Application permission display method and device

By displaying application permission identifiers and dynamically showing the call status in the foreground of electronic devices, the problem of users not being able to intuitively perceive permission usage is solved, enabling real-time monitoring and refined management of application permissions, and improving user privacy protection and experience.

CN120909875APending Publication Date: 2025-11-07VIVO MOBILE COMM CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202511027106.5
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-07-24
Publication Date
2025-11-07

AI Technical Summary

Technical Problem

In existing technologies, users manage application permissions in a rather crude manner, lacking real-time monitoring and visualization. This makes it difficult for users to intuitively perceive permission status and usage, hindering refined management and posing risks of over-authorization and privacy leaks.

Method used

By displaying application permission identifiers when the electronic device is running in the foreground and dynamically displaying permission call identifiers when permissions are invoked, real-time monitoring and visualization are achieved, supporting users' fine-grained management of permissions and privacy protection.

Benefits of technology

It improves users' real-time awareness and visual management of application permissions, reduces the risk of over-authorization and privacy leaks, enhances users' awareness and ability to protect privacy, and optimizes the user experience of application permissions.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120909875A_ABST
    Figure CN120909875A_ABST
Patent Text Reader

Abstract

The invention discloses an application permission display method and device, and belongs to the technical field of communication. The method comprises the steps that under the condition that it is detected that a first application of first electronic equipment is in a foreground running state, identifiers of multiple application permissions corresponding to the first application are displayed; and when it is detected that the first application permission in the multiple application permissions is called, displaying a dynamic calling identifier on an identifier of the first application permission.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application belongs to the technical field of communication, and particularly relates to a display method and device of application permissions. BACKGROUND

[0002] At present, in the use of electronic devices, the management mode of application permissions by users is often rough. The existing permission management interface is relatively static, and in the process of application use, there is a lack of real-time monitoring and visual display of permission use, and users cannot intuitively perceive the state and actual use of each permission. SUMMARY

[0003] The purpose of the embodiments of the present application is to provide a display method and device of application permissions, which can perform real-time monitoring on the use of application permissions and can visually display application permissions.

[0004] In a first aspect, the embodiments of the present application provide a display method of application permissions, comprising:

[0005] In a case where it is detected that a first application of a first electronic device is in a foreground running state, displaying the identifiers of a plurality of application permissions corresponding to the first application;

[0006] In a case where it is detected that a first application permission in the plurality of application permissions is invoked, displaying a dynamic invocation identifier on the identifier of the first application permission.

[0007] In a second aspect, the embodiments of the present application provide a display device of application permissions, comprising:

[0008] A first display module, configured to, in a case where it is detected that a first application of a first electronic device is in a foreground running state, display the identifiers of a plurality of application permissions corresponding to the first application;

[0009] A second display module, configured to, in a case where it is detected that a first application permission in the plurality of application permissions is invoked, display a dynamic invocation identifier on the identifier of the first application permission.

[0010] In a third aspect, the embodiments of the present application provide an electronic device, which comprises a processor and a memory, the memory stores programs or instructions executable on the processor, and the programs or instructions are executed by the processor to implement the steps of the method according to the first aspect.

[0011] In a fourth aspect, the embodiments of the present application provide a readable storage medium, which stores programs or instructions, and the programs or instructions are executed by a processor to implement the steps of the method according to the first aspect.

[0012] In a fifth aspect, an embodiment of the present application provides a chip, which comprises a processor and a communication interface, the communication interface is coupled with the processor, and the processor is configured to run programs or instructions to implement the method in the first aspect.

[0013] In a sixth aspect, an embodiment of the present application provides a computer program product stored in a storage medium, which is executed by at least one processor to implement the method in the first aspect.

[0014] In the embodiment of the present application, by displaying the identifiers of the multiple application permissions corresponding to the first application of the first electronic device in the case that the first application is detected to be in the foreground running state, the application permissions of the application being used can be monitored and visually displayed in real time. Moreover, by displaying the dynamic calling identifier on the identifier of the first application permission in the case that the first application permission in the multiple application permissions is detected to be called, the user can intuitively perceive the state and actual use of each application permission, and the fine management of the application permissions is improved. BRIEF DESCRIPTION OF DRAWINGS

[0015] Figure 1 FIG. 1 is a flowchart of a method for displaying application permissions provided by an embodiment of the present application;

[0016] Figure 2 FIG. 2 is a schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0017] Figure 3 FIG. 3 is a second schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0018] Figure 4 FIG. 4 is a third schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0019] Figure 5 FIG. 5 is a fourth schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0020] Figure 6 FIG. 6 is a fifth schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0021] Figure 7 FIG. 7 is a sixth schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0022] Figure 8 FIG. 8 is a seventh schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0023] Figure 9 FIG. 9 is an eighth schematic diagram of the method for displaying application permissions provided by an embodiment of the present application;

[0024] Figure 10 FIG. 9 is a schematic diagram of a ninth application permission display method provided by an embodiment of the present application;

[0025] Figure 11 FIG. 10 is a structural schematic diagram of an application permission display device provided by an embodiment of the present application;

[0026] Figure 12 FIG. 11 is a structural block diagram of an electronic device provided by an embodiment of the present application;

[0027] Figure 13 FIG. 12 is a structural block diagram of another electronic device provided by an embodiment of the present application. DETAILED DESCRIPTION

[0028] The technical solutions in the embodiments of the present application will be clearly described below with reference to the drawings in the embodiments of the present application. Obviously, the described embodiments are only some of the embodiments of the present application, rather than all the embodiments of the present application. Based on the embodiments in the present application, all other embodiments obtained by a person of ordinary skill in the art belong to the scope of protection of the present application.

[0029] The terms "first", "second", and the like in the specification and claims of the present application are used to distinguish similar objects, and are not used to describe a specific order or sequence. It should be understood that the terms used in this way can be interchanged under appropriate circumstances, so that the embodiments of the present application can be implemented in an order other than that illustrated or described herein, and the objects distinguished by "first", "second", etc. are generally of a kind and are not limited in number, for example, the first object can be one or more. In addition, "and / or" in the specification and claims means at least one of the connected objects, and the character " / ", generally represents a "or" relationship between the front and rear associated objects.

[0030] At present, in the use of mobile devices, the user's management of application permissions is often rough. The existing technology usually provides a one-time authorization option when the application first requests permission, lacks dynamic monitoring and real-time feedback of permission use, and the permission management interface is not interactive enough, making it difficult for users to conveniently adjust and control permissions, and the permission settings cannot be dynamically adjusted according to user usage habits and environment, resulting in poor user experience. Moreover, users cannot fine-tune permissions according to actual usage scenarios and needs, and lack effective proxy and desensitization mechanisms for sensitive data, leading to excessive authorization and privacy leakage risks. At the same time, the existing permission management interface is relatively static, and users cannot intuitively perceive the actual use of permissions and data flow. Therefore, the present application provides an application permission display method and device, which can at least partially solve the above problems.

[0031] The application permission display method provided by the embodiments of the present application will be described below in conjunction with the drawings, through specific embodiments and their application scenarios.

[0032] As Figure 1 shown, the embodiment of the present application provides a display method of application permissions, which can specifically include the following steps:

[0033] Step 101, in the case that the first application of the first electronic device is in a foreground running state, display the identification of a plurality of application permissions corresponding to the first application.

[0034] When the user starts the first application for the first time on the first electronic device, at this time the first application is in a foreground display state, the identification of a plurality of application permissions corresponding to the first application is displayed on the screen of the first electronic device, and since it is the first time to start the first application, the authorization interface of the plurality of application permissions is automatically displayed, the user can select whether to start each application permission according to needs, that is, whether to authorize each application permission, if the application permission is started, it means that the application permission is authorized.

[0035] In an embodiment, the position of the first electronic device for displaying the identification of the application permission can be set as needed, and the identification of the application permission is preferably displayed through an atomic island user interface (UI). Wherein, the atomic island refers to an interactive area on the screen, which is used to display and manage application permissions and data in the present application, and the UI refers to the display and operation interface of the atomic island.

[0036] Exemplarily: when the user starts the first application for the first time for video chat on the first electronic device, an inquiry control about whether to start video chat will be displayed on the screen, as shown in Figure 2 “Agree” and “Refuse” are two inquiry controls, if the user clicks the “Agree” control, the video chat is started, and if the user clicks the “Refuse” control, the video chat is prohibited. Since the first application is used for the first time, and this time is for video chat, the corresponding displayed application permissions are camera permission and microphone permission, in order to facilitate the user to operate the application permission, the identification of the camera permission and the identification corresponding to the microphone permission are enlarged and displayed. If the user agrees to start the camera permission and the microphone permission, the enlarged and displayed identification 21 of the camera permission and the identification 22 of the microphone permission are as shown in Figure 3 If the user refuses to start the camera permission and the microphone permission, the enlarged and displayed identification 23 of the camera permission and the identification 24 of the microphone permission are as shown in Figure 4 If the user agrees to start the camera permission and refuses to start the microphone permission, the enlarged and displayed identification 25 of the camera permission and the identification 26 of the microphone permission are as shown in Figure 5

[0037] Taking the case that the user agrees to start the camera permission and the microphone permission as an example, after the user completes the authorization, as Figure 3 ​The zoomed-in displayed identification 23 of the camera permission and the identification 24 of the microphone permission are zoomed out and displayed in the atomic island, and the zoomed-out displayed identification 28 of the camera permission and the identification 29 of the microphone permission are displayed in the atomic island 27, as shown in Figure 6

[0038] It should be noted that the above display of the identification of the camera permission and the identification of the microphone permission is only an example, and the identification of the geographic location permission, the identification of the album reading permission, etc. can also be displayed.

[0039] In an embodiment, the display order of the identification of the plurality of application permissions corresponding to the first application can be: the identification of the application permission of the abnormal call, the identification of the application permission of the normal call, the identification of the application permission not called and having a strong association relationship with the first application, and the identification of the application permission not called and having a weak association relationship with the first application.

[0040] Step 102, in the case where it is detected that a first application permission in the plurality of application permissions is called, displaying a dynamic call identification on the identification of the first application permission.

[0041] The plurality of application permissions of the first application are detected in real time, and if it is detected that a first application permission in the plurality of application permissions is called, a dynamic call identification is displayed on the identification of the first application permission, and the user is prompted that the first application permission is called by displaying the dynamic call identification.

[0042] For example, the dynamic call identification can be displayed in the form of a dynamic ring-shaped progress bar around the identification of the first application permission, or can be displayed in the form of a dynamic long-shaped progress bar above or below the identification of the first application permission.

[0043] In the embodiments of the present application, by displaying the identification of the plurality of application permissions corresponding to the first application in the case where it is detected that the first application of the first electronic device is in the foreground running state, the application permissions of the application being used can be monitored and visually displayed in real time. And in the case where it is detected that a first application permission in the plurality of application permissions is called, a dynamic call identification is displayed on the identification of the first application permission, so that the user can intuitively perceive the state and actual use of each application permission, and improve the fine management of the application permission.

[0044] In an optional embodiment, the step 102 displays a dynamic call identification on the identification of the first application permission in the case where it is detected that a first application permission in the plurality of application permissions is called, and specifically includes:

[0045] In the case where it is detected that the first application permission is called, the current state and the call frequency of the first application permission are acquired.​

[0046] determining a display mode of the dynamic invocation identifier according to the current state of the first application permission and the invocation frequency;

[0047] displaying the dynamic invocation identifier on the identifier of the first application permission in the display mode.

[0048] If it is detected that the first application permission corresponding to the first application is invoked, it is necessary to acquire the current state of the first application permission, whether it is a start state or a close state, and it is also necessary to acquire the invocation frequency of the first application permission.

[0049] If the current state of the first application permission is a start state, it indicates that the first application permission is authorized invocation, and it can be determined that the first application permission is normal invocation. Based on the invocation frequency of the first application permission, the normal use frequency can be known, and thus the display mode of the dynamic invocation identifier can be determined. The display mode can intuitively perceive that the first application permission is normal invocation and the normal use frequency of the first application permission.

[0050] If the current state of the first application permission is a close state, it indicates that the first application permission is unauthorized invocation, and it can be determined that the first application permission is abnormal invocation. Based on the invocation frequency of the first application permission, the abnormal use frequency can be known, and thus the display mode of the dynamic invocation identifier can be determined. The display mode can intuitively perceive that the first application permission is abnormal invocation and the abnormal use frequency of the first application permission.

[0051] Exemplarily, when the first application is invoking the first application permission, an identifier of the first application permission on the atomic island will be surrounded by a dynamic ring-shaped progress bar. The display of the dynamic ring-shaped progress bar can be used to prompt the user that the first application permission is invoked. The rotation speed of the progress bar changes according to the invocation frequency of the first application permission. The higher the frequency is, the faster the speed is. For example, the first application permission is a photo reading permission. When the photo reading permission is in a start state, if the photo reading permission is invoked, the progress bar rotates at a speed of 10 revolutions per second, and the ring-shaped progress bar is displayed in green, thereby indicating normal invocation. If the user frequently invokes the photo reading permission, the rotation speed of the progress bar is accelerated (such as rotating at a speed of 20 revolutions per second), so that the user can perceive the use frequency of the photo reading permission in real time.

[0052] When the photo reading permission is in a close state, if the photo reading permission is invoked, the progress bar rotates at a speed of 10 revolutions per second, and the ring-shaped progress bar is displayed in red, thereby indicating abnormal invocation.

[0053] Similarly, if the first application permission is the geographic location permission, when the geographic location permission is in the enabled state, if the geographic location permission is invoked, the progress bar rotates at a speed of 10 revolutions per second, and the annular progress bar is displayed in green, thereby indicating normal invocation. If the user frequently invokes the geographic location permission, the progress bar rotates faster (such as at a speed of 20 revolutions per second), so that the user can perceive the frequency of use of the geographic location permission in real time. In addition, the scope of the geographic location permission can be displayed by the geographic fence distance, and the scope of the permission can be adjusted according to the needs of the user.

[0054] Similarly, when the first application permission is the camera permission or the microphone permission, the dynamic invocation identifier display mode is similar to that of the album reading permission, and will not be described again.

[0055] In an embodiment, if it is detected that the second application corresponding to the application permission is invoked, the identifier of the application permission can also be displayed, and a dynamic invocation identifier can be displayed on the identifier of the application permission. The second application is an application that is not started or a background application. Since the second application is an application that is not started or a background application, the invoked application permission is abnormal invocation, and the display mode of the dynamic invocation identifier of the application permission invoked by the second application is determined according to the process of abnormal invocation of the first application permission, which will not be described in detail here.

[0056] In an optional embodiment, after the step 101 displays the identifiers of the multiple application permissions corresponding to the first application of the first electronic device in the case where the first application of the first electronic device is in the foreground running state, the method further comprises:

[0057] In the case where the first electronic device and a second electronic device establish a communication connection, the identifiers of the multiple application permissions are displayed on the second electronic device;

[0058] In the case where a first input to the identifier of a second application permission in the identifiers of the multiple application permissions is received, a first operation is performed on the second application permission in response to the first input;

[0059] The identifier of the second application permission is the identifier of the application permission displayed on the first electronic device, or the identifier of the second application permission is the identifier of the application permission displayed on the second electronic device.

[0060] If the first electronic device and a second electronic device (such as a smart watch, a smart home device, etc.) establish a communication connection, the identifiers of the multiple application permissions corresponding to the first application in the first electronic device can be synchronously displayed on the second electronic device, and the use of the application permissions of the first electronic device can be displayed in real time on the second electronic device, so as to facilitate the user to manage privacy between different devices.

[0061] If the first electronic device receives a first input from the user regarding the identifier of the second application permission displayed on the first electronic device, then in response to the first input, it performs a first operation on the second application permission on the first electronic device. If the second electronic device receives a first input from the user regarding the identifier of the second application permission displayed on the first electronic device, then in response to the first input, it performs a first operation on the second application permission on the first electronic device.

[0062] It should be noted that the application permission identifiers displayed on the first and second electronic devices are synchronized. If one electronic device updates, the other electronic device updates synchronously to ensure that the user receives the latest dynamic information on application permissions in real time.

[0063] In one embodiment, when the second application permission is a camera permission, the first operation includes at least one of editing an image, enabling or disabling the camera permission.

[0064] If the second application permission is camera permission, and if the user receives a first input indicating camera permission, and this first input is for editing images, then in response to the first input, the user performs image editing operations on the camera permission, such as blurring the background or applying beauty filters to the subject. The user can define these operations as needed. If the second application permission is camera permission, and the user receives a first input indicating camera permission, and this first input is for enabling or disabling camera permission, then in response to the first input, the user performs operations to enable or disabling camera permission.

[0065] Example 1: such as Figure 7 As shown, selecting camera permission and dropping down one level displays two controls: "Cancel" and "Close". If camera permission is currently enabled, "Close" disables camera permission, and "Cancel" cancels the selection. If the user selects "Close", the first input represents the user's input when selecting camera permission from the dropdown menu and choosing the "Close" control; the first action is disabling camera permission.

[0066] Example 2: Selecting camera access and scrolling down two levels displays two controls: "Blur Background" and "Beautify People." If camera access is enabled, "Blur Background" blurs the background of the image captured by the camera, while "Beautify People" beautifies the people in the image. If the user selects "Blur Background," the first input indicates whether the user has selected the camera access dropdown menu and the "Blur Background" control; the first action is to blur the background of the image captured by the camera.

[0067] It should be noted that the one-level pull-down indicates that the user selects the icon of the camera permission and slides down by a distance S, and the two-level pull-down indicates that the user selects the icon of the camera permission and slides down by a distance 2S. The distance value of S can be set according to needs.

[0068] In an embodiment, in a case where the second application permission is a microphone permission, the first operation includes at least one of editing sound information, starting, or closing the microphone permission.

[0069] If the second application permission is the microphone permission, if the first input of the user to the icon of the microphone permission is received, and the first input is an input of editing sound information, in response to the first input, an operation of editing sound information is performed on the microphone permission, such as changing a timbre, changing a pitch, etc., which can be defined by the user according to needs. If the second application permission is the microphone permission, if the first input of the user to the icon of the microphone permission is received, and the first input is an input of starting or closing the microphone permission, in response to the first input, an operation of starting or closing the microphone permission is performed on the microphone permission.

[0070] In an embodiment, in a case where the second application permission is a geographic location permission, the first operation includes at least one of adjusting a radius size of a geographic location, starting, or closing the geographic location permission.

[0071] If the second application permission is the geographic location permission, if the first input of the user to the icon of the geographic location permission is received, and the first input is an input of adjusting the radius size of the geographic location (for example, adjusting the radius size of the geographic location by double-finger pinch), in response to the first input, an operation of adjusting the radius size of the geographic location is performed on the geographic location permission, such as changing a geofence distance, etc., which can be defined by the user according to needs. If the second application permission is the geographic location permission, if the first input of the user to the icon of the geographic location permission is received, and the first input is an input of starting or closing the geographic location permission, in response to the first input, an operation of starting or closing the geographic location permission is performed on the geographic location permission.

[0072] In an embodiment, in a case where the second application permission is an album reading permission, the first operation includes at least one of adjusting an album access range according to a user usage behavior and usage habit, starting, or closing the album reading permission.

[0073] If the second application permission is the album reading permission, if the first input received by the user is an identification of the album reading permission, and the first input is an input of adjusting the album access range, in response to the first input, the use behavior and use habit of the user to the album are obtained, and the album reading permission is adjusted according to the use behavior and use habit, such as setting the album access range to 100, etc., which can be defined by the user as needed. If the second application permission is the album reading permission, if the first input received by the user is an identification of the album reading permission, and the first input is an input of starting or closing the album reading permission, in response to the first input, the album reading permission is started or closed.

[0074] In an embodiment, in the case where the second application permission is the information reading permission, the first operation comprises at least one of mapping sensitive data in the information to virtual data, starting or closing the information reading permission.

[0075] If the second application permission is the information reading permission, if the user selects the identification of the information reading permission for a drop-down operation, etc., a "data proxy mode" and a "reject" control are displayed, and the user clicks the "data proxy mode", that is, the first input is an input of selecting the information reading permission and selecting the "data proxy mode", in response to the first input, the information reading permission is executed to map sensitive data in the information to virtual data, thereby better protecting the privacy data from being leaked and improving the security of the privacy data.

[0076] If the second application permission is the information reading permission, if the first input received by the user is an identification of the information reading permission, and the first input is an input of starting or closing the information reading permission, in response to the first input, the information reading permission is started or closed.

[0077] It should be noted that the information reading permission includes but is not limited to the permission of reading private information such as short messages and contact information.

[0078] In an optional embodiment, the method further comprises:

[0079] In the case where it is detected that the current network is switched from a safe network to a high-risk network, a second operation is performed on a third application permission in the plurality of application permissions;

[0080] In the case where it is detected that the current network is switched from a high-risk network to a safe network, the second operation on the third application permission is revoked.

[0081] Real-time detection of the current network used by the first electronic device can set the home network as a secure network and set the public network (e.g., public Wi-Fi) as a high-risk network. If it is detected that the current network is a high-risk network, the second operation of locking the third application permission (e.g., geographic location permission, album reading permission, etc.) corresponding to the first application is performed, as shown in FIG. 31. An icon 31 of a lock can be displayed on the right side of the atomic island to prompt that the third application permission (e.g., geographic location permission, album reading permission, etc.) corresponding to the first application has been locked, and the user needs to confirm whether to re-grant or switch to only this time authorization or to secure the security through the downgrade method to ensure user privacy security. Figure 8

[0082] The user slides the lock icon to the corresponding third application permission and slides down to complete the downgrade of the third application permission to achieve security reinforcement, for example, slides the lock icon to the album reading permission and slides down to temporarily close the album reading permission or provide a blank album; slides the lock icon to the geographic location permission and slides down to set the geographic location to a fuzzy location; slides the lock icon to the information reading permission and slides down to set the contact information to empty or provide a pseudonym list.

[0083] Conversely, the user slides the lock icon to the corresponding third application permission and slides up to complete the re-granting of the third application permission, for example, slides the lock icon to the album reading permission and slides up to complete the unlocking, i.e., not to downgrade the album reading permission; slides the lock icon to the geographic location permission and slides up to complete the unlocking, i.e., not to downgrade the geographic location permission; slides the lock icon to the information reading permission and slides up to complete the unlocking, i.e., not to downgrade the information reading permission.

[0084] It should be noted that the second operation is an automatic locking operation performed on the third application permission when switching from a secure network to a high-risk network; and the second operation is an automatic unlocking operation performed on the third application permission when switching from a high-risk network to a secure network.

[0085] In an optional embodiment, the method further includes:

[0086] In a case where it is detected that the first electronic device is in a preset scene, the current state of a fourth application permission in the plurality of application permissions is adjusted to a closed state.

[0087] The artificial intelligence detects whether the first electronic device is in a preset scene, which can be determined by the location of the first electronic device or the use state of the foreground running application (i.e., the first application) of the first electronic device. If it is determined that the first electronic device is in a preset scene, the current state of the application permission corresponding to the current scene (i.e., the fourth application permission) needs to be adjusted to a closed state.

[0088] ​Exemplarily, it is known through the use state of the first application that the user has entered a conference scene, and since the conference scene is a preset scene, in order to avoid the user from being disturbed by the fourth application permission irrelevant to the conference, the fourth application permission is automatically adjusted to the closed state. When the user is no longer in the conference scene, the fourth application permission is automatically adjusted to the state before entering the conference scene, so as to ensure the normal use of the application permission of the user.

[0089] In an optional embodiment, after the step 101 displays the identifiers of the plurality of application permissions corresponding to the first application of the first electronic device in the case where it is detected that the first application is in the foreground running state, the method further comprises:

[0090] receiving a second input on an identifier of a fifth application permission in the identifiers of the plurality of application permissions;

[0091] in response to the second input, displaying a use log corresponding to the fifth application permission.

[0092] If the second input is an input of viewing the use log, when the second input of the user on the identifier of the fifth application permission is received, the use log corresponding to the fifth application permission is displayed, so that the user can view the use condition and change trend of the fifth application permission in the past, and abnormal behaviors can be found and the permission can be optimized.

[0093] In an optional embodiment, after the step 101 displays the identifiers of the plurality of application permissions corresponding to the first application of the first electronic device in the case where it is detected that the first application is in the foreground running state, the method further comprises:

[0094] in the case where it is detected that a current state of a sixth application permission in the plurality of application permissions is a started state, associating the sixth application permission with user information;

[0095] generating spectrum information corresponding to the sixth application permission based on the user information;

[0096] displaying the spectrum information on the identifier of the sixth application permission.

[0097] If it is detected that the current state of the sixth application permission is the started state, the sixth application permission is associated with the user information, and the spectrum information is generated based on the user information, and the spectrum information is displayed on the identifier of the sixth application permission.

[0098] In an embodiment, the sixth application permission can be a camera permission or a microphone permission.

[0099] In an embodiment, in the case where the sixth application permission is the camera permission, the user information is a user body image.

[0100] In the case that the sixth application permission is a microphone permission, the user information is a user voiceprint.

[0101] If the sixth application permission is a camera permission, the camera permission is bound to a user body image, for example, the camera permission is bound to the body image of user A. During the process of image collection by the camera, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark). Figure 9 As shown in FIG. 3B, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark). Figure 9 As shown in FIG. 3B, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark). Figure 10 As shown in FIG. 3B, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark). Figure 10 As shown in FIG. 3B, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark). Figure 10 As shown in FIG. 3B, if the whole body image 33 of user A is collected, a monochrome (for example, red) spectrum information of gradual color from weak to strong is generated and displayed on the identification of the camera permission (through the first fill pattern 34 in FIG. 3B, which represents the monochrome, and the first fill pattern 34 represents the gradual color from weak to strong from light to dark).

[0102] Similarly, if the sixth application permission is a microphone permission, the microphone permission is bound to a user voiceprint, for example, the microphone permission is bound to the voiceprint of user A. During the process of sound collection by the microphone, if the voiceprint of user A is collected, a monochrome spectrum information of gradual color from weak to strong is generated and displayed on the identification of the microphone permission. If the voiceprint of user A is not collected, an orange spectrum information is generated and displayed on the identification of the microphone permission.

[0103] It should be noted that the first application permission, the second application permission, the third application permission, the fourth application permission, the fifth application permission, and the sixth application permission can be the same application permission or different application permissions, and the number can be one or more, which is not limited herein.

[0104] To sum up, the above-mentioned embodiments of the present application enhance the fine control of application permissions by real-time visual display and convenient interaction. Through scene adaptation and dynamic adjustment of application permissions, the user's privacy protection awareness and ability are improved, the risk of excessive authorization and privacy leakage is reduced, real-time perception and visualization of application permission use are enhanced, and the user can better understand the application permission use. At the same time, the use experience of application permissions is optimized, and the user is guided to reasonably manage application permissions. The data of cross-device application permissions are visualized and managed, and the user's control and privacy protection of data flow are enhanced.

[0105] The application permission display method provided by the embodiments of the present application can be executed by an application permission display device. The embodiments of the present application take the application permission display device as an example to illustrate the application permission display device provided by the embodiments of the present application.

[0106] As shown in Figure 11 The application permission display device 1100 provided by the embodiments of the present application includes the following components:

[0107] The first display module 1101 is configured to display the identifiers of a plurality of application permissions corresponding to a first application of a first electronic device when it is detected that the first application is in a foreground running state.

[0108] The second display module 1102 is configured to display a dynamic calling identifier on the identifier of a first application permission in the plurality of application permissions when it is detected that the first application permission is called.

[0109] Optionally, the second display module 1102 is specifically configured to:

[0110] When it is detected that the first application permission is called, the current state and the calling frequency of the first application permission are acquired.

[0111] According to the current state and the calling frequency of the first application permission, the display mode of the dynamic calling identifier is determined.

[0112] The dynamic calling identifier is displayed on the identifier of the first application permission in the display mode.

[0113] Optionally, the device further includes:

[0114] The third display module is configured to display the identifiers of the plurality of application permissions on a second electronic device when the first electronic device and the second electronic device establish a communication connection.

[0115] The first operation module is configured to, in response to receiving a first input of an identification of a second application permission in the plurality of application permissions, perform a first operation on the second application permission in response to the first input.

[0116] The identification of the second application permission is an identification of an application permission displayed on the first electronic device, or the identification of the second application permission is an identification of an application permission displayed on the second electronic device.

[0117] Optionally, in a case where the second application permission is a camera permission, the first operation includes at least one of editing an image, starting, or closing the camera permission.

[0118] In a case where the second application permission is a microphone permission, the first operation includes at least one of editing sound information, starting, or closing the microphone permission.

[0119] In a case where the second application permission is a geographic location permission, the first operation includes at least one of adjusting a radius size of a geographic location, starting, or closing the geographic location permission.

[0120] In a case where the second application permission is a photo album reading permission, the first operation includes at least one of adjusting a photo album access range according to a user behavior and a use habit, starting, or closing the photo album reading permission.

[0121] In a case where the second application permission is a reading information permission, the first operation includes at least one of mapping sensitive data in information to virtual data, starting, or closing the reading information permission.

[0122] Optionally, the apparatus further includes:

[0123] The second operation module is configured to, in response to detecting that a current network is switched from a secure network to a high-risk network, perform a second operation on a third application permission in the plurality of application permissions.

[0124] The revocation module is configured to, in response to detecting that the current network is switched from the high-risk network to the secure network, revoke the second operation on the third application permission.

[0125] The application permission display apparatus in the embodiments of the present applicationapplicationbe an electronic device, or a component in an electronic device, such as an integrated circuit or a chip. The electronic deviceapplicationbe a terminal, or another device other than a terminal. For example, the electronic deviceapplicationbe a mobile phone, a tablet computer, a notebook computer, a palm computer, a vehicle-mounted electronic device, a Mobile Internet Device (MID), an augmented reality (AR) / virtual reality (VR) device, a robot, a wearable device, an ultra-mobile personal computer (UMPC), a netbook, or a personal digital assistant (PDA), andapplicationbe a server, a Network Attached Storage (NAS), a personal computer (PC), a television (TV), a teller machine, or a self-service machine, and the like, and the embodiments of the present application do not make a specific limitation.

[0126] The application permission display apparatus in the embodiments of the present applicationapplicationbe an apparatus having an operating system. The operating systemapplicationbe an Android operating system, an iOS operating system, or another possible operating system, and the embodiments of the present application do not make a specific limitation.

[0127] The application permission display apparatus provided in the embodiments of the present applicationapplicationimplement the method embodiments, and each process of the method embodimentsapplicationbe implemented by the application permission display apparatus, and thus will not be repeated here. Figures 1 to 10 The method embodimentsapplicationimplement each process of the application permission display apparatus, and thus will not be repeated here.

[0128] Optionally, as shown in Figure 12 The embodiments of the present application further provide an electronic device 900, whichapplicationinclude a processor 901 and a memory 902, and the memory 902applicationstore a program or an instruction whichapplicationbe run on the processor 901. The program or the instructionapplicationbe executed by the processor 901 to implement each step of the above-mentioned application permission display method embodiments, and achieve the same technical effects. Each step will not be repeated here.

[0129] It should be noted that the electronic device in the embodiments of the present applicationapplicationinclude the above-mentioned mobile electronic device and non-mobile electronic device.

[0130] Figure 13 A hardware structure schematic diagram of an electronic device for implementing the embodiments of the present application.

[0131] The electronic device 1000 includes, but is not limited to, a radio frequency unit 1001, a network module 1002, an audio output unit 1003, an input unit 1004, a sensor 1005, a display unit 1006, a user input unit 1007, an interface unit 1008, a storage 1009, and a processor 1010, etc.

[0132] Those skilled in the art can understand that the electronic device 1000 can also include a power supply (such as a battery) for supplying power to each component, and the power supply can be logically connected to the processor 1010 through a power management system, so as to realize functions such as management of charging, discharging, and power consumption management through the power management system. Figure 13 The electronic device structure shown in the figure does not constitute a limitation on the electronic device, and the electronic device can include more or fewer components than the figure, or combine certain components, or different component arrangements, which are not described here.

[0133] The processor 1010 is configured to display the identifiers of the multiple application permissions corresponding to the first application of the first electronic device in a case where it is detected that the first application is in a foreground running state.

[0134] In a case where it is detected that a first application permission in the multiple application permissions is invoked, a dynamic invocation identifier is displayed on the identifier of the first application permission.

[0135] Optionally, the processor 1010, in a case where it is detected that a first application permission in the multiple application permissions is invoked, when displaying a dynamic invocation identifier on the identifier of the first application permission, is specifically configured to:

[0136] In a case where it is detected that the first application permission is invoked, the current state and the invocation frequency of the first application permission are obtained.

[0137] According to the current state and the invocation frequency of the first application permission, a display mode of the dynamic invocation identifier is determined.

[0138] The dynamic invocation identifier is displayed on the identifier of the first application permission in the display mode.

[0139] Optionally, the processor 1010, after displaying the identifiers of the multiple application permissions corresponding to the first application of the first electronic device in a case where it is detected that the first application is in a foreground running state, is further configured to:

[0140] In a case where the first electronic device and a second electronic device establish a communication connection, the identifiers of the multiple application permissions are displayed on the second electronic device.

[0141] In a case where a first input to an identification of a second application permission in the identifications of the plurality of application permissions is received, a first operation is performed on the second application permission in response to the first input;

[0142] The identification of the second application permission is an identification of an application permission displayed on the first electronic device, or the identification of the second application permission is an identification of an application permission displayed on the second electronic device.

[0143] Optionally, in a case where the second application permission is a camera permission, the first operation includes at least one of editing an image, starting, or closing the camera permission;

[0144] In a case where the second application permission is a microphone permission, the first operation includes at least one of editing sound information, starting, or closing the microphone permission;

[0145] In a case where the second application permission is a geographic location permission, the first operation includes at least one of adjusting a radius size of a geographic location, starting, or closing the geographic location permission;

[0146] In a case where the second application permission is an album reading permission, the first operation includes at least one of adjusting an album access range according to a user usage behavior and a usage habit, starting, or closing the album reading permission;

[0147] In a case where the second application permission is a reading information permission, the first operation includes at least one of mapping sensitive data in information to virtual data, starting, or closing the reading information permission.

[0148] Optionally, the processor 1010 is further configured to:

[0149] In a case where it is detected that a current network is switched from a secure network to a high-risk network, a second operation is performed on a third application permission in the plurality of application permissions;

[0150] In a case where it is detected that the current network is switched from the high-risk network to the secure network, the second operation on the third application permission is revoked.

[0151] It should be understood that in the embodiments of the present application, the input unit 1004 can include a graphics processor (GPU) 10041 and a microphone 10042. The graphics processor 10041 processes image data of a still picture or a video obtained by an image capture device (such as a camera) in a video capture mode or an image capture mode. The display unit 1006 can include a display panel 10061, which can be configured in the form of a liquid crystal display, an organic light-emitting diode, or the like. The user input unit 1007 includes at least one of a touch panel 10071 and other input devices 10072. The touch panel 10071 is also referred to as a touch screen. The touch panel 10071 can include two parts of a touch detection device and a touch controller. The other input devices 10072 can include, but are not limited to, a physical keyboard, function keys (such as volume control keys, on-off keys, etc.), a trackball, a mouse, a joystick, and the like, which will not be described here.

[0152] The memory 1009 can be used to store software programs and various data. The memory 1009 can mainly include a first storage area storing programs or instructions and a second storage area storing data, wherein the first storage area can store an operating system, application programs or instructions required by at least one function (such as a sound playing function, an image playing function, etc.), and the like. In addition, the memory 1009 can include a volatile memory or a non-volatile memory, or the memory 1009 can include both volatile and non-volatile memories. The non-volatile memory can be a Read-Only Memory (ROM), a Programmable ROM (PROM), an Erasable PROM (EPROM), an Electrically EPROM (EEPROM), or a flash memory. The volatile memory can be a Random Access Memory (RAM), a Static RAM (SRAM), a Dynamic RAM (DRAM), a Synchronous DRAM (SDRAM), a Double Data Rate SDRAM (DDR SDRAM), an Enhanced SDRAM (ESDRAM), a Synch link DRAM (SLDRAM), and a Direct Rambus RAM (DRRAM). The memory 1009 in the embodiments of the present application includes but is not limited to these and any other suitable types of memories.

[0153] The processor 1010 can include one or more processing units; optionally, the processor 1010 integrates an application processor and a modem processor, wherein the application processor mainly processes operations related to an operating system, a user interface, and an application program, and the modem processor mainly processes wireless communication signals, such as a baseband processor. It can be understood that the above-mentioned modem processor can also not be integrated into the processor 1010.

[0154] The embodiments of the present application also provide a readable storage medium, the readable storage medium stores programs or instructions, the programs or instructions are executed by a processor to realize each process of the above-mentioned application permission display method embodiment, and the same technical effects can be achieved. To avoid repetition, details are not described here.

[0155] The processor is the processor in the electronic device described in the above embodiments. The readable storage medium includes a computer readable storage medium, such as a computer readable only memory (ROM), a random access memory (RAM), a magnetic disk or an optical disk, etc.

[0156] The embodiment of the application further provides a chip, which comprises a processor and a communication interface, the communication interface is coupled with the processor, the processor is used for running programs or instructions to realize each process of the display method of the application permission and achieve the same technical effects. To avoid repetition, details are not described here.

[0157] It should be understood that the chip mentioned in the embodiment of the application can also be referred to as a system chip, a system chip, a chip system or a system on chip, etc.

[0158] The embodiment of the application provides a computer program product, which is stored in a storage medium, and the program product is executed by at least one processor to realize each process of the display method of the application permission and achieve the same technical effects. To avoid repetition, details are not described here.

[0159] It should be noted that in this paper, the term "includes", "contains" or any other variant thereof is intended to cover non-exclusive inclusion, so that the process, method, article or device including a series of elements not only includes those elements, but also includes other elements not explicitly listed or inherent to such process, method, article or device. Without more limitations, the element defined by the statement "includes a" does not exclude the presence of other identical elements in the process, method, article or device including the element. In addition, it should be pointed out that the scope of the method and device in the embodiment of the application is not limited to the order of the functions shown or discussed, but can also include the functions performed in a substantially simultaneous manner or in the opposite order according to the functions involved, for example, the described method can be performed in an order different from the described order, and various steps can also be added, omitted or combined. In addition, the features described with reference to some examples can be combined in other examples.

[0160] Through the above description of the embodiments, those skilled in the art can clearly understand that the above-mentioned example methods can be realized by means of software and a necessary general hardware platform, and of course, can also be realized by hardware, but in many cases, the former is a better embodiment. Based on such understanding, the technical solutions of the present application can be embodied in the form of a computer software product in essence or in the form of a part that contributes to the prior art, which is stored in a storage medium (such as a ROM / RAM, a magnetic disk, or an optical disk) and includes a plurality of instructions for causing a terminal (which can be a mobile phone, a computer, a server, or a network device, etc.) to execute the methods described in the various embodiments of the present application.

[0161] The embodiments of the present application are described above in combination with the drawings, but the present application is not limited to the above-mentioned specific embodiments, and the above-mentioned specific embodiments are only illustrative and not restrictive. Those skilled in the art can make many forms under the inspiration of the present application without departing from the scope of the present application and the scope protected by the claims.

Claims

1. A display method of application permissions, characterized by, The method comprises the following steps: In the case that the first application of the first electronic device is in the foreground running state, the identification of the plurality of application permissions corresponding to the first application is displayed; In the case that the first application permission of the plurality of application permissions is called, a dynamic calling identification is displayed on the identification of the first application permission.

2. The method of claim 1, wherein, The method further comprises the following steps: In the case that the first application permission is called, the current state and the calling frequency of the first application permission are obtained; According to the current state and the calling frequency of the first application permission, the display mode of the dynamic calling identification is determined; The dynamic calling identification is displayed on the identification of the first application permission in the display mode.

3. The method of claim 1, wherein, After the step of displaying the identification of the plurality of application permissions corresponding to the first application in the case that the first application of the first electronic device is in the foreground running state, the method further comprises the following steps: In the case that the first electronic device and the second electronic device establish a communication connection, the identification of the plurality of application permissions is displayed on the second electronic device; In the case that the identification of the second application permission in the identification of the plurality of application permissions is received, a first operation is performed on the second application permission in response to the first input; The identification of the second application permission is the identification of the application permission displayed on the first electronic device, or the identification of the second application permission is the identification of the application permission displayed on the second electronic device.

4. The method of claim 3, wherein In the case that the second application permission is a camera permission, the first operation comprises at least one of editing an image, starting or closing the camera permission; In the case that the second application permission is a microphone permission, the first operation comprises at least one of editing sound information, starting or closing the microphone permission; In the case that the second application permission is a geographic location permission, the first operation comprises at least one of adjusting the radius size of the geographic location, starting or closing the geographic location permission; In the case that the second application permission is a photo album reading permission, the first operation comprises at least one of adjusting the photo album access range according to the user's usage behavior and usage habit, starting or closing the photo album reading permission; In the case that the second application permission is a reading information permission, the first operation comprises at least one of mapping sensitive data in the information to virtual data, starting or closing the reading information permission.

5. The method of claim 1, wherein, The method further comprises the following steps: In the case that the current network is switched from a secure network to a high-risk network, a second operation is performed on a third application permission in the plurality of application permissions; In the case that the current network is switched from a high-risk network to a secure network, the second operation on the third application permission is revoked.

6. A display device of application authority, characterized by, The method comprises the following steps: The first display module is configured to display the identification of the plurality of application permissions corresponding to the first application in the case that the first application of the first electronic device is in the foreground running state. The second display module is configured to display a dynamic calling identifier on the identifier of the first application permission when it is detected that the first application permission is called.

7. The apparatus of claim 6, wherein, The second display module is specifically configured to: obtain a current state and a calling frequency of the first application permission when it is detected that the first application permission is called; determine a display mode of the dynamic calling identifier according to the current state and the calling frequency of the first application permission; and display the dynamic calling identifier on the identifier of the first application permission in the display mode.

8. The apparatus of claim 6, wherein, The device further includes: a third display module configured to display the identifiers of the plurality of application permissions on a second electronic device when the first electronic device and the second electronic device establish a communication connection; a first operation module configured to perform a first operation on a second application permission in response to a first input on the identifier of the second application permission when the first input is received, wherein the identifier of the second application permission is an identifier of an application permission displayed on the first electronic device or an identifier of an application permission displayed on the second electronic device.

9. The device of claim 8, wherein: when the second application permission is a camera permission, the first operation includes at least one of editing an image, starting, or closing the camera permission; when the second application permission is a microphone permission, the first operation includes at least one of editing sound information, starting, or closing the microphone permission; when the second application permission is a geographic location permission, the first operation includes at least one of adjusting a radius size of a geographic location, starting, or closing the geographic location permission; when the second application permission is a photo album reading permission, the first operation includes at least one of adjusting a photo album access range according to a user behavior and a use habit, starting, or closing the photo album reading permission; when the second application permission is a reading information permission, the first operation includes at least one of mapping sensitive data in information to virtual data, starting, or closing the reading information permission. The device further includes:

10. The apparatus of claim 6, wherein, a second operation module configured to perform a second operation on a third application permission in the plurality of application permissions when it is detected that a current network is switched from a secure network to a high-risk network; and a revocation module configured to revoke the second operation on the third application permission when it is detected that the current network is switched from the high-risk network to the secure network. ​