Personal privacy data protection method and device, equipment and storage medium

By building a program isolation environment on the client side, including a privacy database and a local gateway, restricting the network connection of the service program, generating and storing interactive information data of the storage service, the problem of leakage of personal privacy data during network use is solved, local data storage is achieved, the risk of leakage is reduced, and compatibility with existing applications is maintained.

CN121389175APending Publication Date: 2026-01-23JIANYUAN SCIENCE & TECHNOLOGY (SHENZHEN) CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202511449177.4
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-10-11
Publication Date
2026-01-23

AI Technical Summary

Technical Problem

How can we reduce the risk of unauthorized leakage of personal privacy data, especially during internet use, when communication records and personal preferences may be collected, analyzed, or shared?

Method used

An isolated environment is set up on the client side, including a privacy database and a local gateway. The executable service program is restricted to listening only to local loopback network requests and remote network connections are prohibited. The original user data is obtained by accessing the privacy database through the local gateway, generating and storing interactive information data for the storage service, and isolating the display of user data in the browser page. A peer-to-peer network transmission channel is established to verify data access requests.

Benefits of technology

By storing user privacy data locally, the risk of data theft is reduced, while maintaining compatibility with the operation of existing applications.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121389175A_ABST
    Figure CN121389175A_ABST
Patent Text Reader

Abstract

The invention discloses a personal privacy data protection method and device, equipment and a storage medium, and relates to the technical field of data protection, the personal privacy data protection method comprises the steps that a program isolation environment of a client is established, and the program isolation environment comprises a privacy database, a local gateway and third-party application program runtime; receiving an executable service program of the service provider; running the executable service program in the program isolation environment to generate service interaction information data; and storing the service interaction information data in the privacy database, and sending the service interaction information data to the service providing end. According to the application, the privacy data of the user is directly stored in the local of the user and does not need to be uploaded to the server, so that the risk of personal privacy disclosure can be reduced, and meanwhile, the application can be compatible with the operation mode of the existing application.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the technical field of data protection, and particularly relates to a personal privacy data protection method and device, equipment and a storage medium. BACKGROUND

[0002] In today's highly digitized era, protecting user privacy and data security has become an important issue that cannot be ignored. At present, when users use the network, online activities, communication records and personal preferences may be collected, analyzed or shared without authorization, causing information leakage. Therefore, how to reduce the risk of personal privacy data leakage is still a problem to be solved.

[0003] The above content is only used to assist in understanding the technical solutions of the present application and does not represent the acknowledgement of the above content as prior art. SUMMARY

[0004] The main purpose of the present application is to provide a personal privacy data protection method, device, equipment and storage medium, which aims to solve the technical problem of how to reduce the risk of personal privacy data leakage.

[0005] To achieve the above purpose, the present application provides a personal privacy data protection method, which comprises: Building a program isolation environment of a client, wherein the program isolation environment comprises a privacy database, a local gateway and a third-party application program runtime; Receiving an executable service program of a service providing end; Running the executable service program in the program isolation environment to generate service interaction information data; Storing the service interaction information data into the privacy database, and sending the service interaction information data to the service providing end.

[0006] In an embodiment, the step of building a program isolation environment of a client comprises: Establishing a standardized privacy database and a local gateway in the client; Configuring an access control policy for the local gateway; Setting an industry standardized data format and an application program interface of the privacy database to obtain a program isolation environment.

[0007] In an embodiment, before running the executable service program in the program isolation environment, the method further comprises: Restricting the executable service program to only listen to local loop network requests; Prohibiting the executable service program from initiating a remote network connection operation; configure a data read-write permission white list of the executable service program.

[0008] In an embodiment, the step of running the executable service program in the program isolation environment to generate service interaction information data comprises: accessing the original user data from the privacy database through the local gateway; running the executable service program according to the original user data and preset business logic to generate initial service interaction information data containing user signature; adding a service provider verification label to the initial service interaction information data to generate service interaction information data.

[0009] In an embodiment, the step of running the executable service program according to the original user data and preset business logic comprises: obtaining public data and privacy data according to the original user data; creating a browser page framework of the client, the browser page framework comprising a browser main page and a browser sandbox sub-page; loading and displaying the original user data in the browser sandbox sub-page, and loading public data and the executable service program in the browser main page.

[0010] In an embodiment, the step of creating a browser page framework of the client comprises: creating a browser main page in the client; generating a browser sandbox sub-page with path isolation identification in the browser main page; configuring network access rules of the browser sandbox sub-page, the network access rules comprising only allowing access to a local loopback address server and prohibiting access to an external network server.

[0011] In an embodiment, after the program isolation environment of the client is built, the method further comprises: establishing a peer-to-peer network transmission channel between multiple clients; receiving an authorized data access request from other clients through the peer-to-peer network channel; returning a desensitized data response after verifying the legality of the authorized data access request.

[0012] In addition, to achieve the above-mentioned purpose, the application further provides a personal privacy data protection device, which comprises: a building module configured to build a program isolation environment of a client, the program isolation environment comprising a privacy database, a local gateway, and a third-party application runtime; receive an executable service program of a service providing end; run the executable service program in the program isolation environment to generate service interaction information data; store the service interaction information data into the privacy database and send the service interaction information data to the service providing end.

[0013] In addition, to achieve the above object, the present application further provides a device for protecting personal privacy data, which comprises a memory, a processor and a computer program stored in the memory and executable in the processor, and the computer program is configured to implement the steps of the method for protecting personal privacy data.

[0014] In addition, to achieve the above object, the present application further provides a storage medium, which is a computer readable storage medium, and the storage medium stores a computer program, and the computer program is executed by a processor to implement the steps of the method for protecting personal privacy data.

[0015] In addition, to achieve the above object, the present application further provides a computer program product, which comprises a computer program, and the computer program is executed by a processor to implement the steps of the method for protecting personal privacy data.

[0016] The present application provides a method for protecting personal privacy data, which builds a program isolation environment of a client, the program isolation environment comprises a privacy database, a local gateway and a third-party application runtime, receives an executable service program of a service providing end, runs the executable service program in the program isolation environment to generate service interaction information data, stores the service interaction information data into the privacy database and sends the service interaction information data to the service providing end.

[0017] In conclusion, the present application directly saves user privacy data in the user's local device, and does not need to upload to a server, which fundamentally prevents personal privacy data from being stolen, reduces the risk of personal privacy data leakage, and is compatible with the operation mode of existing applications. BRIEF DESCRIPTION OF DRAWINGS

[0018] The accompanying drawings, which are incorporated herein and form part of the specification, illustrate embodiments consistent with the present application and, together with the description, further serve to explain the principles of the present application.

[0019] In order to more clearly illustrate the technical solutions in the embodiments of the present application or the prior art, the following will briefly introduce the drawings needed to be used in the embodiments or prior art description. Obviously, for those skilled in the art, other drawings can also be obtained based on these drawings without any creative effort.

[0020] Figure 1 The flowchart provided for the personal privacy data protection method embodiment one of the present application; Figure 2 The system architecture diagram provided for the personal privacy data protection method embodiment one of the present application; Figure 3 The flowchart provided for the personal privacy data protection method embodiment two of the present application; Figure 4 The browser page diagram provided for the personal privacy data protection method embodiment two of the present application; Figure 5 The module structure diagram of the personal privacy data protection device of the embodiment of the present application; Figure 6 The device structure diagram of the hardware running environment involved in the personal privacy data protection method in the embodiment of the present application.

[0021] The purpose implementation, functional features and advantages of the present application will be further described with reference to the embodiments and the accompanying drawings. DETAILED DESCRIPTION

[0022] It should be understood that the specific embodiments described herein are only used to explain the technical solutions of the present application, and are not used to limit the present application.

[0023] In order to better understand the technical solutions of the present application, the following will be described in detail with reference to the drawings in the specification and specific embodiments.

[0024] The main solution of the present application is to build a program isolation environment of the client, which includes a privacy database, a local gateway and a third-party application runtime; receiving an executable service program of a service providing end; running the executable service program in the program isolation environment to generate service interaction information data; storing the service interaction information data into the privacy database, and sending the service interaction information data to the service providing end.

[0025] At present, when users use the network, online activities, communication records and personal preferences may be collected, analyzed or shared without authorization, causing information leakage. Therefore, how to reduce the risk of personal privacy data leakage is still a problem to be solved.

[0026] The application fundamentally prevents personal privacy data from being stolen and reduces the risk of personal privacy data leakage by directly saving user privacy data in the user's local without uploading to the server, while being compatible with the operation mode of existing applications.

[0027] Based on this, the application provides a personal privacy data protection method, referring to Figure 1 , Figure 1 The figure is a flowchart of the first embodiment of the personal privacy data protection method of the application.

[0028] In this embodiment, the personal privacy data protection method comprises steps S10-S40: Step S10: Build a program isolation environment of the client, which comprises a privacy database, a local gateway, and a third-party application runtime; It should be noted that the execution subject of this embodiment can be a computing service device with data processing, network communication, and program running functions, such as a tablet computer, a personal computer, a mobile phone, or an electronic device capable of realizing the above functions, a personal privacy data protection device, etc. The personal privacy data protection device is taken as an example to describe this embodiment and the following embodiments.

[0029] It should be noted that the client of this embodiment refers to a user terminal, and the corresponding service provider of the Internet service provider. When the user uses the Internet service, the personal privacy data is exposed to the service provider, and there is a risk of data leakage. Therefore, building a program isolation environment in the client can effectively prevent privacy data leakage. The program isolation environment can safely run executable programs to avoid some destructive operations of the executable programs.

[0030] In a feasible manner, the step of building a program isolation environment of the client comprises: establishing a standardized privacy database and a local gateway in the client; configuring an access control policy for the local gateway; setting an industry-standardized data format and an application program interface of the privacy database to obtain the program isolation environment.

[0031] It can be understood that this embodiment first establishes a local gateway and a database in the client from the gateway, which can be referred to in Figure 2 , Figure 2 The figure is a system architecture diagram, which requires that most interfaces of the local gateway only allow local access, and a few necessary interfaces allow remote access. In addition, a local privacy database is also created, and the database format and interface are standardized in various industries. The local gateway provides direct mutual access capability and data privacy protection function, and multiple privacy databases jointly record and manage data related to people, things, and objects.

[0032] Step S20: receiving the executable service program of the service provider; It can be understood that the executable service program of the service provider is received, and when the user uses the executable service program, the privacy data will not be exposed to the Internet service provider, and the possibility of privacy leakage is reduced.

[0033] In a feasible manner, after the program isolation environment of the building client is established, it further includes: establishing a peer-to-peer network transmission channel between multiple clients; receiving an authorized data access request from other clients through the peer-to-peer network channel; and returning desensitized data response after verifying the legality of the authorized data access request.

[0034] It can be understood that by establishing a peer-to-peer network transmission channel between multiple clients, data transmission between users can be completed, and this transmission method does not use third-party tools, so it is safer when transmitting information.

[0035] Step S30: running the executable service program in the program isolation environment to generate service interaction information data; It can be understood that since the program isolation environment is isolated from the outside world, the privacy data of the user is local when running the executable service program, and will not be exposed to the Internet service provider system. The service transmission data is the data generated by running the executable service program, such as order data generated by the user shopping.

[0036] In a feasible manner, before running the executable service program in the program isolation environment, it further includes: limiting the executable service program to only listen to local loop network requests; prohibiting the executable service program from initiating remote network connection operations; and configuring a data read-write permission whitelist for the executable service program.

[0037] It can be understood that, in order to prevent the Internet service provider from reading and uploading the local data displayed in the browser when the user runs the executable service program, the executable service program needs to be restricted by using rules. The restrictions issued to the locally running executable service program include: the executable service program should be a standard HTTP protocol service, for each request, there are parameters request, response, wherein the request carries the request information, and the response is used for response, and the response is output in a json format. The executable service program only listens to the request from the local, ensures that the request is from the local, and responds to the local browser. The executable service program cannot operate the network interface and cannot initiate a remote connection and upload data. The executable service program can only read and write the database, and reading and writing the local file needs to apply for permission and attach the folder to be read and written, and needs the explicit authorization of the user. Through these restrictions, the interface processing of the executable service program can only read and write local data, but cannot directly upload user private data, thereby protecting the user private data.

[0038] Step S40: storing the service interaction information data into the privacy database, and sending the service interaction information data to the service providing end.

[0039] It should be noted that, taking the user shopping on the Internet as an example, when the user wants to place an order, the Internet service provider and the user each save an order information, and the user's saving is in the privacy database, so that the Internet service provider and the user data are separated, the user has the right to browse all the commodity information of the Internet service provider, and the Internet service provider can only minimize the user's information. Only when the order is placed, the user and the Internet service provider each leave an order information, and the order also has the digital signature of the Internet service provider and the user. In the whole process, the Internet service provider cannot obtain the private information of the user except the ID.

[0040] The program isolation environment of the embodiment builds a client, and the program isolation environment includes a privacy database, a local gateway and a third-party application runtime; receiving an executable service program of a service providing end; running the executable service program in the program isolation environment to generate service interaction information data; storing the service interaction information data into the privacy database, and sending the service interaction information data to the service providing end.

[0041] As can be seen from the above, the embodiment directly saves the user private data in the user local, and does not need to upload to the server, thereby fundamentally preventing the personal private data from being stolen, reducing the risk of personal private data leakage, and at the same time, being compatible with the operation mode of the existing application.

[0042] Based on the first embodiment of this application, in the second embodiment of this application, the content that is the same as or similar to that in the first embodiment described above can be referred to the above description, and will not be repeated hereafter. Based on this, please refer to... Figure 3 Step S30 also includes steps S301 to S303: Step S301: Access the privacy database through the local gateway to obtain raw user data; Understandably, raw user data is the data that users need when using executable service programs. Taking a user's shopping as an example, the service provider for the executable service program is an online merchant, and the raw user data includes the user's historical shopping information, personal ID, search history, etc. Some data in the raw user data is for user browsing and is not needed when running the executable service program.

[0043] Step S302: Run the executable service program according to the original user data and the preset business logic to generate initial service interaction information data containing user signature; It should be noted that, in order to prevent Internet service providers from reading and uploading local data displayed in the browser when the user runs the executable service program, this embodiment will control the data that the executable service program can obtain during runtime according to the preset business logic. Specifically, the privacy data in the original user data can be isolated.

[0044] In one feasible approach, the step of running the executable service program based on the original user data and pre-defined business logic includes: obtaining publicly available data and private data based on the original user data; creating a browser page framework for the client, the browser page framework including a browser homepage and a browser sandbox page; loading and displaying the original user data on the browser sandbox page, and loading the publicly available data and the executable service program on the browser homepage. The step of creating the browser page framework for the client includes: creating a browser homepage on the client; generating a browser sandbox page with path isolation identifiers on the browser homepage; configuring network access rules for the browser sandbox page, the network access rules including allowing access only to servers with local loopback addresses and prohibiting access to external network servers.

[0045] It's important to note that the browser's main page is the page where the executable service program runs. For example, when a user is shopping, if the service provider for the executable program is an online merchant, the browser's main page will display the products and the order page. The browser's sandbox page, on the other hand, uses a sandbox model. The sandbox model is a security isolation mechanism that restricts a program's access to system resources (such as files and network) to prevent malicious code from damaging the host and improve security. (See reference...)Figure 4 , Figure 4 This is a browser page illustration. A browser sandbox can be used to display sensitive user data and prevent scripts from reading it. Specifically, it can restrict user data to be displayed only on pages with a path starting with " / local / ", embedded within the page as an iframe. An iframe is an HTML tag used to embed another independent document or page within the current webpage, forming an inline frame. Utilizing the iframe's sandbox property, the browser's main page cannot read the content within the iframe, thus preventing internet businesses from reading user data within the page. Furthermore, it can restrict pages within the iframe to access only local services, prohibiting access to external services, to prevent the iframe from reading user data and reporting it externally. This can be identified by intercepting browser requests and verifying if the header indicates a " / local / " subpage.

[0046] Step S303: Add a service provider verification tag to the initial service interaction information data to generate service interaction information data.

[0047] Understandably, service interaction information data can be order data. When a user needs to place an order, the online merchant and the user each save a copy of the order data. The user's copy is stored locally, thus achieving data separation between the merchant and the user. The user has the right to browse all the merchant's product information, while the merchant can only obtain a minimal amount of user information. Only when an order is placed do the user and the merchant each retain a copy of the order information. The order contains the digital signatures of both the merchant and the user, thereby completing the transaction.

[0048] This embodiment accesses the privacy database through the local gateway to obtain raw user data; it then runs the executable service program based on the raw user data and pre-set business logic to generate initial service interaction information data containing the user's signature; finally, it adds a service provider verification tag to the initial service interaction information data to generate service interaction information data. This embodiment runs the executable service program using the raw user data and uses different browser pages to display the service program page and the user privacy data page, preventing users from exposing their personal privacy data while using the service program, reducing the risk of personal privacy data leakage, and maintaining compatibility with the operation of existing applications.

[0049] This application also provides a device for protecting personal privacy data; please refer to... Figure 5 The device for protecting personal privacy data includes: Module 10 is used to build a program isolation environment for the client, which includes a privacy database, a local gateway, and a third-party application runtime. The receiving module 20 is configured to receive an executable service program of a service provider. The running module 30 is configured to run the executable service program in the program isolation environment to generate service interaction information data. The sending module 40 is configured to store the service interaction information data into the privacy database and send the service interaction information data to the service provider.

[0050] The embodiment builds a program isolation environment of a client, which includes a privacy database, a local gateway and a third-party application runtime; receives an executable service program of a service provider; runs the executable service program in the program isolation environment to generate service interaction information data; stores the service interaction information data into the privacy database and sends the service interaction information data to the service provider.

[0051] As can be seen, the embodiment directly saves user privacy data in the user's local device, without uploading the data to a server, thereby fundamentally preventing the user privacy data from being stolen and reducing the risk of user privacy data leakage, while being compatible with the operation mode of existing applications.

[0052] In an embodiment, the building module 10 is further configured to establish a standardized privacy database and a local gateway in a client; configure an access control policy for the local gateway; set an industry-standardized data format and an application program interface of the privacy database to obtain a program isolation environment.

[0053] In an embodiment, the running module 30 is further configured to limit the executable service program to only listen to local loop network requests; prohibit the executable service program from initiating a remote network connection operation; and configure a data read-write permission white list of the executable service program.

[0054] In an embodiment, the running module 30 is further configured to access the privacy database through the local gateway to obtain original user data; run the executable service program according to the original user data and a preset business logic to generate initial service interaction information data containing a user signature; and add a service provider verification label to the initial service interaction information data to generate service interaction information data.

[0055] In an embodiment, the running module 30 is further configured to obtain public data and privacy data according to the original user data; create a browser page framework of the client, which includes a browser main page and a browser sandbox sub-page; load and display the original user data in the browser sandbox sub-page, and load public data and the executable service program in the browser main page.

[0056] In an embodiment, the running module 30 is further configured to create a browser main page at the client; generate a browser sandbox sub-page with a path isolation identifier in the browser main page; and configure a network access rule of the browser sandbox sub-page, the network access rule comprising only allowing access to a local loopback address server and prohibiting access to an external network server.

[0057] In an embodiment, the building module 10 is further configured to establish a peer-to-peer network transmission channel between a plurality of clients; receive an authorized data access request from other clients through the peer-to-peer network channel; and return a desensitized data response after verifying the legality of the authorized data access request.

[0058] The personal privacy data protection device provided in the present application adopts the personal privacy data protection method in the above embodiments, and can solve the technical problem of how to reduce the risk of personal privacy data leakage. Compared with the prior art, the personal privacy data protection device provided in the present application has the same beneficial effects as the personal privacy data protection method provided in the above embodiments, and other technical features in the personal privacy data protection device are the same as the features disclosed in the above embodiments, which will not be repeated here.

[0059] The present application provides a personal privacy data protection device, which comprises at least one processor and a memory in communication connection with the at least one processor, wherein the memory stores instructions executable by the at least one processor, and the instructions are executed by the at least one processor to enable the at least one processor to perform the personal privacy data protection method in the above embodiment one.

[0060] Reference will now be made to the following description Figure 6 which illustrates a structure of a personal privacy data protection device suitable for implementing embodiments of the present application. The personal privacy data protection device in the embodiments of the present application can include, but is not limited to, mobile terminals such as mobile phones, notebook computers, digital broadcast receivers, PDAs (Personal Digital Assistants), PADs (Portable Application Descriptions), PMPs (Portable Media Players), and vehicle-mounted terminals (e.g., vehicle-mounted navigation terminals), and fixed terminals such as digital TVs and desktop computers. Figure 6 The personal privacy data protection device shown is merely an example, and should not impose any limitation on the functions and use range of the embodiments of the present application.

[0061] As Figure 6As shown, the personal privacy data protection device can include a processing device 1001 (e.g., a central processing unit, a graphics processing unit, etc.) that can perform various appropriate actions and processes according to programs stored in a ROM (Read Only Memory) 1002 or programs loaded from a storage device 1003 into a RAM (Random Access Memory) 1004. In the RAM 1004, various programs and data required for the operation of the personal privacy data protection device are also stored. The processing device 1001, the ROM 1002, and the RAM 1004 are connected to each other through a bus 1005. An input / output (I / O) interface 1006 is also connected to the bus. Generally, the following systems can be connected to the I / O interface 1006: input devices 1007 including, for example, a touch screen, a touch pad, a keyboard, a mouse, an image sensor, a microphone, an accelerometer, a gyroscope, etc.; output devices 1008 including, for example, a liquid crystal display (LCD), a speaker, a vibrator, etc.; the storage device 1003 including, for example, a magnetic tape, a hard disk, etc.; and a communication device 1009. The communication device 1009 can allow the personal privacy data protection device to communicate with other devices wirelessly or by wire to exchange data. Although the personal privacy data protection device having various systems is shown in the figure, it should be understood that all the shown systems are not required to be implemented or possessed. More or fewer systems can be alternatively implemented or possessed.

[0062] In particular, according to embodiments of the present disclosure, the processes described above with reference to the flowcharts can be implemented as a computer software program. For example, embodiments of the present disclosure include a computer program product comprising a computer program carried on a computer readable medium, the computer program containing program code for performing the methods shown in the flowcharts. In such embodiments, the computer program can be downloaded and installed from a network by a communication device, or installed from the storage device 1003, or installed from the ROM 1002. When the computer program is executed by the processing device 1001, the above-mentioned functions defined in the methods of embodiments of the present disclosure are performed.

[0063] The personal privacy data protection device provided by the present disclosure adopts the personal privacy data protection method in the above-mentioned embodiments, and can solve the technical problem of how to reduce the risk of personal privacy data leakage. Compared with the prior art, the personal privacy data protection device provided by the present disclosure has the same beneficial effects as the personal privacy data protection method provided by the above-mentioned embodiments, and other technical features in the personal privacy data protection device are the same as the features disclosed in the previous embodiment method, which will not be repeated here.

[0064] It should be understood that various parts of the present disclosure can be implemented in hardware, software, firmware, or a combination thereof. In the above description of embodiments, specific functional, structural, material or characteristic features are combined in a manner appropriate for the particular example or embodiment, but other examples or embodiments can combine different features in a different manner.

[0065] The above description is only specific embodiments of the present application, but the protection scope of the present application is not limited thereto, and any person skilled in the art can easily think of changes or replacements within the technical range disclosed by the present application, which should be covered by the protection scope of the present application. Therefore, the protection scope of the present application should be subject to the protection scope of the claims.

[0066] The present application provides a computer readable storage medium having stored thereon computer readable program instructions (i.e. computer programs) for performing the method for protecting personal privacy data in the above-described embodiments.

[0067] The computer readable storage medium provided by the present application may, for example, be a U disk, but is not limited to an electric, magnetic, optical, electromagnetic, infrared, or semiconductor system, system, or device, or any combination of the above. More specific examples of the computer readable storage medium can include, but are not limited to, an electric connection with one or more conductive wires, a portable computer disk, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or flash memory), an optical fiber, a portable compact disk read-only memory (CD-ROM), an optical storage device, a magnetic storage device, or any suitable combination of the above. In the present embodiment, the computer readable storage medium can be any tangible medium containing or storing a program that can be used by or in conjunction with an instruction execution system, system, or device. The program code contained on the computer readable storage medium can be transmitted by any appropriate medium, including but not limited to an electric wire, an optical cable, an RF (Radio Frequency), etc., or any suitable combination of the above.

[0068] The above computer readable storage medium can be contained in the personal privacy data protection device; or can exist separately without being assembled into the personal privacy data protection device.

[0069] The computer readable storage medium described above carries one or more programs, when the one or more programs are executed by the personal privacy data protection device, the personal privacy data protection device is caused to: build a program isolation environment of a client, the program isolation environment comprising a privacy database, a local gateway and a third-party application runtime; receive an executable service program of a service providing end; run the executable service program in the program isolation environment to generate service interaction information data; store the service interaction information data into the privacy database, and send the service interaction information data to the service providing end.

[0070] Computer program code for carrying out operations of the present application can be written in any combination of one or more programming languages, including an object oriented programming language such as Java, Smalltalk, C++ or the like and conventional procedural programming languages, such as the "C" programming language or similar programming languages. The program code can execute entirely on the user's computer, partly on the user's computer, as a stand-alone software package, partly on the user's computer and partly on a remote computer or entirely on the remote computer or server. In the latter scenario, the remote computer can be connected to the user's computer through any type of network, including a local area network (LAN) or a wide area network (WAN), or the connection can be made to an external computer (for example, through the Internet using an Internet Service Provider).

[0071] The flow diagrams and the block diagrams in the drawings are illustrations of architectures, functionalities, and operations of possible implementations of systems, methods, and computer program products according to various embodiments of the present application. In this regard, each block in the flow diagrams or block diagrams can represent a module, a segment, or a portion of code, which comprises one or more executable instructions for implementing the specified logical functions. It should also be noted that in some alternative implementations, the functions noted in the blocks can occur out of the order noted in the figures. For example, two blocks shown in succession may, in fact, be executed substantially concurrently or the blocks may sometimes be executed in the reverse order, depending upon the functionality involved. It will also be noted that each block of the block diagrams and / or flow diagrams, and combinations thereof, can be implemented by special purpose hardware-based systems that perform the specified functions or operations, or combinations of special purpose hardware and computer instructions.

[0072] The modules described in the embodiments of the present application can be implemented in the form of software or in the form of hardware. In some cases, the names of the modules do not constitute a limitation on the modules themselves.

[0073] The readable storage medium provided by the present application is a computer readable storage medium, which stores computer readable program instructions (i.e., a computer program) for executing the personal privacy data protection method described above, and can solve the technical problem of how to reduce the risk of personal privacy data leakage. Compared with the prior art, the computer readable storage medium provided by the present application has the same beneficial effects as the personal privacy data protection method provided by the above embodiments, and will not be described here.

[0074] The present application also provides a computer program product, comprising a computer program, which, when executed by a processor, implements the steps of the personal privacy data protection method described above.

[0075] The computer program product provided by the present application can solve the technical problem of how to reduce the risk of personal privacy data leakage. Compared with the prior art, the computer program product provided by the present application has the same beneficial effects as the personal privacy data protection method provided by the above embodiments, and will not be described here.

[0076] The above only describes some embodiments of the present application, and does not limit the patent scope of the present application. Any equivalent structural transformation, direct / indirect application in other related technical fields based on the technical concept of the present application, and the content of the specification and drawings are included in the patent protection scope of the present application.

Claims

1. A method of protecting personal privacy data, characterized by, The method comprises: building a program isolation environment of a client, the program isolation environment comprising a privacy database, a local gateway and a third-party application runtime; receiving an executable service program of a service providing end; running the executable service program in the program isolation environment to generate service interaction information data; storing the service interaction information data into the privacy database and sending the service interaction information data to the service providing end.

2. The method of claim 1, wherein, The step of building the program isolation environment of the client comprises: establishing a standardized privacy database and a local gateway at the client; configuring an access control policy for the local gateway; setting an industry standardized data format and an application program interface of the privacy database to obtain a program isolation environment.

3. The method of claim 1, wherein, Before the step of running the executable service program in the program isolation environment, the method further comprises: limiting the executable service program to only listen to local loop network requests; inhibiting the executable service program from initiating remote network connection operations; configuring a data read-write permission white list of the executable service program.

4. The method of claim 1, wherein, The step of running the executable service program in the program isolation environment to generate service interaction information data comprises: accessing the privacy database through the local gateway to obtain original user data; running the executable service program according to the original user data and a preset business logic to generate initial service interaction information data containing a user signature; adding a service providing end verification label to the initial service interaction information data to generate service interaction information data.

5. The method of claim 4, wherein, The step of running the executable service program according to the original user data and a preset business logic comprises: obtaining publicly available data and privacy data according to the original user data; creating a browser page framework of the client, the browser page framework comprising a browser main page and a browser sandbox sub-page; loading and displaying the original user data in the browser sandbox sub-page and loading publicly available data and the executable service program in the browser main page.

6. The method of claim 5, wherein, The step of creating the browser page framework of the client comprises: creating a browser main page at the client; generating a browser sandbox sub-page with path isolation identification in the browser main page; configuring network access rules of the browser sandbox sub-page, the network access rules comprising only allowing access to a local loopback address server and inhibiting access to an external network server.

7. The method of claim 1, wherein, After building the program isolation environment of the client, the method further comprises: establishing a peer-to-peer network transmission channel between a plurality of clients; receiving an authorized data access request from other clients through the peer-to-peer network channel; returning a desensitized data response after verifying the legality of the authorized data access request.

8. An apparatus for protecting personal privacy data, characterized by comprising: The device comprises: a building module for building a program isolation environment of a client, the program isolation environment comprising a privacy database, a local gateway and a third-party application runtime; a receiving module for receiving an executable service program of a service providing end; a running module for running the executable service program in the program isolation environment to generate service interaction information data; a sending module for sending the service interaction information data to the service providing end. The sending module is configured to store the service interaction information data into the privacy database and send the service interaction information data to the service providing end.

9. An apparatus for protecting personal privacy data, characterized by comprising: The device comprises a memory, a processor, and a computer program stored on the memory and executable on the processor, and the computer program is configured to implement the steps of the personal privacy data protection method according to any one of claims 1 to 7.

10. A storage medium, characterized by The storage medium is a computer readable storage medium, and the storage medium stores a computer program, and the computer program is executed by a processor to implement the personal privacy data protection method according to any one of claims 1 to 7.