Integrated service management system and integrated service management method
The described system addresses security and operational burdens in web service linking by managing user information and consented data transfer between services, ensuring secure and efficient account sharing without redundant verification processes.
Patent Information
- Application Number
- JP2023215855
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2023-12-21
- Publication Date
- 2025-07-03
AI Technical Summary
Existing web service systems that utilize ID linking to allow users to log in to multiple services with a single account face challenges in maintaining security while minimizing the operational and cost burdens on service providers, particularly in transactions requiring identity verification and account management.
A system that includes a storage unit for user information, an authentication unit to determine login permission, and a cooperation/linkage unit to manage and transmit consented user information between service providers, ensuring secure and efficient account linking without redundant identity verification and account setup processes.
This system maintains service security while reducing operational burdens on providers by leveraging existing verified user information for seamless account linking across services, enhancing user convenience and reducing the need for duplicate identity verification and account management.
Smart Images

Figure 2025099302000001_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to an associated service management system and an associated service management method.
Background Art
[0002] For services provided online such as web services, there are web services that require membership registration and account creation. For such web services, there is a mechanism (for example, a technology called ID linking) that allows a user to log in to a second web service different from the first web service using the account of the first web service for which the user has already created an account. The operator providing the first web service is also called an ID provider. When the first web service is specified as the linked destination when logging in to the second web service, the user is redirected to the login screen of the first web service and is prompted to enter the login information of the first web service. In the first web service, authentication is performed to determine whether the user is the owner of the account in the first web service based on the entered login information, and the authentication result is notified to the second web service. In the second web service, logging in to the second web service is permitted based on the authentication result. In this way, the user can use the second web service using the account of the first web service without generating a dedicated account for the second web service. The operator providing the second web service can enhance the convenience of the user while maintaining the security of the service by allowing only authenticated users to log in to the second web service, and can reduce the burden by saving the trouble of managing the accounts. Systems using such ID linking have also been provided (see, for example, Patent Document 1).
Prior Art Documents
Patent Documents
[0003]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0004] However, although the second Web service can be used using the account of the first Web service through ID linkage, there is still room for improvement from the viewpoint of maintaining the service security while suppressing the burden on the operator providing the Web service. For example, in Web services, online procedures are often used for transactions where users buy and sell goods with each other. In such online procedures, in order to carry out transactions safely, strict identity verification, for example, a mechanism for identity verification by a public personal authentication service called JPKI (Japanese Public Key Infrastructure), or a mechanism for pre-registering bank account information for debit and transfer should be provided. However, it is a heavy burden in terms of cost and operation for individual operators providing Web services to prepare a mechanism for identity verification and a mechanism for registering account information.
[0005] The present invention has been made in view of such a situation, and an object thereof is to provide a linked service management system and a linked service management method capable of maintaining the security of a service provided while suppressing the burden on an operator providing services online.
Means for Solving the Problems
[0006] In order to solve the above-described problems, one aspect of the present invention includes a storage unit that stores user information of a user who uses a first service providing site, a second service providing site different from the first service providing site, and a cooperation item acquisition unit that acquires a cooperation item indicating an item of cooperation information required when using the second service providing site that cooperates with an account used when logging in to the first service providing site, and when logging in to the second service providing site from a terminal device, an authentication unit that determines whether to permit logging in to the first service providing site based on information for logging in to the first service providing site, which is input in response to the use of the account of the first service providing site as a cooperation destination, and in response to the authentication unit permitting logging in to the first service providing site, a cooperation unit that reads out user information corresponding to the cooperation item required when using the second service providing site from the storage unit, displays a consent screen for inputting consent to provide the read user information to the second service providing site on the terminal device, determines cooperation information to be transmitted to the second service providing site among the user information based on the information input on the consent screen, and transmits the determined cooperation information together with the determination result by the authentication unit to a server device of an operator who manages the second service providing site. It is a cooperation service management system that provides a cooperation service management system having these components.
[0007] In addition, one aspect of the present invention is that a storage unit stores user information of a user who uses a first service providing site, a linkage item acquisition unit acquires a linkage item indicating an item of linkage information required when using a second service providing site that is different from the first service providing site and is linked to an account used when logging in to the first service providing site, an authentication unit determines whether to permit login to the first service providing site based on information for logging in to the first service providing site, which is input in response to using the account of the first service providing site as a linked destination when logging in from a terminal device to the second service providing site, a linkage unit reads out the user information corresponding to the linkage item required when using the second service providing site from the storage unit in response to the authentication unit permitting login to the first service providing site, displays on the terminal device a consent screen for inputting consent to provide the read user information to the second service providing site, determines linkage information to be transmitted to the second service providing site among the user information based on the information input on the consent screen, and transmits the determined linkage information together with the determination result by the authentication unit to a server device of an operator who manages the second service providing site.
Advantages of the Invention
[0008] According to the present invention, it is possible to maintain the safety of the service provided while suppressing the burden on the operator who provides the service online.
Brief Description of the Drawings
[0009]
Figure 1
Figure 2
Figure 3
Figure 4
Figure 5A
Figure 5B
Figure 5C
Figure 5D
Figure 5E
Embodiments for Carrying Out the Invention
[0010] Hereinafter, embodiments of the present invention will be described with reference to the drawings. FIG. 1 is a schematic block diagram showing the configuration of a cooperation service management system S according to an embodiment of the present invention. The cooperation service management system S includes a terminal device 10, a first service providing server 20, a second service providing server 30, a second service providing server 40, and a network NW.
[0011] The terminal device 10 has a communication unit 101, a storage unit 102, an input unit 103, a display unit 104, and a control unit 105. The terminal device 10 may be, for example, a smartphone, a tablet, a mobile phone, or the like.
[0012] The communication unit 101 communicates with the first service providing server 20, the second service providing server 30, and the second service providing server 40 via the network NW.
[0013] The storage unit 102 stores various data. The storage unit 102 also stores application programs. The application programs include an application program of a web browser for browsing web pages. Further, as application programs, application programs (native apps) for using online services provided by the first service providing server 20, the second service providing server 30, the second service providing server 40, etc. may be included.
[0014] The input unit 103 inputs various data according to the operation input of the user. The input unit 103 may be any of, for example, a touch panel, a keyboard, a mouse, etc. The display unit 104 is a display panel and displays various data (for example, web pages, app screens, etc.). The control unit 105 reads out and executes the application programs stored in the storage unit 102. The control unit 105 also controls each unit within the terminal device 10. Only one terminal device 10 is illustrated in FIG. 1, but there may be a plurality of them.
[0015] The first service providing server 20 provides various services via a web page or the like. The services provided are, for example, services that can collectively perform various procedures for different services and different operators. Further, the first service providing server 20 may be a server that provides other services, and may be any of an internet shopping site, a message exchange service site, an insurance company site, a bank site, etc. Hereinafter, the services provided by the first service providing server 20 are referred to as the first services. For example, the first service providing server 20 publishes a web page corresponding to the first service providing site and provides the first service via this web page.
[0016] In addition, the first service providing server 20 provides a service as an ID provider. The first service providing server 20 performs authentication processing based on information input when a user (user) logs in to a different site from the first service providing site, and supplies the authentication result to the service providing server corresponding to that different site. The different site is, for example, a second service providing site provided by the second service providing server 30 or the second service providing server 40. When the different site is the second service providing site, the service providing server corresponding to the different site is the second service providing server 30 or the second service providing server 40. By the first service providing server 20 supplying the authentication result to other service providing servers, the user can receive the provision of services on the different site using the account created on the second service providing site without creating an account individually for the different site. Also, the user can receive the provision of a plurality of services without managing each account for each service. In this way, a mechanism for making the account registered with the ID provider available for use in other services without creating an account individually for each service is sometimes called ID linking. Such ID linking can be realized by using the function of an API (Application Programming Interface).
[0017] Here, in response to providing a service as an ID provider, the first service providing server 20 of the present embodiment transmits, with the consent of the user, the linked information, which is all or part of the user information stored in the first service providing server 20, to the service providing server (the second service providing server 30 or the second service providing server 40) corresponding to the second service providing site with which ID linking is performed. For example, when logging in from the terminal device 10 to the second service providing site and the first service providing site is specified as the link destination, the linked items are notified to the first service providing server 20 via the API. This linked information is the user's attribute information required by the second service providing site when the user uses the second service providing site. For example, when the second service providing site is a flea market site that enables individuals to buy and sell items online, the identity verification information for confirming that the user is a participant pre-registered on the flea market site, the account number used by the user for transactions in which items are bought and sold, etc. are linked information. By providing the linked information to the second service providing site with such ID linking, it is possible to provide the second service providing site with the identity verification and bank account information that the second service providing site wants to use to safely provide the service. Therefore, while maintaining the security of the service, it is possible to reduce the burden on the cost and operation aspects by saving the trouble of preparing a mechanism for identity verification and a mechanism for registering account information. Also, in a site where individuals conduct transactions such as a flea market site, since it tends to be the case that unknown sellers and buyers conduct transactions, it is better to be able to present materials for judging whether the trading partner can be trusted. In this embodiment, all or part of the user information registered on the first service providing site can be provided to the second service providing site as linked information. As a result, the second service providing site can present to the user that the trading partner is a person who has been personally authenticated by identity verification information with a track record of being used on the first service providing site. For this reason, the user can conduct transactions with confidence.
[0018] The first service providing server 20 includes a communication unit 201, a storage unit 202, a linked item acquisition unit 203, an authentication unit 204, a linking unit 205, and a control unit 206. The communication unit 201 communicates with the terminal device 10, the second service providing server 30, and the second service providing server 40 via the network NW.
[0019] The storage unit 202 stores user information. The user information is information indicating attributes of a user who uses the first service, and includes, for example, the user's phone number, name, address, date of birth, age, etc. registered for using the first service. Further, the user information may include identity verification information used when the user conducts procedures via the first service providing site, account information of a financial institution, and the like. The identity verification information is information for verifying that the person conducting the procedure is the person himself / herself when the procedure is carried out. For example, it is the result of identity verification by online identity verification using the technology of eKYC (electronic Know Your Customer). Further, as the identity verification information, the authentication result by a public personal authentication service called public personal authentication JPKI (Japanese Public Key Infrastructure) may be used. For example, when a user conducts a procedure that requires identity verification by eKYC via the first service providing site, the identity verification by eKYC is executed, and the result of the identity verification by eKYC is stored in the storage unit 202. As the identity verification information, both the result of the identity verification by eKYC and the authentication result by JPKI may be stored in the storage unit 202, or only one of them may be stored. Further, when the user has not yet conducted a procedure that requires identity verification via the first service providing site, etc., the user's identity verification information may not be stored in the storage unit 202. Further, as the account information of the financial institution used by the user, one or more account numbers may be stored in the storage unit 202, or the user's account number may not be stored in the storage unit 202.
[0020] The linkage item acquisition unit 203 acquires linkage items required when using the second service providing site. When logging in to the second service providing site from the terminal device 10 and the first service providing site is specified as the linkage destination, the linkage items are notified to the first service providing server 20 via the API. The linkage item acquisition unit 203 acquires the linkage items notified to the first service providing server 20 via the communication unit 201. The linked item is an item of linked information. The linked information is information required when using another site that is the link destination of ID linking, for example, the second service providing site. For example, the linked item is all or part of items of user information stored in the storage unit 202, such as items like telephone number, name, address, date of birth, age, personal identification information, account information, and the like.
[0021] The authentication unit 204 performs authentication by determining whether to permit login to the first service providing site based on the information for the user (user) to log in to the first service providing site entered by the user. For example, when logging in to the second service providing site from the terminal device 10 and the first service providing site is specified as the link destination, the user is redirected to the first service providing site, and the login screen of the first service providing site is displayed on the terminal device 10. When the user inputs information for logging in to the first service providing site according to the login screen of the first service providing site displayed on the terminal device 10, the authentication unit 204 determines whether to permit login to the first service providing site based on the information for the user to log in to the first service providing site entered by the user. For example, when the information for the user to log in to the first service providing site entered by the user is an account ID and a password, the authentication unit 204 compares the information entered by the user with the user's account information (for example, the combination of the account ID and password) registered when creating an account on the first service providing site, and determines to permit login to the first service providing site when the information entered by the user matches the pre-registered account information. On the other hand, the authentication unit 204 determines not to permit login to the first service providing site when the information entered by the user does not match the pre-registered account information.
[0022] The linking unit 205 performs information linking by sending, together with the authentication result by the authentication unit 204, the user information corresponding to the linked items required when using the second service providing site to the second service providing site. Upon the authentication unit 204 permitting login to the first service providing site, the cooperation unit 205 reads out user information corresponding to the cooperation items required when using the second service providing site from the storage unit 202. The cooperation unit 205 causes the terminal device 10 to display a consent screen. The consent screen is a screen for inputting consent to the effect that user information corresponding to the cooperation items required when using the second service providing site among the user information registered in the first service providing site may be provided to the second service providing site. On the consent screen, for example, together with a guidance text such as "Please press the operation button if you consent to providing the following information to the second service providing site", the items (cooperation items) of the information required when using the second service providing site and an operation button are displayed. The user touches the operation button when consenting to provide the user information to the second service providing site according to the consent screen displayed on the terminal device 10.
[0023] Based on the information input on the consent screen, the cooperation unit 205 determines the cooperation information among the user information to be transmitted to the second service providing site. For example, when consent to the effect that the user information displayed on the consent screen may be provided to the second service providing site is input for the user information displayed on the consent screen, the cooperation unit 205 determines to transmit the user information displayed on the consent screen to the second service providing site as the cooperation information.
[0024] The cooperation unit 205 transmits the cooperation information determined to be provided to the second service providing site, together with the determination result by the authentication unit, to the server device of the operator managing the second service providing site, that is, the second service providing server 30 or the second service providing server 40. The cooperation unit 205 may be configured not to transmit the cooperation information until all the user information corresponding to the cooperation items required from the second service providing site is available, or may be configured to transmit the cooperation information even if all the user information corresponding to the cooperation items is not available. Which correspondence to adopt is determined according to the agreement with the second service providing site. When transmitting the cooperation information, the cooperation unit 205 may transmit the user's cooperation level to the second service providing server 30 or the second service providing server 40 as the server device of the operator managing the second service providing site according to the number and type of the cooperation information to be transmitted. The cooperation level is determined, for example, by adding points. Points are added one by one when the login to the first service providing site is permitted and the user information corresponding to the cooperation item is provided to the second service providing site. The cooperation level of a user who is permitted to log in to the first service providing site but does not consent to provide user information to the second service providing site is 1 point. The cooperation level of a user who is permitted to log in to the first service providing site and consents to provide user information for both the identity verification information and the account information to the second service providing site is 3 points. Also, the cooperation unit 205 may transmit an authentication mark corresponding to the cooperation level to the second service providing server 30 or the second service providing server 40 as the server device of the operator managing the second service providing site. The authentication mark is a mark that proves that the first service providing site is a user having an account on the first service providing site and proves that the user information that has undergone strict identity verification provided by the first service providing site is provided. By notifying such an authentication mark, it becomes possible to display the authentication mark on the user's account on the second service providing site. For example, when the user operates the terminal device 10, logs in to the second service providing site using the account of the first service providing site as the cooperation destination, and consents to provide user information to the second service providing site, an authentication mark with the highest point cooperation level is displayed on the user's account on the second service providing site. When conducting a transaction at a second service - providing site such as a flea - market site, by displaying an authentication mark on the account of the trading partner, users can immediately grasp whether the user has completed identity verification or whether account information is registered. Therefore, it is possible to easily determine whether the trading partner is trustworthy or not.
[0025] The control unit 206 controls each part of the first service - providing server 20.
[0026] The second service - providing server 30 and the second service - providing server 40 provide various services via a web page. The services provided are, for example, services that provide an online flea - market. Also, the second service - providing server 30 and the second service - providing server 40 may be servers that provide other services, and may be any of an internet shopping site, a message - exchange service site, an insurance company's site, a bank's site, etc. The services provided by the second service - providing server 30 and the second service - providing server 40 are referred to as the second service. The second service - providing server 30 and the second service - providing server 40 provide the second service via the second service - providing site. Here, although the case of two servers, the second service - providing server 30 and the second service - providing server 40, is illustrated, the number of second service - providing servers that provide the second service may be three or more.
[0027] At the second service - providing site, an account with ID linkage can be created, and the first service - providing server 20 is set as the linkage destination. When a request to log in to the second service providing site is input from the terminal device 10, the second service providing servers 30 and 40 cause a link button for transitioning to the first service providing site that is a cooperation destination to be displayed on the display screen for the second service providing site. When the user (user) taps the link button, the user is transferred to the first service providing site and the login screen of the first service providing site is displayed on the display screen. The user inputs the information necessary to log in to the first service providing site according to the login screen displayed on the terminal device 10. In response to the input of the information necessary to log in to the first service providing site, the second service providing servers 30 and 40 receive the result of whether or not the login to the first service providing site is permitted from the first service providing server 20.
[0028] Here, the second service providing servers 30 and 40 obtain the result of whether or not the login to the first service providing site is permitted from the first service providing server 20, and receive cooperation information from the first service providing server 20. Further, the second service providing servers 30 and 40 receive the cooperation level, authentication mark, etc. from the first service providing server 20 together with the cooperation information.
[0029] Based on the received result (the result of whether or not the login to the first service providing site is permitted), the second service providing servers 30 and 40 determine whether or not to permit the login to the second service providing site. For example, when the login to the first service providing site is permitted, the second service providing servers 30 and 40 determine that the login to the second service providing site is permitted, and when the login to the first service providing site is not permitted, the second service providing servers 30 and 40 determine that the login to the second service providing site is not permitted. Note that the second service providing server 30 and the second service providing server 40 may be configured to determine that logging in to the second service providing site is permitted when logging in to the first service providing site is permitted and when part or all of the user information corresponding to the cooperation items is transmitted from the first service providing server 20. Whether to permit logging in to the second service providing site may be arbitrarily determined according to the second service providing site. Also, when the second service providing server 30 and the second service providing server 40 permit logging in to the second service providing site, they create a user account on the second service providing site and register cooperation information in the created account. Also, an authentication mark is displayed on the user account on the second service providing site.
[0030] The network NW is a communication network including at least a part of, for example, the Internet, WAN (Wide Area Network), LAN (Local Area Network), provider device, radio base station, dedicated line, and the like.
[0031] In FIG. 1, the storage unit 102 and the storage unit 202 are configured by a storage medium, for example, HDD (Hard Disk Drive), flash memory, EEPROM (Electrically Erasable Programmable Read Only Memory), RAM (Random Access read / write Memory), ROM (Read Only Memory), or an arbitrary combination of these storage media. For example, a non-volatile memory can be used for the storage unit 102 and the storage unit 202.
[0032] In addition, in FIG. 1, the communication unit 101, the input unit 103, and the control unit 105 may be configured by a processing device such as a CPU (Central Processing Unit) or a dedicated electronic circuit. The communication unit 201, the cooperation item acquisition unit 203, the authentication unit 204, the cooperation unit 205, and the control unit 206 may be configured by a processing device such as a CPU (Central Processing Unit) or a dedicated electronic circuit.
[0033] FIG. 2 is a diagram showing an example of user information stored in the storage unit 152. The user information is information regarding a user who uses the first service providing site. In FIG. 2, the user information includes the user's mobile phone number, the basic four pieces of information (name, date of birth, gender, address) obtained as the authentication result of public personal authentication, the authentication result of online identity verification A such as eKYC authentication, the authentication result of online identity verification B which is an identity verification different from public personal authentication and eKYC authentication (for example, identity verification using the user's biometric information (fingerprint, iris, etc.)), and two account information. Also, when there are multiple users, user information is associated with each user.
[0034] Next, the operation of the above-described cooperation service management system S will be described. FIG. 3 is a diagram for explaining the operation flow of the cooperation service management system S, and FIG. 4 is a sequence diagram for explaining the operation of the cooperation service management system S.
[0035] The user accesses the Web page of the second service provided by the second service providing site. The user operates the terminal device 10 and enters the URL indicating the second service providing site in the address bar of the Web browser. Alternatively, the user taps the icon of the second service installed on the terminal device 10. In response to this operation by the user, the control unit 105 connects to an external server (the second service providing server 30 or the second service providing server 40) managed by the operator providing the second service, and transmits a request for creating an account on the second service providing site.
[0036] The external server receives a request for creating an account on the second service providing site from the terminal device 10 (step S10 in FIG. 3, step S100 in FIG. 4). Based on receiving the request for creating an account, the external server transmits, as data of a web page for creating an account, a web page including a first service providing site which is a linked destination for the second service providing site, to the terminal device 10, thereby causing an account creation screen to be displayed on the display screen of the terminal device 10.
[0037] The control unit 105 of the terminal device 10 receives the data of the web page transmitted from the first service providing server 20 and displays it on the display unit 104. The user refers to the screen of the web page displayed on the display unit 104 and makes an operation input for selecting the first service as an ID provider for which an account has already been created. When an operation input for selecting the first service is made, the control unit 105 transmits the selection result to the external server (step S101 in FIG. 4). Based on the selection result received from the terminal device 10, the external server notifies the first service providing server 20 which operates the first service that there has been a request for ID linking from the terminal device 10 (step S102 in FIG. 4). The request for ID linking is executed via, for example, an API, and together with the request for ID linking, the linking items in the second service providing site are notified to the first service providing server 20. When receiving the notification of the request for ID linking, the first service providing server 20 transmits a login screen for inputting an ID and a password to the terminal device 10 (step S103 in FIG. 4).
[0038] When the control unit 105 of the terminal device 10 receives the login screen transmitted from the first service providing server 20, it causes the screen to be displayed on the display unit 104. On this login screen, respective input fields for inputting the ID and password of the account are displayed (step S11 in FIG. 3). On this input screen, the user enters the ID and password registered on the first service providing site and presses the "Login" button. Based on this operation input, the control unit 105 of the terminal device 10 sends a request for the ID, password, and login to the first service providing server 20 (step S104 in FIG. 4). When the authentication unit 204 of the first service providing server 20 receives the request for the ID, password, and login sent from the terminal device 10, it performs authentication processing using the received ID and password (step S105 in FIG. 4). If the authentication result is authentication OK (the ID and password match the pre-registered data), the cooperation unit 205 of the first service providing server 20 extracts the user information corresponding to the cooperation item from the storage unit 202 (step S12 in FIG. 3, step S106 in FIG. 4). The cooperation unit 205 of the first service providing server 20 sends a consent screen for obtaining the user's consent regarding the cooperation of the user information corresponding to the cooperation item to the terminal device 10 (step S107 in FIG. 4).
[0039] When the control unit 105 of the terminal device 10 receives the consent screen sent from the first service providing server 20, it causes the display unit 104 to display it. On this consent screen, the cooperation item, the user information corresponding to the cooperation item extracted from the storage unit 202, and operation buttons such as "Consent to cooperate" are displayed (step S13 in FIG. 3). In FIG. 3, only the operation button for "Consent to cooperate" on the consent screen, that is, the operation button operated when "Consent" is selected, is shown, but an operation button indicating "Do not consent" may be provided. Also, a checkbox for individually setting whether to consent to multiple pieces of user information may be provided, and an operation button for "Consent to cooperate only for the information checked" may be provided.
[0040] The user determines whether to provide the information to the second service providing site on this consent screen. If it is acceptable to provide, the user taps the "Consent and Link" operation button. Based on this operation input, the control unit 105 of the terminal device 10 sends a notification to the first service providing server 20 indicating that the user has "consented" to link the user information displayed on the consent screen to the second service (step S108 in FIG. 4).
[0041] When the linking unit 205 of the first service providing server 20 receives the notification indicating "consent" sent from the terminal device 10, it determines the linking information as the user information to be sent to the external server. The linking unit 205 of the first service providing server 20 sends the authentication result, linking information, linking level, and authentication mark by the authentication unit 204 to the external server (step S109 in FIG. 4). When the external server receives the authentication result from the first service providing server 20, it determines whether to permit login by determining whether the authentication result is authentication OK. If the authentication result is OK (if the ID and password match the pre-registered data), the external server creates a user account on the second service providing site and registers the linking information as the user information of the created account. (step S110 in FIG. 4). The external server sends the data of the web page indicating that the account creation is completed to the terminal device 10 (step S14 in FIG. 3, step S111 in FIG. 4). In addition, the external server sets the authentication mark corresponding to the linking level to be displayed on the user's account (steps S15, S16 in FIG. 3, step S112 in FIG. 4). As a result, the terminal device 10 can be linked to the account registered in the first service providing server 20, can log in to the second service providing site using the account of the first service providing site, and can receive the provision of the second service. By viewing a screen such as the user's own account's my page created on the second service providing site, the user can grasp that the ID linkage of the first service providing site has been completed in the second service, and that the user information agreed to be linked with the first service providing site has been linked to the second service providing site. Also, it can be confirmed that an authentication mark corresponding to the linkage level at the time of creating the user's account is displayed.
[0042] Here, variations of the embodiment will be described.
[0043] ≪Regarding the second and subsequent logins (Part 1)≫ When the user logs in to the second service providing site for the second and subsequent times, a long time may have passed since the account was created, and at the time of the second and subsequent logins, the user information linked at the time of account creation may become invalid. For example, the expiration date of the My Number card used for public personal authentication linked as the identity verification information may have expired, or the expiration date of a public document such as a driver's license used for eKYC authentication may have expired. In such cases, it is better to be able to update the invalid user information. From such a perspective, the linkage unit 205 performs the processes of steps S100 to S105 at the time of the second and subsequent logins, and in step S106, determines whether the user information already linked with the second service providing site is valid. If the already linked user information has become invalid, the linkage unit 205 transmits that fact to the external server. When the first service providing server 20 receives a request to update the already linked user information from the external server, it transmits an acquisition screen such as FIG. 5C or FIG. 5D to the terminal device 10 to cause the user information to be updated.
[0044] ≪Regarding the second and subsequent logins (Part 2)≫ When the user logs in to the second service providing site for the second time or later, there may be user information that could not be linked at the time of account creation and is registered on the first service providing site. For example, at the time of creating an account on the second service providing site, the identity verification information was not stored in the storage unit 202, but later, the user may perform a procedure that requires identity verification via the first service providing site, and the identity verification information may be stored in the storage unit 202. In such a case, it is better to be able to link the newly registered user information. There may be cases where the expiration date of the My Number card used for public personal authentication linked as identity verification information has expired, or the expiration date of a public document such as a driver's license used for eKYC authentication has expired. From this perspective, at the time of the second and subsequent logins, the linking unit 205 performs the processes of steps S100 to S105. In step S106, it determines whether user information that could not be linked at the time of account creation is stored in the storage unit 202 among the user information corresponding to the linking items, and if it is stored, extracts that user information. The linking unit 205 transmits a consent screen displaying the user information extracted from the storage unit 202 to the terminal device 10 to obtain consent to link the user information.
[0045] Hereinafter, variations of the embodiment will be described with reference to FIG. 5 (FIGS. 5A to 5E). FIG. 5 is a diagram for explaining the operation of the linking service management system S.
[0046] ≪Changing the User Information to be Linked≫ There may be cases where the user wants to provide the second service providing site with different user information instead of the user information registered on the first service providing site. For example, at the first service providing site, an account of financial institution A is registered as user information, but at the second service providing site, the user may want to use an account of financial institution B. In such a case, it is better to be able to link the account of financial institution B to the second service providing site in accordance with the user's intention. From this perspective, when an intention to change the user information displayed on the consent screen to different information and provide it to the second service providing site is input, the cooperation unit 205 determines to obtain new user information in accordance with the user's intention and transmit the obtained user information as cooperation information to the second service providing site. In step S108, when an intention to provide information different from the user information displayed on the consent screen to the second service providing site is input by the user, the cooperation unit 205 transmits an acquisition screen to the terminal device 10 to obtain new user information in accordance with the user's intention. An example of the acquisition screen is shown in FIG. 5A. On this acquisition screen, as information for obtaining information to be provided to the second service providing site, for example, together with a guidance text such as "Please enter the account information to be provided to the second service providing site", an input field for entering the name of the financial institution, branch name, type of deposit, account number, account name, etc. as account information, and an operation button labeled "Register" are displayed. This operation button is a button that is operated when the information entered in the input field is to be confirmed. The user enters the account information according to the acquisition screen displayed on the terminal device 10, and when it is confirmed that there are no mistakes such as input errors in the entered account information, the user touches the operation button. When an operation input is made by the user, the control unit 105 transmits the entered account information to the first service providing server 20.
[0047] ≪Add user information to be linked (Part 1)≫ Also, it may be the case that account information of a specific financial institution is requested from the second service. For example, although an account of financial institution A is registered as user information on the first service providing site, there may be a case where it is requested to register an account of financial institution C on the second service providing site. In such a case, it would be better if the account of financial institution C could be linked to the second service providing site. From such a perspective, when the matching user information corresponding to the cooperation item is not stored in the storage unit 202 for the conditions required by the second service providing site, the cooperation unit 205 determines to acquire new user information that meets the requirements of the second service providing site, and transmit the acquired user information to the second service providing site as cooperation information. In step S106, when the user information that meets the conditions required by the second service providing site corresponding to the cooperation item is not stored in the storage unit 202, the cooperation unit 205 transmits an acquisition screen to the terminal device 10 to acquire the user information that meets the required conditions. An example of the acquisition screen is shown in FIG. 5B. This acquisition screen is, similar to FIG. 5A, a screen for registering account information with a fixed financial institution name.
[0048] ≪Add user information to be linked (Part 2)≫ In addition, there may be a case where the user information corresponding to the cooperation item is not stored in the storage unit 202. For example, if the user has no record of performing procedures that require identity verification via the first service providing site, there is a possibility that the user's identity verification information is not stored in the storage unit 202. Even in such a case, it is better to be able to transmit the identity verification information required by the second service providing site to the second service providing site. From such a perspective, when the user information required by the second service providing site corresponding to the cooperation item is not stored in the storage unit 202, the cooperation unit 205 determines to acquire new user information in accordance with the requirements of the second service providing site, and transmit the acquired user information to the second service providing site as cooperation information. In step S106, when the user information corresponding to the cooperation item is not stored in the storage unit 202, the cooperation unit 205 transmits an acquisition screen to the terminal device 10 to acquire the user information corresponding to the cooperation item.
[0049] FIG. 5C shows an example of an acquisition screen for acquiring personal verification information using JPKI. On the acquisition screen, together with a guidance text such as "In order to create an account on the second service providing site, it is necessary to provide the authentication result of personal verification using JPKI to the second service providing site. Please prepare your My Number card and conduct personal verification", an operation button described as "Conduct My Number authentication" or the like is displayed. When the user taps the operation button according to the acquisition screen displayed on the terminal device 10, for example, access is made to a signature verification site for conducting public personal authentication, and an authentication screen of the signature verification site is displayed on the terminal device 10. When the user inputs a password for using an electronic signature according to the authentication screen and allows the terminal device 10 to read the My Number card, public personal authentication processing is performed at the signature verification site. When the validity is confirmed, the basic four pieces of information such as the user's name, address, date of birth, and gender are notified to the first service providing server 20 as the authentication result.
[0050] FIG. 5D shows an example of an acquisition screen for acquiring personal verification information using eKYC. On the acquisition screen, together with a guidance text such as "In order to create an account on the second service providing site, it is necessary to provide the authentication result of personal verification using eKYC to the second service providing site. Please prepare a public document such as a driver's license or a health insurance card and conduct personal verification", an operation button described as "Conduct online personal verification" or the like is displayed. When the user taps the operation button according to the acquisition screen displayed on the terminal device 10, for example, access is made to an online personal verification site for conducting eKYC authentication, and an authentication screen of the online personal verification site is displayed on the terminal device 10. When the user captures an image of a public document or captures an image of their own face according to the authentication screen and transmits the captured camera image to the online personal verification site, eKYC authentication processing is performed at the online personal verification site, and the result of personal verification is notified to the first service providing server 20.
[0051] <<Select user information to be linked>> In addition, there may be cases where a plurality of user information corresponding to the cooperation items are stored in the storage unit 202. For example, there may be cases where the account information of the user's financial institution A and the account information of financial institution D are stored in the storage unit 202 as user information. In such cases, it is better for the user to be able to select which account information to provide to the second service providing site. From such a perspective, when a plurality of user information corresponding to the cooperation items are stored in the storage unit 202, the cooperation unit 205 determines to let the user select which user information to provide to the second service providing site, and transmit the user information selected by the user to the second service providing site as cooperation information. In step S106, when a plurality of user information corresponding to the cooperation items are stored in the storage unit 202, the cooperation unit 205 transmits a selection screen to the terminal device 10 to let the user select the user information to be provided to the second service providing site. An example of the selection screen is shown in FIG. 5E. On the selection screen, together with a guidance text such as "Please select the account information to be provided to the second service providing site.", a plurality of account information registered on the first service providing site and an operation button described as "Select" are displayed. The user selects the account information to be provided to the second service providing site according to the selection screen displayed on the terminal device 10 and taps the operation button. When an operation input is made by the user, the control unit 105 transmits the selection result to the first service providing server 20.
[0052] According to the embodiment described above, by ID cooperation, when logging in to the second service providing site or creating an account using the login information already registered on the first service providing site, user information is provided to the second service providing site. As a result, even when there is no mechanism for identity verification in the second service or a mechanism for pre-registering bank account information for debit or transfer, it is possible to obtain the result of identity verification or account information from the first service providing site. Therefore, it is possible to maintain the security of the service while suppressing the burden on the operator providing the second service providing site. In addition, when creating an account on the second service providing site, the user can use the login information of the first service providing site. When receiving a service where personal identification information and account information are required on the second service providing site, the personal identification information already verified on the first service providing site can be provided to the second service providing site, and the account information already registered on the first service providing site can be provided to the second service providing site. This can save the trouble of performing personal identification or entering account information on the second service providing site. Moreover, since the user information for which consent has been obtained is provided to the second service providing site, information that the user does not want will not leak to the second service providing site. Therefore, the convenience of the user can be improved.
[0053] In addition, according to the embodiment described above, when an intention to provide information different from the user information stored in the storage unit 202 to the second service providing site is input, the cooperation unit 205 displays an acquisition screen for acquiring the information to be provided to the second service providing site. Thereby, when the user indicates an intention to change the account information to be provided to the second service providing site to an account different from the account already registered on the first service providing site, corresponding measures can be taken in accordance with the user's intention, and the convenience of the user can be improved.
[0054] In addition, according to the embodiment described above, when a plurality of pieces of user information corresponding to the cooperation items required when using the second service providing site are stored in the storage unit 202, the cooperation unit 205 displays a selection screen for selecting the user information to be provided to the second service providing site from the plurality of pieces of user information. Thereby, when a plurality of pieces of account information are registered on the first service providing site, the user can select the account information to be provided to the second service providing site, and the convenience of the user can be improved.
[0055] Also, according to the embodiment described above, when the cooperation item required when using the second service providing site is not stored in the storage unit 202, the cooperation unit 205 displays an acquisition screen for acquiring the user information not stored in the storage unit 202. Thereby, even when the user information to be provided to the second service providing site is not registered in the first service providing site, the information can be acquired and provided to the second service providing site.
[0056] In the above-described embodiment, in step S109 of FIG. 4, the result of whether or not login is permitted in the first service providing server 20 has been described for the case where it is transmitted from the first service providing server 20 to an external server. However, it may be transmitted from the first service providing server 20 to the terminal device 10 and then transmitted from the terminal device 10 to the external server. In this case, the external server may acquire from the terminal device 10 the result of whether or not login to the first service providing site is permitted.
[0057] Also, in the above-described embodiment, the functions of the storage unit 202, the cooperation item acquisition unit 203, the authentication unit 204, and the cooperation unit 205 have been described for the case where they are provided in the first service providing server 20. However, at least a part of the configuration may be provided in the terminal device 10, and the first service providing server 20 and the terminal device 10 cooperate with each other to form a cooperation service management system that performs the above-described ID cooperation and the process of transmitting cooperation information to an external server.
[0058] In the above-described embodiment, the case where the first service providing server 20 is notified of the linked items from an external server via an API has been exemplified and described. However, the linked items may be stored in the storage unit 202 in advance. For example, in a prior contract or agreement, when performing ID linking, the user information to be provided from the first service providing site to the second service providing site is determined in advance, and the items of the determined user information are stored in the storage unit 202 as linked item information. This linked item information is information in which the second service providing site and the linked items are associated with each other. When there are a plurality of second service providing sites, the linked items corresponding to the content of the services provided by each site are stored in the storage unit 202 as linked information.
[0059] The linked service management system S, the first service providing server 20, and all or part of the linking unit 205 in the above-described embodiment may be realized by a computer. In that case, a program for realizing this function may be recorded on a computer-readable recording medium, and the program recorded on this recording medium may be read into a computer system and executed to realize it. Here, the "computer system" is assumed to include hardware such as an OS and peripheral devices. Further, the "computer-readable recording medium" refers to a portable medium such as a flexible disk, a magneto-optical disk, a ROM, a CD-ROM, or the like, or a storage device such as a hard disk built in a computer system. Furthermore, the "computer-readable recording medium" also includes a medium that dynamically holds a program for a short time, such as a communication line when transmitting a program via a network such as the Internet or a communication line such as a telephone line, and a volatile memory inside a computer system that becomes a server or a client in that case and holds a program for a certain period of time. Also, the above program may be for realizing a part of the above-described functions, and may further be realized in combination with a program already recorded in a computer system for realizing the above-described functions, or may be realized using a programmable logic device such as an FPGA.
[0060] As described above in detail with reference to the drawings, the embodiments of the present invention are not limited to the specific configurations, and designs and the like within the scope not departing from the gist of the present invention are also included.
Description of Reference Numerals
[0061] 10…Terminal device 20…First service providing server 30, 40…Second service providing servers 101, 201…Communication units 102…Storage unit 103…Input unit 104…Display unit 105, 206…Control units 202…Storage unit 203…Cooperation item acquisition unit 204…Authentication unit 205…Cooperation unit S…Cooperation service management system
Claims
1. A storage unit that stores user information of a user who uses a first service providing site; A cooperation item acquisition unit that acquires a cooperation item indicating an item of cooperation information required when using a second service providing site that is different from the first service providing site and cooperates with an account used when logging in to the first service providing site; An authentication unit that determines whether to permit login to the first service providing site based on information for logging in to the first service providing site, which is input in response to using an account of the first service providing site as a cooperation destination when logging in to the second service providing site from a terminal device; In response to the authentication unit permitting login to the first service providing site, read out the user information corresponding to the cooperation items required when using the second service providing site from the storage unit, display on the terminal device a consent screen for inputting consent to providing the read user information to the second service providing site, determine cooperation information to be transmitted to the second service providing site among the user information based on the information input on the consent screen, and transmit the determined cooperation information together with the determination result by the authentication unit to a server device of an operator who manages the second service providing site; A cooperation service management system having the above.
2. When an intention to provide information different from the user information stored in the storage unit to the second service providing site is input, the cooperation unit displays an acquisition screen for acquiring the information to be provided to the second service providing site. The cooperation service management system according to Claim 1.
3. When a plurality of pieces of user information corresponding to the cooperation items required when using the second service providing site are stored in the storage unit, the cooperation unit displays a selection screen for selecting the user information to be provided to the second service providing site from the plurality of pieces of user information. The cooperation service management system according to Claim 1.
4. When the user information corresponding to the cooperation items required when using the second service providing site is not stored in the storage unit, the cooperation unit displays an acquisition screen for acquiring the user information not stored in the storage unit. The cooperation service management system according to claim 1.
5. The storage unit stores user information of a user who uses the first service providing site. The cooperation item acquisition unit acquires a cooperation item indicating an item of cooperation information required when using a second service providing site that is different from the first service providing site and that cooperates with an account used when logging in to the first service providing site. When logging in to the second service providing site from the terminal device, the authentication unit determines whether to permit logging in to the first service providing site based on the information for logging in to the first service providing site, which is input in response to the use of the account of the first service providing site as a cooperation destination. In response to the authentication unit permitting logging in to the first service providing site, the cooperation unit reads out the user information corresponding to the cooperation items required when using the second service providing site from the storage unit, displays on the terminal device a consent screen for inputting consent to providing the read user information to the second service providing site, determines cooperation information to be transmitted to the second service providing site among the user information based on the information input on the consent screen, and transmits the determined cooperation information together with the determination result by the authentication unit to the server device of the operator that manages the second service providing site. A cooperation service management method.
Citation Information
Patent Citations
Service cooperation system, service cooperation method, and server
JP2018156405A