Program and information processing system
The system balances convenience and personal information protection by using multiple acquisition processes and a program to facilitate service applications, enabling efficient reuse of personal information for local government services.
Patent Information
- Application Number
- JP2024005277
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2024-01-17
- Publication Date
- 2025-07-30
- Estimated Expiration
- 2044-01-17
Smart Images

Figure 2025111099000001_ABST
Abstract
Description
Technical Field
[0001] The present disclosure relates to a program and an information processing system.
Background Art
[0002] There is known a technique in which when a customer accesses a web page of a service provider for which the customer wishes to receive a service, a personal information disclosure button for disclosing personal information necessary for providing the service is displayed on the screen of the customer terminal.
Prior Art Documents
Patent Documents
[0003]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0004] Members of the public and the like can receive various services through local governments. In many cases, input of personal information is required for application for services. If the service provider is a local government that can be trusted by the user, from the perspective of convenience, it may be preferable for the user to have the already registered personal information used, even if it is not for the intended purpose, rather than being forced to go through complicated procedures when applying for a service that requires personal information.
[0005] Therefore, in one aspect, an object of the present invention is to efficiently achieve compatibility between convenience requirements that may differ for each user and personal information protection requirements regarding applications for services provided by local governments.
Means for Solving the Problems
[0006] For a plurality of services that can be provided by a service provider related to a local government to users of the local government, for each service, a first acquisition process of acquiring service information, A storage process for storing personal information of users used for one purpose of use, and A second acquisition process for acquiring availability information regarding the availability of use for another purpose of use different from the one purpose of use for items of personal information of users stored in the storage process, and A program for causing a computer to execute information processing related to an application for a service by a user, The storage process further includes storing a usage history of personal information of users by the local government, The service information includes, for each service, items of personal information necessary for finalizing the application, Based on the service information related to each service and the availability information, the information processing includes a support process for facilitating or promoting an application for each service by a user, and a program is provided.
Effect of the Invention
[0007] In one aspect, according to the present invention, regarding an application for a service provided by a local government, it becomes possible to efficiently achieve both the request for convenience and the request for protection of personal information, which may differ for each user.
Brief Description of the Drawings
[0008]
Figure 1
Figure 2
Figure 3
Figure 4
Figure 5
Figure 6
Figure 7
Figure 8
[0009] Each embodiment will be described in detail below with reference to the accompanying drawings.
[0010] Fig. 1 is a schematic diagram of the overall configuration of an information processing system 1 according to an embodiment. Fig. 2 is an explanatory diagram showing an example of an exchange between a server device 100 and a user via a citizen portal service application.
[0011] The information processing system 1 is a system that realizes the citizen portal service described below. The citizen portal service is a service that enables users who are also members of a local government to easily apply for various services that can be provided by service providers associated with the local government, for example, via a user terminal 21. An example of the citizen portal service will be described in detail later. In the following, unless otherwise specified, the term "service" refers to various services that can be provided by service providers associated with the local government.
[0012] In addition, as long as the service is provided through local governments, it can be arbitrary including its content. Note that "through local governments" is a concept that includes the mode directly provided by local governments and the mode provided by contractors commissioned by local governments. The local government service may be free of charge or charged. Also, it may be a service involving the actions of people on the service provider side, or an electronically realized service (e.g., a viewing service for specific digital content), or a service involving the transfer of economic value, or a combination of these services. Further, the service may be a renewable and continuous service or a non - continuous (e.g., one - time - only) service.
[0013] The information processing system 1 includes a user terminal 21, a service - providing facility terminal 31, and a server device 100. Note that part or all of the functions of the server device 100 may be realized by the service - providing facility terminal 31.
[0014] The user terminal 21, the service - providing facility terminal 31, and the server device 100 are connected via a network 4. The user terminal 21 and the server device 100 can communicate via the network 4. Hereinafter, unless otherwise specified, the user refers to a user of the citizen portal service.
[0015] The network 4 may include, for example, a wireless communication network of mobile phones, the Internet, a VPN (Virtual Private Network), a WAN (Wide Area Network), a wired network, or any arbitrary combination thereof.
[0016] The user terminal 21 is, for example, a smartphone or a tablet, but may also be a wearable terminal (e.g., a smartwatch, a ring, etc.), a remote control, etc. Also, the user terminal 21 does not necessarily have to be a portable terminal and may be a fixed - type terminal such as a desktop personal computer.
[0017] The user terminal 21 includes a communication unit 22, a display unit 24, an input unit 26, and a processing unit 28. The communication unit 22 performs various communications via the network 4. The display unit 24 may be a liquid crystal display, an organic EL (Electro-Luminescence) display, or the like. The input unit 26 is a keyboard, a touch panel, or the like, but may also be an input unit that allows gesture input or voice input. The processing unit 28 realizes various functions that can be realized by the user terminal 21.
[0018] 2, the user can apply for a specific service, manage the use of personal information, etc. by conducting various interactions with the server device 100 via the screen of the citizen portal service app that can be displayed on the display unit 24. In addition, the user may be able to receive information about services (information from the local government) etc. via push notifications from the citizen portal service app that can be displayed on the display unit 24.
[0019] For example, as shown in Fig. 2, a user may be able to "permit the use of past data (personal information) according to the service they wish to use" and "confirm the scope of permission (of use of personal information)" via the citizen portal service app. The server device 100 may obtain "agreement on the purpose of use" from the user via the citizen portal service app and "use only data (personal information) for which permission has been granted" to promote application for the service (described later).
[0020] The service providing facility terminal 31 is installed at facilities that provide various services that can be provided by service providers associated with the local government. Note that the service providing facility terminal 31 is not necessarily required, and may not be installed at locations where certain services are provided. The service providing facility terminal 31 may provide the service itself, or may be a terminal that processes information such as reception processing for the provision of the service.
[0021] The server device 100 executes an application according to this embodiment (hereinafter referred to as the "citizen portal service application"). In this embodiment, the server device 100 executes a citizen portal service application that operates on a Web browser. The server device 100 may include a Web server, a cloud server, or the like.
[0022] The user described below can start a Web browser via his / her user terminal 21 and execute the citizen portal service application on the browser. The citizen portal service application is an application for citizen portal services, and as a usage condition, registration of account information such as a user ID and a password may be required. Hereinafter, the user means a user associated with the account information.
[0023] In a modified example, the citizen portal service application may be realized as a native application that is installed and operates on the user terminal 21 instead of or in addition to a Web application that can be operated on a browser.
[0024] The server device 100 can be operated by an operator's staff (for example, a local government staff). For example, the server device 100 can be accessed by the operator's staff, and various inputs necessary to execute the citizen portal service application may be performed by the operator's staff. In this case, the server device 100 may be connected to a staff terminal 91 used by the operator's staff. The staff terminal 91 may be connected to the server device 100 via the network 4, but it is preferably connected to the server device 100 via a private network. Similarly, the service-providing facility terminal 31 may be made operable by the operator's staff.
[0025] In this embodiment, as shown in FIG. 1, the server device 100 includes a service application acquisition unit 110, a registration information acquisition unit 111, an association processing unit 112, a service information acquisition unit 114, a determination unit 120, an application processing unit 130, a service information management unit 132, a notification processing unit 140, a user information storage unit 150, and a service information database 160. Note that each unit from the service application acquisition unit 110 to the notification processing unit 140 can be realized by the CPU of the server computer executing a program. Also, the user information storage unit 150 and the service information database 160 can be realized by the storage device of the server computer.
[0026] The service application acquisition unit 110 acquires service application information from each user terminal 21. The service application information may include information for specifying the service to be applied for, etc. For example, the citizen portal service application can display a service application screen (not shown), and the user can send the input service application information to the server device 100 by operating the confirmation button (transmission button) on the service application screen.
[0027] The registration information acquisition unit 111 acquires registration information related to personal information from each user terminal 21. The registration information related to personal information may include name, telephone number, address, age, gender, face photo, identification number, etc. Hereinafter, the items of personal information represent items such as name, telephone number, address, age, gender, face photo, identification number.
[0028] The registration information acquisition unit 111 may acquire personal information at the time of initial registration, or may acquire personal information within the range necessary for the application of a certain service in accordance with the application of the service.
[0029] The registration information acquisition unit 111 acquires availability information related to personal information from each user terminal 21. The availability information indicates the availability of use for the purpose of determining the application by the user and for unauthorized use by the service provider.
[0030] Unauthorized use means using personal information for a purpose different from the purpose at the time of registration of the personal information (for example, applying for a certain service).
[0031] The availability information may include information indicating availability for each of all the items constituting the personal information, or may include information indicating availability for some of the items. Further, the availability information may indicate availability collectively for all the items constituting the personal information. In this case, the availability information may indicate availability collectively for each service or for each attribute of the service. For example, for welfare services, it may be collectively available, but for other services, it may be collectively unavailable.
[0032] The association processing unit 112 associates the personal information of the user with the availability information. Specifically, the association processing unit 112 associates, for each user, the personal information associated with the user and the availability information with each other.
[0033] When the association processing unit 112 associates the personal information of the user with the availability information in this way, it updates the data (user information) in the user information storage unit 150. FIG. 3 is an explanatory diagram of an example of the data (user information) in the user information storage unit 150 related to one user. In FIG. 3, “***” indicates a state in which some information is stored, and “···” indicates a repeated state of storing the same information.
[0034] Note that in the example shown in FIG. 3, the data (user information) in the user information storage unit 150 related to the user includes personal information for which the availability information is “unavailable (NG)”, but may include only personal information for which the availability information is “available (OK)”. In this case, the personal information for which the availability information is “unavailable (NG)” may be deleted at an appropriate timing after being used for the original purpose.
[0035] When there is an application for a single service from a user, the service information acquisition unit 114 acquires service information related to the corresponding single service. The service information acquisition unit 114 acquires service information related to the single service for which there is an application from the data in the service information database 160. FIG. 4 is an explanatory diagram of service information among the data in the service information database 160. In the example shown in FIG. 4, for each purpose (service) ID, a service name, service content, service provision conditions, and required personal information are associated. For example, for the purpose (service) ID "P0001", the service name "Child Allowance Payment", service content "Payment of child allowance", service provision conditions "Existence of children under 18 years old", and required personal information "Head of household name, address, child's name, date of birth, transfer account information" are associated.
[0036] Based on the acquired service information, the service information acquisition unit 114 identifies the items of personal information necessary to finalize the application for the corresponding service. For example, in the case of the purpose (service) ID "P0001", the five items of required personal information "Head of household name, address, child's name, date of birth, transfer account information" are identified as the items of personal information necessary to finalize the application for the corresponding service.
[0037] When the service information acquisition unit 114 acquires service information related to a single service, the determination unit 120 determines whether it is possible to use personal information for purposes other than the intended purpose based on the relationship between the service information and the corresponding user information in the user information storage unit 150.
[0038] For example, in the case of purpose (service) ID "P0001," the five required personal information items, "household head's name, address, child's name, date of birth, and bank account information," are the personal information items required to confirm an application for the corresponding service. In this case, according to the personal information availability information (see FIG. 3) related to the user who applied, if all five items are available ("OK"), the determination unit 120 determines that use of the personal information for purposes other than those intended is "allowed." On the other hand, if at least one of the five items is unavailable ("NG"), the determination unit 120 determines that use of the personal information for purposes other than those intended is "not allowed."
[0039] If the result of the determination process by the determination unit 120 is "OK (can be used for purposes other than those intended)", the application processing unit 130 confirms the application for the corresponding service, provided that other requirements (requirements other than personal information) are met. The application processing unit 130 confirms the application for the corresponding service by requesting consent from the user regarding use for purposes other than those intended. In this case, the application processing unit 130 may send a notification (e.g., a notification by email) to the corresponding user via the notification processing unit 140, which will be described later, informing them that the application for the corresponding service has been completed (confirmed).
[0040] If the result of the determination process by the determination unit 120 is "not permitted (use for purposes other than those intended)," the application processing unit 130 requests the user who has applied to newly input personal information for the items necessary to finalize the application for the corresponding service. For example, the application processing unit 130 displays the items necessary to finalize the application for the corresponding service and outputs a screen including an input form for inputting the items to the display unit 24 of the user terminal 21 of the corresponding user. Alternatively, the application processing unit 130 may request the user who has applied to permit the use of the personal information for the corresponding items for purposes other than those intended. Note that if personal information for items not stored in the user information storage unit 150 is required, the application processing unit 130 requests the user who has applied to newly input personal information for the items.
[0041] When the application processing unit 130 finalizes the service application, it updates the data in the service information database 160 by writing the application history to the service information database 160. FIG. 5 shows an example of the application history information among the data in the service information database 160. In the example shown in FIG. 5, for each user ID, the purpose (service) ID related to the used service, the service name, the consent date and time, and the staff ID are associated. The consent date and time is the date and time when consent was obtained from the user regarding the use of personal information (use for purposes other than the specified purpose). The staff ID is the ID of the staff member who handled the personal information. In a modified example, instead of the staff ID, information specifying the department that handled the personal information may be used. Alternatively, the staff ID may be omitted.
[0042] The service information management unit 132 acquires service information based on an input from an operation-side staff member or the like, and updates the data (service information) in the service information database 160.
[0043] According to such a configuration, when the result of the determination process by the determination unit 120 is "Approved (use for purposes other than the specified purpose)", the application processing unit 130 can finalize the service application without forcing the user to input new personal information, simply by requesting the user's consent (permission) for the use of personal information for purposes other than the specified purpose. This can significantly reduce the burden on the operation-side staff. Also, from the user's perspective, the service application work becomes easier and the convenience is greatly improved just by registering in advance whether the use of their personal information is permitted or not.
[0044] The notification processing unit 140 executes various notifications to the user. In this embodiment, the notification processing unit 140 may present services that can be provided based on the age or gender of each user. Further, the notification processing unit 140 may perform a notification process of outputting in advance to the user the services that can be applied for when the use of personal information for purposes other than the specified purpose is possible. Note that the services that can be applied for when the use of personal information for purposes other than the specified purpose is possible for each user can be specified by using the determination method described above with reference to the determination unit 120.
[0045] The notification processing unit 140 may also execute various useful notifications regarding services. For example, when the service usage date and time are approaching, the notification processing unit 140 may notify service information (a specific service providing location). Further, the notification processing unit 140 may execute a notification prompting a corresponding user to visit a specific service providing location based on the service information.
[0046] Next, with reference to FIG. 6, an operation example of the information processing system 1 will be described.
[0047] FIG. 6 is a timing chart showing an operation example of the information processing system 1.
[0048] In FIG. 6, the main information exchange between one user terminal 21, one service providing facility terminal 31, and the server device 100 is schematically shown. Here, for the sake of representation, one user terminal 21 and one service providing facility terminal 31 related to the provision of one service described below are shown, but the combination of the user terminal 21 and the service providing facility terminal 31 is determined according to each user terminal 21 and the service information generated by each user terminal 21.
[0049] First, in step S600, a user (hereinafter simply referred to as "user") wants to receive a specific service (hereinafter simply referred to as "service") via the citizen portal service application and activates the citizen portal service application on the user terminal 21.
[0050] Next, in step S602, the user transmits account information including his or her personal information to the server device 100 as initial registration. If the initial registration has already been completed, step S602 may be omitted.
[0051] In step S604, the server device 100 performs user registration based on the account information from the user terminal 21. That is, the server device 100 issues a user ID (user account) and stores personal information in the user information storage unit 150 in association with the user ID.
[0052] In step S606, the user generates availability information for personal information and transmits it to the server device 100. As described above, the availability information indicates whether unauthorized use is permitted for each item of the personal information registered in step S604. In a modified example, the availability information may be associated only with a part of the personal information registered in step S604.
[0053] In step S608, when the server device 100 receives the availability information from the user terminal 21, it updates the data (see FIG. 3) in the user information storage unit 150 based on the availability information. In this case, the availability information is associated with each item of the personal information.
[0054] In step S610, the user applies for a service via the user terminal 21. For example, the user may execute a service application via a service application screen output on the user terminal 21 by a citizen portal service application.
[0055] In step S612, the server device 100 extracts service information regarding the applied service from the service information database 160, and extracts user information (personal information + availability information) related to the applying user from the user information storage unit 150. At this time, the personal information related to the extracted user information may be limited to only the personal information necessary to finalize the application for the applied service.
[0056] In step S614, the server device 100 determines whether or not the personal information required to confirm the application for the received service can be used for purposes other than those for which it was requested, based on the information extracted in step S612 (i.e., the relationship between the service information and the user information). Here, it is assumed that the result of the determination process is "yes (use for purposes other than those for which it is requested)."
[0057] In step S615, the server device 100 requests consent from the user because the result of the determination process is "allowed (use for purposes other than those intended)." If the result of the determination process in step S614 is not "allowed (use for purposes other than those intended)," the server device 100 may request the user to input necessary personal information (or request permission for use for purposes other than those intended) via the user terminal 21.
[0058] In step S616, upon receiving consent, the server device 100 finalizes the application for the service and notifies the service providing facility terminal 31 and the user terminal 21 of this fact. In this case, for example, the server device 100 may notify via a service application screen displayed on the user terminal 21. The user can confirm that the application for the service has been completed via the service application screen displayed on the user terminal 21 by the citizen portal service app. Note that, for services that are not provided via the service providing facility terminal 31, notification to the service providing facility terminal 31 is not necessary. Also, some services may be executed simultaneously with the application. For such services, the notification in step S616 may be omitted.
[0059] In step S618, upon receiving the notification that the service application has been completed, the service providing facility terminal 31 executes the service for the user. After executing the service, the service providing facility terminal 31 may notify the server device 100 of this fact. Depending on the attributes of the service, the service may not be executed immediately, in which case the service providing facility terminal 31 may transition to a ready state.
[0060] In step S620, the server device 100 updates the application history information (see FIG. 5) in the service information database 160 based on the current application, and notifies the user terminal 21 of the content of the executed service, the execution date and time, etc. after use.
[0061] In step S622, the user terminal 21 outputs the notification received from the server device 100 to the display unit 24. In this case, for example, the server device 100 may notify via the service application screen output on the user terminal 21. The user can confirm the execution result of the service via the service application screen output on the user terminal 21 by the citizen portal service application.
[0062] Next, with reference to FIGS. 7 and 8, while explaining some usage scenarios, the characteristic configuration of the information processing system 1 or the citizen portal service application will be further explained.
[0063] FIG. 7 is an explanatory diagram of the interaction between the user and the server device 100 (local government) via the service application screen G1 in the service usage (application) scenario.
[0064] In the example shown in FIG. 7, in the state ST1 of the service application screen G1 of the citizen portal service application, a list of available service registrations (denoted as "A, B, C ···" in FIG. 7) is displayed. For example, if the user wants to use service A and selects service A in state ST1, the state ST2 of the service application screen G1 is formed. In this case, the data of the personal information to be used may be shown, and a message requesting consent may be output. When the user gives consent to the use of information, the consent result is sent to the server device 100. The server device 100 forms the state ST3 of the service application screen G1 based on the corresponding service information. State ST3 may include a notification that the application has been completed and guidance for using service A.
[0065] In the example shown in FIG. 7, consent is requested for the data of personal information to be used in state ST2. However, in a modified example, such consent may be omitted.
[0066] FIG. 8 is an explanatory diagram of the interaction between the user and the server device 100 (local government) via the setting change screen G2 in the scene of changing the scope of unauthorized use of personal information.
[0067] In the example shown in FIG. 8, the user can view a list of data (items of personal information) for which he / she has permitted unauthorized use via the state ST11 of the setting change screen G2 of the citizen portal service application. Note that, in a modified example, conversely, a list of data (items of personal information) for which he / she has not permitted unauthorized use may be viewable. The user generates a cancellation request by selecting and confirming the data (item) for which cancellation is desired in state ST12 of the setting change screen G2. In this case, the use permission information is changed and the data in the user information storage unit 150 is updated. Accordingly, continuous services and the like are appropriately stopped.
[0068] Also, although not shown, the user may be able to view his / her application history information among the data in the service information database 160 via the screen of the citizen portal service application. In this case, the user can confirm the situation of unauthorized use of his / her personal information, which can give the user a sense of security.
[0069] Although each embodiment has been described in detail above, the present invention is not limited to a specific embodiment, and various modifications and changes are possible within the scope described in the claims. Also, it is possible to combine all or a plurality of the constituent elements of the above-described embodiments.
Explanation of Reference Numerals
[0070] 1 Information processing system 4 Network 21 User terminal 22 Communication unit 24 Display unit 26 Input unit 28 Processing unit 31 Service-providing facility terminal 91 Staff terminal 100 Server device 110 Service application acquisition unit 111 Registration information acquisition unit (an example of the second acquisition processing unit) 112 Association processing unit 114 Service information acquisition unit (an example of the first acquisition processing unit) 120 Determination unit 130 Application processing unit (an example of the information processing unit) 132 Service information management unit 140 Notification processing unit 150 User information storage unit (an example of the storage unit) 160 Service information database
Claims
1. For a plurality of services that can be provided by a service provider related to the local government to users of the local government, for each service, a first acquisition process of acquiring service information, a storage process of storing personal information of a user used for a certain purpose of use, a second acquisition process of acquiring availability information regarding the availability of use for other purposes of use different from the certain purpose of use for items of personal information of the user stored in the storage process, and an information process related to an application for a service by a user, which is a program for causing a computer to execute, wherein the storage process further includes storing a usage history of personal information of the user by the local government, the service information includes, for each service, items of personal information necessary for finalizing the application, and the information process includes a support process for facilitating or promoting an application for each service by a user based on the service information related to each service and the availability information, a program.
2. The support process includes a first process of processing the application based on the service information and the availability information when the application is made, according to the program described in Claim 1.
3. The first process includes, when the application is made from a user, extracting items of personal information necessary for finalizing the application based on the service information, and determining the availability of use of the extracted items based on the availability information, according to the program described in Claim 2.
4. The first process includes, when it is determined that the use of the extracted items is possible, finalizing the application using the extracted items, according to the program described in Claim 3.
5. The support process includes a second process of guiding the user to services for which an application can be made using the personal information of the user stored in the storage process based on the service information related to each service and the availability information, according to the program described in Claim 1.
6. The second process includes presenting services that can be provided based on age or gender, and outputting a screen for requesting consent to the use of personal information necessary when a selection of a service is received, according to the program described in Claim 5.
7. The program described in Claim 1 further causes a computer to execute an output process of outputting the usage history in response to a request from a user.
8. Realized by a user terminal, a server, or a combination of a user terminal and a server, For a plurality of services that can be provided by a service provider related to the local government to users of the local government, for each service, a first acquisition processing unit that acquires service information, A storage unit that stores personal information of users used for one purpose of use, A second acquisition processing unit that acquires availability information regarding the availability of use for other purposes of use different from the one purpose of use for items of personal information of users in the storage unit, An information processing unit related to the application for each service, and The storage unit further stores the usage history of the personal information of the users by the local government, The service information includes, for each service, items of personal information necessary for a user to confirm an application, The information processing unit is an information processing system that facilitates or promotes the application of each service by a user based on the service information related to each service and the availability information.
Citation Information
Patent Citations
Electronic application support server, electronic application support method and electronic application support program
JP2006119874A
Personal information account banking
JP2016085676A
Information processing program, information processing method, and information processing device
JP2020149211A
Preliminary input system, provision method of personal information and program
JP2022128813A