process can be executed by a processor in one or more local, distributed, remote, cloud, or server computers.
[0049] For financial services, the process encodes the logic for making financial decisions. The process automates the process of making financial decisions or decisions using financial data. In an example of an authentication and response process, a consumer application for a loan. A loan form typically includes personal information, which includes name and contact information. However, the form can include the consumer's identification number or reference number used in the process of authenticating the consumer's identity. Another process can run to obtain the consumer's financial information. There is a process that can provide current income, debt, and address by the consumer responding to a query. The process can automatically obtain the data from the information provided by the consumer. Another process can obtain a credit score and report it on behalf of the consumer and store the data in a memory device. Another process is used to process financial information according to the evaluation process of the loan application. The process can automate any financial transaction, where data can or cannot be transmitted between a third party and a service system. The process can be used to record information and / or respond to business decisions. Description of the Drawings
[0051] The following description of the drawings illustrates embodiments of further preferred and illustrative devices, interfaces, methods, and systems for secure authentication of data and financial attribute services. The following embodiments are for illustrative purposes only and are not intended to limit the scope or breadth of the contemplated invention.
[0052] Figure 1 is a data input and memory device. The data input device allows a consumer to input identity information into one or more memory storage devices. The consumer inputs information 100 through an input device such as a keyboard or keypad. A portion of the data 110 is stored on a network cloud 120 and another portion is stored on a memory device 140. After storing the data, another electronic device may not have access to the memory device. The consumer can update and / or modify the information through an interface to the memory device or to the memory record at a remote location for a processor process.
[0053] Figure 2It is about memory devices and data retrieval. Using a memory process connected to a processor and the cloud 240, data is accessed from a memory device 200. Data from a group of memory devices 220 is retrieved by a storage processor 200. The memory device operates together with an accompanying sensor 210 or supply device, and the sensor 210 or supply device supplies identification data in response to a request from the memory device. Perforated lines represent accessible or inaccessible connections via electronic signals. The storage processor sends an interrogation signal to the sensor to obtain data from the memory device. The storage processor provides data to one or more processors 230 to verify the data or retrieve identification data and / or financial attributes. Personal data is only available to the processor for a certain amount of time. Personal data may not be stored on the processor or accessible by the cloud. The processor responds to requests via a cloud interface.
[0054] Figure 3 It is about identification data and security authentication. A flowchart for security verification for data identification. An authentication request is accompanied by personal identification information 300. The request processor optionally uses the identification information to notify the consumer of the authentication request. Dashed lines represent an optional sequence or process flow. The notification can be sent via SMS text, email alert, phone interface, and / or automatic preselected response. The request processor forwards the identification information to the data processor. The consumer responds to the notification of the authentication request. If the consumer agrees to the request, the data processor obtains an identification number 310 from the memory device. Otherwise, the data processor forwards the consumer response to the authentication processor. If the consumer approves the request, the authentication processor authenticates the personal data from the memory device and the identification data 300 accompanying the authentication request. The authentication response 320 provides the result of the authentication processor based on the identification information provided in the request and the consumer's response to the authentication notification.
[0055] Figure 4 It is a financial service request, third party. A flowchart for data identification security verification and the response to a financial attribute service request. The authentication request is accompanied by personal identification information 400 and a selection 410 of a process for handling financial attribute data. The request for financial services can be initiated with a form interface ( Figure 7A)。The request processor optionally uses the identification information to notify the consumer of the authentication request. The dashed lines indicate an optional sequence or process flow. The notification can be sent via SMS text, email alert, phone interface, and / or an automatically preselected response. The request processor forwards the identification information to the data processor for the consumer response notification of the authentication request. If the consumer agrees to the request, the data processor obtains the identification data and financial attributes 420 from the memory device. The storage processor obtains the social security number and obtains the identification number from the storage device using the identification information. The storage processor obtains financial attributes such as income level. Otherwise, the data processor forwards the consumer response to the authentication processor. If the consumer approves the request, the authentication processor authenticates the personal data, identification data 400, and financial attributes 420 from the memory device. The authentication processor forwards the authentication result to the process processor.
[0056] The authentication response 420 forwards the result and process selection 410 to the process processor. The process processor obtains the selected process logic 430. The process processor processes the financial attributes 420 according to the process logic 430. Auxiliary processes can be used to obtain additional data or services remotely or locally via a network or software. The additional data can be supplementary information required for processing financial services. The additional service can be a request for a credit report from a credit bureau. The process processor responds with an authentication response 440 and a multivalent response 450. The multivalent response includes approval and loan amount. The process processor provides the result of the authentication processor based on the identification information provided in the request, the consumer's response to the authentication notification, the identification data, and the financial attributes.
[0057] Figure 5 is a financial service request, consumer. Flowchart of a financial service request from a point-of-sale consumer. A flowchart for requesting financial services at a POS. The authentication request is accompanied by personal identification information 500, and an account is selected from the shopping card to process the purchase request 510( Figure 6 )。The consumer enters through an input device and a data input interface having a connection to the cloud data record( Figure 1 、 2) to preset the account for selection. The digital shopping cart or store register provides the monetary amount 560 to be purchased, e.g., the dollar amount. The request processor optionally uses the identification information to notify the consumer of the authentication request. The dashed lines indicate optional sequences or process flows. The notification can be sent via SMS text, email alert, phone interface, and / or automatic preselected response. The request processor forwards the identification information to the data processor. The consumer responds to the notification of the authentication request. If the consumer agrees to the request, the data processor obtains the identification data and account number 520 from the memory device. Otherwise, the data processor forwards the consumer response to the authentication processor. The storage processor using the account selection obtains the credit card account number from the cloud memory and obtains the identification number from the memory device ( Figure 2 ).
[0058] If the consumer approves the request, the authentication processor authenticates the consumer data, identification data 500, identification number, and account number 520 from the memory device. The authentication processor forwards the authentication result to the process processor.
[0059] The authentication processor 520 forwards the result and the account selection 510 to the process processor. The process processor obtains the selected process logic 530. The process processor processes the financial transaction of the account number 520 according to the logic 530 of the process and processes the purchase amount 560 through the credit card network connected by using the auxiliary transaction. The process processor responds with the authentication response 540 and the multi-price response 550. The multi-price response includes the transaction number and the timestamp. The process processor provides the result of the authentication processor as the multi-price response according to the identification information, identification number, and consumer in response to the authentication notification, account selection, and purchase amount.
[0060] Figure 6 is a point-of-sale purchase card. The consumer purchase card 600 with optional features 620. The shopping card can be used at the point-of-sale device and the purchase is processed through the process. The shopping card initiates a financial service request and sends the identification information to the request processor ( Figure 5 ). The consumer can select a financial account 620 from the shopping card. The account selection sets the microchip to provide the account selection and is programmed through the electronic connection 630 from the selectable feature 620 to the microchip 610. The shopping card is inserted into the point-of-sale system that reads the microchip 610. The request for the financial service for the purchase is transmitted to the request processor. The account is sent together with the request along with the identification information. The purchase transaction using the credit card account is processed through the process processor. The request receives the authenticated multi-price response and the purchase transaction is completed.
[0061] Figure 7 is a financial service sample form interface. A financial service application form with or without an SSN. A form for financial services includes identification information of a consumer. The form requests information on an identification number 700 that is authenticated without a social security number. The social security number is stored in a memory device and can be retrieved by a storage processor ( Figure 1 , 2 , 4). In the case where a consumer does not provide a social security number on the form interface, requests for authentication such as loans and financial services are processed. Prior art form interfaces require consumers to provide a social security number to process requests for financial services.
[0062] Definition
[0063] An identification number is a numerical reference, pointer, reference, call, symbolization, representation, and / or giving an address to a person, individual, group, and / or entity. Examples of identification numbers include: social security number, employer identification number, driver's license, consumer number, medical ID number, serial number, barcode, and / or anonymous identifier.
[0064] Address. An address refers to one or more mailing addresses, phone numbers, IP addresses, domain names, accounts, numbers, user logins, email addresses, and / or any way of location or existence related to a person, individual, group, and / or entity.
[0065] An address can be static, dynamic, reference, sequential, or a combination thereof.
[0066] Anonymous identifier. When referring to a person, individual, group, and / or entity, an identifier can be used when assigning numbers for statistical, medical, information, government, or organizational purposes.
[0067] The numbers can be alphanumeric, cardinal, ordinal, decimal, quantum state, and / or fractional, as well as combinations thereof.
[0068] A third party can be anonymous, unnamed, or well-known. That is, an anonymous third party can be, for example, a bank advertising credit card provided to a consumer. A well-known third party can be an insurance company that processes a consumer's application form for health insurance.
[0069] Financial services. Auction, trading, credit, derivatives, exchange, futures, hedging, loans, purchases, refinancing, value-added, stocks, bonds, trading, authorization, distribution, approval, conditional, requests, substitutions, transfers, and / or sales or monetary values. Any means, process, device, instrument, or process includes: any action on monetary value, any action for monetary value, any action through monetary value, and / or any action representing monetary value. Monetary value can be currency, credit, metal, notes, and / or any form of something related to value.
[0070] A multivalent response. Data representing information of one or more modes, such as adjudication and confirmation numbers. Information modes include: gradient, scale, litmus, consultation, alert, warning, marker, symbol, signal, color, wavelength, frequency, and any mode of encoding information. One or more data types or forms can accompany, be associated with, follow, precede, reference, be sequenced, and / or be transmitted with one or more communication modes over any duration or time span.
[0071] POS. Point of sale device.
Claims
1. A method of authentication that authenticates identity information and financial attributes, characterized in that, comprising: Storing the identity information in a data repository having private data records; Storing the financial data in a data repository having private data records; Assigning a reference identifier to the private data records in the data repository; Associating the reference identifier of the private data record with the financial data; Receiving a request for financial attributes and for authenticating identity information, the identity information including: a reference identifier and public identity information; Requesting access to private identity information through a private approval interface having the reference identifier; Requesting a portion of the private data record from the data repository; Verifying the identity information based on the portion of the private data record and the public identity information; Responding with an authentication value; Requesting access to financial data including the identity information and the authentication value; Receiving financial data from the private data record; Performing a transaction with the financial data to determine the financial attributes; Responding with the financial attributes and optional identity information.
2. The authentication method according to claim 1, characterized in that, the identity information includes: a social security number, a driver's license, a physical address, an electronic address or a telephone address.
3. The authentication method according to claim 2, characterized in that, requesting access to financial data includes an automatic request or a manual request.
4. The authentication method according to claim 3, characterized in that, the manual request includes a user interface for approving access to the private data record through a graphical user interface, a text user interface, a telephone user interface, a video user interface, a human user interface or a combination thereof.
5. The authentication method according to claim 2, characterized in that, performing the transaction includes: a credit card transaction request, income verification, aggregating transaction data, an automated clearing house transaction, debt-to-income calculation, determining actuarial risk or eligibility for a financial product.
6. A computer-implemented method for paying for goods or services, characterized in that, comprising: Processing a transaction using a point-of-purchase device; Presenting an adjusted price at the point-of-purchase device; and Completing the transaction at the point-of-purchase device, wherein the processing of the transaction is based on the separation of private identity data and public identity data from authentication and financial services, wherein a reference identifier is assigned to the private identity data, and wherein a private approval interface having the reference identifier is used to access the private identity data, wherein the identity information is verified based on a portion of the private identity data and the public identity data, and the verification further includes: Responding with an authentication value; Requesting access to financial data including the identity information and the authentication value; Receiving financial data from the private data record; Performing a transaction with the financial data to determine the financial attributes; Responding with the financial attributes and optional identity information.
7. The computer-implemented method according to claim 6, characterized in that, further comprising a computer-implemented method for paying for services, including: A first customer selects one or more goods or services to purchase; The first customer purchases one or more goods or services according to the adjusted price of the customer; and The second customer receives payment for the service for the quantity at the set price.
8. The computer-implemented method according to claim 6, wherein, further comprising a computer-implemented method for making payments in a price clearinghouse, including: requesting the price of one or more goods and services; receiving the adjusted price of one or more goods or services; paying the purchase price for one or more goods or services; and displaying the payment by the customer for the goods and services according to the adjusted price.
9. A method for authenticating identity information, wherein, comprising: storing the identity information in a protected data repository having private data records; assigning a reference identifier to the private data records in the protected data repository; receiving a request for authenticating identity information, the identity information including the reference identifier and public identity information; requesting access to private identification information through a private approval interface having the reference identifier; requesting a portion of the private data records from the protected data repository; verifying the identity information based on the portion of the private data records and the public identity information; responding with an authentication or multi-valued response; requesting access to financial data including identity information and authentication values; receiving the financial data from the private data records; performing a transaction with the financial data to determine financial attributes; and responding with the financial attributes and optional identity information.
10. The method for authenticating identity information according to claim 9, wherein, the identity information includes: social security number, driver's license, physical address, electronic address or telephone address.
11. The method for authenticating identity information according to claim 9, wherein, the request for authenticating personal identity information includes a public reference identifier and defined characteristic attributes.
12. The method for authenticating identity information according to claim 11, wherein, the defined characteristic attributes include: personal data, financial data, biological data and combinations thereof.
13. The method for authenticating identity information according to claim 12, wherein, the personal attributes include data about a person, and the data includes characteristic descriptors.
14. The method for authenticating identity information according to claim 12, wherein, the financial information includes: income, debt, tax records, account transactions, credit scores, credit reports and combinations thereof.
15. The method for authenticating identity information according to claim 12, wherein, the biological information includes biometrics and biochemical indicators related to biological personal attributes.
16. The method for authenticating identity information according to claim 9, wherein, the identity information of the individual includes a social security number, a bank account number or a driver's license number.
17. The method for authenticating identity information according to claim 9, wherein, the protected data repository includes a data memory that is electronically separated from a storage source including a physical data memory.
18. The method for authenticating identity information according to claim 17, wherein, the storage source includes encrypted data, an interrogation data device.
19. The method for authenticating identity information according to claim 18, wherein, The interrogation data device includes a physical or electronic separation from the requesting device.
20. The method for authenticating identity information according to claim 18, wherein, the interrogation data device includes a unit for receiving a request for personal identity information, or a unit for providing personal identity information.
21. The method for authenticating identity information according to claim 18, wherein, the interrogation data device includes a unit for responding to the request, and the unit includes: an optical, thermal, chemical, tactile, coordination or translation unit.
22. The method for authenticating identity information according to claim 9, wherein, the reference identifier includes: a public static identifier, a private dynamic identifier or a combination thereof.
23. The method for authenticating identity information according to claim 22, wherein, the static identifier includes: an alphanumeric sequence string, a private key, a digital code, a fingerprint indicator, a voiceprint indicator, a visual indicator, a biological indicator or a combination thereof.
24. The method for authenticating identity information according to claim 22, wherein, the dynamic identifier includes a signal generated by a device for authenticating identity information by a person having the identity information.
25. The method for authenticating identity information according to claim 23, wherein, the fingerprint indicator includes: an image, a part, a fragment, an index or an identifying feature of a fingerprint.
26. The method for authenticating identity information according to claim 23, wherein, the voiceprint indicator includes: an image, a part, a fragment, an index or an identifying feature of a voiceprint.
27. The method for authenticating identity information according to claim 23, wherein, the visual indicator includes: an image, a part, a fragment, an index or an identifying feature of a face, retina or iris.
28. The method for authenticating identity information according to claim 23, wherein, the biological indicator includes: an image, a part, a fragment, an index or an identifying feature of a biochemical index.
29. The method for authenticating identity information according to claim 9, wherein, the request for access includes approving access by means of a message, chat, voice, text, signal, bit or a combination thereof.
30. The method for authenticating identity information according to claim 9, wherein, receiving the request for authenticating personal information includes a request from an intranet source, an internet source, an extranet source or a combination thereof.
31. The method for authenticating identity information according to claim 9, wherein, the private approval interface includes a user interface for approving access to private data records through a graphical user interface, a text user interface, a telephone user interface, a video user interface, a human user interface or a combination thereof.
32. The method for authenticating identity information according to claim 9, wherein, the authentication or multivalent response includes a signal for affirmative, negative, indeterminate, probable or a combination thereof.
Citation Information
Patent Citations
ESL-based differential price management and payment system and method
CN103578019A
Payment authentication method and system based on face recognition and HCE
CN105809447A
Credential Verification using Credential Repository
US20090119757A1