Order privacy management method, device, equipment, medium and product

By employing an order privacy management approach, utilizing privacy configuration controls and large-scale model analysis, we can automatically identify and hide private orders under shared accounts, thus solving the problem of user privacy information exposure and achieving efficient privacy protection and improved user experience.

CN122453484APending Publication Date: 2026-07-24BEIJING JINGDONG TUOXIAN TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
BEIJING JINGDONG TUOXIAN TECH CO LTD
Filing Date
2026-05-12
Publication Date
2026-07-24

AI Technical Summary

Technical Problem

On e-commerce platforms, user privacy information under shared accounts is easily exposed, affecting user experience. Existing technologies are insufficient to effectively manage privacy orders and ensure privacy protection.

Method used

It provides a method for order privacy management, which identifies target orders through privacy configuration controls and hides them in the order management interface of shared accounts. It uses a large model to analyze order content to identify private products and protects privacy through permission configuration and blocking accessibility functions.

Benefits of technology

It enables automated management of private orders under shared accounts, improving privacy protection, reducing the cognitive burden on users, ensuring that private orders are not seen by other users, and enhancing the user experience.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122453484A_ABST
    Figure CN122453484A_ABST
Patent Text Reader

Abstract

The disclosure provides an order privacy management method, device, equipment, medium and product, which can be applied to the fields of artificial intelligence, e-commerce and medical and health technology. The order privacy management method comprises the following steps: in response to the fact that a user using a shared account triggers a privacy configuration control, determining a target order based on a strategy corresponding to the privacy configuration control, wherein the strategy defines a determination manner of the target order; and updating a display state of the target order in an order management interface corresponding to the shared account from a normal state to a hidden state, so that the target order is invisible to other users using the shared account.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This disclosure relates to the fields of artificial intelligence, e-commerce, and healthcare technology, and more specifically, to an order privacy management method, apparatus, device, medium, or product. Background Technology

[0002] With the popularization of e-commerce and online service platforms, users' order data contains a large amount of personal privacy information, such as health status, consumption preferences, and lifestyle habits.

[0003] However, due to factors such as the centralization of free and paid benefits for existing accounts on various platforms, what were originally individually registered accounts have gradually evolved into shared family accounts. For example, one account might be a premium membership account on an e-commerce platform, which other family members could log into on multiple devices to shop and enjoy premium membership benefits. When users purchase orders involving privacy or surprise items, the sharing of platform account information can easily expose order details, directly impacting the user experience. Summary of the Invention

[0004] In view of this, this disclosure provides a method, apparatus, device, medium, and product for order privacy management.

[0005] According to one aspect of this disclosure, an order privacy management method is provided, comprising: in response to a user using a shared account triggering a privacy configuration control, determining a target order based on a policy corresponding to the privacy configuration control, wherein the policy defines the method for determining the target order; and updating the display status of the target order in the order management interface corresponding to the shared account from a normal state to a hidden state, so that the target order is not visible to other users using the shared account.

[0006] According to embodiments of this disclosure, the privacy configuration control includes a privacy mode control in the shopping interface; the determination of a target order based on a policy corresponding to the privacy configuration control in response to a user using a shared account triggering the privacy configuration control includes: displaying the privacy mode control in the shopping interface in response to a user logging into the shared account; switching the current shopping mode to privacy shopping mode in response to the privacy mode control being enabled; and determining the order generated by the user in the privacy shopping mode as the target order.

[0007] According to embodiments of this disclosure, the method further includes: in response to the privacy mode control being turned off, switching the current shopping mode to a normal shopping mode, wherein orders generated in the normal shopping mode are non-target orders.

[0008] According to embodiments of this disclosure, the visual display style of elements in the shopping interface under the above-described privacy shopping mode is different from the visual display style of elements in the shopping interface under the above-described normal shopping mode, so as to prompt the user about the current shopping mode.

[0009] According to embodiments of this disclosure, the privacy configuration control includes a privacy status control in the order management interface; the determination of a target order based on a policy corresponding to the privacy configuration control in response to a user using a shared account triggering the privacy configuration control includes: displaying a privacy status control for each order in the order management interface; and determining the order corresponding to the privacy status control as the target order in response to the triggering of the privacy status control.

[0010] According to embodiments of this disclosure, the above-mentioned display of privacy status controls for each order in the order management interface includes: displaying privacy status controls for orders that meet the privacy protection trigger conditions in a first visual style; and displaying privacy status controls for orders that do not meet the privacy protection trigger conditions in a second visual style that is different from the first visual style.

[0011] According to embodiments of this disclosure, whether the aforementioned order meets the preset privacy protection trigger condition is determined in the following manner: the product information of the goods in the aforementioned order is input into a large model, so that the large model analyzes the similarity between the aforementioned product information and reference information, and outputs a classification result of whether the aforementioned product belongs to private goods, wherein the aforementioned reference information includes product information in historical hidden orders and product information configured by platform operation rules; and, in response to the aforementioned classification result indicating that the aforementioned product belongs to private goods, it is determined that the aforementioned order meets the aforementioned privacy protection trigger condition.

[0012] According to embodiments of this disclosure, after displaying the privacy status control for the aforementioned order, in response to a user's hover or long-press operation on the privacy configuration control, a guidance prompt is displayed at a location associated with the privacy configuration control, wherein the guidance prompt is used to guide the user to configure privacy settings for the aforementioned order through the privacy configuration control.

[0013] According to an embodiment of this disclosure, in response to a user using the shared account triggering the privacy configuration control, the method includes: obtaining first access permission information through a permission configuration interface, wherein the first access permission information includes at least one of the following: numeric password, graphic password, gesture password, biometrics; and associating the first access permission information with the order identifier of the target order and storing it in a mapping.

[0014] According to embodiments of this disclosure, the method further includes: in response to a user's access operation to the hidden order interface, obtaining second access permission information through the permission verification interface; matching each first access permission information in the mapping according to the second access permission information to obtain at least one matching order associated with the first access permission information; and displaying order information of at least one of the matching orders through the hidden order interface.

[0015] According to embodiments of this disclosure, the hidden order interface further displays a privacy status deactivation control for the matched order; the method further includes: in response to the privacy status deactivation control being triggered, updating the display status of the matched order in the order management interface from the hidden state to the normal state; and deleting the order identifier and corresponding first access permission information of the matched order from the mapping.

[0016] According to embodiments of this disclosure, the hidden order interface also displays a permission reset control; the method further includes: in response to the permission reset control being triggered, obtaining third access permission information through the permission verification interface, wherein the verification level required for the third access permission information is higher than that for the second access permission information; and in response to the third access permission information being verified, updating the display status of the matching order in the order management interface from the hidden state to the normal state.

[0017] According to embodiments of this disclosure, the method further includes, after determining the target order: performing a masking process on at least one auxiliary function associated with the target order to intercept content generated by the auxiliary function that is associated with the target order.

[0018] According to embodiments of this disclosure, the above-mentioned shielding process for at least one auxiliary function associated with the target order includes: displaying a function configuration control for each of the auxiliary functions through a shielding function configuration interface; and, in response to the function configuration control being triggered, performing shielding process for the auxiliary function associated with the function configuration control.

[0019] According to embodiments of this disclosure, the aforementioned auxiliary functions include at least one of the following: order fulfillment status message push function, product recommendation function, and product shopping guide recommendation function; the aforementioned blocking process includes at least one of the following: intercepting the order fulfillment message push instruction generated for the aforementioned order; and deleting the associated information of the products in the aforementioned order from the input data of the platform recommendation algorithm.

[0020] According to embodiments of this disclosure, the method further includes: in response to the restoration of the display state of the target order in the order management interface to the normal state, performing a recovery process on at least one auxiliary function associated with the target order. According to another aspect of this disclosure, an order privacy management device is provided, comprising: a determining module, configured to determine a target order based on a policy corresponding to the privacy configuration control in response to a user using a shared account triggering the privacy configuration control, wherein the policy defines the method for determining the target order; and a hiding module, configured to update the display state of the target order in the order management interface corresponding to the shared account from a normal state to a hidden state, so that the target order is not visible to other users using the shared account.

[0021] According to another aspect of this disclosure, an electronic device is provided, comprising: one or more processors; and a memory for storing one or more instructions, wherein, when executed by the one or more processors, the one or more processors cause the one or more processors to perform the method as described in this disclosure.

[0022] According to another aspect of this disclosure, a computer-readable storage medium is provided having executable instructions stored thereon, which, when executed by a processor, cause the processor to perform the methods described in this disclosure.

[0023] According to another aspect of this disclosure, a computer program product is provided, which includes computer-executable instructions that, when executed, are used to perform the methods described in this disclosure. Attached Figure Description

[0024] The above and other objects, features and advantages of this disclosure will become clearer from the following description of embodiments with reference to the accompanying drawings, in which:

[0025] Figure 1 This illustration schematically shows a system architecture to which the order privacy management method can be applied according to embodiments of the present disclosure;

[0026] Figure 2 A flowchart illustrating an order privacy management method according to an embodiment of the present disclosure is shown schematically;

[0027] Figure 3 This illustration schematically shows an example diagram of displaying a privacy mode control on a shopping interface according to an embodiment of the present disclosure;

[0028] Figure 4 This illustration shows an example diagram of a process for determining whether an order meets preset privacy protection triggering conditions according to an embodiment of the present disclosure;

[0029] Figure 5A The illustration shows an example diagram of a privacy status control for an order displayed in an order management interface according to an embodiment of the present disclosure;

[0030] Figure 5B The illustration shows an example diagram of a privacy status control for an order displayed in an order management interface according to another embodiment of the present disclosure;

[0031] Figure 6A This schematic diagram illustrates an example of a process for displaying guidance prompts according to another embodiment of the present disclosure;

[0032] Figure 6B This schematically illustrates an example diagram of the display process of guidance prompt information according to an embodiment of the present disclosure;

[0033] Figure 7A This illustration shows an example diagram of obtaining first access permission information through a permission configuration interface according to an embodiment of the present disclosure;

[0034] Figure 7B This illustration schematically shows an example diagram of obtaining second access permission information through a permission verification interface according to an embodiment of the present disclosure;

[0035] Figure 7C This illustration schematically shows an example diagram of a privacy status deactivation process according to an embodiment of the present disclosure;

[0036] Figure 7D This illustration schematically shows an example diagram of a permission reset process according to an embodiment of the present disclosure;

[0037] Figure 8 The illustration shows an example diagram of a process for performing a masking procedure on at least one auxiliary function associated with an order, according to an embodiment of the present disclosure;

[0038] Figure 9 A block diagram of an order privacy management device according to an embodiment of the present disclosure is schematically shown; and

[0039] Figure 10 A block diagram of an electronic device suitable for implementing an order privacy management method according to an embodiment of the present disclosure is shown schematically. Detailed Implementation

[0040] The embodiments of the present disclosure will now be described with reference to the accompanying drawings. However, it should be understood that these descriptions are exemplary only and are not intended to limit the scope of the disclosure. In the following detailed description, numerous specific details are set forth to provide a thorough understanding of the embodiments of the present disclosure for ease of explanation. However, it will be apparent that one or more embodiments may be practiced without these specific details. Furthermore, descriptions of well-known structures and techniques are omitted in the following description to avoid unnecessarily obscuring the concepts of the present disclosure.

[0041] The terminology used herein is for the purpose of describing particular embodiments only and is not intended to limit this disclosure. The terms “comprising,” “including,” etc., as used herein indicate the presence of the stated features, steps, operations, and / or components, but do not exclude the presence or addition of one or more other features, steps, operations, or components.

[0042] All terms used herein (including technical and scientific terms) have the meanings commonly understood by those skilled in the art, unless otherwise defined. It should be noted that the terms used herein are to be interpreted in a manner consistent with the context of this specification, and not in an idealized or overly rigid way.

[0043] When using expressions such as "at least one of A, B and C", they should generally be interpreted in accordance with the meaning that is commonly understood by those skilled in the art (e.g., "a system having at least one of A, B and C" should include, but is not limited to, a system having A alone, a system having B alone, a system having C alone, a system having A and B, a system having A and C, a system having B and C, and / or a system having A, B and C, etc.).

[0044] In the technical solution of this invention, the user information (including but not limited to user personal information, user image information, user device information, such as location information) and data (including but not limited to data used for analysis, stored data, displayed data, etc.) involved are all information and data authorized by the user or fully authorized by all parties. Furthermore, the collection, storage, use, processing, transmission, provision, disclosure, and application of related data all comply with relevant laws, regulations, and standards, take necessary confidentiality measures, do not violate public order and good morals, and provide corresponding operation entry points for users to choose to authorize or refuse.

[0045] In one example, an order deletion function could be added to the order list on the platform, allowing users to manually delete orders to achieve a hidden effect. Alternatively, some users might choose to register a new account or a new account on another platform to achieve the same effect of making private purchases.

[0046] However, users directly deleting incomplete orders affects their ability to view the order fulfillment status, preventing them from tracking order progress and accessing after-sales service. Furthermore, order fulfillment and delivery notifications will still be sent, indicating that the platform's notification mechanism is not adapted to private scenarios. Additionally, the system's recommendation algorithm does not consider the privacy of private orders when providing historical and ongoing recommendations. Therefore, it is difficult to achieve the desired effect of allowing users to place private orders.

[0047] To this end, this disclosure provides an order privacy management method, apparatus, device, medium, and product that can be applied to the fields of artificial intelligence, e-commerce, and healthcare. The order privacy management method includes: responding to a user using a shared account triggering a privacy configuration control; determining a target order based on a policy corresponding to the privacy configuration control, wherein the policy defines the method for determining the target order; and updating the display status of the target order in the order management interface corresponding to the shared account from a normal state to a hidden state, so that the target order is not visible to other users using the shared account.

[0048] Figure 1 The illustration schematically depicts a system architecture to which an order privacy management method can be applied according to embodiments of this disclosure. It should be noted that... Figure 1 The examples shown are merely examples of system architectures that can be applied to the embodiments of this disclosure, in order to help those skilled in the art understand the technical content of this disclosure, but do not mean that the embodiments of this disclosure cannot be used in other devices, systems, environments or scenarios.

[0049] like Figure 1 As shown, the system architecture 100 according to this embodiment may include a first terminal device 101, a second terminal device 102, a third terminal device 103, a network 104, and a server 105. The network 104 serves as a medium for providing communication links between different devices.

[0050] It should be noted that the order privacy management method provided in this embodiment can generally be executed by server 105. Accordingly, the order privacy management device provided in this embodiment can generally be set in server 105.

[0051] Alternatively, the order privacy management method provided in this embodiment of the disclosure can also be executed by the first terminal device 101, the second terminal device 102, or the third terminal device 103. Correspondingly, the order privacy management device provided in this embodiment of the disclosure can also be disposed in the first terminal device 101, the second terminal device 102, or the third terminal device 103.

[0052] It should be understood that Figure 1 The number of terminal devices, networks, and servers shown is merely illustrative. Depending on implementation needs, any number of terminal devices, networks, and servers can be included.

[0053] It should be noted that the sequence numbers of the operations in the following methods are for descriptive purposes only and should not be considered as indicating the execution order of the operations. Unless explicitly stated otherwise, the method does not need to be executed in the exact order shown.

[0054] Figure 2 A flowchart illustrating an order privacy management method according to an embodiment of this disclosure is shown schematically.

[0055] like Figure 2 As shown, the order privacy management method 200 may include operations S210~S220.

[0056] In operation S210, in response to a user using a shared account triggering the privacy configuration control, the target order is determined based on the policy corresponding to the privacy configuration control, wherein the policy defines how the target order is determined.

[0057] In operation S220, the display status of the target order in the order management interface corresponding to the shared account is updated from normal to hidden, so that the target order is not visible to other users using the shared account.

[0058] A shared account is a platform account used by multiple family members or other associated users. For example, a member account might be logged in and used on three mobile phones (A, B, and C) within a family. An order refers to a data object in an e-commerce or service platform that records information about a single transaction between a user and a goods or service provider. For example, an order could be a woman's dress purchased by a user on an e-commerce platform, a psychological counseling service booked by a user on an online medical platform, or an e-ticket to a singer's concert, etc., without limitation.

[0059] Privacy configuration controls are interactive UI elements provided on the user interface that users can trigger to initiate the order privacy protection process. The specific location and form of the privacy configuration control can be configured according to actual business needs and are not limited here. For example, a privacy configuration control could be a toggle button on the order list page, a "Set as Privacy" checkbox that pops up on the order success page, or a menu option accessed via a quick gesture.

[0060] A strategy is used to determine which orders can be used as target orders. The strategy can correspond to a privacy configuration control; specifically, the determination method can correspond to the display position of the privacy configuration control and the privacy configuration logic. For example, if the privacy configuration control is displayed on the interface before the order is generated, one method for determining the target order can be used; if the privacy configuration control is displayed on the interface after the order is generated, another method for determining the target order can be used.

[0061] The target order is the order that is determined to require the hiding operation according to the above strategy. Display status refers to the visibility attribute of the order in the order management interface. Display status can include normal status and hidden status. Normal status means the order is visible to all users using the same shared account. Hidden status means the order is only visible to the user who triggered the hiding operation, and is not visible to other users using the same shared account.

[0062] Once the target order is identified, its metadata can be modified on the server side. For example, a hidden flag can be added, and this flag can be linked to the user terminal or verification information that triggered the action. Subsequently, when any unverified device or user queries the order management interface of this shared account, the server will filter out the target order with this flag before returning data, thus making it invisible.

[0063] In the embodiments of this disclosure, in response to a user using a shared account triggering a privacy configuration control, the target order is adaptively determined based on a policy corresponding to the privacy configuration control. This reduces the user's cognitive burden while ensuring the breadth and accuracy of the hiding operation. Furthermore, by updating the display status of the target order in the order management interface corresponding to the shared account from a normal state to a hidden state, the target order becomes invisible to other users using the shared account, thereby preventing privacy exposure, protecting the user's shopping privacy experience, and improving the privacy protection effect of order privacy management.

[0064] According to embodiments of this disclosure, the privacy configuration control includes a privacy mode control in the shopping interface; operation S210 may include the following operations: in response to a user logging into a shared account, displaying the privacy mode control in the shopping interface; in response to the privacy mode control being enabled, switching the current shopping mode to privacy shopping mode; and determining the order generated by the user in privacy shopping mode as the target order.

[0065] If a user logs into an account that is marked as shared or for multiple devices, a privacy mode control can be proactively rendered on the shopping interface, allowing any user to directly access the privacy protection portal.

[0066] A shopping interface refers to the user interface used to browse and select products. Examples include product detail pages, shopping cart pages, and checkout pages in instant retail apps, as well as product lists and shopping bags on social e-commerce platforms. Privacy mode controls are a type of privacy configuration control, and are interactive UI elements placed within the shopping interface used to switch shopping modes.

[0067] The specific form of the privacy mode control can be configured according to actual business needs and is not limited here. For example, the privacy mode control can be presented as a toggle button, such as a sliding switch displaying "Private Shopping" on a shopping interface; alternatively, the privacy mode control can also be a mode entry banner, such as a clickable card or icon for "Enter Privacy Shopping Mode".

[0068] It should be noted that the display of the aforementioned privacy mode control can be dynamically adjusted based on the number of logged-in devices. For example, the privacy mode control will only be automatically displayed on the shopping interface when more than two devices are detected to be online simultaneously with the current shared account; if only one device is logged in, the privacy mode control may not be displayed to keep the interface simple.

[0069] When the privacy mode control is enabled, you can enter privacy shopping mode, in which the shopping session is globally marked as private. All subsequent product browsing and adding to cart actions are then confined to this independent session. Privacy shopping mode can be a working state within the shopping process.

[0070] In privacy shopping mode, all user actions such as adding items to cart and placing orders are marked and isolated by the system. The resulting orders automatically become target orders and are not exposed to the order management interface under the shared account, eliminating the need for users to perform secondary operations on individual orders.

[0071] It's worth noting that a delayed confirmation strategy can be combined with the privacy shopping mode. That is, after a user submits an order in privacy mode, it is not immediately designated as the final order. Instead, a first preset time period is given for users to change their mind. During this time, a message appears on the shopping interface stating, "Privacy order is being generated; click to switch back to a regular order." If the user does not take any action, the order is automatically designated as the final order after the timeout period, balancing privacy protection with potential user error. For example, the first preset time period could be 30 seconds.

[0072] In the embodiments of this disclosure, in response to a user logging into a shared account, a privacy mode control is displayed on the shopping interface, solving the problem of the privacy protection function being too deeply embedded. This allows any user in a shared account scenario to access the protection function at the source of the shopping, reducing the risk of forgetting to hide it later. When the privacy mode control is enabled, the shopping mode is switched to privacy shopping mode, and all orders generated in this mode are automatically identified as target orders. This eliminates the tedious operation of hiding each order one by one, and avoids order omissions due to user negligence through state isolation, achieving a full-coverage privacy protection effect.

[0073] Figure 3 The illustration shows an example diagram of displaying a privacy mode control on a shopping interface according to an embodiment of the present disclosure.

[0074] like Figure 3 As shown, in one embodiment 300 of displaying the privacy mode control, in response to a user logging into a shared account, the privacy mode control 311 can be displayed on the shopping interface 310.

[0075] According to embodiments of this disclosure, the method may further include the following operation: in response to the privacy mode control being turned off, switching the current shopping mode to normal shopping mode, wherein orders generated in normal shopping mode are non-target orders.

[0076] After completing a private purchase, users can disable the privacy mode control. In this case, the privacy session ends, and subsequent purchases will revert to normal shopping mode, resulting in non-target orders visible to all users using the same shared account. Normal shopping mode can be another working state in the shopping process. In this mode, non-target orders are generated and can be publicly displayed in the order management interface under the shared account.

[0077] It should be noted that, in addition to the method of users actively closing the privacy mode control to switch from privacy shopping mode to normal shopping mode, a timed automatic shutdown method can also be used. That is, when the user activates privacy mode, a second preset time is set, and after the time expires, it automatically switches back to normal shopping mode. This prevents users from forgetting to close the privacy mode and mistakenly marking everyday purchases as target orders, causing inconvenience later. For example, the second preset time can be 30 minutes.

[0078] In the embodiments disclosed herein, by switching back to normal shopping mode after the privacy mode control is turned off, subsequent orders are non-target orders, which accurately matches the user's real privacy needs in a phased rather than permanent manner, ensuring the focus of private purchasing while maintaining the openness and convenience of daily purchases.

[0079] According to embodiments of this disclosure, the visual style of elements displayed in the shopping interface in privacy shopping mode is different from the visual style of elements displayed in the shopping interface in normal shopping mode, so as to prompt the user of the current shopping mode.

[0080] Display visual style refers to the appearance of various UI elements in the shopping interface. For example, display visual style can include the background color of the top / bottom bar, theme color, icons, borders of tooltips, shopping cart icon style, etc., and is not limited here.

[0081] By differentiating the UI elements in privacy shopping mode from those in normal shopping mode, the current shopping mode status can be communicated to the user, preventing them from operating the system unknowingly. For example, in privacy shopping mode, the top bar of the shopping interface can be changed from red to dark gray, and a "Privacy" icon can be displayed in the corner.

[0082] In the embodiments of this disclosure, by adopting a different display visual style for interface elements than in the normal shopping mode in the privacy shopping mode, an intuitive state perception anchor point is established in the user's visual channel, which effectively prevents misoperation due to forgetting the current mode and improves the certainty of the entire privacy shopping process and the user's sense of trust.

[0083] According to an embodiment of this disclosure, the privacy configuration control includes a privacy status control in the order management interface; operation S210 may include the following operations: displaying a privacy status control for each order in the order management interface; and determining the order corresponding to the privacy status control as the target order in response to the privacy status control being triggered.

[0084] After a user has purchased goods and an order is generated, a privacy status control can be attached to each order when the order management interface is rendered. The privacy status control is an interactive UI element rendered on the order management interface, allowing users to quickly activate privacy protection settings for specific orders.

[0085] The specific form of the privacy status control can be configured according to actual business needs and is not limited here. For example, the privacy status control can be a hidden icon or a "one-click hide" text button displayed in a preset position on the order card; alternatively, the privacy status control can also be a "privacy protection" option in the operation menu that appears after a horizontal swipe operation on the order card.

[0086] Users can trigger the privacy status control by performing actions such as clicking or swiping. In this case, the order corresponding to the privacy status control can be identified as the target order. It should be noted that the order management interface also provides a batch management option. When the user selects this option, multiple orders that need to be hidden can be selected simultaneously, triggering the privacy status control all at once, thus identifying all selected orders as the target order at once.

[0087] In the embodiments of this disclosure, by displaying privacy status controls for each order on the order management interface, when the privacy status control is triggered, the order corresponding to the control is identified as the target order, giving the user the ability to independently control individual orders afterward, thereby improving the targeting of order privacy management.

[0088] According to embodiments of this disclosure, whether an order meets the preset privacy protection trigger condition can be determined by the following method: inputting the product information of the goods in the order into a large model, so that the large model can output a classification result of whether the goods belong to private goods by analyzing the similarity between the product information and the reference information; in response to the classification result indicating that the goods belong to private goods, it is determined that the order meets the privacy protection trigger condition.

[0089] Preset privacy protection trigger conditions refer to the pre-defined judgment logic used to identify which orders have a high risk of privacy leakage, thus requiring the activation of the privacy protection mechanism. The specific content of the preset privacy protection trigger conditions can be configured according to actual business needs and is not limited here.

[0090] For example, preset privacy protection triggers can be set based on product or service categories. For instance, an order might contain products belonging to preset sensitive categories such as "adult products," "prescription drugs," "personal care," or "investment and financial advice." Alternatively, preset privacy protection triggers can be set based on user behavior. For instance, an order might be placed after a user has frequently viewed or searched for a specific type of product (such as "privacy-protecting packaging") in their historical activity.

[0091] After an order is generated, the product information of the items within the order can be extracted and used as input parameters to pass to a deployed large model. The large model performs semantic comparison and similarity calculation with various samples in a pre-set reference information. Based on the calculated similarity score or feature matching degree, a structured classification result is output, clearly indicating whether the product should be classified as a private item.

[0092] Product information refers to multi-dimensional data related to the traded item in an order, which can be used to describe and identify the characteristics of the product. For example, product information may include the product title, product SKU attributes, text and image descriptions on the product details page, category paths defined in the platform backend, etc., and is not limited here.

[0093] It should be noted that product information can include not only text but also images such as the main product image and long images on the details page. In this case, a visual-language multimodal model can be used to analyze whether the image contains suggestive privacy elements (such as products with mosaic effects). By fusing the image feature vector with the text feature vector and then calculating the similarity with reference information, products that have bypassed pure text circumvention algorithms can be identified.

[0094] Reference information constitutes the knowledge base upon which the large model bases its judgments. It can be used to compare with the product information to be judged to measure the probability that it belongs to a private product. In one embodiment, reference information may include product information from historical hidden orders, for example, "hemorrhoid cream" that user "Zhang San" has historically hidden, and "underwear" that the user group frequently hides. In another embodiment, reference information may also include product information configured by platform operation rules, for example, a sensitive category keyword library marked by platform operators in the background, including "early pregnancy test," etc.

[0095] Similarity refers to the quantified numerical value of the distance or correlation between product information and reference information in the feature space, calculated by a large model using algorithms such as vectorization and semantic matching. The method for determining similarity can be configured according to actual business needs and is not limited here. For example, product information and reference information can be converted into vectors respectively, and their cosine similarity value can be calculated as the similarity; alternatively, the classification probability output by the large model can be used as the similarity.

[0096] The classification result is the final label or score output by the large model after analyzing product information and reference information. For example, in binary classification, the classification result can be a Boolean value True (yes) or False (no); alternatively, in multi-level classification, the classification result can be a sub-label such as Level 1 Sensitive (physical health), Level 2 Sensitive (emotional privacy), etc.

[0097] After receiving the classification results returned by the large model, if the label or probability value in the classification results clearly points to the "private" category, the order is determined to meet the preset privacy protection trigger conditions. Private goods are those that, according to the classification results, could cause embarrassment, distress, discrimination, security risks, or other negative impacts on the buyer if their purchase or usage information is leaked. Examples of private goods include adult products, pharmaceuticals, and personal care products.

[0098] In the embodiments of this disclosure, by inputting the product information of the goods in the order into a large model, the deep semantic understanding capability of the large model is fully utilized to analyze the similarity between the product information and the reference information, and output the classification result of whether the product belongs to private goods, thereby improving the detection rate and accuracy of private goods. Based on this, in response to the classification result indicating that the product belongs to private goods, the order is determined to meet the privacy protection trigger condition, ensuring an end-to-end automated closed loop from intelligent identification to automatic protection, shortening the time window from when the user generates a sensitive order to when the system begins to provide protection, and realizing dynamic, accurate and interpretable privacy protection trigger determination.

[0099] Figure 4 The illustration shows an example diagram of a process for determining whether an order meets preset privacy protection triggering conditions according to an embodiment of the present disclosure.

[0100] like Figure 4 As shown, in embodiment 400, which determines whether an order meets the preset privacy protection trigger conditions, the product information 411 of the goods in order 410 can be input into the large model 420. The large model 420 can then output a classification result 430 indicating whether the goods belong to private goods by analyzing the similarity between the product information 411 and the reference information. The reference information may include product information 421 in historical hidden orders and product information 422 configured by the platform operation rules.

[0101] After obtaining the classification result 430, operation S410 can be executed. In operation S410, is the product a private product? If yes, the order can be determined to meet the privacy protection trigger condition 441; if no, the privacy protection trigger condition 442 can be met.

[0102] Figure 5A The illustration shows an example diagram of a privacy status control for an order displayed in an order management interface according to an embodiment of the present disclosure.

[0103] like Figure 5A As shown, in one embodiment 500A that displays a privacy status control for orders, a user can access the order management interface by clicking the order management control 510.

[0104] In response to an order meeting preset privacy protection trigger conditions, a privacy status control for the order can be displayed in the order management interface. For example, if order 511 meets the preset privacy protection trigger conditions, a hidden status control 511_1 for order 511 can be displayed. If order 512 does not meet the preset privacy protection trigger conditions, then the hidden status control for order 512 does not need to be displayed.

[0105] According to embodiments of this disclosure, displaying a privacy status control for each order in the order management interface may include the following operations: for orders that meet the privacy protection trigger conditions, displaying the privacy status control for the order in a first visual style; for orders that do not meet the privacy protection trigger conditions, displaying the privacy status control for the order in a second visual style that is different from the first visual style.

[0106] After the order is identified, for orders that meet the privacy protection trigger conditions, the first set of visual rendering parameters can be called on the front-end display interface to render the privacy status control attached to the order into an eye-catching and guiding first visual style, so as to actively prompt the user to pay attention and take action.

[0107] First-person view refers to a visual presentation on the user interface of the privacy status control for orders that have triggered privacy protection conditions. This presentation provides a strong prompt and guidance. First-person view is designed to allow users to immediately recognize the high necessity for privacy protection settings in an order.

[0108] The specific form of the first-person visual style can be configured according to actual business needs and is not limited here. For example, the privacy status control can be rendered with high-contrast, high-brightness colors, such as an orange or red "One-Click Encryption" button with a breathing animation featuring pulsating light effects. Alternatively, the privacy status control can appear as a solid-filled icon or a button with a clear text label, such as a solid shield icon with the text "Recommended to Hide". Another option is to first appear a guide bubble next to the privacy status control with the message "This product involves personal privacy; click to hide."

[0109] After the order is processed, for ordinary orders that do not meet any privacy protection trigger conditions, a second set of visual rendering parameters can be invoked on the front-end display interface to render the privacy status control attached to the order in a low-key, inconspicuous secondary visual style. This ensures the universality and discoverability of the function while avoiding unnecessary interference to the user.

[0110] The secondary visual style refers to a subtle and understated visual representation of the privacy status control on the user interface for regular orders that have not met the privacy protection trigger conditions. The secondary visual style informs the user that the feature exists and is available, without actively intervening or strongly reminding them, thus avoiding interference with the user's normal operations on regular orders.

[0111] The specific form of the second visual style can be configured according to actual business needs and is not limited here. For example, the privacy status control can be rendered in a low-saturation gray or light gray, close to the order background color, and placed at the bottom of the visual hierarchy. Alternatively, the privacy status control can appear as an outline icon, a semi-transparent icon, or a smaller size, without any text description or animation effects. Alternatively, the privacy status control can only be temporarily displayed when the user performs a specific operation on the order card (such as long press, swipe left, or hover), and hidden under normal circumstances, while the control of the first visual style is continuously displayed under normal circumstances.

[0112] In the embodiments of this disclosure, by displaying privacy status controls in a first visual style and a second visual style respectively for orders that meet and do not meet privacy trigger conditions, this differentiated information hierarchy presentation achieves precise guidance of user attention and full coverage of privacy management entry points, thereby improving the efficiency of privacy protection operations while minimizing the cognitive burden on users.

[0113] Figure 5B The illustration shows an example diagram of a privacy status control for an order displayed in an order management interface according to another embodiment of the present disclosure.

[0114] like Figure 5BAs shown, in another embodiment 500B that displays a privacy status control for orders, a user can access the order management interface by clicking the order management control 510.

[0115] In response to an order meeting preset privacy protection trigger conditions, a privacy status control for the order can be displayed in a first-person visual style on the order management interface. For example, if order 513 meets the preset privacy protection trigger conditions, a hidden status control 513_1 for order 513 can be displayed.

[0116] In response to an order failing to meet preset privacy protection trigger conditions, a privacy status control for the order can be displayed in the order management interface using a second visual style distinct from the first visual style. For example, if order 514 meets the preset privacy protection trigger conditions, a hidden status control 514_1 for order 514 can be displayed.

[0117] According to embodiments of this disclosure, the order privacy management method 200 may further include the following operation: in response to a user's hover or long-press operation on the privacy configuration control, a guidance prompt message is displayed at the position associated with the privacy configuration control in the order management interface, wherein the guidance prompt message is used to guide the user to configure privacy settings for the order through the privacy configuration control.

[0118] A hover operation refers to an interactive action in which a user moves the cursor to the trigger area of ​​a privacy status control using a pointer device such as a mouse or stylus and holds it for a certain period of time without pressing any buttons. For example, on a web-based website, a hover operation could be a user browsing orders on a computer webpage, moving the mouse pointer to the privacy status control on the order card and keeping it still.

[0119] A long press refers to an interactive action where a user presses and holds the privacy settings control within its valid response area for a certain duration. For example, on a mobile device, a long press could be a user continuously pressing the privacy settings control on an order card for a preset duration using their finger on a mobile app.

[0120] The location associated with the privacy configuration control is on the corresponding display interface, in a display area that has a spatial proximity or logical relationship with the privacy configuration control. This location ensures that the appearance of the guidance prompts and the control itself have a clear direction, allowing users to intuitively establish the association between the two.

[0121] The location associated with the privacy configuration control can be configured according to actual business needs and is not limited here. For example, it can be a pop-up bubble above, below, to the left, or to the right of the privacy configuration control; alternatively, the area where the privacy configuration control itself is located can be replaced with guide text; alternatively, it can be a card or panel with an arrow extending from the edge of the privacy configuration control.

[0122] Guided prompts are supplementary text, icons, animations, or a combination of these elements displayed to lower the cognitive barrier for users, explain the function of controls, and guide users to complete operations. Guided prompts help users understand "what this control is" and "what will happen after the operation".

[0123] For example, the guidance message could be the text "Click here to hide this order and make it visible only to yourself"; alternatively, the guidance message could be a combination of a lock icon and the text "Enable privacy protection to prevent others from seeing this order details"; alternatively, the guidance message could be a short animation demonstrating the effect of the order item becoming hidden after the finger clicks the control.

[0124] In the embodiments of this disclosure, in response to a user's hover or long-press operation on the privacy configuration control, the system can capture these interaction signals and use them as trigger conditions to achieve on-demand guidance, avoiding interface congestion and visual fatigue caused by continuously displaying text descriptions. Furthermore, by displaying guidance prompts at positions associated with the privacy status control in the interface, a spatially tightly coupled and logically clear information presentation method is constructed. Placing the prompts at the control's associated position allows users to understand the correspondence between the prompt content and the control without any cognitive shift. The prompts explicitly point to the privacy settings function, ensuring that the information received by the user is a direct and actionable guide, lowering the barrier to first-time use of the new function, reducing accidental touches or abandonment due to users not understanding the function of the control, and improving the overall usage rate of the privacy protection function.

[0125] Figure 6A The illustration shows an example diagram of the process of displaying guidance prompts according to another embodiment of the present disclosure.

[0126] like Figure 6A As shown, in embodiment 600A, which displays guidance prompts, in response to a user's hover or long-press operation on the privacy mode control 601, guidance prompts 602 can be displayed at the location associated with the privacy mode control 601 in the shopping interface. The guidance prompts 602 are used to guide the user to make privacy settings for order 610 through the privacy mode control 601.

[0127] Figure 6BThe illustration shows an example diagram of the process of displaying guidance prompts according to another embodiment of the present disclosure.

[0128] like Figure 6B As shown, in embodiment 600B, which displays guidance prompts, in response to a user's hover or long-press operation on the privacy status control 611, guidance prompts 612 can be displayed at the location associated with the privacy status control 611 in the order management interface. The guidance prompts 612 are used to guide the user to set privacy settings for order 610 through the privacy status control 611.

[0129] According to embodiments of this disclosure, in response to a user using a shared account triggering a privacy configuration control, the above method may further include the following operations: obtaining first access permission information through a permission configuration interface; associating the first access permission information with the order identifier of the target order and storing it in a mapping.

[0130] The permission configuration interface is a dedicated interactive interface provided to users after they trigger the privacy status control, used to set and manage order access permissions. For example, the permission configuration interface can be a dedicated page titled "Set Viewing Permissions" that pops up from a pop-up window or half-screen panel. Alternatively, the permission configuration interface can also be an area embedded in the corresponding interface in the form of cards, containing a quick selector for several commonly used permission options; this is not limited here.

[0131] After presenting the permission configuration interface to the user, the system can begin listening to and collecting the user's input, selection, and confirmation actions on the interface. These actions correspond to the specific permission types and credentials selected by the user to protect the current order. Ultimately, the system receives the user's initial access permission information completely from the interface layer through methods such as form submission and API upload.

[0132] The first access permission information is a data credential or rule that a user sets and submits for a specific order in the permission configuration interface, used to restrict and verify the identity of the visitor. In one embodiment, the first access permission information may include at least one of the following: numeric password, pattern password, gesture password, or biometrics.

[0133] Numeric passwords are a set of numbers set by the user, such as "123456". Pattern passwords are a connecting path drawn by the user on a 3x3 grid, such as a "Z" pattern. Gesture passwords are a specific sequence of hand gestures performed by the user in front of the screen using a camera, such as spreading and then clenching the fist. Biometrics are physiological or behavioral data of the user, such as "right thumb fingerprint".

[0134] The order identifier is an immutable field in the system database used to uniquely identify and locate each order entity. For example, the order identifier could be the `order_id` field in the order data table, with a value of a long integer, such as `123456`. Alternatively, the order identifier could be a user-visible order number string, such as `J123456`. Another option is a globally unique identifier (UUID).

[0135] After obtaining the first access permission information and verifying its format and validity, the first access permission information can be bound to the order identifier in a database or file system and persistently stored, thus forming a queryable and traceable data mapping structure. At the data level, a logical link is established between the order identifier and the first access permission information, either as a one-to-one correspondence or attribute mapping, so that whenever access qualification needs to be verified, the corresponding first access permission information can be efficiently retrieved using the order identifier.

[0136] A relationship is a data structure or link that binds and maps the unique identifier of an order entity to its first access permission information in the system database or logical layer. For example, this could be adding an ID field to the order data table, with its value pointing to a specific permission record in the table. Alternatively, it could be creating an edge between the node representing the order and the node representing the first access permission information in a graph database. Another alternative is storing the first access permission information in a caching system (such as Redis) with the order ID as the key and the serialized first access permission information as the value.

[0137] In the embodiments of this disclosure, the first access permission information configured by the user for the order is received through the permission configuration interface. Because the access paradigm for multiple verification modes is unified at the underlying technology level, the flexibility and willingness of users to set permissions are improved. Based on this, an association relationship is established by storing the first access permission information in association with the order identifier of the target order. Since the association relationship is established on the order identifier, different orders can independently set completely different first access permission information. This solves the problems of limited access control methods and insufficient security in the prior art after order hiding, and improves the security of order privacy management.

[0138] Figure 7A The illustration shows an example diagram of obtaining first access permission information through a permission configuration interface according to an embodiment of the present disclosure.

[0139] like Figure 7A As shown, in embodiment 700A, which obtains first access permission information through the permission configuration interface, in response to the privacy status control being triggered, the first access permission information 711 can be obtained through the permission configuration interface 720.

[0140] According to embodiments of this disclosure, the order privacy management method 200 may further include the following operations: in response to a user's access operation to a hidden order interface, obtaining second access permission information through an access permission verification interface; matching each first access permission information in the mapping according to the second access permission information to obtain at least one matching order associated with the first access permission information; and displaying the order information of at least one matching order through the hidden order interface.

[0141] The hidden order interface is a page in an application or webpage specifically designed to centrally display and manage orders that the user has set to be hidden. It serves as a unified entry point for users to access all the orders they have hidden.

[0142] An access action refers to any interactive action performed by a user to access the hidden orders interface. For example, an access action could be tapping the title of the privacy orders tab with a finger; alternatively, an access action could be performing a specific gesture (such as swiping down with two fingers) on the order list page to activate the hidden orders entry; alternatively, an access action could be saying "Open my hidden orders" to the device's voice assistant, etc., without limitation.

[0143] For the hidden order interface, we can continuously monitor user access operations that point to the hidden order interface entry. When this operation is triggered, we will not directly redirect to the interface, but first intercept the request and immediately render the permission verification interface on the front end. Through this interface, we interact with the user and collect the verification credentials provided by the user at this time, i.e., the secondary access permission information.

[0144] The access verification interface is a separate interface layer that pops up on the front end when a user intends to access the hidden order interface, used to collect the user's verification credentials. For example, the access verification interface could be a system-level fingerprint verification dialog box appearing in the center of the screen, prompting "Please verify your fingerprint to view the private order"; alternatively, the access verification interface could be a password input page covering the entire screen, including a numeric keypad and password input box; alternatively, the access verification interface could be a Face ID scanning animation and prompts appearing at the top of the screen, etc., without limitation.

[0145] Secondary access permission information is a verification credential that a user enters in real-time on the access verification interface when intending to access the hidden order set, used to prove their current identity. For example, secondary access permission information includes at least one of the following: numeric password, pattern password, gesture password, and biometrics.

[0146] After obtaining the second access permission information, it can be used as a query condition to traverse or query a pre-established mapping table. This matching process essentially compares the current verification credentials with all stored first access permission information in the mapping table. For all successfully matched entries, their associated order IDs are extracted and aggregated into matched orders. Matched orders refer to the set of orders whose associated first access permission information successfully matches the second access permission information provided by the user in real time, selected after the matching process in the mapping. These matched orders are determined to be orders that the current user is qualified to view.

[0147] After successfully retrieving matching orders, the complete order information corresponding to these order IDs, which was previously hidden, can be retrieved from the database and rendered in its entirety on the hidden order interface according to certain sorting rules and UI layout. At this point, this order information is fully visible and operable to verified users. The order information consists of detailed data related to the matching orders that was originally hidden or redacted in the regular list. After verification, this information is presented in a normal, readable form on the hidden order interface.

[0148] In the embodiments of this disclosure, in response to a user's access to the hidden order interface, second access permission information is obtained through the permission verification interface. This elevates the verification action from the order level to the interface entry level, allowing the user's one-time proactive verification to replace multiple, repetitive verifications for each order. This aggregates scattered security checks into a single, pipelined security authentication, reducing user management fatigue. Furthermore, by matching each first access permission piece of information in the mapping based on the second access permission information, at least one matching order associated with the first access permission information is obtained. This fully utilizes the previously established one-to-one, one-to-one association relationship for each order, enabling concurrent retrieval of heterogeneous credentials. This solves the problem of efficient and accurate search in scenarios with multiple orders and multiple credentials, improving the manageability of hidden orders.

[0149] Figure 7B The illustration shows an example diagram of obtaining second access permission information through a permission verification interface according to an embodiment of the present disclosure.

[0150] like Figure 7B As shown, in embodiment 700B, which obtains second access permission information through the permission verification interface, a user can access the hidden order interface by triggering the hidden order control 720. In response to the user's access operation to the hidden order interface, second access permission information 731 can be obtained through the permission verification interface 730.

[0151] According to embodiments of this disclosure, the hidden order interface may also display a privacy status deactivation control for matching orders. The privacy status deactivation control is an interactive interface element rendered in the hidden order interface and associated with each matching order. The privacy status deactivation control allows users to actively terminate the privacy protection status of an order by triggering the control, restoring it to a normal order status. The specific form of the privacy status deactivation control can be configured according to actual business needs and is not limited thereto.

[0152] For example, the privacy status removal control could be a "Unhide" or "Restore Visibility" text button in the lower right corner of the order card; alternatively, the privacy status removal control could be an "unlock" icon or an "eye open" icon that can be clicked to remove the privacy status; alternatively, the privacy status removal control could be a "Remove Privacy" operation item that appears after swiping left on the order card.

[0153] According to embodiments of this disclosure, the order privacy management method 200 may further include the following operations: in response to the privacy status release control being triggered, updating the display status of the matching order in the order management interface from a hidden state to a normal state; deleting the order identifier and corresponding first access permission information of the matching order from the mapping.

[0154] For the hidden order interface, the trigger events of each privacy status cancellation control can be listened to. When the user clicks or operates the control and confirms, the association between the order and the first access permission information can be physically deleted or marked as invalid in the data layer; at the same time, the display status of the order on the front-end interface is switched from hidden to normal in the view layer to ensure the consistency of data and interface.

[0155] The association relationship refers to the data mapping link in the system database that binds the order identifier with the first access permission information. The normal state refers to the default display and data processing mode of the order, which is not subject to additional privacy rules. In this state, the order information is visible to all users authorized to access the account, and order data can freely flow into various auxiliary function modules.

[0156] In the embodiments of this disclosure, by providing a privacy status deactivation control on the hidden order interface, privacy protection is no longer a one-way, irreversible operation, ensuring the user's complete control throughout the entire privacy management cycle. In response to the triggering of the privacy status deactivation control, the association between the order and the first access permission information is severed, updating the order's display status from hidden to normal. This achieves complete autonomy of privacy protection from activation to deactivation, constructing a controllable and reversible closed loop for order privacy management throughout its entire lifecycle. This ensures convenience while maintaining precise synchronization and control over the order information flow.

[0157] Figure 7CThe illustration shows an example schematic diagram of a privacy status deactivation process according to an embodiment of the present disclosure.

[0158] like Figure 7C As shown, in embodiment 700C of removing privacy status, the hidden order interface can display a privacy status removal control for matching orders.

[0159] For example, taking matching orders including matching order 741 and matching order 742 as an example, the hidden order interface can display a privacy status release control 741_1 for matching order 741 and a privacy status release control 742_1 for matching order 742.

[0160] If a user wishes to remove the privacy status of matching order 741, they can trigger the privacy status removal control 741_1 to sever the association between matching order 741 and the first access permission information, and update the display status of matching order 741 from hidden to normal. Based on this, at least one accessibility function associated with matching order 741 can be restored according to the normal status.

[0161] According to embodiments of this disclosure, the hidden order interface may also display a permission reset control. The layout design of the hidden order interface may also include a permission reset control with global operation implications. This control is a system-level protection measure designed to address extreme situations such as users forgetting individual vouchers or needing to clear status in batches.

[0162] The permission reset control is an interactive element rendered on the hidden order interface, used to trigger high-risk, global operations. Its function is not to unhide a single order, but rather to perform an overriding reset or removal of all or selected privacy protection configurations for the user. The specific form of the permission reset control can be configured according to actual business needs and is not limited here.

[0163] For example, the permission reset control could be a red warning button at the top of the page that says "Unhide all hidden orders" or "Reset all privacy settings"; alternatively, the permission reset control could be an option with a warning icon in the "More" menu in the upper right corner of the page that says "Forgot your password? Reset and restore all orders"; alternatively, the permission reset control could be a text link button at the bottom of the page that says "Batch reset permissions and restore visibility" below a description.

[0164] According to embodiments of this disclosure, the order privacy management method 200 may further include the following operations: in response to the permission reset control being triggered, obtaining third access permission information through the permission verification interface, wherein the verification level required for the third access permission information is higher than that for the second access permission information; in response to the third access permission information being verified, updating the display status of the matching order in the order management interface from a hidden state to a normal state.

[0165] Upon detecting that the permission reset control has been triggered, this action is identified as high-risk. Therefore, a permission verification interface requiring a higher level of security can be displayed. This permission verification interface is the one that pops up after the user triggers the permission reset control, used to collect higher-level verification credentials. Compared to the normal permission verification interface, it requires a higher level of authentication strength, dimension, or type. Third-party access permission information is a set of extremely high-security verification credentials provided in real-time on the permission verification interface when the user intends to perform the permission reset operation.

[0166] Verification level refers to the level of security strength set for different types of access permission information. Verification level can be a comprehensive score determined by multiple factors, used to quantify the reliability of verification methods. For example, verification levels can include low, medium, and high levels. For instance, a low level could be a 4-digit numeric password or a simple pattern password; a medium level could be a complex password of 8 or more characters, fingerprint, or Face ID; and a high level could be a payment password, ID number + facial liveness detection, hardware security key signature, email + mobile phone two-factor authentication, etc., without further limitation.

[0167] After obtaining the third-party access permission information, it can be verified. Once the verification passes, a batch cleanup operation can be performed: that is, iterating through and deleting all successfully matched first-party access permission information and their corresponding orders for the current user. Simultaneously, the display status of these orders' interfaces will be updated from hidden to normal in batches.

[0168] In the embodiments of this disclosure, the hidden order interface provides a permission reset control, clearly separating and juxtaposing the paths for routine management and emergency handling. In response to the permission reset control being triggered, third access permission information is obtained through the permission verification interface. Since its required verification level is higher than that of the second access permission information, it effectively prevents malicious resets using the unlocked viewing state when the device is briefly controlled by others, fundamentally ensuring that the emergency channel is not exploited by downgrade attacks. Based on this, in response to the successful verification of the third access permission information, the association between the successfully matched first access permission information and the order is severed, and the order's display status is updated from hidden to normal. This constructs a secure and controllable overall reset mechanism in emergency situations, solving the problem that users may permanently lose locked orders due to forgotten credentials, changes in biometrics, etc. Simultaneously, by forcibly upgrading the verification level, the security of this high-risk global reset operation is ensured.

[0169] Figure 7D The illustration shows an example diagram of a permission reset process according to an embodiment of the present disclosure.

[0170] like Figure 7D As shown, in the permission reset embodiment 700D, the hidden order interface can also display a permission reset control 750.

[0171] In response to the permission reset control 750 being triggered, the permission verification interface 760 can be displayed, and the third access permission information 761 can be obtained through the permission verification interface 760. The third access permission information 741 requires a higher verification level than the second access permission information.

[0172] In response to the successful verification of the third access permission 741641, the association between the successfully matched first access permission information and the order can be severed, and the display status of the order can be updated from hidden to normal.

[0173] According to embodiments of this disclosure, the method may further include the following operation: performing a masking process on at least one auxiliary function associated with the target order to intercept content generated by the auxiliary function that is associated with the target order.

[0174] Auxiliary functions refer to other functional modules within the platform besides the core order management interface that may indirectly disclose order information. For example, auxiliary functions may include recommendation and advertising functions such as the "You May Like" product recommendation algorithm on the homepage, splash screen ads, and personalized information feeds; alternatively, they may include social sharing functions such as one-click sharing of purchased items to social circles, shopping sharing in friends' feeds, and group-buying invitations; they may also include fulfillment and notification functions such as SMS notification services, App push notifications, associated intelligent voice assistant broadcasts, and logistics tracking sharing; and they may include product snapshots in the after-sales list, such as the automatically popping-up "Do you need help with your purchased XX?" message from the intelligent customer service, which are not limited here.

[0175] Hiding refers to modifying functional logic or data input to prevent content related to hidden orders from being generated, output, or displayed in auxiliary functions. For example, for recommendation and advertising functions, the hidden order ID can be removed from the user profile's user behavior feature vector before calling the recommendation algorithm service, so that it is no longer used as a basis for recommendations.

[0176] Alternatively, for social sharing functionality, when a user attempts to share content, the backend sharing interface will first verify the "hidden status" of the content's source order. If it is hidden, it will return an error code "This content cannot be shared" and abort the operation. Alternatively, for fulfillment and notification functionality, a filter can be set in the SMS / push notification generation service to block all notification tasks whose order IDs exist in the privacy order list.

[0177] In the embodiments of this disclosure, by performing a blocking process on at least one auxiliary function associated with the order according to the hidden state, the scope of privacy protection is systematically moved forward from a single order list page to the source of all data-derived functions such as recommendations, notifications, and sharing. This solves the problem in the prior art that privacy may still be leaked through various indirect channels even after the order is hidden, thereby constructing a cross-module full-link defense system and improving the privacy protection effect of order privacy management.

[0178] According to embodiments of this disclosure, performing a masking process on at least one auxiliary function associated with a target order may include the following operations: displaying a function configuration control for each auxiliary function through a masking function configuration interface; and performing a masking process on the auxiliary function associated with the function configuration control in response to the function configuration control being triggered.

[0179] The blocking function configuration interface is a configurable user interface provided to users during the order privacy protection process. It is specifically used to manage and set which auxiliary functions need to be blocked. The blocking function configuration interface can be a parallel or downstream interface of the permission configuration interface, giving users the power to choose which specific functions to block.

[0180] For example, the blocking function configuration interface could be a half-screen pop-up window titled "Personalized Blocking Settings" that automatically appears after an order is set to hidden. Alternatively, the blocking function configuration interface could be a collapsed area called "Advanced Function Blocking" at the bottom of the permission configuration interface, which is not limited here.

[0181] Auxiliary functions refer to peripheral functional modules within the platform, other than the core order viewing function, that may directly or indirectly generate and display order-related content in the present or future. For example, auxiliary functions may include recommendation and advertising functions such as the "You May Like" product recommendation algorithm on the homepage, splash screen ads, and personalized information feeds; alternatively, they may include social sharing functions such as one-click sharing of purchases to social circles, shopping sharing in friends' feeds, and group-buying invitations; they may also include fulfillment and notification functions such as SMS notification services, app push notifications, associated intelligent voice assistant broadcasts, and logistics tracking sharing; and they may include product snapshots in after-sales lists such as "Do you need help with your purchased XX?" automatically popped up by intelligent customer service, which are not limited here.

[0182] When a user triggers the privacy settings process and reaches a certain stage, or when a user actively enters the order privacy management page, the blocking function configuration interface can be loaded and rendered. Within the predefined layout of this interface, the list of available accessibility functions on the current platform is traversed and mapped. For each function, a corresponding function configuration control is dynamically generated and presented on the interface for the user to perform further fine-tuning.

[0183] Function configuration controls are interactive toggle components rendered on the accessibility configuration interface, corresponding one-to-one or in groups to various accessibility functions. Users can use these controls to express their intention to disable or not disable a particular accessibility function. For example, a function configuration control can be a toggle switch to the right of each accessibility function name; a function configuration control can be a square checkbox before each accessibility function name, supporting multiple selections for batch execution; alternatively, a function configuration control can be a list item, which, when clicked, expands to include downstream fine-grained options, such as clicking the "Sharing Service" control to expand sub-options: "Disable WeChat Sharing" and "Disable SMS Sharing".

[0184] After rendering the accessibility configuration interface, the system can continuously monitor state change events for each configuration control. When a user performs an action such as clicking or swiping, causing a change in the state of a control, the unique identifier and target state of the accessibility function bound to that control can be immediately obtained. Subsequently, the backend calls the corresponding service interface or updates the configuration center to perform the actual blocking of the accessibility function for that order.

[0185] In the embodiments of this disclosure, the function configuration controls for each auxiliary function are displayed through a hidden function configuration interface. These auxiliary functions are presented to the user in an intuitive and interactive control format, allowing the user to clearly and completely understand in which peripheral functions order information will be indirectly used. Furthermore, in response to the triggering of the function configuration control, the auxiliary functions associated with the function configuration control are hidden. This enables the configuration of precisely matched hidden functions for each order based on the user's personalized risk preferences and usage habits, maximizing the availability of the functions required by the user and achieving an optimal personalized balance between privacy protection and functional experience.

[0186] Figure 8 The illustration shows an example schematic diagram of a process for performing a masking process on at least one auxiliary function associated with a target order according to an embodiment of the present disclosure.

[0187] like Figure 8 As shown, in embodiment 800, which performs blocking processing on at least one auxiliary function associated with an order, after obtaining the first access permission information through the permission configuration interface, the blocking function configuration interface 820 can be displayed by triggering the function configuration button 810 of the permission configuration interface.

[0188] The blocking function configuration interface 530820 can display function configuration controls for various auxiliary functions. For example, the blocking function configuration interface 530820 can display function configuration controls 821 for order fulfillment status message push function, function configuration controls 822 for product recommendation function, and function configuration controls 823 for product shopping guide recommendation function.

[0189] In response to at least one of the function configuration controls 821, 822 and 823 being triggered, accessibility features associated with the function configuration controls can be masked.

[0190] According to embodiments of this disclosure, the auxiliary functions may include at least one of the following: order fulfillment status message push function, product recommendation function, and product shopping guide recommendation function.

[0191] The order fulfillment status push notification function refers to a message notification mechanism that is automatically or manually generated and sent to a specific recipient throughout the entire lifecycle of an order, from successful payment to final completion, to inform them of the order's current progress and any abnormal situations. For example, the order fulfillment status push notification function could be an SMS message received by the user's mobile phone stating, "[XX Platform] Your purchased goods have been shipped, tracking number: XX123456, click to view details"; alternatively, it could be a push message displayed in the notification bar stating, "Your order has been picked up by courier xxx, expected delivery tomorrow"; or alternatively, it could be a template message received in the service notification stating, "Order status update: Your package has been signed for."

[0192] Product recommendation functionality refers to a system function that generates a personalized product list for a user based on their historical behavioral data (browsing, searching, purchasing, etc.) using algorithms such as data mining and machine learning. For example, the product recommendation function could be an app homepage recommending strongly related products like "XX test strips" based on the user's purchase history; alternatively, it could be an email containing a list of similar testing products sent to the user's inbox with the message "You might also like..."; and yet another alternative is a "Similar Products to Your Purchases" recommendation bar appearing at the bottom of the checkout page.

[0193] Product recommendation features refer to guided recommendations provided by the system proactively or when a user triggers a specific action, outside of browsing products or making a purchase, designed to help users discover new products and promote purchases. For example, a product recommendation feature could be a dropdown list displaying "People are searching for: XX test reagents" when the search bar gains focus; alternatively, it could be a prompt from an online customer service chatbot asking, "Does your XX product need to be used with YY?" based on recent orders; or it could be a purchase link for a product highly relevant to the user's private information displayed below a short video or live stream.

[0194] Blocking can include instruction-level interception, such as intercepting order fulfillment message push instructions generated for an order. An order fulfillment message push instruction is a message sending task object or a record in a message queue generated internally by the system and used to drive the execution of the order fulfillment status message push function.

[0195] For example, after user Xiao Wang hides his order for "XX brand hair growth device," the backend fulfillment notification service generates an SMS message stating "Order shipped, product: XX brand hair growth device." However, this message is blocked by internal blocking rules when passing through the message distribution center and is not delivered. As a result, Xiao Wang's phone only receives shipping notifications for other regular orders.

[0196] The blocking process can also include data-level interception, such as removing product association information from the input data of the platform's recommendation algorithm. The input data of the platform's recommendation algorithm refers to the dataset collected, cleaned, and feature-engineered from various data sources before the algorithm models relying on product recommendation and shopping guide functions perform calculations. This dataset is used to train the model or perform online inference. Product association information is derived from the 'product information' in the order, processed through algorithms such as semantic extraction and collaborative filtering, and can establish connections with the product in the data space, serving as a basis for recommendations.

[0197] For example, after Xiao Wang hides the order, the system triggers an asynchronous task to call the data synchronization interface of the platform's recommendation engine. The task requests the backtracking deletion of the product ID, category ID, and behavior related to "XX brand hair growth device" that flowed into the model's input data pipeline in the past 2 hours. This ensures that the trace of the order has completely disappeared during the next iteration of training or real-time prediction by the recommendation algorithm.

[0198] In the embodiments of this disclosure, by providing auxiliary functions such as order fulfillment status message push, product recommendation, and product shopping guide recommendation, not only are direct, text-based leakage paths like message pushes brought under control, but also inferential leakage paths based on data association, such as recommendations and shopping guides, are included in the protection framework, providing clear execution targets for blocking. Furthermore, by intercepting order fulfillment message push instructions generated for orders, a means of interception at the instruction level is provided; and by deleting product association information from the input data of the platform's recommendation algorithm, two interception methods at the data level are provided, thereby achieving precise and automated privacy information leakage protection.

[0199] According to embodiments of this disclosure, in response to the display status of the target order in the order management interface returning to normal, a recovery process is performed on at least one auxiliary function associated with the target order.

[0200] Once the order's display status is successfully updated to normal, this status serves as a driving signal to all previously blocked auxiliary function modules associated with that order ID within the system. Upon receiving the signal, each module executes the opposite logic operation to the blocking, i.e., a recovery process, allowing the order's data to be reintegrated into the normal operating flow of these functions.

[0201] Recovery processing allows previously blocked accessibility features to regain normal access and use of the order information, enabling the order to resume its normal flow within the platform ecosystem. For example, recovery processing may include at least one of the following: removing the order ID from the push notification service's blacklist; or re-injecting the order's product information into the user profile data pipeline of the recommendation algorithm.

[0202] In the embodiments of this disclosure, at least one auxiliary function associated with the order is restored, extending the automation linked to the status to all functions of the platform. This avoids the tedious process of users manually restoring each function one by one, and solves the problems of easy setting and difficult unsetting of order privacy protection in the prior art, and the residual shielding of functions after removal affecting the experience. It realizes the complete autonomy of auxiliary functions from being turned off to being turned on, and constructs a closed loop of order privacy management that is controllable and reversible throughout the entire life cycle.

[0203] The above are merely exemplary embodiments, but are not limited thereto. Other order privacy management methods known in the art may also be included, as long as they can improve the privacy protection effect of order privacy management.

[0204] Figure 9 A block diagram of an order privacy management apparatus according to an embodiment of the present disclosure is shown schematically.

[0205] like Figure 9 As shown, the order privacy management device 900 may include a determination module 910 and a hiding module 920.

[0206] The determination module 910 is used to determine the target order in response to a user using a shared account triggering the privacy configuration control, based on the policy corresponding to the privacy configuration control, wherein the policy defines the method for determining the target order.

[0207] The hidden module 920 is used to update the display status of the target order in the order management interface corresponding to the shared account from the normal state to the hidden state, so that the target order is not visible to other users using the shared account.

[0208] According to embodiments of this disclosure, the privacy configuration control includes a privacy mode control in a shopping interface; the determination module 910 may include a first display submodule, a first switching submodule, and a first determination submodule.

[0209] The first display submodule is used to display a privacy mode control on the shopping interface in response to a user logging in with a shared account.

[0210] The first switching submodule is used to switch the current shopping mode to privacy shopping mode in response to the privacy mode control being enabled.

[0211] The first determination submodule is used to identify orders generated by users in privacy shopping mode as target orders.

[0212] According to embodiments of this disclosure, the determining module 910 may further include a second switching submodule.

[0213] The second switching submodule is used to switch the current shopping mode to normal shopping mode in response to the privacy mode control being turned off. Orders generated in normal shopping mode are non-target orders.

[0214] According to embodiments of this disclosure, the visual style of elements displayed in the shopping interface in privacy shopping mode is different from the visual style of elements displayed in the shopping interface in normal shopping mode, so as to prompt the user of the current shopping mode.

[0215] According to embodiments of this disclosure, the privacy configuration control includes a privacy status control in the order management interface; the determination module 910 may include a second display submodule and a second determination submodule.

[0216] The second display submodule is used to display privacy status controls for each order in the order management interface.

[0217] The second determination submodule is used to determine the order corresponding to the privacy status control as the target order in response to the privacy status control being triggered.

[0218] According to embodiments of this disclosure, the second display submodule may include a first display unit and a second display unit.

[0219] The first display unit is used to display a privacy status control for an order in a first visual style for orders that meet the privacy protection trigger conditions.

[0220] The second display unit is used to display the privacy status control for orders that do not meet the privacy protection trigger conditions in a second visual style that is different from the first visual style.

[0221] According to embodiments of this disclosure, whether an order meets the preset privacy protection trigger condition is determined in the following way: the product information of the goods in the order is input into a large model, and the large model outputs a classification result of whether the goods belong to private goods by analyzing the similarity between the product information and the reference information, wherein the reference information includes product information in historical hidden orders and product information configured by the platform operation rules; in response to the classification result indicating that the goods belong to private goods, it is determined that the order meets the privacy protection trigger condition.

[0222] According to embodiments of this disclosure, the order privacy management device 900 may further include a first display module.

[0223] The first display module is used to respond to the user's hover or long press operation on the privacy configuration control, and to display guidance prompts at the location associated with the privacy configuration control. The guidance prompts are used to guide the user to configure privacy settings for the order through the privacy configuration control.

[0224] According to embodiments of this disclosure, the determining module 910 may include a first acquisition submodule and an associated storage submodule.

[0225] The first acquisition submodule is used to acquire first access permission information through the permission configuration interface, wherein the first access permission information includes at least one of the following: numeric password, graphic password, gesture password, and biometric feature.

[0226] The associated storage submodule is used to associate the first access permission information with the order identifier of the target order and store it in the mapping.

[0227] According to embodiments of this disclosure, the order privacy management device 900 may further include a first acquisition module, a matching module, and a display module.

[0228] The first acquisition module is used to respond to the user's access operation to the hidden order interface and obtain the second access permission information through the permission verification interface.

[0229] The matching module is used to match each piece of first access permission information in the mapping according to the second access permission information, so as to obtain at least one matching order associated with the first access permission information.

[0230] The display module is used to show order information for at least one matching order by hiding the order interface.

[0231] According to embodiments of this disclosure, the hidden order interface also displays a privacy status deactivation control for matching orders; the order privacy management device 900 may further include a first update module and a deletion module.

[0232] The first update module is used to update the display status of the matching order in the order management interface from hidden to normal in response to the privacy status unlocking control being triggered.

[0233] The deletion module is used to remove the order identifier and corresponding first access permission information of the matching order from the mapping.

[0234] According to embodiments of this disclosure, the hidden order interface also displays a permission reset control; the order privacy management device 900 may further include a second acquisition module and a second update module.

[0235] The second acquisition module is used to obtain third access permission information through the permission verification interface in response to the permission reset control being triggered. The verification level required for the third access permission information is higher than that for the second access permission information.

[0236] The second update module is used to update the display status of the matching order in the order management interface from hidden to normal in response to the verification of the third access permission information.

[0237] According to embodiments of this disclosure, the order privacy management device 900 may further include a shielding processing module.

[0238] The blocking processing module is used to perform blocking processing on at least one auxiliary function associated with the target order in order to block content generated by the auxiliary function that is associated with the target order.

[0239] According to embodiments of this disclosure, the masking processing module may include a third display submodule and a processing submodule.

[0240] The third display submodule is used to display the function configuration controls for various auxiliary functions by hiding the function configuration interface.

[0241] The processing submodule is used to perform masking processing on the auxiliary functions associated with the function configuration control in response to the function configuration control being triggered.

[0242] According to embodiments of this disclosure, the auxiliary functions include at least one of the following: order fulfillment status message push function, product recommendation function, and product shopping guide recommendation function; the processing submodule may include at least one of the following: interception unit and deletion unit.

[0243] The interception unit is used to intercept order fulfillment message push instructions generated for orders.

[0244] The deletion unit is used to remove associated information of products in an order from the input data of the platform's recommendation algorithm.

[0245] According to embodiments of this disclosure, the order privacy management device 900 may further include a function recovery module.

[0246] The function recovery module is used to perform recovery processing on at least one auxiliary function associated with the target order in response to the target order's display status in the order management interface returning to normal.

[0247] Any one or more of the modules, submodules, units, and subunits according to embodiments of the present disclosure, or at least part of the functions of any one or more of them, can be implemented in one module. Any one or more of the modules, submodules, units, and subunits according to embodiments of the present disclosure can be implemented by dividing them into multiple modules. Any one or more of the modules, submodules, units, and subunits according to embodiments of the present disclosure can be at least partially implemented as hardware circuitry, such as a Field-Programmable Gate Array (FPGA), a Programmable Logic Array (PLA), a System-on-Chip, a System-on-a-Substrate, a System-on-Package, an Application-Specific Integrated Circuit (ASIC), or implemented in hardware or firmware by any other reasonable means of integrating or packaging circuitry, or implemented in software, hardware, or firmware, or in any suitable combination of any of these three implementation methods. Alternatively, one or more of the modules, submodules, units, and subunits according to embodiments of the present disclosure can be at least partially implemented as computer program modules, which, when run, can perform corresponding functions.

[0248] It should be noted that the order privacy management device part in the embodiments of this disclosure corresponds to the order privacy management method part in the embodiments of this disclosure. For a detailed description of the order privacy management device part, please refer to the order privacy management method part, which will not be repeated here.

[0249] Figure 10 A block diagram of an electronic device suitable for implementing an order privacy management method according to an embodiment of the present disclosure is shown schematically. Figure 10 The electronic device shown is merely an example and should not be construed as limiting the functionality and scope of the embodiments disclosed herein.

[0250] like Figure 10 As shown, a computer electronic device 1000 according to an embodiment of the present disclosure includes a processor 1001, which can perform various appropriate actions and processes according to a program stored in a read-only memory (ROM) 1002 or a program loaded from a storage portion 1009 into a random access memory (RAM) 1003. The processor 1001 may include, for example, a general-purpose microprocessor (e.g., a CPU), an instruction set processor and / or an associated chipset and / or a special-purpose microprocessor (e.g., an application-specific integrated circuit (ASIC)), etc. The processor 1001 may also include onboard memory for caching purposes. The processor 1001 may include a single processing unit or multiple processing units for performing different actions of the method flow according to an embodiment of the present disclosure.

[0251] RAM 1003 stores various programs and data required for the operation of electronic device 1000. Processor 1001, ROM 1002 and RAM 1003 are interconnected via bus 1004.

[0252] According to embodiments of this disclosure, the electronic device 1000 may further include an input / output (I / O) interface 1005, which is also connected to a bus 1004. The electronic device 1000 may also include one or more of the following components connected to the input / output (I / O) interface 1005: an input section 1006 including a keyboard, mouse, etc.; an output section 1007 including a cathode ray tube (CRT), liquid crystal display (LCD), etc., and a speaker, etc.; a storage section 1008 including a hard disk, etc.; and a communication section 1009 including a network interface card such as a LAN card, modem, etc. The communication section 1009 performs communication processing via a network such as the Internet. A drive 1010 is also connected to the input / output (I / O) interface 1005 as needed. A removable medium 1011, such as a disk, optical disk, magneto-optical disk, semiconductor memory, etc., is installed on the drive 1010 as needed so that computer programs read from it can be installed into the storage section 1008 as needed.

[0253] This disclosure also provides a computer-readable storage medium, which may be included in the device / apparatus / system described in the above embodiments; or it may exist independently and not assembled into the device / apparatus / system. The computer-readable storage medium carries one or more programs, which, when executed, implement the order privacy management method according to the embodiments of this disclosure.

[0254] In this disclosure, a computer-readable storage medium can be any tangible medium that contains or stores a program that can be used by or in conjunction with an instruction execution system, apparatus, or device.

[0255] Embodiments of this disclosure also include a computer program product comprising a computer program containing program code for performing the methods provided in the embodiments of this disclosure. When the computer program product is run on an electronic device, the program code is used to enable the electronic device to implement the order privacy management method provided in the embodiments of this disclosure.

[0256] When the computer program is executed by the processor 1001, it performs the functions defined in the system / apparatus of this disclosure embodiments. According to embodiments of this disclosure, the systems, apparatuses, modules, units, etc., described above can be implemented by computer program modules.

[0257] According to embodiments of this disclosure, program code for executing computer programs provided in embodiments of this disclosure can be written in any combination of one or more programming languages.

[0258] The flowcharts and block diagrams in the accompanying drawings illustrate the architecture, functionality, and operation of possible implementations of systems, methods, and computer program products according to various embodiments of this disclosure. It should also be noted that in some alternative implementations, the functions indicated in the boxes may occur in a different order than those shown in the drawings.

[0259] The embodiments of this disclosure have been described above. However, these embodiments are for illustrative purposes only and are not intended to limit the scope of this disclosure. Although various embodiments have been described above, this does not mean that the measures in the various embodiments cannot be used advantageously in combination. The scope of this disclosure is defined by the appended claims and their equivalents. Various substitutions and modifications can be made by those skilled in the art without departing from the scope of this disclosure, and all such substitutions and modifications should fall within the scope of this disclosure.

Claims

1. A method for order privacy management, wherein, The methods include: In response to a user triggering a privacy configuration control using a shared account, a target order is determined based on a policy corresponding to the privacy configuration control; wherein the policy defines the method for determining the target order; and The display status of the target order in the order management interface corresponding to the shared account is updated from normal to hidden, so that the target order is not visible to other users using the shared account.

2. The method according to claim 1, wherein, The privacy configuration control includes the privacy mode control in the shopping interface; In response to a user using a shared account triggering a privacy configuration control, the target order is determined based on the policy corresponding to the privacy configuration control, including: In response to a user logging into the shared account, the privacy mode control is displayed on the shopping interface; In response to the privacy mode control being enabled, the current shopping mode is switched to privacy shopping mode; and The orders generated by the user in the privacy shopping mode are identified as the target orders.

3. The method according to claim 2, further comprising: In response to the privacy mode control being turned off, the current shopping mode is switched to normal shopping mode, wherein orders generated in the normal shopping mode are non-target orders.

4. The method according to claim 3, wherein, The visual style of elements in the shopping interface in the privacy shopping mode is different from that in the normal shopping mode, in order to prompt the user about the current shopping mode.

5. The method according to claim 1, wherein, The privacy configuration control includes the privacy status control in the order management interface; In response to a user using a shared account triggering a privacy configuration control, the target order is determined based on the policy corresponding to the privacy configuration control, including: The order management interface displays privacy status controls for each order; and In response to the privacy status control being triggered, the order corresponding to the privacy status control is determined as the target order.

6. The method according to claim 5, wherein, The order management interface displays privacy status controls for each order, including: For orders that meet the privacy protection trigger conditions, a privacy status control for the order is displayed in a first visual style; and For orders that do not meet the privacy protection trigger conditions, a privacy status control for the order is displayed in a second visual style that is different from the first visual style.

7. The method according to claim 6, wherein, Whether an order meets the preset privacy protection trigger conditions is determined in the following way: The product information of the items in the order is input into a large model, which analyzes the similarity between the product information and reference information to output a classification result indicating whether the product belongs to a private item. The reference information includes product information from historical hidden orders and product information configured by platform operation rules. In response to the classification result indicating that the product belongs to private products, it is determined that the order meets the privacy protection trigger condition.

8. The method according to any one of claims 1 to 7, further comprising, after displaying the privacy configuration control: In response to a user's hover or long-press action on the privacy configuration control, a guidance prompt message is displayed at the location associated with the privacy configuration control, wherein... The guidance prompts are used to guide users to configure privacy settings for the order through the privacy configuration control.

9. The method according to any one of claims 1 to 7, wherein, In response to a user using the shared account triggering the privacy configuration control, the method further includes: The first access permission information is obtained through the permission configuration interface, wherein the first access permission information includes at least one of the following: numeric password, graphic password, gesture password, biometric feature; and The first access permission information is associated with the order identifier of the target order and stored in the mapping.

10. The method of claim 9, further comprising: In response to a user's access to the hidden order interface, second access permission information is obtained through the permission verification interface; Based on the second access permission information, each first access permission information in the mapping is matched to obtain at least one matching order associated with the first access permission information; as well as The hidden order interface displays order information for at least one of the matching orders.

11. The method according to claim 10, wherein, The hidden order interface also displays a privacy status deactivation control for the matched order; The method further includes: In response to the privacy status deactivation control being triggered, the display status of the matched order in the order management interface is updated from the hidden state to the normal state; and Remove the order identifier and corresponding first access permission information of the matching order from the mapping.

12. The method according to claim 10, wherein, The hidden order interface also displays a permission reset control; The method further includes: In response to the permission reset control being triggered, third access permission information is obtained through the permission verification interface, wherein the verification level required for the third access permission information is higher than that for the second access permission information; and In response to the verification of the third access permission information, the display status of the matched order in the order management interface is updated from the hidden state to the normal state.

13. The method of claim 1, further comprising, after determining the target order: At least one accessibility feature associated with the target order is masked to block content generated by the accessibility feature that is associated with the target order.

14. The method according to claim 13, wherein, The process of masking at least one auxiliary function associated with the target order includes: By disabling the function configuration interface, function configuration controls for each of the aforementioned auxiliary functions are displayed; and In response to the function configuration control being triggered, the auxiliary functions associated with the function configuration control are disabled.

15. The method according to claim 14, wherein, The auxiliary functions include at least one of the following: order fulfillment status message push function, product recommendation function, and product shopping guide recommendation function; The shielding process includes at least one of the following: Intercept the order fulfillment message push instruction generated for the order; as well as Remove the associated information of the products in the order from the input data of the platform's recommendation algorithm.

16. The method according to any one of claims 13 to 15, further comprising: In response to the target order's display status in the order management interface returning to the normal state, a recovery process is performed on at least one auxiliary function associated with the target order.

17. An order privacy management device, comprising: A determination module is configured to, in response to a user using a shared account triggering a privacy configuration control, determine a target order based on a policy corresponding to the privacy configuration control, wherein the policy defines the method for determining the target order; and The hiding module is used to update the display status of the target order in the order management interface corresponding to the shared account from the normal state to the hidden state, so that the target order is not visible to other users using the shared account.

18. An electronic device comprising: One or more processors; Memory, used to store one or more computer programs. The characteristic feature is that the one or more processors execute the one or more computer programs to implement the steps of the method according to any one of claims 1 to 16.

19. A computer-readable storage medium having a computer program or instructions stored thereon, characterized in that, When the computer program or instructions are executed by a processor, they implement the steps of the method according to any one of claims 1 to 16.

20. A computer program product comprising a computer program or instructions, characterized in that, When the computer program or instructions are executed by a processor, they implement the steps of the method according to any one of claims 1 to 16.