Universal personal information authorization method and device, equipment and medium

By determining the authorization status of the target user in the authorization system and updating the Internet business interface, the problem of re-customizing the process when the personal information authorization scenario changes is solved, and fast and flexible authorization process management is achieved.

CN120179310APending Publication Date: 2025-06-20KANG JIAN INFORMATION TECH (SHENZHEN) CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510245915.7
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-03-03
Publication Date
2025-06-20

AI Technical Summary

Technical Problem

When personal information authorization scenarios and other changes occur, the existing technology requires re-customizing the personal information authorization process, which will take a lot of time.

Method used

Provide a general personal information authorization method, by receiving messages from the user's terminal accessing the Internet business interface, including authorization scenario encoding and user identification, determine whether the target user has authorized in the authorization system, and if not authorized, query and send an authorization agreement link to update the Internet business interface.

Benefits of technology

It realizes the rapid customization of the authorization process when the personal information authorization scenario changes, reduces time costs and facilitates centralized management of configuration information.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120179310A_ABST
    Figure CN120179310A_ABST
Patent Text Reader

Abstract

The invention relates to the field of personal information security, finance and medical health, and discloses a universal personal information authorization method, device, equipment and medium, in the method, business personnel can set configuration information through a business personnel terminal, and the configuration information is independently stored in a configuration system. When a personal information authorization scene and the like change, a personal information authorization process can be flexibly and quickly customized through the configuration information, and the configuration information is independently stored in the configuration system, so that centralized management of the configuration information can be facilitated. The method comprises the following steps: determining whether a target user authorizes an Internet service interface to use personal information of the user in an authorization system; if it is determined that the target user is not authorized, an authorization protocol link is inquired in configuration information which is stored in a configuration system and determined through a business personnel terminal, and an authorization protocol is sent to a user terminal; and when a message that the target user agrees with the authorization protocol sent by the user side is received, the user side displays the updated Internet service interface.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the fields of personal information security, finance and medical health, and in particular to a universal personal information authorization method, device, equipment and medium. Background Art

[0002] According to the Personal Information Protection Law, personal information processing must be fully informed in advance and the individual's authorization and consent must be obtained. If there is a change in important matters concerning the processing of personal information, the individual must be informed again and the authorization and consent must be obtained. Internet services can only be carried out normally after the user's authorization and consent. For example, in the financial field, financial services can only be carried out based on the user's personal information after the user's authorization and consent. For example, in the medical and health field, consultation, medication, medical claims and other services can only be provided to users based on their personal information after the user's authorization and consent.

[0003] In related technologies, the personal information authorization process is developed by each business module. When the scenarios where personal information needs to be authorized change, the personal information authorization process needs to be re-customized before it can be put into use, and re-customization takes a lot of time.

[0004] Therefore, how to simply and quickly customize the personal information authorization process when the personal information authorization scenario changes has become a technical problem that needs to be urgently solved by technical personnel in this field. Summary of the invention

[0005] The present invention provides a universal personal information authorization method, device, equipment and medium to solve the technical problem that it takes a lot of time to re-customize the personal information authorization process when the personal information authorization scenario changes.

[0006] In a first aspect, a general personal information authorization method is provided, comprising:

[0007] Receiving a message for accessing an Internet service interface sent by a user through a user terminal, the message including a first authorization scenario code and a first user identifier;

[0008] Determining, in an authorization system, whether a target user has authorized an Internet service interface corresponding to the first authorization scenario code to use the user's personal information, according to the first authorization scenario code and the first user identifier, the target user being the user corresponding to the first user identifier;

[0009] If it is determined that the target user is not authorized, query, in the configuration information determined by the business personnel terminal and stored in the configuration system, the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user terminal for the user terminal to display the authorization protocol; when receiving the message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface;

[0010] If it is determined that the target user is authorized, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface.

[0011] In a second aspect, a general personal information authorization device is provided, including:

[0012] A receiving unit, configured to receive a message for accessing an Internet service interface sent by a user through a user terminal, where the message includes a first authorization scenario code and a first user identifier;

[0013] A judging unit, configured to determine, according to the first authorization scenario code and the first user identifier, whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user in an authorization system, where the target user is the user corresponding to the first user identifier;

[0014] A first updating unit, configured to, if it is determined that the target user is not authorized, query, in the configuration information determined by the business personnel terminal and stored in the configuration system, the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user terminal for the user terminal to display the authorization protocol; when receiving the message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface;

[0015] A second updating unit, configured to, if it is determined that the target user is authorized, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface.

[0016] In a third aspect, a computer device is provided, including a memory, a processor, and a computer program stored in the memory and executable on the processor, where the processor implements the steps of the above general personal information authorization method when executing the computer program.

[0017] Fourthly, a computer-readable storage medium is provided. The computer-readable storage medium stores a computer program, and when the computer program is executed by a processor, the steps of the above-mentioned general personal information authorization method are implemented.

[0018] In the solution implemented by the above-mentioned general personal information authorization method, device, computer device, and storage medium, a message for accessing an Internet service interface sent by a user through a user terminal can be received. The message includes a first authorization scenario code and a first user identifier; according to the first authorization scenario code and the first user identifier, it is determined whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user in an authorization system, and the target user is the user corresponding to the first user identifier; if it is determined that the target user has not authorized, then in the configuration information determined by a business personnel terminal and stored in a configuration system, an authorization protocol link corresponding to a second authorization scenario code identical to the first authorization scenario code is queried, and the authorization protocol corresponding to the authorization protocol link is sent to the user terminal for the user terminal to display the authorization protocol; when a message that the target user agrees to the authorization protocol sent by the user terminal is received, the Internet service interface is updated according to the personal information of the target user for the user terminal to display the updated Internet service interface; if it is determined that the target user has authorized, then the Internet service interface is updated according to the personal information of the target user for the user terminal to display the updated Internet service interface. In the present invention, a business personnel can set configuration information through a business personnel terminal, and the configuration information is stored separately in a configuration system. When changes occur in personal information authorization scenarios, etc., the personal information authorization process can be flexibly and quickly customized through the configuration information, and storing the configuration information separately in the configuration system can also facilitate centralized management of the configuration information. BRIEF DESCRIPTION OF THE DRAWINGS

[0019] In order to more clearly illustrate the technical solutions of the embodiments of the present invention, the drawings required for describing the embodiments of the present invention will be briefly introduced below. Obviously, the drawings in the following description are only some embodiments of the present invention, and for those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.

[0020] Figure 1 It is a schematic diagram of an application environment of the general personal information authorization method in an embodiment of the present invention;

[0021] Figure 2 It is a flowchart of the general personal information authorization method provided by an embodiment of the present invention;

[0022] Figure 3 An exemplary schematic diagram of a configuration interface provided according to some embodiments is shown;

[0023] Figure 4 Exemplarily shown is a schematic diagram of an authorization interface provided for a client according to some embodiments;

[0024] Figure 5 Exemplarily shown is a schematic diagram of another authorization interface provided for a client according to some embodiments;

[0025] Figure 6 Exemplarily shown is a schematic diagram of a page for canceling privacy authorization provided according to some embodiments;

[0026] Figure 7 Exemplarily shown is a schematic diagram of the structure of a general personal information authorization device provided according to some embodiments;

[0027] Figure 8 It is a schematic diagram of the structure of a computer device in an embodiment of the present invention;

[0028] Figure 9 It is another schematic diagram of the structure of a computer device in an embodiment of the present invention. Detailed implementation manners

[0029] Next, the technical solutions in the embodiments of the present invention will be clearly and completely described in conjunction with the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are some, but not all, of the embodiments of the present invention. All other embodiments obtained by those of ordinary skill in the art based on the embodiments of the present invention without making creative efforts belong to the scope of protection of the present invention.

[0030] According to the requirements of the Personal Information Protection Law, personal information should be processed with the prior authorization and consent of the individual on the premise of full prior notice. When important matters regarding personal information processing change, the individual should be informed again and authorization and consent should be obtained. Internet services can only be carried out normally after obtaining the authorization and consent of the user.

[0031] In the related art, the personal information authorization process is developed by each business module independently. When scenarios where personal information needs to be authorized change, etc., it is necessary to re-customize the personal information authorization process to be put into use, and re-customization takes a lot of time. In addition, personal information authorization is not centrally managed, scattered in each system, and there are also compliance risks such as lack of unified supervision and failure to upgrade the authorization agreement in a timely manner.

[0032] With the rapid development of the company's business, the scenarios of personal information authorization are increasing day by day, and it is necessary to respond to new instructions and new policies in a timely manner to use personal information reasonably and in compliance. Therefore, how to simply and quickly customize the personal information authorization process when scenarios such as personal information authorization change has become a technical problem that needs to be solved urgently by those skilled in the art.

[0033] The general personal information authorization method provided by the embodiment of the present invention can be applied in an application environment such as Figure 1 . Wherein, the user sends a message for accessing an Internet service interface through the user terminal, and the message includes a first authorization scenario code and a first user identifier. The server receives the message sent by the user through the user terminal for accessing the Internet service interface, and the message includes a first authorization scenario code and a first user identifier; according to the first authorization scenario code and the first user identifier, it is determined in the authorization system whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user, and the target user is the user corresponding to the first user identifier; if it is determined that the target user has not authorized, then in the configuration information determined by the business personnel terminal and stored in the configuration system, a authorization protocol link corresponding to a second authorization scenario code identical to the first authorization scenario code is queried, and the authorization protocol corresponding to the authorization protocol link is sent to the user terminal for the user terminal to display the authorization protocol; when receiving the message sent by the user terminal that the target user agrees to the authorization protocol, the Internet service interface is updated according to the personal information of the target user for the user terminal to display the updated Internet service interface; if it is determined that the target user has authorized, then the Internet service interface is updated according to the personal information of the target user for the user terminal to display the updated Internet service interface. In the present invention, the business personnel can set configuration information through the business personnel terminal, and the configuration information is stored separately in the configuration system. When changes occur in personal information authorization scenarios and the like, the personal information authorization process can be flexibly and quickly customized through the configuration information, and storing the configuration information separately in the configuration system can also facilitate centralized management of the configuration information.

[0034] Among them, the user terminal and the business personnel terminal can be but are not limited to various personal computers, laptop computers, smart phones, tablet computers, and portable wearable devices. The server can be implemented by an independent server or a server cluster composed of multiple servers. The present invention will be described in detail below through specific embodiments.

[0035] Please refer to Figure 2 as shown in Figure 2 which is a schematic flowchart of a general personal information authorization method provided by an embodiment of the present invention, including the following steps S100 - S400.

[0036] S100. Receive the message sent by the user through the user terminal for accessing the Internet service interface, where the message includes a first authorization scenario code and a first user identifier.

[0037] In the embodiments of the present application, the message of the user accessing the Internet service interface can be sent in the following manner: The user can send the message of accessing the Internet service interface by operating methods such as clicking an application or a control on a web page on the user side.

[0038] In the embodiments of the present application, the Internet service interface can provide a service interface related to medical services, etc. For example, the user can consult a doctor and get medicine, and conduct medical claims, etc. through the Internet service interface. The Internet service interface can also provide a service interface related to financial services, etc. For example, the user can complete insurance purchase, insurance claims, trust, and lending, etc. through the Internet service interface. Of course, the Internet service interface can also be a service interface for providing other services. In the financial field and the medical field, the user's personal information needs to be authorized so that the Internet service interface can provide more user-compliant services.

[0039] Since the user's personal information (such as name, gender, date of birth, etc.) may be required to provide corresponding services when using the Internet service interface, it is necessary to first ask the user whether they agree to use the user's personal information when the Internet service interface provides corresponding services before jumping to the Internet service interface. When the user agrees to use the user's personal information when the Internet service interface provides corresponding services, that is, when the user's authorization to access the user's personal information is obtained, the Internet service interface can use the user's personal information to provide corresponding services.

[0040] In the embodiments of the present application, the Internet service interface is related to the authorization scenario, and different Internet service interfaces correspond to different authorization scenarios. For example, the authorization scenario corresponding to a certain Internet service interface is the old-age insurance outpatient package service, and the authorization scenario corresponding to another Internet service interface is consulting a doctor and getting medicine. The authorization scenario and the authorization scenario code are in one-to-one correspondence, and each authorization scenario has a unique corresponding authorization scenario code. In the embodiments of the present application, the meaning of the first authorization scenario code is the same as that of the authorization scenario code, but it is labeled as the first authorization scenario code in order to distinguish it from other authorization scenario codes (such as the second authorization scenario code and the third authorization scenario code) mentioned later.

[0041] In the embodiments of the present application, the user identifier corresponds to the user one by one, and each user has a uniquely corresponding user identifier. In some embodiments, before accessing the Internet service interface, the user needs to log in first. For example, the user can log in to the application or the login page through the account name and password of the user, and the account name can be used as the user identifier. In other embodiments, before accessing the Internet service interface, the user can select the patient, and use the information of the patient as the user identifier. It should be noted that there is a one-to-one correspondence between the information of the patient and the patient. In the embodiments of the present application, the meaning of the first user identifier is the same as the meaning of the user identifier, but in order to distinguish it from other user identifiers (such as the second user identifier) mentioned later, it is marked as the first user identifier.

[0042] S200. According to the first authorization scenario code and the first user identifier, determine in the authorization system whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user, where the target user is the user corresponding to the first user identifier.

[0043] In the embodiments of the present application, after the user authorizes the Internet service interface to use the personal information of the user, the user identifier and the authorization scenario code can be stored as an authorization record in the authorization system. Therefore, the authorization system may already store the authorization records corresponding to the Internet service interfaces authorized by the current user and other users. Furthermore, according to the first authorization scenario code and the first user identifier, it can be determined in the authorization system whether the target user has authorized the use of the Internet service interface corresponding to the first authorization scenario code. The detailed process of generating and storing the authorization record is introduced below. In some embodiments, the storage of the authorization record is completed using the interface user.saveUserAgreement.

[0044] In some embodiments, the authorization system can understand the interface user.queryUserAgreemen to implement determining whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user.

[0045] In some embodiments, the authorization record includes a third authorization scenario code and a second user identifier. The meaning of the third authorization scenario code is the same as the meaning of the authorization scenario code, and the meaning of the second user identifier is the same as the meaning of the user identifier. In some embodiments, the step of determining in the authorization system whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user includes:

[0046] Search for a target authorization record in the authorization records of the authorization system. The target authorization record includes a second user identifier that is the same as the first user identifier, and a third authorization scenario code that is the same as the first authorization scenario code.

[0047] In the embodiments of the present application, if a target authorization record including a second user identifier that is the same as the first user identifier and a third authorization scenario code that is the same as the first authorization scenario code already exists in the authorization records of the authorization system, that is, if the target authorization record can be found, it indicates that the target user has previously authorized the use of the personal information of the user of the Internet service interface. If the target authorization record does not exist in the authorization records of the authorization system, it indicates that the target user has not previously authorized the use of the personal information of the user of the Internet service interface. It can be understood that there may be several authorization records in the authorization system.

[0048] If the target authorization record is found, determine whether the authorization version number corresponding to the target authorization record is the latest authorization version number through the configuration system.

[0049] In this embodiment, before the user authorizes the Internet service interface to use the user's personal information, the user needs to view the authorization agreement, which states the specific content of the personal information that needs to be used, such as name, ID number, weight, etc. After viewing the authorization agreement, the user will give authorization, and the personal information used by the Internet service interface is only the specific content shown on the authorization agreement. Due to changes in the services provided by the Internet service interface to the user and other situations, the authorization agreement may change. Therefore, if the target authorization record is found, the target authorization record may only be the authorization of the personal information shown on the old version of the authorization agreement by the user, and the user has not authorized the personal information shown on the latest authorization agreement.

[0050] In the embodiments of the present application, there is a unique corresponding authorization version number for the authorization agreement. When the authorization agreement changes, the authorization version number also changes accordingly. Therefore, after determining that the target authorization record is found, it is also necessary to determine whether the authorization version number corresponding to the target authorization record is the latest authorization version number. Specifically, it can be determined whether the authorization version number corresponding to the target authorization record is the latest authorization version number in the configuration system. The process of whether the authorization version number is the latest authorization version number is introduced in detail below.

[0051] In this embodiment, the configuration system stores the second authorization scenario number and the authorization version number corresponding to the second authorization scenario number, and marks whether the authorization version number is the latest authorization version number.

[0052] If the authorization version number corresponding to the target authorization record is the latest authorization version number, it is determined that the user is authorized, that is, the target user has agreed to the Internet service interface to use the user's personal information.

[0053] If the target authorization record is not found or the authorization version number corresponding to the target authorization record is not the latest authorization version number, it is determined that the user is not authorized, that is, the target user does not agree to the Internet service interface to use the user's personal information.

[0054] S300. If it is determined that the target user is not authorized, in the configuration information determined by the business personnel terminal stored in the configuration system, query the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user terminal, so that the authorization protocol is displayed on the user terminal; when receiving the message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the Internet service interface.

[0055] In some embodiments, the method further includes: receiving and storing the configuration information sent by the business personnel terminal, where the configuration information includes a second authorization scenario code and an authorization protocol link corresponding to the second authorization scenario code.

[0056] In the embodiments of the present application, the business personnel can pre-set the configuration information in the configuration system through the business personnel terminal. The configuration information includes a second authorization scenario code and a corresponding authorization protocol link.

[0057] In some embodiments, a configuration interface is displayed on the business personnel terminal, and the configuration interface includes an authorization information text box, and the authorization information text box includes an authorization scenario code text box and an authorization protocol link text box. Exemplarily, Figure 3 Exemplarily shows a schematic diagram of a configuration interface provided according to some embodiments. In Figure 3 the authorization information text box includes an authorization scenario code text box and an authorization link text box. Additionally, Figure 3 also includes operation controls, and the operation controls include a submission control. The business personnel can fill in the content through the authorization information text box and select the submission control, and the business personnel terminal sends the content filled in the authorization information text box to the server.

[0058] The step of receiving and storing the configuration information sent by the business personnel terminal includes: receiving the content in the authorization scenario code text box sent by the business personnel terminal and the content in the authorization link text box.

[0059] Exemplarily, after the business personnel select the submission control, the business personnel side sends the content in the authorization scenario code text box and the content in the authorization link text box to the server side.

[0060] In some embodiments, it further includes: the server uses the configuration system to generate and store configuration information according to the content in the authorization scenario code text box and the content in the authorization link text box; wherein, the content in the authorization scenario code text box is the second authorization scenario code in the configuration information, and the content in the authorization link text box is the authorization protocol link corresponding to the second authorization scenario code in the configuration information.

[0061] Through the above steps, the configuration information including the second authorization scenario code and the corresponding authorization protocol link can be preset in the configuration system. It can be understood that there may be several pieces of configuration information in the configuration system.

[0062] In some embodiments, according to the actual needs of the Internet service interface, such as Figure 3 As shown, the authorization information text box further includes an authorization service code text box, an authorization scenario name text box, an authorization title text box, an authorization content text box, a text box for the authorized content updated this time, an authorization protocol link text box, an authorization scope text box, an authorization type text box, and an authorization field list text box. In order to simplify the process above, only the process of generating configuration information by using the authorization scenario code text box and the authorization link text box in the authorization information text box is described. In actual applications, the content in other text boxes in the authorization information text box may be used to generate configuration information. Correspondingly, the message sent by the user side to access the Internet service interface also includes the content corresponding to the corresponding other text boxes. For example, when the content in the authorization service code text box is also used to generate the configuration file, the message sent by the user through the user side to access the Internet service interface also includes the authorization service code, so as to determine in the authorization system whether the target user has authorized the use of the personal information of the user for the Internet service interface corresponding to the authorization scenario code under the service corresponding to the authorization service code. It can be understood that there may be multiple authorization scenarios under a service. In order to avoid the same authorization scenario but different services, the authorization service code can be set in the configuration information. Of course, the same authorization scenario between different services can also use different authorization scenario codes, which can avoid confusion between the same authorization scenarios of different services.

[0063] In the embodiment of the present application, if the target user has not authorized, then in the configuration information in the configuration system, query the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user side, and the user side displays the authorization protocol.

[0064] Exemplarily,Figure 4 Exemplarily shown is a schematic diagram of an authorization interface for providing a client according to some embodiments. In Figure 4 the authorization protocol and operation controls are displayed on the authorization interface. The user can select the consent control on the authorization interface, and at this time, a message indicating that the target user consents to the authorization protocol is generated and sent to the server. After selection, the interface jumps to the Internet service interface. Figure 5 Exemplarily shown is another schematic diagram of an authorization interface for providing a client according to some embodiments. In Figure 5 the authorization protocol and operation controls are displayed on the authorization pop-up window. The user can select the consent control on the authorization interface, and at this time, a message indicating that the target user consents to the authorization protocol is generated and sent to the server. After selection, the interface jumps to the Internet service interface. In some embodiments, the client can display the authorization interface through an authorization component.

[0065] When the server receives the message that the target user consents to the authorization protocol sent by the client, it updates the Internet service interface according to the personal information of the target user for the client to display the Internet service interface.

[0066] In some embodiments, when receiving the message that the target user consents to the authorization protocol sent by the client, the authorization system generates and stores an authorization record according to the first authorization scenario code and the first user identifier, where the first authorization scenario code is determined as the third authorization scenario code in the authorization record, and the first user identifier is determined as the second user identifier in the authorization record.

[0067] In the embodiments of the present application, when receiving the message that the target user consents to the authorization protocol sent by the client, while the server updates the Internet service interface according to the personal information of the user, the authorization system generates and stores an authorization record according to the first authorization scenario code and the first user identifier. The authorization record is stored in the authorization system and can determine whether the target user in the message received next time through the client has authorized the use of the personal information of the user for the Internet service interface corresponding to the first authorization scenario code in the message received next time.

[0068] S400. If it is determined that the target user has been authorized, directly update the Internet service interface according to the personal information of the target user for the client to display the Internet service interface.

[0069] In some embodiments, the process of determining whether the authorization version number of the authorization protocol link corresponding to the second authorization scenario code stored in the configuration system is the latest authorization version number can be: using the configuration system to compare the configuration information stored this time with the configuration information historically stored in the configuration system;

[0070] In this embodiment, since business personnel may modify the authorization protocol link corresponding to the updated second authorization scenario code on the configuration interface, the authorization version number of the authorization protocol link corresponding to the second authorization scenario code stored this time is determined to be the latest authorization version number by comparing the configuration information stored this time with the configuration information historically stored in the configuration system.

[0071] If the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code historically stored in the configuration information, and the authorization protocol link corresponding to the second authorization scenario code stored this time is different from the authorization protocol link corresponding to the second authorization scenario code historically stored, it is determined that the authorization version number of the authorization protocol link corresponding to the second authorization scenario code stored this time is the latest authorization version number;

[0072] If the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code historically stored in the configuration information, and the authorization protocol link corresponding to the second authorization scenario code stored this time is the same as the authorization protocol link corresponding to the second authorization scenario code historically stored, it is determined that the authorization version number of the authorization protocol link corresponding to the second authorization scenario code historically stored is not the latest authorization version number.

[0073] In the embodiment of the present application, business personnel can configure relevant functions related to new authorization scenarios by themselves, and support the configuration of various style display pages. There is no need for product research and development to correct and develop pages again, saving labor costs. The online time is shortened from the original one-week development time to about 1 hour, and users are informed to re-authorize in real time after the protocol is upgraded and modified.

[0074] In some embodiments, the method further includes: when receiving a cancellation authorization message sent by the user terminal, deleting the second user identifier corresponding to the target user in the authorization system and the third authorization scenario code corresponding to the second user identifier.

[0075] Exemplarily, Figure 6 Exemplarily shows a schematic diagram of a cancellation privacy authorization page provided according to some embodiments. In Figure 6 it, a cancellation privacy authorization control is displayed on the user terminal. When receiving an instruction for the target user to select the cancellation privacy authorization control, a cancellation collection message is generated and a cancellation authorization message is sent to the server.

[0076] In the embodiment of the present application, the target user can manually select to cancel the authorization, specifically, it can be completed through the cancellation privacy authorization control. When the cancellation privacy authorization control is selected, the authorization system deletes all the second user identifier corresponding to the target user and the third authorization scenario code corresponding to the second user identifier. Subsequently, if the user hopes to view the Internet service interface, re-authorization is required.

[0077] It can be seen that in the above solution, business personnel can set configuration information through the business personnel terminal, and this configuration information is stored separately in the configuration system. When changes occur in personal information authorization scenarios, etc., the personal information authorization process can be flexibly and quickly customized through the configuration information, and storing the configuration information separately in the configuration system can also facilitate centralized management of the configuration information.

[0078] It should be understood that the magnitudes of the sequence numbers of the steps in the above embodiments do not imply the order of execution. The execution order of each process should be determined according to its function and internal logic, and should not constitute any limitation to the implementation process of the embodiments of the present invention.

[0079] In one embodiment, a general personal information authorization device is provided, and this general personal information authorization device corresponds one-to-one with the general personal information authorization method in the above embodiment. As Figure 7 shown, this general personal information authorization device includes a receiving unit 701, a judging unit 702, a first updating unit 703, and a second updating unit 704. The detailed descriptions of each functional module are as follows:

[0080] The receiving unit is used to receive a message for accessing an Internet service interface sent by a user through a user terminal, and the message includes a first authorization scenario code and a first user identifier;

[0081] The judging unit is used to determine, according to the first authorization scenario code and the first user identifier, whether a target user has authorized an Internet service interface corresponding to the first authorization scenario code to use the personal information of the user in an authorization system, where the target user is the user corresponding to the first user identifier;

[0082] The first updating unit is used to, if it is determined that the target user has not authorized, query an authorization protocol link corresponding to a second authorization scenario code that is the same as the first authorization scenario code in the configuration information determined through the business personnel terminal stored in the configuration system, send the authorization protocol corresponding to the authorization protocol link to the user terminal for the user terminal to display the authorization protocol; when receiving a message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface;

[0083] The second updating unit is used to, if it is determined that the target user has authorized, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface.

[0084] In one embodiment, the first updating unit is specifically used for:

[0085] Search for a target authorization record in the authorization records of the authorization system, where the target authorization record includes a second user identifier that is the same as the first user identifier, and a third authorization scenario code that is the same as the first authorization scenario code;

[0086] If the target authorization record is found, determine, through the configuration system, whether the authorization version number corresponding to the target authorization record is the latest authorization version number;

[0087] If the authorization version number corresponding to the target authorization record is the latest authorization version number, determine that the target user is authorized;

[0088] If the target authorization record is not found or the authorization version number corresponding to the target authorization record is not the latest authorization version number, determine that the target user is not authorized.

[0089] In one embodiment, the device further includes:

[0090] A first storage unit, configured to, when receiving a message from the user terminal that the target user agrees to the authorization agreement, generate and store an authorization record by using the authorization system according to the first authorization scenario code and the first user identifier, where the first authorization scenario code is determined as the third authorization scenario code in the authorization record, and the first user identifier is determined as the second user identifier in the authorization record.

[0091] In one embodiment, the device further includes:

[0092] A second storage unit, configured to receive and store configuration information sent by the business personnel terminal, where the configuration information includes a second authorization scenario code and an authorization protocol link corresponding to the second authorization scenario code.

[0093] In one embodiment, a configuration interface is displayed on the business personnel terminal, and the configuration interface includes an authorization information text box, and the authorization information text box includes an authorization scenario code text box and an authorization protocol link text box; the second storage unit is specifically configured to:

[0094] Receive the content in the authorization scenario code text box sent by the business personnel terminal, and the content in the authorization link text box;

[0095] Generate and store configuration information by using the configuration system according to the content in the authorization scenario code text box and the content in the authorization link text box; where the content in the authorization scenario code text box is the second authorization scenario code in the configuration information, and the content in the authorization link text box is the authorization protocol link corresponding to the second authorization scenario code in the configuration information.

[0096] In one embodiment, the device further includes:

[0097] A comparison unit, configured to compare the configuration information stored this time with the configuration information historically stored in the configuration system by using the configuration system;

[0098] A first determination unit, configured to determine that the authorization version number of the authorization protocol link corresponding to the second authorization scenario code stored this time is the latest authorization version number if the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code historically stored in the configuration information, and the authorization protocol link corresponding to the second authorization scenario code stored this time is different from the authorization protocol link corresponding to the second authorization scenario code historically stored;

[0099] A second determination unit, configured to determine that the authorization version number of the authorization protocol link corresponding to the authorization scenario code historically stored is not the latest authorization version number if the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code historically stored in the configuration information, and the authorization protocol link corresponding to the second authorization scenario code stored this time is the same as the authorization protocol link corresponding to the second authorization scenario code historically stored.

[0100] In one embodiment, the device further includes:

[0101] A deletion unit, configured to delete the second user identifier corresponding to the target user and the third authorization scenario code corresponding to the second user identifier in the authorization system when receiving a cancellation authorization message sent by the client.

[0102] The present invention provides a general personal information authorization device. Business personnel can set configuration information through the business personnel terminal, and the configuration information is separately stored in the configuration system. When changes occur in personal information authorization scenarios, etc., the personal information authorization process can be flexibly and quickly customized through the configuration information, and storing the configuration information separately in the configuration system can also facilitate centralized management of the configuration information.

[0103] For specific limitations on the general personal information authorization device, reference can be made to the limitations on the general personal information authorization method in the above text, which will not be elaborated here. Each module in the above general personal information authorization device can be implemented in whole or in part through software, hardware, and their combination. The above modules can be embedded in the processor of the computer device in hardware form or be independent of it, or can be stored in the memory of the computer device in software form, so as to facilitate the processor to call and execute the operations corresponding to the above respective modules.

[0104] In one embodiment, a computer device is provided. The computer device can be a server, and its internal structure diagram can be as Figure 8As shown in the figure. The computer device includes a processor, a memory, a network interface, and a database connected via a system bus. Among them, the processor of the computer device is used to provide computing and control capabilities. The memory of the computer device includes non-volatile and / or volatile storage media and internal memory. The non-volatile storage media stores an operating system, a computer program, and a database. The internal memory provides an environment for the operation of the operating system and the computer program in the non-volatile storage media. The network interface of the computer device is used to communicate with an external client via a network connection. When the computer program is executed by the processor, it realizes the functions or steps on the server side of a general personal information authorization method.

[0105] In one embodiment, a computer device is provided. The computer device can be a client, and its internal structure diagram can be as Figure 9 shown in the figure. The computer device includes a processor, a memory, a network interface, a display screen, and an input device connected via a system bus. Among them, the processor of the computer device is used to provide computing and control capabilities. The memory of the computer device includes non-volatile storage media and internal memory. The non-volatile storage media stores an operating system and a computer program. The internal memory provides an environment for the operation of the operating system and the computer program in the non-volatile storage media. The network interface of the computer device is used to communicate with an external server via a network connection. When the computer program is executed by the processor, it realizes the functions or steps on the client side of a general personal information authorization method.

[0106] In one embodiment, a computer device is provided, including a memory, a processor, and a computer program stored on the memory and executable on the processor. When the processor executes the computer program, the following steps are implemented:

[0107] Receive a message for accessing an Internet service interface sent by a user through a client. The message includes a first authorization scenario code and a first user identifier;

[0108] According to the first authorization scenario code and the first user identifier, determine whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the user's personal information in the authorization system. The target user is the user corresponding to the first user identifier;

[0109] If it is determined that the target user is not authorized, then in the configuration information determined by the business personnel terminal and stored in the configuration system, query the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user terminal for the user terminal to display the authorization protocol; when receiving the message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface;

[0110] If it is determined that the target user is authorized, then update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface.

[0111] In one embodiment, a computer-readable storage medium is provided, on which a computer program is stored. When the computer program is executed by a processor, the following steps are implemented:

[0112] Receive a message sent by the user through the user terminal to access the Internet service interface, where the message includes a first authorization scenario code and a first user identifier;

[0113] According to the first authorization scenario code and the first user identifier, determine in the authorization system whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the personal information of the user, where the target user is the user corresponding to the first user identifier;

[0114] If it is determined that the target user is not authorized, then in the configuration information determined by the business personnel terminal and stored in the configuration system, query the authorization protocol link corresponding to the second authorization scenario code that is the same as the first authorization scenario code, and send the authorization protocol corresponding to the authorization protocol link to the user terminal for the user terminal to display the authorization protocol; when receiving the message that the target user agrees to the authorization protocol sent by the user terminal, update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface;

[0115] If it is determined that the target user is authorized, then update the Internet service interface according to the personal information of the target user for the user terminal to display the updated Internet service interface.

[0116] It should be noted that for the functions or steps that can be implemented by the above computer-readable storage medium or computer device, reference can be made to the relevant descriptions on the server side and the client side in the foregoing method embodiments. To avoid repetition, they will not be described one by one here.

[0117] Those of ordinary skill in the art can understand that all or part of the processes in the methods of the above embodiments can be completed by instructing relevant hardware through a computer program. The computer program can be stored in a non-volatile computer-readable storage medium. When the computer program is executed, it can include the processes of the embodiments of the above methods. Among them, any reference to a memory, storage, database, or other medium used in the embodiments provided in the present application can include non-volatile and / or volatile memories. Non-volatile memory can include read-only memory (ROM), programmable ROM (PROM), electrically programmable ROM (EPROM), electrically erasable programmable ROM (EEPROM), or flash memory. Volatile memory can include random access memory (RAM) or external cache memory. By way of illustration and not limitation, RAM is available in many forms, such as static RAM (SRAM), dynamic RAM (DRAM), synchronous DRAM (SDRAM), double data rate SDRAM (DDR SDRAM), enhanced SDRAM (ESDRAM), synchronous link DRAM (SLDRAM), Rambus direct RAM (RDRAM), direct memory bus dynamic RAM (DRDRAM), and Rambus dynamic RAM (RDRAM), etc.

[0118] Those skilled in the art can clearly understand that for the convenience and brevity of description, only the above division of each functional unit and module is used as an example. In actual applications, the above functions can be allocated to different functional units and modules according to needs, that is, the internal structure of the device is divided into different functional units or modules to complete all or part of the functions described above.

[0119] The non-company software tools or components that appear in the embodiments of the present application are only introduced by way of example and do not represent actual use.

[0120] The above embodiments are only used to illustrate the technical solutions of the present invention and are not intended to limit them. Although the present invention has been described in detail with reference to the foregoing embodiments, those of ordinary skill in the art should understand that they can still modify the technical solutions recorded in the foregoing embodiments or perform equivalent replacements for some of the technical features. These modifications or replacements do not cause the essence of the corresponding technical solutions to deviate from the spirit and scope of the technical solutions of the embodiments of the present invention and should all be included in the protection scope of the present invention.

Claims

1. A general personal information authorization method, characterized in that: include: Receiving a message for accessing an Internet service interface sent by a user through a user terminal, the message including a first authorization scenario code and a first user identifier; Determining, in an authorization system, whether a target user has authorized an Internet service interface corresponding to the first authorization scenario code to use the user's personal information, according to the first authorization scenario code and the first user identifier, the target user being the user corresponding to the first user identifier; If it is determined that the target user is not authorized, querying the configuration information determined by the business personnel end and stored in the configuration system for an authorization agreement link corresponding to a second authorization scenario code that is the same as the first authorization scenario code, and sending the authorization agreement corresponding to the authorization agreement link to the user end, so that the user end displays the authorization agreement; When receiving a message from the user terminal that the target user agrees to the authorization agreement, updating the Internet service interface according to the personal information of the target user, so that the user terminal displays the updated Internet service interface; If it is determined that the target user has authorized, the Internet service interface is updated according to the personal information of the target user, so that the user terminal displays the updated Internet service interface.

2. The method according to claim 1, characterized in that The step of determining in the authorization system whether the target user has authorized the Internet service interface corresponding to the first authorization scenario code to use the user's personal information includes: searching for a target authorization record in the authorization record of the authorization system, wherein the target authorization record includes a second user identifier that is the same as the first user identifier, and a third authorization scenario code that is the same as the first authorization scenario code; If the target authorization record is found, determining through the configuration system whether the authorization version number corresponding to the target authorization record is the latest authorization version number; If the authorization version number corresponding to the target authorization record is the latest authorization version number, it is determined that the target user has authorized; If the target authorization record is not found or the authorization version number corresponding to the target authorization record is not the latest authorization version number, it is determined that the target user is not authorized.

3. The method according to claim 1, characterized in that Also includes: When a message is received from the user end that the target user agrees to the authorization agreement, the authorization system is used to generate and store an authorization record based on the first authorization scenario code and the first user identifier, wherein the first authorization scenario code is determined as the third authorization scenario code in the authorization record, and the first user identifier is determined as the second user identifier in the authorization record.

4. The method according to claim 1, characterized in that Also includes: The configuration information sent by the service personnel end is received and stored, where the configuration information includes a second authorization scenario code and an authorization protocol link corresponding to the second authorization scenario code.

5. The method according to claim 4, characterized in that A configuration interface is displayed on the business personnel terminal, and the configuration interface includes an authorization information text box, and the authorization information text box includes an authorization scenario code text box and an authorization protocol link text box; The step of receiving and storing the configuration information sent by the business personnel terminal includes: Receive the content in the authorization scenario code text box and the content in the authorization link text box sent by the business personnel end; The configuration system is used to generate and store configuration information according to the content in the authorization scenario code text box and the content in the authorization link text box; wherein the content in the authorization scenario code text box is the second authorization scenario code in the configuration information, and the content in the authorization link text box is the authorization protocol link corresponding to the second authorization scenario code in the configuration information.

6. The method according to claim 5, characterized in that Also includes: Using the configuration system, compare the configuration information stored this time with the configuration information historically stored in the configuration system; If the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code stored in the configuration information in the past, and the authorization protocol link corresponding to the second authorization scenario code stored this time is different from the authorization protocol link corresponding to the second authorization scenario code stored in the past, then it is determined that the authorization version number of the authorization protocol link corresponding to the second authorization scenario code stored this time is the latest authorization version number; If the second authorization scenario code in the configuration information stored this time is the same as the second authorization scenario code stored in the configuration information historically, and the authorization protocol link corresponding to the second authorization scenario code stored this time is the same as the authorization protocol link corresponding to the second authorization scenario code stored historically, then it is determined that the authorization version number of the authorization protocol link corresponding to the historically stored authorization scenario code is not the latest authorization version number.

7. The method according to claim 1, characterized in that Also includes: When receiving the deauthorization message sent by the user terminal, the second user identifier corresponding to the target user and the third authorization scenario code corresponding to the second user identifier in the authorization system are deleted.

8. A universal personal information authorization device, characterized in that: include: A receiving unit, configured to receive a message for accessing an Internet service interface sent by a user through a user terminal, wherein the message includes a first authorization scenario code and a first user identifier; a judgment unit, configured to determine, in an authorization system, whether a target user has authorized an Internet service interface corresponding to the first authorization scenario code to use the user's personal information, according to the first authorization scenario code and a first user identifier, wherein the target user is a user corresponding to the first user identifier; A first updating unit is configured to, if it is determined that the target user is not authorized, query the configuration information determined by the business personnel end and stored in the configuration system for an authorization agreement link corresponding to a second authorization scenario code that is the same as the first authorization scenario code, and send the authorization agreement corresponding to the authorization agreement link to the user end, so that the user end displays the authorization agreement; When receiving a message from the user terminal that the target user agrees to the authorization agreement, updating the Internet service interface according to the personal information of the target user, so that the user terminal displays the updated Internet service interface; The second updating unit is used to update the Internet service interface according to the personal information of the target user if it is determined that the target user has authorized, so that the user terminal displays the updated Internet service interface.

9. A computer device comprising a memory, a processor, and a computer program stored in the memory and executable on the processor, characterized in that: When the processor executes the computer program, the steps of the general personal information authorization method as described in any one of claims 1 to 7 are implemented.

10. A computer-readable storage medium storing a computer program, characterized in that: When the computer program is executed by a processor, the steps of the general personal information authorization method as described in any one of claims 1 to 7 are implemented.