Privacy Data Processing Method, System and Device for Smart Toilets

By establishing user information of target users and virtual target users in smart toilets, collecting and classifying toilet data, and generating target and virtual user portraits, the problem of protecting user privacy when providing personalized services is solved, and the effective processing of privacy data and accurate generation of user portraits is achieved.

CN120046197BActive Publication Date: 2025-07-11ZHONGYUNHUI (CHENGDU) IOT TECH CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202510535770.4
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2025-04-27
Publication Date
2025-07-11
Estimated Expiration
2045-04-27

AI Technical Summary

Technical Problem

How to effectively utilize user toilet data to provide personalized services while fully protecting user privacy while effectively protecting user privacy.

Method used

By establishing user information of target users and virtual target users, collecting and classifying toilet data into general data and sensitive data, and being associated with the information of target users and virtual target users respectively, and using encryption technology to process these data, generate portraits of target users and virtual target users, and finally generate local user portraits on the user side.

Benefits of technology

Effectively isolate user privacy information from publicly accessible data, reduce the risk of privacy leakage, improve the flexibility and efficiency of data processing, and provide more accurate and privacy-protected personalized services.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120046197B_ABST
    Figure CN120046197B_ABST
Patent Text Reader

Abstract

The present application discloses a privacy data processing method, system and device for a smart toilet, relating to the technical field of privacy data processing. The privacy data processing method for a smart toilet of the present application includes: in response to a target user creation request, establishing a target user and a virtual target user; collecting general data and sensitive data of the target user, associating the general data with the user information of the target user and sending it to the user data platform; associating the sensitive data with the user information of the virtual target user and sending it to the user data platform; generating a target user profile according to the user information and general data of the target user, and generating a virtual target user profile according to the user information and privacy data of the virtual target user; generating a local user profile according to the target user profile and the virtual target user profile. It can effectively utilize user toilet data to provide personalized services and fully protect the privacy data of users in the smart toilet.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the technical field of privacy data processing, and particularly to a privacy data processing method, system and device for smart toilets. Background Art

[0002] In the wave of smart city construction, smart toilets, as an important part of the urban public service system, are attracting increasing attention. Smart toilets aim to provide a more convenient, comfortable and hygienic toilet experience by integrating modern information technologies such as the Internet of Things, big data analysis, and artificial intelligence. However, with the continuous expansion of the functions of smart toilets, how to effectively process and protect users' privacy data has become an urgent problem to be solved.

[0003] Therefore, there is an urgent need for a privacy data processing method for smart toilets that can not only effectively utilize users' toilet data to provide personalized services but also fully protect users' privacy. Summary of the Invention

[0004] The main purpose of this application is to provide a privacy data processing method, system and device for smart toilets, aiming to propose a privacy data processing method for smart toilets that can not only effectively utilize users' toilet data to provide personalized services but also fully protect users' privacy.

[0005] To achieve the above object, this application provides a privacy data processing method for smart toilets, based on a data collection end, a user end and a user data platform, including:

[0006] The user data platform responds to a target user creation request, creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user end;

[0007] The data collection end collects the toilet data of the target user, obtains general data and sensitive data according to the toilet data, associates the general data with the user information of the target user and sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and sends it to the user data platform;

[0008] The user data platform generates a target user profile according to the user information and general data of the target user, and generates a virtual target user profile according to the user information and privacy data of the virtual target user;

[0009] The user end obtains the target user profile and the virtual target user profile from the user data platform according to preset rules, and generates a local user profile according to the target user profile and the virtual target user profile.

[0010] Optionally, the step of the data acquisition end collecting the toilet use data of the target user and obtaining general data and sensitive data according to the toilet use data includes:

[0011] Obtain the privacy sensitivity, data value, and legal risk of the toilet use data according to the toilet use data of the target user;

[0012] Evaluate the importance score of the toilet use data according to the privacy sensitivity, data value, and legal risk;

[0013] Mark the data in the toilet use data with an importance score less than the preset threshold as general data, and mark the data with an importance score greater than or equal to the preset threshold as sensitive data.

[0014] Optionally, the step of associating the general data with the user information of the target user and sending it to the user data platform; associating the sensitive data with the user information of the virtual target user and sending it to the user data platform includes:

[0015] Associate the general data with the user information of the target user, encrypt it with the platform public key to obtain the first ciphertext, and send the first ciphertext to the user data platform;

[0016] Associate the sensitive data with the information of the virtual target user, encrypt it with the platform public key to obtain the second ciphertext, and send the second ciphertext to the user data platform;

[0017] Wherein, the user data platform stores the platform private key corresponding to the platform public key.

[0018] Optionally, the step of the user end obtaining the target user portrait and the virtual target user portrait from the data user platform according to the preset rules includes:

[0019] The user data platform encrypts the target user portrait with the virtual user public key to obtain the third ciphertext, and encrypts the virtual target user portrait to obtain the fourth ciphertext;

[0020] The user data platform sends the third ciphertext and the fourth ciphertext to the user end;

[0021] The user end decrypts the third ciphertext with the virtual user private key to obtain the target user portrait, and decrypts the fourth ciphertext to obtain the virtual target user portrait.

[0022] Optionally, the step of the user end obtaining the target user portrait and the virtual target user portrait from the data user platform according to the preset rules and generating a local user portrait according to the target user portrait and the virtual target user portrait further includes:

[0023] In response to a toilet use request from the user terminal, query whether there is a target toilet that matches the local user profile according to the local user profile;

[0024] If so, push the target toilet to the user terminal;

[0025] If not, obtain at least one candidate toilet according to the target user profile;

[0026] According to the virtual target user profile, obtain the matching degree between the virtual target user profile and the at least one candidate toilet;

[0027] According to the matching degree, obtain candidate toilets with a matching degree greater than the target threshold and mark them as target toilets.

[0028] Optionally, the step of obtaining at least one candidate toilet according to the target user profile includes:

[0029] Obtain at least one alternative toilet according to the target user profile;

[0030] Evaluate the safety index score of the at least one alternative toilet according to the real-time monitoring, user feedback and historical maintenance records of the at least one alternative toilet;

[0031] Evaluate the vacancy situation score of the at least one alternative toilet according to the usage status, user reservation information and historical usage data of the at least one alternative toilet;

[0032] Obtain at least one candidate toilet according to the safety index score and the vacancy situation score.

[0033] Optionally, the step of obtaining at least one alternative toilet according to the target user profile includes:

[0034] Obtain at least one preselected toilet according to the required toilet type of the target user represented by the target user profile;

[0035] Evaluate the priority of the at least one preselected toilet according to the location information of the at least one preselected toilet;

[0036] Sort the at least one preselected toilet in descending order of priority to obtain a sorting result;

[0037] According to the sorting result, mark the preselected toilets with a preset ratio before sorting as alternative toilets.

[0038] Optionally, the step of obtaining the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile includes:

[0039] Obtain a first comprehensive score of a candidate toilet according to at least one of the toilet time requirement, toilet duration requirement, toilet location requirement, and toilet type requirement of the target user characterized by the virtual target user profile;

[0040] According to the candidate toilet, obtain the location information, current pedestrian flow, maintenance information, opening information, and special events of the candidate toilet, and evaluate the second comprehensive score of the candidate toilet;

[0041] According to the first comprehensive score and the second comprehensive score, obtain the matching degree between the virtual target user profile and the candidate toilet.

[0042] In a second aspect, the present application provides a privacy data processing system for a smart toilet, based on a data collection end, a user end, and a user data platform, including:

[0043] An information creation module, which is configured to, in response to a target user creation request by the user data platform, establish a target user and a virtual target user, and send the user information of the target user and the user information of the virtual target user to the user end;

[0044] A data sending module, which is configured to collect toilet data of a target user by the data collection end, obtain general data and sensitive data according to the toilet data, associate the general data with the user information of the target user and send it to the user data platform; associate the sensitive data with the user information of the virtual target user and send it to the user data platform;

[0045] A data processing module, which is configured to generate a target user profile by the user data platform according to the user information and general data of the target user, and generate a virtual target user profile according to the user information and privacy data of the virtual target user;

[0046] A profile generation module, which is configured to obtain the target user profile and the virtual target user profile from the user data platform by the user end according to preset rules, and generate a local user profile according to the target user profile and the virtual target user profile.

[0047] In a third aspect, the present application provides a computer device, which includes a memory and a processor, and a computer program is stored in the memory, and the processor executes the computer program to implement the method as described above.

[0048] The beneficial effects that the present application can achieve:

[0049] A privacy data processing method, system and device for smart toilets proposed in an embodiment of the present application. By introducing virtual target users, sensitive data is associated with virtual user information rather than directly with the real identity information of target users, effectively isolating users' privacy information from publicly accessible data, reducing the risk of user privacy leakage, and enhancing the protection of user privacy. By classifying data into general data and sensitive data and associating them with target users and virtual target users respectively, it not only facilitates the organization and management of data, but also improves the flexibility and efficiency of data processing, enabling more precise and effective processing strategies to be adopted for different types of data. The user data platform generates a target user profile based on the user information and general data of the target user, and at the same time generates a virtual target user profile based on the user information and sensitive data of the virtual target user. The user terminal can obtain and integrate these target user profiles and virtual target user profiles as needed to generate a more accurate and privacy-protected local user profile, laying a foundation for providing better services. Brief Description of the Drawings

[0050] Figure 1 It is a schematic flowchart of the privacy data processing method for smart toilets in an embodiment of the present application.

[0051] The implementation, functional features and advantages of the present application will be further described in conjunction with the embodiments with reference to the drawings. Detailed Embodiments

[0052] Next, the technical solutions in the embodiments of the present invention will be clearly and completely described in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments are only a part of the embodiments of the present invention, rather than all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those of ordinary skill in the art without creative efforts shall fall within the protection scope of the present invention.

[0053] It should be noted that all directional indications (such as up, down, left, right, front, back...) in the embodiments of the present invention are only used to explain the relative position relationship and movement conditions between components in a specific posture (as shown in the drawings). If the specific posture changes, the directional indications will also change accordingly.

[0054] In the present invention, unless otherwise clearly specified and limited, terms such as "connection" and "fixation" should be understood in a broad sense. For example, "fixation" can be a fixed connection, a detachable connection, or integrated; it can be a mechanical connection or an electrical connection; it can be directly connected or indirectly connected through an intermediate medium, and it can be the communication inside two components or the interaction relationship between two components, unless otherwise clearly limited. For those of ordinary skill in the art, the specific meanings of the above terms in the present invention can be understood according to specific situations.

[0055] In addition, if the embodiments of the present invention involve descriptions such as "first" and "second", the descriptions of "first", "second", etc. are only for descriptive purposes and should not be construed as indicating or implying their relative importance or implicitly specifying the quantity of the indicated technical features. Thus, the features defined with "first" and "second" may explicitly or implicitly include at least one of such features. In addition, the meaning of "and / or" appearing throughout the text includes three parallel scenarios. Taking "A and / or B" as an example, it includes Scenario A, or Scenario B, or the scenario where both A and B are satisfied simultaneously. In addition, the technical solutions between various embodiments can be combined with each other, but it must be based on the ability of those of ordinary skill in the art to implement. When the combination of technical solutions results in contradictions or cannot be implemented, it should be considered that such a combination of technical solutions does not exist and is not within the scope of protection required by the present invention.

[0056] Embodiment 1

[0057] Refer to Figure 1 , the first embodiment of the present application provides a method for processing privacy data for a smart toilet, based on a data collection end, a user end, and a user data platform, including:

[0058] S10. In response to a target user creation request, the user data platform creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user end.

[0059] Specifically, the user data platform receives a target user creation request, which contains user information such as name, gender, age, mobile phone number, etc. The user data platform verifies the validity of the request. For example, through an authentication mechanism, it ensures that the request is initiated by a legitimate user. After the verification passes, the user data platform creates a unique identifier for the target user and establishes a user information profile for the target user. Moreover, the user data platform generates a virtual target user corresponding to the target user, and this virtual target user is used to associate sensitive data to protect the privacy of the target user. The user data platform sends the user information of the target user and the user information of the virtual target user to the user end for subsequent operations by the user end. After the user information of the virtual target user is sent to the user end, a destruction operation is performed on the original data.

[0060] S20. The data collection end collects the toilet use data of the target user, obtains general data and sensitive data according to the toilet use data, associates the general data with the user information of the target user and sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and sends it to the user data platform.

[0061] Specifically, the data collection terminal collects the toilet use data of the target user through various sensors installed in the command toilet, such as infrared sensors, cameras, sound sensors, etc. The data collection terminal preliminarily processes the collected toilet use data to distinguish general data and sensitive data. General data includes, for example: device data, music data, environmental data, etc., and toilet type; sensitive data includes, for example: toilet use time, toilet use duration, physiological health data, toilet location or number. The above classification is not fixed and may change for different groups. The data collection terminal associates the general data with the user information of the target user to form the associated general data. The data collection terminal associates the sensitive data with the user information of the virtual target user to form the associated sensitive data. The data collection terminal sends the associated general data and the associated sensitive data to the user data platform respectively.

[0062] S30. The user data platform generates a target user profile based on the user information and general data of the target user, and generates a virtual target user profile based on the user information and privacy data of the virtual target user.

[0063] Specifically, the user data platform generates a target user profile based on the user information and general data of the target user. The target user profile reflects non-privacy information such as the usage habits and preferences of the target user. The user data platform generates a virtual target user profile based on the user information and sensitive data of the virtual target user. The virtual target user profile contains privacy information related to the target user, but protects the true identity of the target user through the association of this information with the virtual user.

[0064] S40. The user terminal obtains the target user profile and the virtual target user profile from the user data platform according to preset rules, and generates a local user profile based on the target user profile and the virtual target user profile.

[0065] Specifically, the user terminal requests the target user profile and the virtual target user profile from the user data platform according to preset rules (such as obtaining at regular intervals, obtaining triggered by the user, etc.). The user data platform verifies the request of the user terminal to ensure that the request is initiated by a legitimate user terminal. After verification, the user data platform sends the target user profile and the virtual target user profile to the user terminal. The user terminal receives the target user profile and the virtual target user profile, and combines or displays these profiles as needed. The user terminal can also generate a local user profile based on the target user profile and the virtual target user profile. This local user profile may combine non-privacy information and some privacy information (after desensitization) for providing more personalized services or analysis.

[0066] To facilitate the understanding of this embodiment, the following is an example for illustration:

[0067] Target user profile:

[0068] A target user profile is a user model constructed based on the general data of the target user, which reflects the non-private information and usage habits of the user. The target user profile may contain the following specific contents:

[0069] Basic user information: The user's name (or nickname), gender, age range (such as 20 - 30 years old), and the mobile phone number used during registration (after desensitization, the complete number is not displayed).

[0070] Usage habits: The type of toilet the user usually chooses (such as ordinary public toilets, accessible toilets, whether there is a mother and baby room, sit-down or squat toilets), and the time period when he tends to use the toilet (such as 7 - 8 am, 9 - 10 pm).

[0071] Preference settings: Whether the user prefers toilets with music and what requirements he has for the cleanliness of the toilet (such as hoping for automatic flushing after each use).

[0072] Device interaction: The frequency and manner in which the user uses the devices in the toilet (such as automatic paper dispensers, hand sanitizer dispensers).

[0073] This information helps the system understand the user's basic needs and preferences in order to provide him with a more personalized toilet usage experience.

[0074] Virtual target user profile:

[0075] A virtual target user profile is a user model constructed based on the sensitive data of the target user, which is associated with a virtual user identity to protect the privacy of the target user. The virtual target user profile may contain the following specific contents:

[0076] Virtual user ID: A unique identifier unrelated to the user's real identity, used to associate sensitive data.

[0077] Toileting behavior data: The specific time of each toilet use by the user (such as a timestamp accurate to the minute), and the duration of toilet use (such as 5 minutes, 10 minutes).

[0078] Physiological health data: If the user chooses to share, it may include certain physiological indicators of his (such as blood pressure, heart rate, which may be used to determine whether emergency medical assistance is needed in a specific situation).

[0079] Location information: The specific location where the user uses the toilet (such as floor, room number, or latitude and longitude coordinates), but this information will be encrypted during storage and transmission.

[0080] This information is strictly protected and is only used to provide more refined services when necessary, while ensuring that the user's privacy is respected.

[0081] Local User Portrait:

[0082] The local user portrait is a comprehensive user model generated by the user side (such as the user's mobile APP) based on the target user portrait and virtual target user portrait obtained from the user data platform, combined with the user-specific information stored locally. The local user portrait may include the following specific contents:

[0083] Comprehensive User Information: Integrate the information of the target user portrait and virtual target user portrait of the user on the user data platform to form a comprehensive user view.

[0084] Current Status: The current location information of the user (obtained through mobile phone GPS, etc.), whether there is an urgent need to use the toilet (such as manually set by the user or predicted by the system based on historical data).

[0085] Personalized Settings: The personalized preferences set by the user in the APP, such as whether to receive real-time idle status notifications of the toilet, whether to hope that the system provides specific suggestions based on his health data.

[0086] Historical Records: The records of the user's past use of the toilet, including the type, time, location, etc. of the toilets he has used. These information can help the system better understand the user's usage habits and optimize recommendations.

[0087] The local user portrait provides a comprehensive user view for the APP, enabling it to provide personalized and privacy-protected toilet recommendations and services according to the user's current status, historical records, and personalized preferences.

[0088] Embodiment 2

[0089] Based on Embodiment 1, this embodiment provides a privacy data processing method for smart toilets, based on a data collection end, a user end, and a user data platform, including:

[0090] S10. In response to a target user creation request, the user data platform creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user end.

[0091] S20. The data collection end collects the toilet use data of the target user, obtains general data and sensitive data according to the toilet use data, associates the general data with the user information of the target user and then sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and then sends it to the user data platform.

[0092] Optionally, the step of the data collection end collecting the toilet use data of the target user and obtaining general data and sensitive data according to the toilet use data includes:

[0093] S201. Obtain the privacy sensitivity, data value, and legal risks of the toilet use data according to the toilet use data of the target user.

[0094] Specifically, the data collection end first analyzes each element in the toilet use data, such as toilet use time, toilet use duration, physiological health indicators, etc., and evaluates whether these data items involve user personal privacy and the possible consequences of privacy leakage. For data that may directly or indirectly reveal the user's personal identity, health status, or behavior habits, a higher privacy sensitivity score is assigned. Then, the data collection end evaluates the potential value of these data items for aspects such as intelligent toilet operation, user service improvement, and health management. For data that can help optimize toilet use efficiency, enhance user experience, and prevent health problems, a higher data value score is assigned. The data collection end also needs to consider the legal risks involved in collecting and processing these data, including whether it complies with data protection regulations and whether it may infringe on user rights and interests. For data items with higher legal risks, even if their value is high, they should be handled with caution and, if necessary, the explicit consent of the user should be obtained.

[0095] S202. Evaluate the importance score of the toilet use data according to the privacy sensitivity, data value, and legal risks.

[0096] Specifically, based on the evaluation results of privacy sensitivity, data value, and legal risks, the data collection end calculates a comprehensive importance score for each piece of toilet use data. This score can be a weighted average, where the weights are adjusted according to specific application scenarios and regulatory requirements.

[0097] S203. Mark the data in the toilet use data with an importance score less than the preset threshold as general data, and the data with an importance score greater than or equal to the preset threshold as sensitive data.

[0098] Specifically, the data collection end presets one or more thresholds for the importance score to distinguish general data and sensitive data. The setting of the threshold should be based on multiple factors such as privacy protection requirements, business requirements, and regulatory requirements. Mark the data items with an importance score less than the preset threshold as general data. These data usually have a lower privacy sensitivity, a moderate data value, or a lower legal risk. Mark the data items with an importance score greater than or equal to the preset threshold as sensitive data. These data may involve user privacy, have a higher value, or have legal risks. The data collection end marks each piece of data in the toilet use data with the corresponding label (general data or sensitive data) and records the classification result for subsequent processing.

[0099] Optionally, the step of associating the general data with the user information of the target user and sending it to the user data platform; and the step of associating the sensitive data with the user information of the virtual target user and sending it to the user data platform includes:

[0100] S210. Associate the general data with the user information of the target user, encrypt it with the platform public key to obtain a first ciphertext, and send the first ciphertext to the user data platform.

[0101] Specifically, the data collection end first associates the general data (such as device usage habits, music preferences, etc.) collected from the target user with the user information of the target user (such as user ID, account name, mobile phone number, etc.). The purpose of the association is to accurately identify which user these data belong to in subsequent data processing. Encrypt the associated data with the platform public key of the user data platform to generate a first ciphertext. The purpose of encryption is to protect the security of the data during transmission and prevent the data from being stolen or tampered with by unauthorized third parties. Send the first ciphertext to the user data platform through a secure communication channel. After receiving the ciphertext, the user data platform can use the stored platform private key to decrypt it to obtain the associated general data.

[0102] S220. Associate the sensitive data with the information of the virtual target user, encrypt it with the platform public key to obtain a second ciphertext, and send the second ciphertext to the user data platform.

[0103] Specifically, the data collection end associates the sensitive data (such as toilet time, physiological health data, etc.) with the information of the virtual target user (such as virtual user ID, virtual account, etc.). The information of the virtual target user is created to protect the privacy of real users and has no direct association with the identity of real users. The encryption method of the second ciphertext is the same as that of the first ciphertext, both using asymmetric encryption.

[0104] Wherein, the user data platform stores a platform private key corresponding to the platform public key.

[0105] S30. The user data platform generates a target user portrait based on the user information and general data of the target user, and generates a virtual target user portrait based on the user information and privacy data of the virtual target user.

[0106] S40. The user end obtains the target user portrait and the virtual target user portrait from the user data platform according to preset rules, and generates a local user portrait based on the target user portrait and the virtual target user portrait.

[0107] Optionally, the step in which the client obtains the target user profile and the virtual target user profile from the data user platform according to a preset rule includes:

[0108] S401. The user data platform encrypts the target user profile with the virtual user public key to obtain a third ciphertext, and encrypts the virtual target user profile to obtain a fourth ciphertext.

[0109] Specifically, the user data platform first uses the virtual user public key (which is pre-shared or negotiated with the client and is used for encrypting and decrypting data) to encrypt the target user profile to generate a third ciphertext. The purpose of encryption is to ensure that the target user profile is not stolen or viewed by unauthorized third parties during transmission. Similarly, the user data platform uses the same virtual user public key to encrypt the virtual target user profile to generate a fourth ciphertext.

[0110] S402. The user data platform sends the third ciphertext and the fourth ciphertext to the client.

[0111] Specifically, the user data platform sends the third ciphertext and the fourth ciphertext to the client through a secure communication channel. During the sending process, the transport layer security protocol (such as TLS) can be further adopted to enhance the security of communication.

[0112] S403. The client decrypts the third ciphertext with the virtual user private key to obtain the target user profile, and decrypts the fourth ciphertext to obtain the virtual target user profile.

[0113] Specifically, after receiving the third ciphertext, the client uses the pre-obtained virtual user private key (paired with the virtual user public key) to decrypt the third ciphertext, thereby obtaining the target user profile. The decryption process ensures that only the client with the correct private key can view the target user profile.

[0114] Through encryption technology, the security of the target user profile and the virtual target user profile during transmission is ensured, and the risk of data being stolen or viewed is prevented. Even if the data is intercepted during transmission, since the data is encrypted and only the client with the correct private key can decrypt it, the privacy of users is effectively protected.

[0115] Optionally, the step in which the client obtains the target user profile and the virtual target user profile from the data user platform according to a preset rule, and generates a local user profile according to the target user profile and the virtual target user profile, further includes:

[0116] S410. In response to a toilet use request from the client, query whether there is a target toilet that matches the local user profile according to the local user profile.

[0117] Specifically, the user terminal first receives a toilet request from the user, which is usually triggered through the user operation interface. The user terminal loads the local user portrait generated based on the target user portrait and the virtual target user portrait. This portrait contains the user's toilet preferences, habits, and possible sensitive needs. The user terminal queries whether there is a target toilet that matches these conditions based on the information in the local user portrait, such as toilet type, location, facilities, etc. The query can be based on the user terminal's built-in database or through the network request data user platform to provide toilet information services. The local user portrait is a collection of the target user portrait and the virtual target user portrait. By directly matching with the local user portrait, the match is more accurate and there are more preconditions that can be matched; when the target toilet cannot be found through the local user portrait, by lowering the requirements, the target user portrait can be used to filter out toilets that meet some of the requirements, and then the virtual target user portrait can be used to filter out toilets that meet the target user's requirements as much as possible.

[0118] S420: If a target toilet matching the local user portrait is found, the target toilet is pushed to the user terminal.

[0119] Specifically, if the query result shows that there is a target toilet that matches the local user profile, the push process begins. The user end pushes detailed information about the target toilet (such as location, facilities, reviews, etc.) to the user, usually through an interface display or voice prompt.

[0120] S430: If no target toilet matching the local user portrait is found, obtaining at least one candidate toilet according to the target user portrait.

[0121] Specifically, if the query result shows that there is no target toilet that completely matches the local user profile, the user terminal enters the process of obtaining candidate toilets.

[0122] Optionally, the step of acquiring at least one candidate toilet according to the target user portrait includes:

[0123] S4301. Obtain at least one alternative toilet according to the target user portrait.

[0124] Specifically, the user end first parses the toilet-related part of the target user portrait, namely the target user portrait, which includes the user's toilet preferences (such as toilet type, facility requirements, etc.), location information, and possible time requirements, etc. Based on the information in the target user portrait, the user end queries the database or requests the data user platform to obtain at least one alternative toilet that meets the basic conditions. These alternative toilets may meet the user's needs in terms of geographical location, type, or facilities.

[0125] Optionally, the step of obtaining at least one alternative toilet according to the target user profile includes:

[0126] S43011. Obtain at least one preselected toilet according to the required toilet type of the target user represented by the target user profile.

[0127] Specifically, the user terminal first analyzes the target user profile to clarify the required toilet type of the target user (such as squat toilets, sitting toilets, public toilets, barrier-free toilets, family bathrooms, whether there is a mother and baby room, etc.). According to the required toilet type, the user terminal queries the database or requests the data user platform to obtain at least one preselected toilet that meets this type. These preselected toilets meet the user's needs in terms of type.

[0128] S43012. Evaluate the priority of the at least one preselected toilet according to the location information of the at least one preselected toilet.

[0129] Specifically, for each preselected toilet, the user terminal collects its location information, including specific geographical coordinates, the distance from the user's current location, etc. The user terminal uses a preset algorithm or rule to calculate the priority of each preselected toilet according to the location information. The priority can be based on distance (such as the closer the toilet is to the user, the higher the priority), traffic convenience (such as the easier it is to reach the toilet, the higher the priority), or other relevant factors.

[0130] S43013. Sort the at least one preselected toilet in descending order of priority to obtain a sorting result.

[0131] Specifically, the user terminal sorts each preselected toilet in descending order of the calculated priority to generate a sorting result.

[0132] S43014. Mark the preselected toilets with a preset proportion before sorting as alternative toilets according to the sorting result.

[0133] Specifically, the user terminal determines a preset proportion according to actual needs or system settings (such as the top 20%, the top 5, etc.). According to the sorting result and the preset proportion, the user terminal marks the preselected toilets with a higher ranking as alternative toilets. These alternative toilets meet the user's needs well in terms of type, location, and priority.

[0134] By specifying the required type of toilet and directly querying the preselected toilets, unnecessary search and screening time is reduced, and the efficiency of toilet finding is improved. By evaluating priorities and sorting the preselected toilets, the user side can recommend toilets that better meet the user's location preferences and needs to the user, optimizing the toilet selection. The introduction of a preset ratio ensures that the number of alternative toilets is neither too large nor too small, providing enough choice space while avoiding information overload and enhancing the user experience. The calculation of priorities can consider various factors (such as distance, traffic, etc.), which helps to more reasonably allocate and utilize toilet resources.

[0135] S4302. Evaluate the safety index score of the at least one alternative toilet based on the real-time monitoring, user feedback, and historical maintenance records of the at least one alternative toilet.

[0136] Specifically, for each alternative toilet, the user side collects its real-time monitoring data (such as camera monitoring, environmental sensor data, etc.), user feedback (such as cleanliness evaluation, facility integrity, etc.), and historical maintenance records. The user side calculates the safety index score of each alternative toilet using a preset algorithm or model based on the collected data. This score reflects the safety, cleanliness, and reliability of the toilet.

[0137] S4303. Evaluate the vacancy situation score of the at least one alternative toilet based on the usage status, user reservation information, and historical usage data of the at least one alternative toilet.

[0138] Specifically, the user side collects the current usage status of each alternative toilet (such as whether it is idle, whether it is in use, etc.), user reservation information (such as reservation situation in a future period), and historical usage data (such as peak hours, off-peak hours, etc.). Based on the collected data, the user side calculates the vacancy situation score of each alternative toilet. This score reflects the availability of the toilet and the length of the user's waiting time.

[0139] S4304. Obtain at least one candidate toilet based on the safety index score and the vacancy situation score.

[0140] Specifically, the user side weights and synthesizes the safety index score and the vacancy situation score of each alternative toilet to obtain the comprehensive score of each toilet. Based on the comprehensive score, the user side screens out at least one candidate toilet with a higher score. These candidate toilets better meet the user's needs in terms of safety and availability.

[0141] By comprehensively considering the safety index and vacancy situation, the user side can recommend toilets that better meet the needs and preferences of users, improving the quality and satisfaction of toilet selection. The introduction of real-time monitoring, user feedback, and historical maintenance records increases the transparency and credibility of toilet information, enhancing users' trust in the system. By evaluating the vacancy situation, the system can more effectively allocate toilet resources, avoiding long waiting times for users or waste of toilet resources. The comprehensive evaluation mechanism considers multiple demand dimensions of users, making the recommendation results closer to the actual needs of users and enhancing the user experience.

[0142] S440. Obtain the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile.

[0143] Specifically, the step of obtaining the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile includes:

[0144] S4401. Obtain the first comprehensive score of the candidate toilet according to at least one of the toilet use time requirement, toilet use duration requirement, toilet location requirement, and toilet type requirement of the target user represented by the virtual target user profile.

[0145] Specifically, the user side first analyzes the virtual target user profile to clarify the toilet use time requirement (such as the expected toilet use time period), toilet use duration requirement (such as the expected toilet use duration), toilet location requirement (such as the expected toilet location range), toilet type requirement (such as the expected toilet type), etc. of the target user. For each candidate toilet, the user side evaluates the degree to which it meets the above requirements of the target user and gives a corresponding score. For example, a score can be given according to the proximity of the toilet location to the target user's expected location, the matching degree of the toilet type to the target user's expected type, etc. The user side weights and synthesizes the satisfaction scores of each candidate toilet to obtain the first comprehensive score of each candidate toilet. This score reflects the basic degree to which the candidate toilet meets the toilet use needs of the target user.

[0146] S4402. Obtain the location information, current pedestrian flow, maintenance information, opening information, and special events of the candidate toilet, and evaluate the second comprehensive score of the candidate toilet.

[0147] Specifically, the user terminal collects the location information of each candidate toilet (such as specific address, traffic convenience), current pedestrian flow (such as real-time number, congestion level), maintenance information (such as whether it is under maintenance, maintenance history), opening information (such as opening hours, whether it is open), and special events (such as large-scale activities / contests in the vicinity, event arrangements), etc. According to the collected information, the user terminal evaluates the real-time status of each candidate toilet and gives a corresponding score. For example, the congestion level can be judged based on the pedestrian flow, the integrity of the facilities can be judged based on the maintenance information, and the availability can be judged based on the opening information and special events. The user terminal performs a weighted synthesis of the status scores of each candidate toilet to obtain the second comprehensive score of each candidate toilet. This score reflects the real-time status and availability of the candidate toilet.

[0148] S4403. Obtain the matching degree between the virtual target user profile and the candidate toilet according to the first comprehensive score and the second comprehensive score.

[0149] Specifically, the user terminal performs a weighted synthesis of the first comprehensive score and the second comprehensive score of each candidate toilet to obtain the matching degree between each candidate toilet and the virtual target user profile. This matching degree comprehensively considers the basic degree to which the candidate toilet meets the needs of the target user and the real-time status. The user terminal outputs the calculated matching degree to the subsequent steps for screening and recommending candidate toilets.

[0150] By comprehensively considering the toilet use needs of the target user and the real-time status of the candidate toilet, it is possible to more accurately evaluate the matching degree between the candidate toilet and the target user, improving the accuracy of the matching. An increase in the matching degree means that users can more easily find toilets that meet their needs and preferences, thereby enhancing user satisfaction and experience. By evaluating the real-time status of the candidate toilet, the system can more effectively allocate toilet resources, avoiding users wasting time due to unavailable or overly crowded toilets. The collection and evaluation of real-time information help toilet managers promptly understand the status and problems of the toilets, enabling timely maintenance and improvement, and improving the management level and user satisfaction of the toilets.

[0151] S450. Obtain candidate toilets with a matching degree greater than the target threshold according to the matching degree, and mark them as target toilets.

[0152] Specifically, the user terminal sets a target threshold and screens out candidate toilets with a matching degree greater than this threshold. The screened candidate toilets are marked as target toilets. Although these toilets may not be a perfect match, while meeting the basic needs of users, they also better consider the sensitive needs or special preferences of users. The user terminal pushes the detailed information of the toilets marked as target toilets to the users for them to select and make decisions.

[0153] For ease of understanding, an example is given as follows:

[0154] 1. User Registration and Virtual User Creation:

[0155] S10: When the user first uses the APP, the user data platform responds to his creation request, creates a real target user account for him, and simultaneously creates a corresponding virtual target user account. The user information (such as username, password, etc.) of these two accounts is securely sent to the user's mobile phone.

[0156] 2. Data Collection and Classification:

[0157] S20: When the user uses a public toilet, the data collection end (possibly intelligent devices in the toilet) will collect his toilet use data, such as entry time, departure time, type of toilet used, equipment information of the toilet, music playing information, consumable usage, atmosphere preference, health detection, etc.

[0158] S201 - S203: These data are divided into general data and sensitive data. For example, music playing information, consumable usage, atmosphere preference, etc. may be regarded as general data, while specific toilet use habits (such as whether special facilities are used), entry time, departure time, health detection data, etc. may be regarded as sensitive data. These data are evaluated and classified according to privacy sensitivity, data value, and legal risks.

[0159] 3. Data Encryption and Sending:

[0160] S210 - S220: After the general data is associated with the user's real user information, it is encrypted into the first ciphertext using the platform public key and sent to the user data platform. The sensitive data is associated with the virtual user information and also encrypted into the second ciphertext before being sent.

[0161] 4. User Portrait Generation:

[0162] S30: The user data platform generates two user portraits based on the received data: one is a real user portrait (user) based on general data, and the other is a virtual user portrait based on sensitive data.

[0163] 5. User Side Obtains Portrait:

[0164] S40: The user requests and obtains these two user portraits from the user data platform through the mobile APP according to preset rules. These portraits are transmitted in an encrypted manner and decrypted on the user's mobile phone.

[0165] S401 - S403: Specifically, the platform encrypts the portrait using the virtual user public key, and the user decrypts it with the virtual user private key on the mobile phone.

[0166] 6. Toilet Recommendation and Selection:

[0167] S410 - S420: When the user needs to find a toilet, the APP will recommend the most suitable toilet according to his local user profile (combining real and virtual profiles). If a perfect match is found, it will be directly pushed.

[0168] S430: If there is no perfect match, the APP will search for candidate toilets according to the user's target user profile (mainly general data).

[0169] S4301: First, pre - selected toilets are filtered according to the type of toilet usually selected by the user.

[0170] S43011 - S43014: Then, considering factors such as location and priority, the pre - selected toilets are sorted and filtered to obtain alternative toilets.

[0171] S4302 - S4304: Next, the safety index and vacancy situation of these alternative toilets are evaluated to finally determine the list of candidate toilets.

[0172] S440: For the candidate toilets, the APP will further evaluate the matching degree according to the user's virtual user profile (sensitive data), considering factors such as toilet - using time, duration, and location preference.

[0173] S4401 - S4403: By comprehensively considering the user's needs and the actual situation of the toilets, the matching degree of each candidate toilet is calculated.

[0174] S450: Finally, the toilets with a matching degree exceeding the target threshold are selected as the final recommended target toilets and presented to the user for selection.

[0175] Embodiment 3

[0176] Based on Embodiment 1, this embodiment provides a privacy data processing system for smart toilets, based on a data collection end, a user end, and a user data platform, including:

[0177] An information creation module, which is configured to, in response to a target user creation request by the user data platform, establish a target user and a virtual target user, and send the user information of the target user and the user information of the virtual target user to the user end;

[0178] A data sending module, which is configured to collect the toilet - using data of the target user by the data collection end, obtain general data and sensitive data according to the toilet - using data, associate the general data with the user information of the target user and then send it to the user data platform; associate the sensitive data with the user information of the virtual target user and then send it to the user data platform;

[0179] A data processing module, which is configured to generate a target user profile for the user data platform based on the user information and general data of the target user, and generate a virtual target user profile based on the user information and privacy data of the virtual target user;

[0180] A profile generation module, which is configured to obtain the target user profile and the virtual target user profile from the user data platform by the user side according to a preset rule, and generate a local user profile based on the target user profile and the virtual target user profile.

[0181] Embodiment 4

[0182] Based on the same inventive concept as the foregoing embodiments, this embodiment provides a computer device, which includes a memory and a processor. A computer program is stored in the memory, and the processor executes the computer program to implement the above method.

[0183] Embodiment 5

[0184] Based on the same inventive concept as the foregoing embodiments, this embodiment provides a computer-readable storage medium. A computer program is stored on the computer-readable storage medium, and the processor executes the computer program to implement the above method.

[0185] The above are only the preferred embodiments of the present application, and do not limit the patent scope of the present application. Any equivalent structure or equivalent process transformation made by using the content of the specification and drawings of the present application, or directly or indirectly applied to other related technical fields, shall be equally included in the patent protection scope of the present application.

Claims

1. A method for processing privacy data of a smart toilet, characterized in that, Based on a data collection terminal, a user terminal, and a user data platform, including: The user data platform responds to a target user creation request, creates a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user terminal; The data collection terminal collects the toilet use data of the target user, obtains general data and sensitive data according to the toilet use data, associates the general data with the user information of the target user and then sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and then sends it to the user data platform; The user data platform generates a target user profile according to the user information and general data of the target user, and generates a virtual target user profile according to the user information and privacy data of the virtual target user; The user terminal obtains the target user profile and the virtual target user profile from the user data platform according to preset rules, and generates a local user profile according to the target user profile and the virtual target user profile; In response to a toilet use request from the user terminal, query whether there is a target toilet that matches the local user profile according to the local user profile; If so, push the target toilet to the user terminal; If not, obtain at least one candidate toilet according to the target user profile; According to the virtual target user profile, obtain the matching degree between the virtual target user profile and the at least one candidate toilet; According to the matching degree, obtain the candidate toilets with a matching degree greater than the target threshold and mark them as target toilets.

2. The privacy data processing method for a smart toilet according to claim 1, characterized in that, The step in which the data collection terminal collects the toilet use data of the target user and obtains general data and sensitive data according to the toilet use data includes: According to the toilet use data of the target user, obtain the privacy sensitivity, data value, and legal risk of the toilet use data; Evaluate the importance score of the toilet use data according to the privacy sensitivity, data value, and legal risk; Mark the data in the toilet use data with an importance score less than the preset threshold as general data, and mark the data greater than or equal to the preset threshold as sensitive data.

3. The privacy data processing method for a smart toilet according to claim 1, wherein, The step of associating the general data with the user information of the target user and then sending it to the user data platform; The step of associating the sensitive data with the user information of the virtual target user and then sending it to the user data platform includes: Associate the general data with the user information of the target user, encrypt it with the platform public key to obtain a first ciphertext, and send the first ciphertext to the user data platform; Associate the sensitive data with the information of the virtual target user, encrypt it with the platform public key to obtain a second ciphertext, and send the second ciphertext to the user data platform; Wherein, the user data platform stores a platform private key corresponding to the platform public key.

4. The privacy data processing method for a smart toilet according to claim 1, characterized in that, The step in which the user terminal obtains the target user profile and the virtual target user profile from the user data platform according to preset rules includes: The user data platform encrypts the target user profile with the virtual user public key to obtain a third ciphertext, and encrypts the virtual target user profile to obtain a fourth ciphertext; The user data platform sends the third ciphertext and the fourth ciphertext to the user terminal; The user terminal decrypts the third ciphertext with the virtual user private key to obtain the target user profile, and decrypts the fourth ciphertext to obtain the virtual target user profile.

5. The privacy data processing method for a smart toilet according to claim 1, characterized in that, The step of obtaining at least one candidate toilet according to the target user profile includes: Obtaining at least one alternative toilet according to the target user profile; Evaluating the safety index scores of the at least one alternative toilet according to the real-time monitoring, user feedback and historical maintenance records of the at least one alternative toilet; Evaluating the vacancy situation scores of the at least one alternative toilet according to the usage status, user reservation information and historical usage data of the at least one alternative toilet; Obtaining at least one candidate toilet according to the safety index scores and the vacancy situation scores.

6. The privacy data processing method for a smart toilet according to claim 5, wherein, The step of obtaining at least one alternative toilet according to the target user profile includes: Obtaining at least one preselected toilet according to the required toilet type of the target user represented by the target user profile; Evaluating the priorities of the at least one preselected toilet according to the location information of the at least one preselected toilet; Sorting the at least one preselected toilet in descending order of priority to obtain a sorting result; Marking the preselected toilets of a preset proportion before sorting as alternative toilets according to the sorting result.

7. The privacy data processing method for a smart toilet according to claim 1, wherein The step of obtaining the matching degree between the virtual target user profile and the at least one candidate toilet according to the virtual target user profile includes: Obtaining the first comprehensive score of the candidate toilet according to at least one of the toilet time requirement, toilet duration requirement, toilet location requirement and toilet type requirement of the target user represented by the virtual target user profile; Obtaining the second comprehensive score of the candidate toilet according to the location information, current pedestrian flow, maintenance information, opening information, special events of the candidate toilet; Obtaining the matching degree between the virtual target user profile and the candidate toilet according to the first comprehensive score and the second comprehensive score.

8. A privacy data processing system for a smart toilet, characterized in that, Based on the data acquisition terminal, the user terminal and the user data platform, including: An information creation module configured to, in response to a target user creation request, the user data platform establishes a target user and a virtual target user, and sends the user information of the target user and the user information of the virtual target user to the user terminal; A data sending module configured to the data acquisition terminal collects the toilet usage data of the target user, obtains general data and sensitive data according to the toilet usage data, associates the general data with the user information of the target user and then sends it to the user data platform; associates the sensitive data with the user information of the virtual target user and then sends it to the user data platform; A data processing module configured to the user data platform generates a target user profile according to the user information and general data of the target user, and generates a virtual target user profile according to the user information and privacy data of the virtual target user; An image generation module, which is configured to enable the user terminal to obtain the target user profile and the virtual target user profile from the user data platform according to preset rules, and generate a local user profile according to the target user profile and the virtual target user profile; In response to a toilet use request from the user terminal, query whether there is a target toilet that matches the local user profile according to the local user profile; If so, push the target toilet to the user terminal; If not, obtain at least one candidate toilet according to the target user profile; According to the virtual target user profile, obtain the matching degree between the virtual target user profile and the at least one candidate toilet; According to the matching degree, obtain the candidate toilets with a matching degree greater than the target threshold and mark them as target toilets.

9. A computer device, characterized in that, This computer device includes a memory and a processor. A computer program is stored in the memory, and the processor executes the computer program to implement the method according to any one of claims 1-7.

Citation Information

Patent Citations

  • User data encryption system and method

    CN116743359A

  • Target portrait digitization method and device in combination with virtual and real space knowledge

    CN119807698A