Privacy Data Acquisition Method, Device, Electronic Device and Readable Storage Medium
By obtaining and submitting a data list to obtain authorization information, the data leakage caused by the user's forgetting or losing of the certificate during business processing is solved, and the user's privacy data is achieved convenient and securely used.
Patent Information
- Application Number
- CN202110768508.6
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2021-07-07
- Publication Date
- 2025-07-11
- Estimated Expiration
- 2041-07-07
AI Technical Summary
Users need to provide personal privacy data when handling business. In the prior art, the forgotten or lost certificates lead to data leakage, and are inconvenient and insecure.
By obtaining the first data list to the server, the user submits the second data list based on the list, the server returns authorization information, and the data user obtains user data based on the authorization information.
It realizes the convenience of user personal privacy data and guarantees to prevent data leakage.
Smart Images

Figure CN113407998B_ABST
Abstract
Description
Technical Field
[0001] This application relates to the technical field of data processing. Specifically, this application relates to a method, apparatus, electronic device, and readable storage medium for obtaining privacy data. Background Art
[0002] In daily life, when handling some business, users may need to provide personal privacy data. However, currently, users generally can only provide documents. Users need to carry documents, and there may be a situation of forgetting the documents, and the leakage of users' personal privacy data may occur due to the loss of documents and other situations.
[0003] Therefore, there is an urgent need to provide a way to provide users' personal privacy data, realize the convenient use of users' personal privacy data, and ensure the security of users' personal privacy data. Summary of the Invention
[0004] The purpose of this application aims to solve at least one of the above technical defects. The technical solutions adopted in this application are as follows:
[0005] In a first aspect, an embodiment of this application provides a method for obtaining privacy data. The method includes:
[0006] Sending a request to obtain a first data list to the server and receiving the first data list returned by the server. The first data list includes data identifiers of data that the data user has the right to use;
[0007] Obtaining a second data list submitted by the user based on the first data list and sending the second data list to the server, so that the server returns authorization information to the client based on the second data list;
[0008] Receiving the authorization information returned by the server and sending the authorization information to the data user, so that the data user obtains the user data corresponding to the second data list based on the authorization information.
[0009] In a second aspect, an embodiment of this application provides another method for obtaining privacy data. The method includes:
[0010] When receiving a request to obtain a first data list sent by the terminal device, first returning the first data list sent by the terminal device. The first data list includes data identifiers of data that the data user has the right to use;
[0011] Receiving a second data list submitted by the terminal device based on the first data list;
[0012] Based on the second data list, the terminal device returns authorization information, enabling the terminal device to provide the authorization information to the data user and enabling the data user to obtain the user data corresponding to the second data list based on the authorization information.
[0013] In a third aspect, an embodiment of the present application provides a privacy data acquisition device, which includes:
[0014] A first data list acquisition module, configured to send a request for acquiring the first data list to the server and receive the first data list returned by the server, where the first data list includes data identifiers of data for which the data user has usage permissions;
[0015] A second data list submission module, configured to acquire the second data list submitted by the user based on the first data list and send the second data list to the server, so that the server returns authorization information to the client based on the second data list;
[0016] An authorization information receiving module, configured to receive the authorization information returned by the server and send the authorization information to the data user, so that the data user can obtain the user data corresponding to the second data list based on the authorization information.
[0017] In a fourth aspect, an embodiment of the present application provides another privacy data acquisition device, which includes:
[0018] A first data list return module, configured to, when receiving a request for acquiring the first data list sent by the terminal device, return the first data list sent by the terminal device first, where the first data list includes data identifiers of data for which the data user has usage permissions;
[0019] A second data list receiving module, configured to receive the second data list submitted by the terminal device based on the first data list;
[0020] An authorization information return module, configured to return authorization information to the terminal device based on the second data list, enabling the terminal device to provide the authorization information to the data user and enabling the data user to obtain the user data corresponding to the second data list based on the authorization information.
[0021] In a fifth aspect, an embodiment of the present application provides an electronic device, which includes: a processor and a memory;
[0022] The memory is used to store operation instructions;
[0023] The processor is configured to execute the method shown in any implementation manner of the first aspect or any implementation manner of the second aspect of the present application by calling the operation instructions.
[0024] Fourthly, an embodiment of the present application provides a computer-readable storage medium, on which a computer program is stored, and when the program is executed by a processor, the method shown in any implementation manner of the first aspect or any implementation manner of the second aspect of the present application is implemented.
[0025] The beneficial effects brought by the technical solutions provided by the embodiments of the present application are as follows:
[0026] In the solution provided by the embodiment of the present application, a request for obtaining a first data list is sent to the server, and the first data list returned by the server is received. The first data list includes data identifiers of data that the data user has the right to use. The second data list submitted by the user based on the first data list is obtained, and the second data list is sent to the server, so that the server returns authorization information to the client based on the second data list. The authorization information returned by the server is received, and the authorization information is sent to the data user, so that the data user can obtain the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to conveniently use the user's personal privacy data and ensure the security of the user's personal privacy data. BRIEF DESCRIPTION OF THE DRAWINGS
[0027] In order to more clearly illustrate the technical solutions in the embodiments of the present application, the following will briefly introduce the drawings required for description in the embodiments of the present application.
[0028] Figure 1 It is a schematic flowchart of a method for obtaining privacy data provided by an embodiment of the present application;
[0029] Figure 2 It is a schematic flowchart of another method for obtaining privacy data provided by an embodiment of the present application;
[0030] Figure 3 It is a schematic structural diagram of a device for obtaining privacy data provided by an embodiment of the present application;
[0031] Figure 4 It is a schematic structural diagram of another device for obtaining privacy data provided by an embodiment of the present application;
[0032] Figure 5 It is a schematic structural diagram of an electronic device provided by an embodiment of the present application. DETAILED DESCRIPTION OF THE EMBODIMENTS
[0033] The following details the embodiments of the present application. The examples of the embodiments are shown in the drawings, where the same or similar reference numerals represent the same or similar elements or elements with the same or similar functions throughout. The embodiments described below by referring to the drawings are exemplary and are only used to explain the present application and should not be construed as a limitation to the present invention.
[0034] Those skilled in the art can understand that, unless specifically stated otherwise, the singular forms "a", "an", "the" and "said" used herein may also include the plural forms. It should be further understood that the term "including" used in the specification of this application means the presence of the stated features, integers, steps, operations, elements and / or components, but does not exclude the presence or addition of one or more other features, integers, steps, operations, elements, components and / or their groups. It should be understood that when we say an element is "connected" or "coupled" to another element, it can be directly connected or coupled to other elements, or there may also be intermediate elements. In addition, the "connection" or "coupling" used herein may include wireless connection or wireless coupling. The phrase "and / or" used herein includes all or any unit and all combinations of one or more of the associated listed items.
[0035] To make the objectives, technical solutions and advantages of this application clearer, the embodiments of this application will be further described in detail below with reference to the accompanying drawings.
[0036] The technical solutions of this application and how the technical solutions of this application solve the above technical problems will be described in detail below with specific embodiments. These several specific embodiments below can be combined with each other, and the same or similar concepts or processes may not be repeated in some embodiments. The embodiments of this application will be described below with reference to the accompanying drawings.
[0037] Figure 1 The flowchart of a method for obtaining private data provided by an embodiment of this application is shown, as Figure 1 shown, this method mainly may include:
[0038] Step S110: Send a request to obtain the first data list to the server and receive the first data list returned by the server. The first data list includes the data identifiers of the data that the data user has the right to use;
[0039] Step S120: Obtain the second data list submitted by the user based on the first data list and send the second data list to the server, so that the server returns authorization information to the client based on the second data list;
[0040] Step S130: Receive the authorization information returned by the server and send the authorization information to the data user, so that the data user obtains the user data corresponding to the second data list based on the authorization information.
[0041] In the embodiments of this application, the data user may be an institution that needs the user to provide personal data. For example, when the user applies for a loan business from a bank institution, the data user is the bank institution.
[0042] The user data can be the user's privacy data, such as the user's ID number, home address, property information, etc.
[0043] The server can maintain a first data list of data users. The first data list includes the data identifiers of the user data that the data users have been approved to have the right to use.
[0044] When it is necessary to provide user data to the data users, the user can request the first data list of the data users from the server through the client.
[0045] The client can display the first data list to the user for the user to select from the data included in the first data list to obtain a second data list. The second data list lists the data identifiers of the data to be provided to the data users.
[0046] After receiving the second data list provided by the user, the server can authorize the second data list and return the authorization information to the client. The authorization information can be in the form of an authorization code.
[0047] The server can also store the relevant information of the user and the second data list, that is, record the behavior of providing personal privacy data.
[0048] After receiving the authorization information, the terminal device can provide the authorization information to the data user. The data user can request the data corresponding to the data identifiers in the second data list from the data platform storing the user privacy data based on the authorization information. The data platform can be a secure server storing privacy data.
[0049] The method provided by the implementation of this application includes: obtaining a first data list by sending a request for the first data list to the server and receiving the first data list returned by the server. The first data list includes the data identifiers of the data that the data users have the right to use, obtaining the second data list submitted by the user based on the first data list, and sending the second data list to the server so that the server returns authorization information to the client based on the second data list, receiving the authorization information returned by the server, and sending the authorization information to the data user so that the data user can obtain the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to facilitate the use of the user's personal privacy data and ensure the security of the user's personal privacy data.
[0050] In an optional manner of the embodiment of this application, obtaining the second data list submitted by the user based on the first data list includes:
[0051] Generating a check box interface based on the first data list and displaying the check box interface to the user;
[0052] Determine a second data list based on the user's ticking operation on the first data list in the ticking interface.
[0053] In an embodiment of the present application, the first data list can be displayed by providing a ticking interface, that is, the data in the first data list are shown one by one on the ticking interface, and the user can tick according to needs.
[0054] Specifically, while guiding the user to tick the data, the user can also be guided to read and tick the usage statement and disclaimer clause, and submit the selected second data list by clicking the consent authorization button.
[0055] In an alternative manner of an embodiment of the present application, sending the second data list to the server includes:
[0056] Authenticate the user;
[0057] If the authentication is passed, send the second data list to the server.
[0058] In an embodiment of the present application, before submitting the second data list to the server, the user can also be authenticated, such as face recognition of the user, to ensure the security of data usage. After the authentication is passed, the second data list can be sent to the server.
[0059] In an alternative manner of an embodiment of the present application, the data identifier corresponds to the sub-data obtained by splitting the user data.
[0060] Among them, the data granularity of the user data may be relatively large, that is, it contains a large amount of data. In actual use, the data user may only need a part of the data. Therefore, if the data is directly provided to the data user, it will cause the data user to obtain unnecessary user data, which is not conducive to the security and privacy of user data.
[0061] In an embodiment of the present application, the user data is split into sub-data, and the sub-data is authorized for use, which improves the usage accuracy of the data and ensures the privacy and security of user data.
[0062] As an example, the user data is the user's property information, and the sub-data obtained by splitting can include the property address, property ownership certificate number, etc. Further, the property address can be further split, such as splitting out information such as the area where the house is located as sub-data.
[0063] In an alternative manner of an embodiment of the present application, obtaining a request for obtaining the first data list from the server includes:
[0064] In the embodiment of the present application, a request for obtaining a first data list can be sent to a server by scanning a QR code through a terminal device.
[0065] In actual use, when the method provided in the embodiment of the present application is applied to handling business in a bank, the QR code can be scanned by the user's terminal device (such as a mobile phone), or can be scanned by the bank's self-service terminal device.
[0066] In an alternative embodiment of the present application, the above method further includes:
[0067] After the data user obtains the user data corresponding to the second data list based on the authorization information, receive the usage details of the user data returned by the server, and display the usage details of the user data to the user.
[0068] In the embodiment of the present disclosure, after the user data is provided to the data user, the server can return the usage details of the user data to the user and the data user, so that the user can view the usage details of the data in a timely manner, and can timely discover whether there are errors in the used user data, or whether the data update is not timely, etc., and also enables the data user to verify the obtained user data.
[0069] Figure 2 The flowchart of another method for obtaining privacy data provided by the embodiment of the present application is shown, as Figure 2 shown, this method mainly may include:
[0070] Step S210: When receiving a request for obtaining a first data list sent by a terminal device, first return the first data list returned by the terminal device. The first data list includes data identifiers of data for which the data user has usage permissions;
[0071] Step S220: Receive a second data list submitted by the terminal device based on the first data list;
[0072] Step S230: Based on the second data list, return authorization information to the terminal device, so that the terminal device provides the authorization information to the data user, and so that the data user obtains the user data corresponding to the second data list based on the authorization information.
[0073] In the embodiment of the present application, the data user can be an institution that needs to obtain personal privacy data from the user. For example, when the user applies for a loan business from a bank institution, the data user is the bank institution.
[0074] In the server, a first data list of data users can be maintained. The first data list includes data types for which the data users have been approved and have the right to use, such as data identifiers of data like the user's ID number, home address, etc.
[0075] When it is necessary to provide the user's personal privacy data to the data user, the user can request the first data list of the data user from the server through the client.
[0076] The client can display the first data list to the user for the user to select from the data included in the first data list to obtain a second data list. The second data list lists the data identifiers of the data to be provided to the data user.
[0077] After receiving the second data list provided by the user, the server can authorize the second data list and return the authorization information to the client. The authorization information can be in the form of an authorization code.
[0078] After receiving the authorization information, the terminal device can provide the authorization information to the data user. The data user can request the data in the second data list from the data platform storing the user's privacy data based on the authorization information. This data platform can be a confidential server storing privacy data.
[0079] In the embodiments of the present application, the data interactions between the server and the client of the terminal device, and between the data user and the data platform storing the privacy data can all be implemented based on blockchain smart contracts. Due to the decentralized feature of the blockchain, the data will be backed up on multiple nodes of the blockchain. Even if the data on a certain node is tampered with, it can be determined whether the data has been tampered with by comparing it with the data on other nodes. Therefore, it can prevent the data from being tampered with during the interaction process and ensure the accuracy of the data.
[0080] The method provided in the embodiments of the present application includes: obtaining a first data list by sending a request for the first data list to the server and receiving the first data list returned by the server. The first data list includes the data identifiers of the data for which the data user has the right to use. Obtaining the second data list submitted by the user based on the first data list and sending the second data list to the server so that the server returns authorization information to the client based on the second data list. Receiving the authorization information returned by the server and sending the authorization information to the data user so that the data user can obtain the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to facilitate the use of the user's personal privacy data and ensure the security of the user's personal privacy data.
[0081] In an optional manner of the embodiments of the present application, the above method further includes:
[0082] Associate and store the second data list and the user's identity information.
[0083] Among them, the server can also store the user's relevant information with the second data list, that is, record the behavior of providing personal privacy data.
[0084] In an optional manner of the embodiments of the present application, the above method further includes:
[0085] Return the usage details of the user data to the terminal device and / or the data user.
[0086] In the embodiments of the present application, after the user data is provided to the data user, the server can return the usage details of the user data to the user and the data user, so that the user can view the usage details of the data in a timely manner, and timely discover whether there are errors in the used user data, or whether the data update is not timely, etc., and also enable the data user to verify the obtained user data.
[0087] Based on the same principle as the Figure 1 method shown in Figure 3 FIG. shows a schematic structural diagram of a privacy data acquisition device provided by the embodiments of the present application. As Figure 3 shown, the privacy data acquisition device 30 may include:
[0088] A first data list acquisition module 310, configured to send a request to the server to acquire the first data list and receive the first data list returned by the server. The first data list includes data identifiers of data that the data user has the right to use.
[0089] A second data list submission module 320, configured to acquire the second data list submitted by the user based on the first data list and send the second data list to the server, so that the server returns authorization information to the client based on the second data list.
[0090] An authorization information receiving module 330, configured to receive the authorization information returned by the server and send the authorization information to the data user, so that the data user acquires the user data corresponding to the second data list based on the authorization information.
[0091] The device provided by the implementation of this application obtains a request for the first data list from the server and receives the first data list returned by the server. The first data list includes data identifiers of data that the data user has the right to use; obtains the second data list submitted by the user based on the first data list, and sends the second data list to the server, so that the server returns authorization information to the client based on the second data list; receives the authorization information returned by the server and sends the authorization information to the data user, and the data user obtains the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to conveniently use the user's personal privacy data and ensure the security of the user's personal privacy data.
[0092] Optionally, when obtaining the second data list submitted by the user based on the first data list, the second data list submission module is specifically configured to:
[0093] Generate a check box interface based on the first data list and display the check box interface to the user;
[0094] Determine the second data list based on the user's check operation on the first data list in the check box interface.
[0095] Optionally, when sending the second data list to the server, the second data list submission module is specifically configured to:
[0096] Authenticate the user;
[0097] If the authentication is passed, send the second data list to the server.
[0098] Optionally, when obtaining and sending a request for the first data list from the server, the first data list acquisition module is specifically configured to:
[0099] Send a request for the first data list to the server by scanning a QR code.
[0100] It can be understood that the above-mentioned modules of the data acquisition device in this embodiment have the functions of implementing the corresponding steps of the data acquisition method in the embodiment shown in Figure 1 The function can be implemented by hardware or by hardware executing corresponding software. The hardware or software includes one or more modules corresponding to the above functions. The above modules can be software and / or hardware, and the above-mentioned modules can be implemented separately or multiple modules can be integrated. For the function descriptions of the above-mentioned modules of the data acquisition device, reference can specifically be made to the corresponding descriptions of the data acquisition method in the embodiment shown in Figure 1 The corresponding descriptions in the embodiment shown in are not repeated here.
[0101] Based on the same principle as the method shown in Figure 2 in, Figure 4The following shows a schematic structural diagram of a privacy data acquisition device provided by an embodiment of the present application. As Figure 4 shown, the privacy data acquisition device 40 may include:
[0102] A first data list return module 410, configured to return a first data list to the terminal device when receiving a request for obtaining the first data list sent by the terminal device. The first data list includes data identifiers of data for which the data user has usage permissions.
[0103] A second data list receiving module 420, configured to receive a second data list submitted by the terminal device based on the first data list.
[0104] An authorization information return module 430, configured to return authorization information to the terminal device based on the second data list, so that the terminal device provides the authorization information to the data user, and so that the data user obtains user data corresponding to the second data list based on the authorization information.
[0105] The device provided by the embodiment of the present application obtains a request for obtaining the first data list by sending it to the server, and receives the first data list returned by the server. The first data list includes data identifiers of data for which the data user has usage permissions; obtains a second data list submitted by the user based on the first data list, and sends the second data list to the server, so that the server returns authorization information to the client based on the second data list; receives the authorization information returned by the server, and sends the authorization information to the data user, and the data user obtains user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to conveniently use the user's personal privacy data and ensure the security of the user's personal privacy data.
[0106] Optionally, the above device further includes:
[0107] A data storage module, configured to store the second data list and the user's identity information in an associated manner.
[0108] It can be understood that the above-mentioned modules of the privacy data acquisition device in this embodiment have functions corresponding to the corresponding steps of the data acquisition method in the Figure 2 embodiment shown. This function can be implemented by hardware or by hardware executing corresponding software. The hardware or software includes one or more modules corresponding to the above functions. The above modules can be software and / or hardware, and the above-mentioned modules can be implemented separately or multiple modules can be integrated to implement. For the function descriptions of the above-mentioned modules of the data acquisition device, reference can specifically be made to the corresponding descriptions of the privacy data acquisition method in the Figure 2 embodiment shown, which will not be elaborated here.
[0109] An embodiment of the present application provides an electronic device, including a processor and a memory;
[0110] The memory is used to store operation instructions;
[0111] The processor is used to execute the privacy data acquisition method provided in any implementation manner of the present application by calling the operation instructions.
[0112] As an example, Figure 5 FIG. shows a schematic structural diagram of an electronic device applicable to an embodiment of the present application, as Figure 5 shown, the electronic device 2000 includes: a processor 2001 and a memory 2003. Among them, the processor 2001 and the memory 2003 are connected, such as connected through a bus 2002. Optionally, the electronic device 2000 may further include a transceiver 2004. It should be noted that in practical applications, the transceiver 2004 is not limited to one, and the structure of the electronic device 2000 does not constitute a limitation to the embodiments of the present application.
[0113] Among them, the processor 2001 is applied to the embodiment of the present application and is used to implement the method shown in the above method embodiment. The transceiver 2004 may include a receiver and a transmitter. The transceiver 2004 is applied to the embodiment of the present application and is used to implement the function of communicating between the electronic device of the embodiment of the present application and other devices during execution.
[0114] The processor 2001 may be a CPU (Central Processing Unit), a general-purpose processor, a DSP (Digital Signal Processor), an ASIC (Application Specific Integrated Circuit), an FPGA (Field Programmable Gate Array) or other programmable logic devices, transistor logic devices, hardware components or any combination thereof. It can implement or execute various exemplary logic blocks, modules and circuits described in combination with the disclosure of the present application. The processor 2001 may also be a combination for implementing computing functions, such as a combination including one or more microprocessors, a combination of a DSP and a microprocessor, etc.
[0115] The bus 2002 may include a path for transmitting information between the above components. The bus 2002 may be a PCI (Peripheral Component Interconnect) bus, an EISA (Extended Industry Standard Architecture) bus, or the like. The bus 2002 may be divided into an address bus, a data bus, a control bus, etc. For the sake of simplicity of representation, Figure 5 only a thick line is used in Figure 5 , but it does not mean that there is only one bus or one type of bus.
[0116] The memory 2003 may be a ROM (Read Only Memory), or other types of static storage devices that can store static information and instructions, a RAM (Random Access Memory), or other types of dynamic storage devices that can store information and instructions. It may also be an EEPROM (Electrically Erasable Programmable Read Only Memory), a CD-ROM (Compact Disc Read Only Memory), or other optical disc storage, optical disc storage (including compact discs, laser discs, optical discs, digital versatile discs, Blu-ray discs, etc.), magnetic disk storage media, or other magnetic storage devices, or any other medium that can be used to carry or store the desired program code in the form of instructions or data structures and can be accessed by a computer, but is not limited thereto.
[0117] Optionally, the memory 2003 is used to store the application program code for implementing the solution of this application, and is controlled by the processor 2001 to execute. The processor 2001 is used to execute the application program code stored in the memory 2003 to implement the privacy data acquisition method provided in any embodiment of this application.
[0118] The electronic device provided in the embodiments of this application is applicable to any embodiment of the above method, and will not be elaborated herein.
[0119] An embodiment of the present application provides an electronic device. Compared with the prior art, by sending a request to obtain a first data list to a server and receiving the first data list returned by the server, the first data list includes data identifiers of data that the data user has the right to use; obtaining a second data list submitted by the user based on the first data list and sending the second data list to the server, so that the server returns authorization information to the client based on the second data list; receiving the authorization information returned by the server and sending the authorization information to the data user, and the data user obtains the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to conveniently use the user's personal privacy data and ensure the security of the user's personal privacy data.
[0120] An embodiment of the present application provides a computer-readable storage medium, on which a computer program is stored. When the program is executed by a processor, it implements the privacy data acquisition method shown in the above method embodiment.
[0121] The computer-readable storage medium provided by the embodiment of the present application is applicable to any of the above method embodiments and will not be elaborated here.
[0122] An embodiment of the present application provides a computer-readable storage medium. Compared with the prior art, by sending a request to obtain a first data list to a server and receiving the first data list returned by the server, the first data list includes data identifiers of data that the data user has the right to use; obtaining a second data list submitted by the user based on the first data list and sending the second data list to the server, so that the server returns authorization information to the client based on the second data list; receiving the authorization information returned by the server and sending the authorization information to the data user, and the data user obtains the user data corresponding to the second data list based on the authorization information. Based on this solution, it is possible to conveniently use the user's personal privacy data and ensure the security of the user's personal privacy data.
[0123] It should be understood that although the steps in the flowchart of the accompanying drawings are shown in sequence according to the arrows, these steps are not necessarily executed in the order indicated by the arrows. Unless there is a clear indication in this article, the execution of these steps has no strict order limit and can be executed in other orders. Moreover, at least a part of the steps in the flowchart of the accompanying drawings may include multiple sub-steps or multiple stages. These sub-steps or stages are not necessarily executed at the same time, but can be executed at different times, and their execution order is not necessarily sequential, but can be executed alternately or alternately with at least a part of other steps or sub-steps or stages of other steps.
[0124] The above are only some embodiments of the present invention. It should be noted that for those of ordinary skill in the art, without departing from the principle of the present invention, several improvements and refinements can be made, and these improvements and refinements should also be regarded as the protection scope of the present invention.
Claims
1. A method for obtaining private data, characterized in that Including: Send a request to the server to obtain the first data list, and receive the first data list returned by the server. The first data list includes the data identifiers of the data that has been approved for the data user and has the usage permission; Obtain the second data list submitted by the user based on the first data list, and send the second data list to the server, so that the server returns authorization information to the client based on the second data list; Receive the authorization information returned by the server, and send the authorization information to the data user, so that the data user can obtain the user data corresponding to the second data list based on the authorization information; When it is necessary to provide user data to the data user, the user requests the first data list of the data user from the server through the client; The client displays the first data list to the user for the user to select from the data included in the first data list to obtain the second data list. The second data list lists the data identifiers of the data to be provided to the data user; After receiving the second data list provided by the user, the server authorizes the second data list and returns the authorization information to the client. The authorization information is in the form of an authorization code; The server also stores the relevant information of the user and the second data list, and records the behavior of providing personal privacy data; After receiving the authorization information, the terminal device provides the authorization information to the data user. The data user requests the data corresponding to the data identifier in the second data list from the data platform storing the user privacy data. This data platform is a confidential server storing privacy data; The obtaining the second data list submitted by the user based on the first data list includes: Generate a check box interface based on the first data list and display the check box interface to the user; Determine the second data list based on the user's check operation on the first data list in the check box interface; The sending the second data list to the server includes: Authenticate the user; If the authentication is passed, send the second data list to the server; The data identifier corresponds to the sub-data obtained by splitting the user data; The sending a request to the server to obtain the first data list includes: Send a request to the server to obtain the first data list by scanning a QR code; The method further includes: after the data user obtains the user data corresponding to the second data list based on the authorization information, receive the usage details of the user data returned by the server and display the usage details of the user data to the user.
2. A method for obtaining private data, characterized in that, Including: When receiving the request from the terminal device to obtain the first data list, first return the first data list of the terminal device. The first data list includes the data identifiers of the data that has been approved for the data user and has the usage permission; Receive the second data list submitted by the terminal device based on the first data list; Based on the second data list, the terminal device returns authorization information, enabling the terminal device to provide the authorization information to the data user, and enabling the data user to obtain the user data corresponding to the second data list based on the authorization information; When it is necessary to provide the personal privacy data of the user to the data user, the user requests the first data list of the data user from the server through the client; The client shows the first data list to the user for the user to select from the data included in the first data list to obtain a second data list, and the second data list lists the data identifiers of the data to be provided to the data user; After receiving the second data list provided by the user, the server authorizes the second data list and returns the authorization information to the client, and the authorization information is in the form of an authorization code; After receiving the authorization information, the terminal device provides the authorization information to the data user, and the data user requests the data in the second data list from the data platform storing the user privacy data based on the authorization information, and this data platform is a confidential server storing the privacy data; The data interaction between the server and the client of the terminal device, and between the data user and the data platform storing the privacy data is all realized based on the blockchain smart contract.
3. The method according to claim 2, characterized in that, It also includes: Associatively storing the second data list and the identity information of the user.
4. The method according to claim 2 or 3, characterized in that, It also includes: Returning the usage details of the user data to the terminal device and / or the data user.
5. A privacy data acquisition device, characterized in that, It includes: A first data list acquisition module for sending a request to obtain the first data list to the server and receiving the first data list returned by the server, and the first data list includes the data identifiers of the data that the data user has the usage permission for; A second data list submission module for obtaining the second data list submitted by the user based on the first data list and sending the second data list to the server, so that the server returns authorization information to the client based on the second data list; An authorization information receiving module for receiving the authorization information returned by the server and sending the authorization information to the data user, so that the data user obtains the user data corresponding to the second data list based on the authorization information; When it is necessary to provide the user data to the data user, the user requests the first data list of the data user from the server through the client; The client shows the first data list to the user for the user to select from the data included in the first data list to obtain a second data list, and the second data list lists the data identifiers of the data to be provided to the data user; After receiving the second data list provided by the user, the server authorizes the second data list and returns the authorization information to the client, and the authorization information is in the form of an authorization code; The server also stores the relevant information of the user and the second data list, and records the behavior of providing the personal privacy data. After receiving the authorization information, the terminal device provides the authorization information to the data user. The data user requests the data corresponding to the data identifiers in the second data list from the data platform storing the user's privacy data. The data platform is a confidentiality server storing privacy data; The obtaining of the second data list submitted by the user based on the first data list includes: Generating a check box interface based on the first data list and presenting the check box interface to the user; Determining the second data list based on the user's check operation on the first data list in the check box interface; The sending of the second data list to the server includes: Authenticating the user; If the authentication is passed, sending the second data list to the server; The data identifier corresponds to the sub-data obtained by splitting the user data; The sending of a request for obtaining the first data list to the server includes: Sending a request for obtaining the first data list to the server by scanning a QR code; It further includes: after the data user obtains the user data corresponding to the second data list based on the authorization information, receiving the usage details of the user data returned by the server and presenting the usage details of the user data to the user.
6. A privacy data acquisition device, characterized in that, It includes: A first data list return module, configured to, when receiving a request for obtaining the first data list sent by the terminal device, return the first data list sent by the terminal device. The first data list includes the data identifiers of the data for which the data user has usage permissions; A second data list receiving module, configured to receive the second data list submitted by the terminal device based on the first data list; An authorization information return module, configured to return authorization information to the terminal device based on the second data list, so that the terminal device provides the authorization information to the data user and enables the data user to obtain the user data corresponding to the second data list based on the authorization information; When it is necessary to provide the user's personal privacy data to the data user, the user requests the first data list of the data user from the server through the client; The client presents the first data list to the user for the user to select from the data included in the first data list to obtain a second data list. The second data list lists the data identifiers of the data to be provided to the data user; After receiving the second data list provided by the user, the server authorizes the second data list and returns the authorization information to the client. The authorization information is in the form of an authorization code; After receiving the authorization information, the terminal device provides the authorization information to the data user. The data user requests the data in the second data list from the data platform storing the user's privacy data. The data platform is a confidentiality server storing privacy data; The data interaction between the server and the client of the terminal device, and between the data user and the data platform storing the privacy data is all implemented based on the blockchain smart contract.
7. An electronic device, characterized in that, It includes a processor and a memory; The memory is used to store operation instructions; The processor is configured to execute the method according to any one of claims 1-4 by invoking the operation instructions.
8. A computer-readable storage medium, characterized in that, A computer program is stored on the storage medium, and when the computer program is executed by the processor, the method according to any one of claims 1-4 is implemented.
Citation Information
Patent Citations
Authorization method, device and system for sensitive data
CN104468531A
Private data authorization method and platform, client and repair terminal
CN112069531A