Privacy data processing method, system and equipment for smart toilet

By introducing a virtual target user mechanism into smart toilets, sensitive data is associated with virtual user information, and the problem of how to protect user privacy while providing personalized services is solved, achieving more efficient and secure data processing.

CN120046197AActive Publication Date: 2025-05-27ZHONGYUNHUI (CHENGDU) IOT TECH CO LTD
View PDF 6 Cites 0 Cited by

Patent Information

Application Number
CN202510535770.4
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-04-27
Publication Date
2025-05-27
Estimated Expiration
2045-04-27

AI Technical Summary

Technical Problem

How to effectively utilize user toilet data to provide personalized services in smart toilets, while fully protecting user privacy.

Method used

By introducing virtual target users, sensitive data is associated with virtual user information, rather than directly linking it with the real identity information of the target user, the user data platform is used to generate portraits of the target user and the virtual target user, and encrypt and decrypt it on the user side to generate local user portraits.

Benefits of technology

It effectively isolates user privacy information from publicly accessible data, reduces the risk of user privacy leakage, enhances user privacy protection, and improves the flexibility and efficiency of data processing, and supports more accurate and effective data processing strategies.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120046197A_ABST
    Figure CN120046197A_ABST
Patent Text Reader

Abstract

The invention discloses a privacy data processing method, system and device for a smart toilet, and relates to the technical field of privacy data processing. The privacy data processing method for the smart toilet comprises the following steps: in response to a target user creation request, establishing a target user and a virtual target user; general data and sensitive data of a target user are collected, and the general data and user information of the target user are associated and then sent to a user data platform; associating the sensitive data with user information of the virtual target user and then sending the sensitive data and the user information to a user data platform; generating a target user portrait according to the user information of the target user and the general data, and generating a virtual target user portrait according to the user information of the virtual target user and the privacy data; and generating a local user portrait according to the target user portrait and the virtual target user portrait. Personalized services can be provided by effectively utilizing the defecation data of the user, and the privacy data of the user in the smart toilet can be fully protected.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the technical field of privacy data processing, and particularly to a privacy data processing method, system and device for smart toilets. Background Art

[0002] In the wave of smart city construction, smart toilets, as an important part of the urban public service system, are attracting increasing attention. Smart toilets aim to provide a more convenient, comfortable and hygienic toilet experience by integrating modern information technologies such as the Internet of Things, big data analysis, and artificial intelligence. However, with the continuous expansion of the functions of smart toilets, how to effectively process and protect users' privacy data has become an urgent problem to be solved.

[0003] Therefore, there is an urgent need for a privacy data processing method for smart toilets that can not only effectively utilize users' toilet data to provide personalized services but also fully protect users' privacy. Summary of the Invention

[0004] The main purpose of this application is to provide a privacy data processing method, system and device for smart toilets, aiming to propose a privacy data processing method for smart toilets that can not only effectively utilize users' toilet data to provide personalized services but also fully protect users' privacy.

[0005] To achieve the above object, this application provides a privacy data processing method for smart toilets, based on a data collection end, a user end and a user data platform, including: The user data platform responds to a target user creation request, creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user end; The data collection end collects the toilet data of the target user, obtains general data and sensitive data according to the toilet data, associates the general data with the user information of the target user and then sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and then sends it to the user data platform; The user data platform generates a target user profile according to the user information and general data of the target user, and generates a virtual target user profile according to the user information and privacy data of the virtual target user; The user end obtains the target user profile and the virtual target user profile from the user data platform according to preset rules, and generates a local user profile according to the target user profile and the virtual target user profile.

[0006] Optionally, the step in which the data collection end collects the toilet data of the target user and obtains general data and sensitive data according to the toilet data includes: Obtain the privacy sensitivity, data value, and legal risks of the toilet use data according to the toilet use data of the target user; Evaluate the importance score of the toilet use data according to the privacy sensitivity, data value, and legal risks; Mark the data with an importance score less than the preset threshold in the toilet use data as general data, and mark the data with an importance score greater than or equal to the preset threshold as sensitive data.

[0007] Optionally, the step of associating the general data with the user information of the target user and sending it to the user data platform; and associating the sensitive data with the user information of the virtual target user and sending it to the user data platform includes: Associate the general data with the user information of the target user, encrypt it with the platform public key to obtain the first ciphertext, and send the first ciphertext to the user data platform; Associate the sensitive data with the information of the virtual target user, encrypt it with the platform public key to obtain the second ciphertext, and send the second ciphertext to the user data platform; Wherein, the user data platform stores the platform private key corresponding to the platform public key.

[0008] Optionally, the step of the user terminal obtaining the target user profile and the virtual target user profile from the data user platform according to the preset rules includes: The user data platform encrypts the target user profile with the virtual user public key to obtain the third ciphertext, and encrypts the virtual target user profile to obtain the fourth ciphertext; The user data platform sends the third ciphertext and the fourth ciphertext to the user terminal; The user terminal decrypts the third ciphertext with the virtual user private key to obtain the target user profile, and decrypts the fourth ciphertext to obtain the virtual target user profile.

[0009] Optionally, the step of the user terminal obtaining the target user profile and the virtual target user profile from the data user platform according to the preset rules and generating a local user profile according to the target user profile and the virtual target user profile further includes: In response to the toilet use request of the user terminal, query whether there is a target toilet that matches the local user profile according to the local user profile; If so, push the target toilet to the user terminal; If not, obtain at least one candidate toilet according to the target user profile; Obtain the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile; According to the matching degree, obtain candidate toilets with a matching degree greater than the target threshold and mark them as target toilets.

[0010] Optionally, the step of obtaining at least one candidate toilet according to the target user profile includes: Obtain at least one alternative toilet according to the target user profile; Evaluate the safety index score of the at least one alternative toilet according to the real-time monitoring, user feedback and historical maintenance records of the at least one alternative toilet; Evaluate the vacancy situation score of the at least one alternative toilet according to the usage status, user reservation information and historical usage data of the at least one alternative toilet; Obtain at least one candidate toilet according to the safety index score and the vacancy situation score.

[0011] Optionally, the step of obtaining at least one alternative toilet according to the target user profile includes: Obtain at least one preselected toilet according to the required toilet type of the target user represented by the target user profile; Evaluate the priority of the at least one preselected toilet according to the location information of the at least one preselected toilet; Sort the at least one preselected toilet in descending order of priority to obtain a sorting result; Mark the preselected toilets with a preset proportion before sorting as alternative toilets according to the sorting result.

[0012] Optionally, the step of obtaining the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile includes: Obtain the first comprehensive score of the candidate toilet according to at least one of the toilet time requirement, toilet duration requirement, toilet location requirement and toilet type requirement of the target user represented by the virtual target user profile; Obtain the second comprehensive score of the candidate toilet according to the location information, current pedestrian flow, maintenance information, opening information and special events of the candidate toilet; Obtain the matching degree between the virtual target user profile and the candidate toilet according to the first comprehensive score and the second comprehensive score.

[0013] In a second aspect, the present application provides a privacy data processing system for a smart toilet, based on a data collection end, a user end and a user data platform, including: An information creation module, which is configured to, in response to a target user creation request, establish a target user and a virtual target user by the user data platform, and send the user information of the target user and the user information of the virtual target user to the user end; A data sending module, which is configured to collect toilet data of a target user by a data acquisition end, obtain general data and sensitive data according to the toilet data, associate the general data with the user information of the target user and send it to the user data platform; associate the sensitive data with the user information of the virtual target user and send it to the user data platform; A data processing module, which is configured to generate a target user portrait by the user data platform according to the user information and general data of the target user, and generate a virtual target user portrait according to the user information and privacy data of the virtual target user; A portrait generation module, which is configured to obtain the target user portrait and the virtual target user portrait from the user data platform by a user end according to a preset rule, and generate a local user portrait according to the target user portrait and the virtual target user portrait.

[0014] In a third aspect, the present application provides a computer device, which includes a memory and a processor. A computer program is stored in the memory, and the processor executes the computer program to implement the method as described above.

[0015] The beneficial effects that the present application can achieve: A privacy data processing method, system and device for a smart toilet proposed in an embodiment of the present application, by introducing a virtual target user, associating sensitive data with virtual user information instead of directly linking it with the real identity information of the target user, effectively isolating the user's privacy information from publicly accessible data, reducing the risk of user privacy leakage, and enhancing the protection of user privacy. By classifying data into general data and sensitive data and associating them with the target user and the virtual target user respectively, it not only facilitates data organization and management, but also improves the flexibility and efficiency of data processing, enabling more precise and effective processing strategies to be adopted for different types of data. The user data platform generates a target user portrait according to the user information and general data of the target user, and at the same time generates a virtual target user portrait according to the user information and sensitive data of the virtual target user. The user end can obtain and integrate the target user portrait and the virtual target user portrait as needed to generate a more accurate and privacy-protected local user portrait, laying a foundation for providing better services. Description of the Drawings

[0016] Figure 1 It is a schematic flowchart of a privacy data processing method for a smart toilet according to an embodiment of the present application.

[0017] The realization, functional features and advantages of the purpose of the present application will be further described with reference to the embodiments and the drawings. Detailed Embodiments

[0018] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only a part of the embodiments of the present invention, rather than all the embodiments. All other embodiments obtained by those of ordinary skill in the art based on the embodiments of the present invention without creative efforts belong to the scope of protection of the present invention.

[0019] It should be noted that all directional indications (such as up, down, left, right, front, back...) in the embodiments of the present invention are only used to explain the relative positional relationship and movement conditions between components in a specific posture (as shown in the accompanying drawings). If the specific posture changes, the directional indications will also change accordingly.

[0020] In the present invention, unless otherwise clearly defined and limited, terms such as "connection" and "fixation" should be understood in a broad sense. For example, "fixation" can be a fixed connection, a detachable connection, or integrated; it can be a mechanical connection or an electrical connection; it can be directly connected or indirectly connected through an intermediate medium, and it can be the internal connection of two components or the interaction relationship between two components, unless otherwise clearly defined. For those of ordinary skill in the art, the specific meanings of the above terms in the present invention can be understood according to specific situations.

[0021] In addition, if there are descriptions involving "first", "second", etc. in the embodiments of the present invention, the descriptions of "first", "second", etc. are only for descriptive purposes and cannot be understood as indicating or implying their relative importance or implicitly indicating the quantity of the indicated technical features. Thus, the features defined with "first" and "second" can explicitly or implicitly include at least one of such features. In addition, the meaning of "and / or" appearing throughout the text includes three parallel solutions. Taking "A and / or B" as an example, it includes solution A, solution B, or a solution that satisfies both A and B at the same time. In addition, the technical solutions between the various embodiments can be combined with each other, but it must be based on the ability of those of ordinary skill in the art to implement. When the combination of technical solutions results in contradictions or cannot be implemented, it should be considered that such a combination of technical solutions does not exist and is not within the scope of protection required by the present invention.

[0022] Embodiment 1 Refer to Figure 1 , the first embodiment of the present application provides a privacy data processing method for a smart toilet, based on a data collection end, a user end, and a user data platform, including: S10. In response to a target user creation request, the user data platform creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user end.

[0023] Specifically, the user data platform receives a target user creation request, which contains user information such as name, gender, age, mobile phone number, etc. The user data platform verifies the validity of the request. For example, through an authentication mechanism, it ensures that the request is initiated by a legitimate user. After successful verification, the user data platform creates a unique identifier for the target user and establishes a user information profile for the target user. Moreover, the user data platform generates a virtual target user corresponding to the target user, which is used to associate sensitive data to protect the privacy of the target user. The user data platform sends the user information of the target user and the user information of the virtual target user to the user side for subsequent operations. After the user information of the virtual target user is sent to the user side, the original data is destroyed.

[0024] S20. The data acquisition end collects the toilet use data of the target user, obtains general data and sensitive data according to the toilet use data, associates the general data with the user information of the target user and then sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and then sends it to the user data platform.

[0025] Specifically, the data acquisition end collects the toilet use data of the target user through various sensors installed in the command toilet, such as infrared sensors, cameras, sound sensors, etc. The data acquisition end performs preliminary processing on the collected toilet use data to distinguish general data and sensitive data. General data includes, for example: device data, music data, environmental data, etc., toilet type; sensitive data includes, for example: toilet use time, toilet use duration, physiological health data, toilet location or number. The above classification is not fixed and may vary for different populations. The data acquisition end associates the general data with the user information of the target user to form associated general data. The data acquisition end associates the sensitive data with the user information of the virtual target user to form associated sensitive data. The data acquisition end sends the associated general data and the associated sensitive data to the user data platform respectively.

[0026] S30. The user data platform generates a target user portrait based on the user information and general data of the target user, and generates a virtual target user portrait based on the user information and privacy data of the virtual target user.

[0027] Specifically, the user data platform generates a target user portrait based on the user information and general data of the target user. The target user portrait reflects non-privacy information such as the usage habits and preferences of the target user. The user data platform generates a virtual target user portrait based on the user information and sensitive data of the virtual target user. The virtual target user portrait contains privacy information related to the target user, but through the association of this information with the virtual user, the real identity of the target user is protected.

[0028] S40. The client obtains the target user profile and the virtual target user profile from the user data platform according to preset rules, and generates a local user profile based on the target user profile and the virtual target user profile.

[0029] Specifically, the client requests the target user profile and the virtual target user profile from the user data platform according to preset rules (such as obtaining at regular intervals, obtaining triggered by the user, etc.). The user data platform verifies the request from the client to ensure that the request is initiated by a legitimate client. After the verification passes, the user data platform sends the target user profile and the virtual target user profile to the client. The client receives the target user profile and the virtual target user profile, and merges or displays these profiles separately as needed. The client can also generate a local user profile based on the target user profile and the virtual target user profile. This local user profile may combine non-private information and some private information (after being desensitized) for providing more personalized services or analysis.

[0030] To facilitate the understanding of this embodiment, the following is an example for illustration: Target user profile: The target user profile is a user model constructed based on the general data of the target user, which reflects the non-private information and usage habits of the user. The target user profile may include the following specific contents: User basic information: The user's name (or nickname), gender, age range (such as 20 - 30 years old), and the mobile phone number used during registration (after being desensitized, the complete number is not displayed).

[0031] Usage habits: What type of toilet the user usually chooses (such as ordinary public toilet, barrier-free toilet, whether it has a mother and baby room, sit-down or squat toilet), and the time period when he tends to use the toilet (such as 7 - 8 am, 9 - 10 pm).

[0032] Preference settings: Whether the user prefers a toilet with music, and what requirements he has for the cleanliness of the toilet (such as hoping for automatic flushing after each use).

[0033] Device interaction: The frequency and manner of the user using which devices in the toilet (such as automatic paper dispenser, hand sanitizer dispenser).

[0034] This information helps the system understand the basic needs and preferences of the user in order to provide him with a more personalized toilet usage experience.

[0035] Virtual target user profile: The virtual target user profile is a user model constructed based on the sensitive data of the target user, which is associated with a virtual user identity to protect the privacy of the target user. The virtual target user profile may include the following specific contents: Virtual User ID: A unique identifier unrelated to the user's real identity, used to associate sensitive data.

[0036] Toilet usage behavior data: The specific time of each toilet visit by the user (such as a timestamp accurate to the minute), and the duration of the toilet visit (such as 5 minutes, 10 minutes).

[0037] Physical health data: If the user chooses to share, it may include certain of his physical indicators (such as blood pressure, heart rate, which may be used to determine the need for emergency medical assistance in specific situations).

[0038] Location information: The specific location where the user uses the toilet (such as floor, room number, or latitude and longitude coordinates), but this information will be encrypted during storage and transmission.

[0039] This information is strictly protected and is only used when necessary to provide more refined services, while ensuring that the user's privacy is respected.

[0040] Local User Profile: The local user profile is a comprehensive user model generated by the user side (such as the user's mobile APP) based on the target user profile and virtual target user profile obtained from the user data platform, combined with the user's specific information stored locally. The local user profile may contain the following specific content: Comprehensive user information: Integrate the information of the target user profile and virtual target user profile on the user data platform to form a comprehensive user view.

[0041] Current status: The user's current location information (such as obtained through the mobile phone GPS), and whether there is an urgent need to use the toilet (such as manually set by the user or predicted by the system based on historical data).

[0042] Personalized settings: The personalized preferences set by the user in the APP, such as whether to receive real-time notifications of the toilet's idle status, and whether to hope that the system provides specific suggestions based on his health data.

[0043] Historical records: The records of the user's past toilet usage, including information such as the type of toilet used, time, location, etc. These information can help the system better understand the user's usage habits and optimize recommendations.

[0044] The local user profile provides a comprehensive user view for the APP, enabling it to provide personalized and privacy-protected toilet recommendations and services based on the user's current status, historical records, and personalized preferences.

[0045] Embodiment 2 Based on Embodiment 1, this embodiment provides a privacy data processing method for intelligent toilets, based on a data collection end, a user end, and a user data platform, including: S10. The user data platform responds to a target user creation request, creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user terminal.

[0046] S20. The data collection terminal collects the toilet use data of the target user, obtains general data and sensitive data according to the toilet use data, associates the general data with the user information of the target user and sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and sends it to the user data platform.

[0047] Optionally, the step of the data collection terminal collecting the toilet use data of the target user and obtaining general data and sensitive data according to the toilet use data includes: S201. According to the toilet use data of the target user, obtain the privacy sensitivity, data value and legal risk of the toilet use data.

[0048] Specifically, the data collection terminal first analyzes each element in the toilet use data, such as toilet use time, toilet use duration, physiological health indicators, etc., evaluates whether these data items involve user personal privacy and the possible consequences of privacy leakage. For data that may directly or indirectly reveal the user's personal identity, health status or behavior habits, a higher privacy sensitivity score is assigned. Then, the data collection terminal evaluates the potential value of these data items for aspects such as intelligent toilet operation, user service improvement, and health management. For data that can help optimize toilet use efficiency, improve user experience, and prevent health problems, a higher data value score is assigned. The data collection terminal also needs to consider the legal risks involved in collecting and processing these data, including whether it complies with data protection regulations and whether it may infringe on user rights. For data items with higher legal risks, even if they have high value, they should be handled with caution and, if necessary, the explicit consent of the user should be obtained.

[0049] S202. According to the privacy sensitivity, data value and legal risk, evaluate the importance score of the toilet use data.

[0050] Specifically, based on the evaluation results of privacy sensitivity, data value and legal risk, the data collection terminal calculates a comprehensive importance score for each piece of toilet use data. This score can be a weighted average, where the weights are adjusted according to specific application scenarios and regulatory requirements.

[0051] S203. Mark the data in the toilet use data with an importance score less than the preset threshold as general data, and mark the data with an importance score greater than or equal to the preset threshold as sensitive data.

[0052] Specifically, the data collection end pre-sets one or more thresholds for importance scores to distinguish general data from sensitive data. The setting of the threshold should be based on multiple factors such as privacy protection requirements, business requirements, and regulatory requirements. Data items with importance scores less than the preset threshold are marked as general data, which usually have relatively low privacy sensitivity, moderate data value, or low legal risk. Data items with importance scores greater than or equal to the preset threshold are marked as sensitive data, which may involve user privacy, have high value, or pose legal risks. The data collection end assigns corresponding marks (general data or sensitive data) to each piece of data in the toilet data and records the classification results for subsequent processing.

[0053] Optionally, the step of associating the general data with the user information of the target user and sending it to the user data platform; and associating the sensitive data with the user information of the virtual target user and sending it to the user data platform includes: S210. Associate the general data with the user information of the target user, encrypt it with the platform public key to obtain a first ciphertext, and send the first ciphertext to the user data platform.

[0054] Specifically, the data collection end first associates the general data collected from the target user (such as device usage habits, music preferences, etc.) with the user information of the target user (such as user ID, account name, mobile phone number, etc.). The purpose of the association is to accurately identify which user these data belong to in subsequent data processing. Encrypt the associated data with the platform public key of the user data platform to generate a first ciphertext. The purpose of encryption is to protect the security of the data during transmission and prevent the data from being stolen or tampered with by unauthorized third parties. Send the first ciphertext to the user data platform through a secure communication channel. After receiving the ciphertext, the user data platform can use the platform private key stored in it to decrypt it to obtain the associated general data.

[0055] S220. Associate the sensitive data with the information of the virtual target user, encrypt it with the platform public key to obtain a second ciphertext, and send the second ciphertext to the user data platform.

[0056] Specifically, the data collection end associates sensitive data (such as toilet time, physiological health data, etc.) with the information of the virtual target user (such as virtual user ID, virtual account, etc.). The information of the virtual target user is created to protect the privacy of real users and has no direct association with the identity of real users. The encryption method of the second ciphertext is the same as that of the first ciphertext, both using asymmetric encryption.

[0057] Among them, the user data platform stores the platform private key corresponding to the platform public key.

[0058] S30. The user data platform generates a target user profile based on the user information and general data of the target user, and generates a virtual target user profile based on the user information and privacy data of the virtual target user.

[0059] S40. The user terminal obtains the target user profile and the virtual target user profile from the user data platform according to a preset rule, and generates a local user profile based on the target user profile and the virtual target user profile.

[0060] Optionally, the step of the user terminal obtaining the target user profile and the virtual target user profile from the data user platform according to a preset rule includes: S401. The user data platform encrypts the target user profile with the virtual user public key to obtain a third ciphertext, and encrypts the virtual target user profile to obtain a fourth ciphertext.

[0061] Specifically, the user data platform first uses the virtual user public key (which is pre-shared or negotiated with the user terminal and is used for encrypting and decrypting data) to encrypt the target user profile to generate a third ciphertext. The purpose of encryption is to ensure that the target user profile is not stolen or viewed by unauthorized third parties during transmission. Similarly, the user data platform uses the same virtual user public key to encrypt the virtual target user profile to generate a fourth ciphertext.

[0062] S402. The user data platform sends the third ciphertext and the fourth ciphertext to the user terminal.

[0063] Specifically, the user data platform sends the third ciphertext and the fourth ciphertext to the user terminal through a secure communication channel. During the sending process, the transport layer security protocol (such as TLS) can be further used to enhance the security of the communication.

[0064] S403. The user terminal decrypts the third ciphertext with the virtual user private key to obtain the target user profile, and decrypts the fourth ciphertext to obtain the virtual target user profile.

[0065] Specifically, after receiving the third ciphertext, the user terminal uses the previously obtained virtual user private key (paired with the virtual user public key) to decrypt the third ciphertext, thereby obtaining the target user profile. The decryption process ensures that only the user terminal with the correct private key can view the target user profile.

[0066] Through encryption technology, the security of target user portraits and virtual target user portraits during transmission is ensured, preventing the risk of data being stolen or viewed. Even if the data is intercepted during transmission, since the data is encrypted and can only be decrypted by the user end with the correct private key, the user's privacy is effectively protected.

[0067] Optionally, the step of the user terminal acquiring the target user portrait and the virtual target user portrait from the data user platform according to a preset rule, and generating a local user portrait according to the target user portrait and the virtual target user portrait further includes: S410: In response to a toilet request from the user terminal, query whether there is a target toilet that matches the local user portrait based on the local user portrait.

[0068] Specifically, the user terminal first receives a toilet request from the user, which is usually triggered through the user operation interface. The user terminal loads the local user portrait generated based on the target user portrait and the virtual target user portrait. This portrait contains the user's toilet preferences, habits, and possible sensitive needs. The user terminal queries whether there is a target toilet that matches these conditions based on the information in the local user portrait, such as toilet type, location, facilities, etc. The query can be based on the user terminal's built-in database or through the network request data user platform to provide toilet information services. The local user portrait is a collection of the target user portrait and the virtual target user portrait. By directly matching with the local user portrait, the match is more accurate and there are more preconditions that can be matched; when the target toilet cannot be found through the local user portrait, by lowering the requirements, the target user portrait can be used to filter out toilets that meet some of the requirements, and then the virtual target user portrait can be used to filter out toilets that meet the target user's requirements as much as possible.

[0069] S420: If a target toilet matching the local user portrait is found, the target toilet is pushed to the user terminal.

[0070] Specifically, if the query result shows that there is a target toilet that matches the local user profile, the push process begins. The user end pushes detailed information about the target toilet (such as location, facilities, reviews, etc.) to the user, usually through an interface display or voice prompt.

[0071] S430: If no target toilet matching the local user portrait is found, obtaining at least one candidate toilet according to the target user portrait.

[0072] Specifically, if the query result shows that there is no target toilet that completely matches the local user profile, the user terminal enters the process of obtaining candidate toilets.

[0073] Optionally, the step of obtaining at least one candidate toilet according to the target user profile includes: S4301. Obtain at least one alternative toilet according to the target user profile.

[0074] Specifically, the user terminal first parses the toilet-related part in the target user profile, that is, the target user profile, which includes the user's toilet preferences (such as toilet type, facility requirements, etc.), location information, and possible time requirements, etc. According to the information in the target user profile, the user terminal queries the database or requests the data user platform to obtain at least one alternative toilet that meets the basic conditions. These alternative toilets may meet the user's needs in terms of geographical location, type, or facilities.

[0075] Optionally, the step of obtaining at least one alternative toilet according to the target user profile includes: S43011. Obtain at least one preselected toilet according to the required toilet type of the target user represented by the target user profile.

[0076] Specifically, the user terminal first parses the target user profile to clarify the required toilet type of the target user (such as squat toilet, sitting toilet, public toilet, barrier-free toilet, family toilet, whether there is a mother and baby room, etc.). According to the required toilet type, the user terminal queries the database or requests the data user platform to obtain at least one preselected toilet that meets this type. These preselected toilets meet the user's needs in terms of type.

[0077] S43012. Evaluate the priority of the at least one preselected toilet according to the location information of the at least one preselected toilet.

[0078] Specifically, for each preselected toilet, the user terminal collects its location information, including specific geographical coordinates, the distance from the user's current location, etc. The user terminal uses a preset algorithm or rule to calculate the priority of each preselected toilet according to the location information. The priority can be based on distance (such as the closer the toilet is to the user, the higher the priority), traffic convenience (such as the easier it is to reach the toilet, the higher the priority), or other relevant factors.

[0079] S43013. Sort the at least one preselected toilet from high to low according to the priority to obtain a sorting result.

[0080] Specifically, the user terminal sorts each preselected toilet from high to low according to the calculated priority to generate a sorting result.

[0081] S43014. Mark the preselected toilets with a preset proportion before sorting as alternative toilets according to the sorting result.

[0082] Specifically, the user terminal determines a preset ratio (such as the top 20%, the top 5, etc.) according to the actual needs or system settings. Based on the sorting result and the preset ratio, the user terminal marks the preselected toilets with higher rankings as alternative toilets. These alternative toilets better meet the user's needs in terms of type, location, and priority.

[0083] By clearly defining the required toilet type and directly querying the preselected toilets, unnecessary search and screening time are reduced, and the efficiency of toilet finding is improved. By evaluating the priority and sorting the preselected toilets, the user terminal can recommend toilets that are more in line with the user's location preferences and needs to the user, optimizing the toilet selection. The introduction of the preset ratio makes the number of alternative toilets neither too large nor too small, providing enough selection space while avoiding information overload and enhancing the user experience. The calculation of the priority can consider various factors (such as distance, traffic, etc.), which helps to more reasonably allocate and utilize toilet resources.

[0084] S4302. Evaluate the safety index score of the at least one alternative toilet according to the real-time monitoring, user feedback, and historical maintenance records of the at least one alternative toilet.

[0085] Specifically, for each alternative toilet, the user terminal collects its real-time monitoring data (such as camera monitoring, environmental sensor data, etc.), user feedback (such as cleanliness evaluation, facility integrity, etc.), and historical maintenance records. The user terminal calculates the safety index score of each alternative toilet using a preset algorithm or model based on the collected data. This score reflects the safety, cleanliness, and reliability of the toilet facilities.

[0086] S4303. Evaluate the vacancy situation score of the at least one alternative toilet according to the usage status, user reservation information, and historical usage data of the at least one alternative toilet.

[0087] Specifically, the user terminal collects the current usage status of each alternative toilet (such as whether it is idle, whether it is in use, etc.), user reservation information (such as reservation situation in the future period), and historical usage data (such as peak hours, off-peak hours, etc.). Based on the collected data, the user terminal calculates the vacancy situation score of each alternative toilet. This score reflects the availability of the toilet and the length of the user's waiting time.

[0088] S4304. Obtain at least one candidate toilet according to the safety index score and the vacancy situation score.

[0089] Specifically, the user terminal performs a weighted combination of the safety index score and the vacancy situation score of each alternative toilet to obtain the comprehensive score of each toilet. Based on the comprehensive score, the user terminal screens out at least one candidate toilet with a higher score. These candidate toilets better meet the user's needs in terms of safety and availability.

[0090] By comprehensively considering the safety index and the vacancy situation, the user side can recommend toilets that better meet the user's needs and preferences to the user, improving the quality and satisfaction of toilet selection. The introduction of real-time monitoring, user feedback, and historical maintenance records increases the transparency and credibility of toilet information and enhances the user's trust in the system. By evaluating the vacancy situation, the system can more effectively allocate toilet resources, avoiding long waiting times for users or waste of toilet resources. The comprehensive evaluation mechanism takes into account multiple demand dimensions of users, making the recommendation results closer to the actual needs of users and improving the user experience.

[0091] S440. Obtain the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile.

[0092] Specifically, the step of obtaining the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile includes: S4401. Obtain a first comprehensive score of the candidate toilet according to at least one of the toilet time demand, toilet duration demand, toilet location demand, and toilet type demand of the target user represented by the virtual target user profile.

[0093] Specifically, the user side first analyzes the virtual target user profile to clarify the toilet time demand (such as the desired toilet time period), toilet duration demand (such as the desired toilet duration), toilet location demand (such as the desired toilet location range), toilet type demand (such as the desired toilet type), etc. of the target user. For each candidate toilet, the user side evaluates the degree to which it meets the above-mentioned needs of the target user and gives a corresponding score. For example, a score can be given according to the proximity of the toilet location to the target user's desired location, the matching degree of the toilet type to the target user's desired type, etc. The user side weights and synthesizes the satisfaction scores of each candidate toilet to obtain a first comprehensive score for each candidate toilet. This score reflects the basic degree to which the candidate toilet meets the toilet needs of the target user.

[0094] S4402. According to the candidate toilet, obtain the location information, current traffic flow, maintenance information, opening information, and special events of the candidate toilet, and evaluate a second comprehensive score of the candidate toilet.

[0095] Specifically, the user terminal collects the location information of each candidate toilet (such as specific address, traffic convenience), current pedestrian flow (such as real-time number, congestion level), maintenance information (such as whether it is under maintenance, maintenance history), opening information (such as opening hours, whether it is open), and special events (such as large-scale activities / contests in the vicinity, event arrangements), etc. According to the collected information, the user terminal evaluates the real-time status of each candidate toilet and gives corresponding scores. For example, the congestion level can be judged based on the pedestrian flow, the facility integrity can be judged based on the maintenance information, and the availability can be judged based on the opening information and special events. The user terminal performs weighted synthesis on the status scores of each candidate toilet to obtain the second comprehensive score of each candidate toilet. This score reflects the real-time status and availability of the candidate toilet.

[0096] S4403. Obtain the matching degree between the virtual target user profile and the candidate toilet according to the first comprehensive score and the second comprehensive score.

[0097] Specifically, the user terminal performs weighted synthesis on the first comprehensive score and the second comprehensive score of each candidate toilet to obtain the matching degree between each candidate toilet and the virtual target user profile. This matching degree comprehensively considers the basic degree to which the candidate toilet meets the needs of the target user and the real-time status. The user terminal outputs the calculated matching degree to the subsequent steps for screening and recommending candidate toilets.

[0098] By comprehensively considering the toilet use needs of the target user and the real-time status of the candidate toilet, it is possible to more accurately evaluate the matching degree between the candidate toilet and the target user, improving the accuracy of the matching. An increase in the matching degree means that users can more easily find toilets that meet their needs and preferences, thereby enhancing user satisfaction and experience. By evaluating the real-time status of the candidate toilet, the system can more effectively allocate toilet resources, avoiding users wasting time due to unavailable or overly crowded toilets. The collection and evaluation of real-time information help toilet managers promptly understand the status and problems of the toilets, enabling timely maintenance and improvement, and improving the management level and user satisfaction of the toilets.

[0099] S450. Obtain candidate toilets with a matching degree greater than the target threshold according to the matching degree, and mark them as target toilets.

[0100] Specifically, the user terminal sets a target threshold and screens out candidate toilets with a matching degree greater than this threshold. The screened candidate toilets are marked as target toilets. Although these toilets may not be a perfect match, while meeting the basic needs of users, they also better consider the sensitive needs or special preferences of users. The user terminal pushes the detailed information of the toilets marked as target toilets to the users for them to select and make decisions.

[0101] For easy understanding, the following is an example for illustration: 1. User Registration and Virtual User Creation: S10: When the user first uses the APP, the user data platform responds to his creation request, creates a real target user account for him, and simultaneously creates a corresponding virtual target user account. The user information (such as username, password, etc.) of these two accounts is securely sent to the user's mobile phone.

[0102] 2. Data Collection and Classification: S20: When the user uses a public toilet, the data collection end (possibly intelligent devices in the toilet) will collect his toilet use data, such as entry time, departure time, type of toilet used, toilet device information, music playing information, consumable usage, atmosphere preference, health detection, etc.

[0103] S201 - S203: These data are divided into general data and sensitive data. For example, music playing information, consumable usage, atmosphere preference, etc. may be regarded as general data, while specific toilet use habits (such as whether special facilities are used), entry time, departure time, health detection data, etc. may be regarded as sensitive data. These data are evaluated and classified according to privacy sensitivity, data value, and legal risks.

[0104] 3. Data Encryption and Sending: S210 - S220: After the general data is associated with the user's real user information, it is encrypted into the first ciphertext using the platform public key and sent to the user data platform. The sensitive data is associated with the virtual user information and also encrypted into the second ciphertext before being sent.

[0105] 4. User Portrait Generation: S30: The user data platform generates two user portraits based on the received data: one is a real user portrait (user) based on general data, and the other is a virtual user portrait based on sensitive data.

[0106] 5. User Side Obtains the Portrait: S40: The user requests and obtains these two user portraits from the user data platform through the mobile APP according to preset rules. These portraits are transmitted in an encrypted manner and decrypted on the user's mobile phone.

[0107] S401 - S403: Specifically, the platform encrypts the portrait using the virtual user public key, and the user decrypts it with the virtual user private key on the mobile phone.

[0108] 6. Toilet Recommendation and Selection: S410 - S420: When the user needs to find a toilet, the APP will recommend the most suitable toilet according to his local user portrait (combining real and virtual portraits). If a perfect match is found, it will be directly pushed.

[0109] S430: If there is no exact match, the APP will search for candidate toilets based on the user's target user profile (mainly general data).

[0110] S4301: First, preselect toilets are filtered according to the types of toilets that the user usually selects.

[0111] S43011 - S43014: Then, considering factors such as location, priority, etc., the preselected toilets are sorted and filtered to obtain alternative toilets.

[0112] S4302 - S4304: Next, the safety index and vacancy situation of these alternative toilets are evaluated to finally determine the list of candidate toilets.

[0113] S440: For the candidate toilets, the APP will further evaluate the matching degree according to the user's virtual user profile (sensitive data), considering factors such as toilet use time, duration, location preference, etc.

[0114] S4401 - S4403: By comprehensively considering the user's needs and the actual situation of the toilets, the matching degree of each candidate toilet is calculated.

[0115] S450: Finally, select the toilets with a matching degree exceeding the target threshold as the finally recommended target toilets and display them to the user for the user to choose.

[0116] Embodiment 3 Based on Embodiment 1, this embodiment provides a privacy data processing system for intelligent toilets, based on a data acquisition terminal, a user terminal, and a user data platform, including: An information creation module, which is configured to respond to a target user creation request by the user data platform, establish a target user and a virtual target user, and send the user information of the target user and the user information of the virtual target user to the user terminal; A data sending module, which is configured to collect the toilet use data of the target user by the data acquisition terminal, obtain general data and sensitive data according to the toilet use data, associate the general data with the user information of the target user and then send it to the user data platform; associate the sensitive data with the user information of the virtual target user and then send it to the user data platform; A data processing module, which is configured to generate a target user profile by the user data platform according to the user information and general data of the target user, and generate a virtual target user profile according to the user information and privacy data of the virtual target user; A profile generation module, which is configured to obtain the target user profile and the virtual target user profile from the user data platform by the user terminal according to preset rules, and generate a local user profile according to the target user profile and the virtual target user profile.

[0117] Example 4 Based on the same inventive concept as the foregoing embodiments, this embodiment provides a computer device, which includes a memory and a processor. A computer program is stored in the memory, and the processor executes the computer program to implement the above method.

[0118] Example 5 Based on the same inventive concept as the foregoing embodiments, this embodiment provides a computer-readable storage medium. A computer program is stored on the computer-readable storage medium, and the processor executes the computer program to implement the above method.

[0119] The foregoing are only the preferred embodiments of the present application, and do not limit the patent scope of the present application. Any equivalent structure or equivalent process transformation made by using the content of the specification and drawings of the present application, or directly or indirectly applied in other related technical fields, shall be equally included in the patent protection scope of the present application.

Claims

1. A privacy data processing method for a smart toilet, characterized in that: Based on data collection end, user end and user data platform, including: The user data platform establishes a target user and a virtual target user in response to a target user creation request, and sends user information of the target user and user information of the virtual target user to a user terminal; The data collection end collects the toilet data of the target user, obtains general data and sensitive data according to the toilet data, associates the general data with the user information of the target user and sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and sends it to the user data platform; The user data platform generates a target user portrait based on the user information and general data of the target user, and generates a virtual target user portrait based on the user information and private data of the virtual target user; The user terminal obtains the target user portrait and the virtual target user portrait from the user data platform according to preset rules, and generates a local user portrait according to the target user portrait and the virtual target user portrait.

2. The privacy data processing method for a smart toilet according to claim 1, characterized in that: The data collection terminal collects toilet data of the target user, and the steps of obtaining general data and sensitive data according to the toilet data include: According to the toilet data of the target user, obtain the privacy sensitivity, data value and legal risk of the toilet data; Assessing the importance score of the toilet data based on the privacy sensitivity, data value and legal risk; The data with importance scores less than a preset threshold in the toilet data are marked as general data, and the data with importance scores greater than or equal to the preset threshold are marked as sensitive data.

3. The privacy data processing method for a smart toilet according to claim 1, characterized in that: said associating the general data with the user information of the target user and then sending it to the user data platform; The step of associating the sensitive data with the user information of the virtual target user and then sending the data to the user data platform comprises: Associating the general data with the user information of the target user, encrypting the data using a platform public key to obtain a first ciphertext, and sending the first ciphertext to the user data platform; Associating the sensitive data with the information of the virtual target user, encrypting the data using the platform public key to obtain a second ciphertext, and sending the second ciphertext to the user data platform; The user data platform stores a platform private key corresponding to the platform public key.

4. The privacy data processing method for a smart toilet according to claim 1, characterized in that: The step of the user terminal acquiring the target user portrait and the virtual target user portrait from the data user platform according to a preset rule includes: The user data platform encrypts the target user portrait through the virtual user public key to obtain the third ciphertext, and encrypts the virtual target user portrait to obtain the fourth ciphertext; The user data platform sends the third ciphertext and the fourth ciphertext to the user terminal; The user end decrypts the third ciphertext through the virtual user private key to obtain the target user portrait, and decrypts the fourth ciphertext to obtain the virtual target user portrait.

5. The privacy data processing method for a smart toilet according to claim 1, characterized in that: The step of the user terminal acquiring the target user portrait and the virtual target user portrait from the data user platform according to a preset rule, and generating a local user portrait according to the target user portrait and the virtual target user portrait, further includes: In response to a toilet request from a user terminal, querying whether there is a target toilet matching the local user portrait according to the local user portrait; If yes, the target toilet is pushed to the user terminal; If not, obtaining at least one candidate toilet according to the target user portrait; According to the virtual target user portrait, obtaining a matching degree between the virtual target user portrait and the at least one candidate toilet; According to the matching degree, candidate toilets with matching degrees greater than a target threshold are obtained and marked as target toilets.

6. The privacy data processing method for a smart toilet according to claim 5, characterized in that: The step of obtaining at least one candidate toilet according to the target user portrait includes: According to the target user portrait, obtaining at least one alternative toilet; Evaluating a safety index score of the at least one candidate toilet based on real-time monitoring, user feedback, and historical maintenance records of the at least one candidate toilet; Evaluate the vacancy score of the at least one candidate toilet according to the usage status, user reservation information and historical usage data of the at least one candidate toilet; At least one candidate toilet is obtained according to the safety index score and the vacancy score.

7. The privacy data processing method for a smart toilet according to claim 6, characterized in that: The step of obtaining at least one alternative toilet according to the target user portrait includes: Acquire at least one pre-selected toilet according to the toilet type required by the target user represented by the target user portrait; evaluating the priority of the at least one pre-selected toilet according to the location information of the at least one pre-selected toilet; Sorting the at least one pre-selected toilet from high to low priority to obtain a sorting result; According to the sorting result, pre-selected toilets with a preset proportion before sorting are marked as candidate toilets.

8. The privacy data processing method for a smart toilet according to claim 5, characterized in that: The step of obtaining the matching degree between the virtual target user portrait and the at least one candidate toilet according to the virtual target user portrait comprises: Obtaining a first comprehensive score of the candidate toilets according to at least one of the toilet time requirement, toilet duration requirement, toilet location requirement, and toilet type requirement of the target user represented by the virtual target user portrait; According to the candidate toilets, obtaining location information, current passenger flow, maintenance information, opening information, and special events of the candidate toilets, and evaluating a second comprehensive score of the candidate toilets; The matching degree between the virtual target user portrait and the candidate toilets is obtained according to the first comprehensive score and the second comprehensive score.

9. A privacy data processing system for smart toilets, characterized in that: Based on data collection end, user end and user data platform, including: An information creation module, which is configured so that the user data platform responds to a target user creation request, establishes a target user and a virtual target user, and sends user information of the target user and user information of the virtual target user to a user terminal; A data sending module is configured to collect toilet data of a target user at a data collection end, obtain general data and sensitive data according to the toilet data, associate the general data with the user information of the target user and then send it to the user data platform; associate the sensitive data with the user information of the virtual target user and then send it to the user data platform; A data processing module, configured so that the user data platform generates a target user portrait according to the user information and general data of the target user, and generates a virtual target user portrait according to the user information and privacy data of the virtual target user; The portrait generation module is configured so that the user end obtains the target user portrait and the virtual target user portrait from the user data platform according to preset rules, and generates a local user portrait according to the target user portrait and the virtual target user portrait.

10. A computer device, characterized in that: The computer device comprises a memory and a processor, wherein the memory stores a computer program, and the processor executes the computer program to implement the method according to any one of claims 1 to 8.

Citation Information

Patent Citations

  • User data encryption system and method

    CN116743359A

  • Target portrait digitization method and device in combination with virtual and real space knowledge

    CN119807698A

  • Personalized customization pushing system and method for user portrait technology

    CN119835323A

  • Big data-based Beidou navigation location service recommendation system and method

    CN119884201A

  • Key update using comparison of transformed feature sets for extended reality privacy

    US20240303369A1