Information processing system, control method for information processing system, and information processing program

The information processing system allows users to manage and update their personal information across applications by using linked applications and components for automatic and consent-based updates, addressing the lack of user control in existing systems and ensuring accurate and private data management.

JP2025131474APending Publication Date: 2025-09-09POCKET SIGN CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
JP2024085960
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Filing Date
2024-05-28
Publication Date
2025-09-09

AI Technical Summary

Technical Problem

Existing systems do not allow users to effectively manage their own personal information updates, particularly when changes occur in official records managed by national or local governments.

Method used

An information processing system and method that utilizes a first user terminal with a first application for managing personal information, a second application linked to the first, and components for acquiring, setting, and updating this information, including update information acquisition, first and second setting units, and first and second updating units to manage and update personal information automatically or upon user consent.

Benefits of technology

Enables users to efficiently and selectively manage their personal information across multiple applications, ensuring currency and privacy control over updates, preventing unauthorized use, and maintaining accurate personal data.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2025131474000001_ABST
    Figure 2025131474000001_ABST
Patent Text Reader

Abstract

To provide an information processing system, a control method for the information processing system, and an information processing program which, when the formal personal information on a user is updated, enable the user to effectively manage the personal information in an application on his own.SOLUTION: When the formal personal information on a user managed by a management server 1 of at least one of a national and a local authority is updated in an information processing system 100, an information updating device 3 acquires the update information. In this case, when automatic updating of personal information is set in a first user terminal 2 of the user, the information updating device 3 acquires the formal personal information on the user from the management server 1 and updates the personal information to be used in a first application 21 of the first user terminal 2. Furthermore, the information updating device 3 also updates the personal information to be used in a second application 22 of the first user terminal 2 when acquisition of the update information is authorized in the second application 22.SELECTED DRAWING: Figure 1
Need to check novelty before this filing date? Find Prior Art

Description

[Technical Field]

[0001] The present invention relates to an information processing system for controlling updates of personal information, a control method for an information processing system, and an information processing program. [Background technology]

[0002] The My Number Card is an IC card that can be used as a document certifying a personal number or as an official identification document for identity verification. The public personal authentication service, which uses the electronic certificate embedded in the IC chip of the My Number Card, can be introduced not only by government agencies but also by various services provided by private businesses. A service providing the latest user information (four pieces of information) was launched on May 16, 2023, which allows private businesses to query the Japan Agency for Local Authority Information Systems (J-LIS) for the latest four pieces of information about the individual (customer) (address, name, date of birth, and gender) if they have obtained prior consent from the individual using the public personal authentication service (Non-Patent Document 1). [Prior art documents] [Non-patent literature]

[0003] [Non-Patent Document 1] “Public Personal Identification Service (JPKI)”, Digital Agency [online], [Retrieved February 22, 2024], Internet<URL:https: / / www.digital.go.jp / policies / mynumber / private-business / jpki-introduction> Summary of the Invention [Problem to be solved by the invention]

[0004] However, the technology described in Non-Patent Document 1 above is related to private businesses making inquiries about four types of personal information, and is not related to users themselves managing their own personal information on an application. Therefore, there is a demand for a system that allows customers (users) to effectively manage their own personal information on an application.

[0005] The present invention has been made in consideration of the above circumstances, and aims to provide an information processing system, a control method for an information processing system, and an information processing program that enable the user to effectively manage personal information on an application when the user's legitimate personal information is updated. [Means for solving the problem]

[0006] In order to solve the above-mentioned problems, the present invention provides an information processing system that uses a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, an update information acquisition unit that acquires update information indicating that the user's official personal information managed by a management server of at least one of a national government and a local government has been updated; a first setting unit that sets automatic updating of the first personal information of the user managed by the first application; a second setting unit that sets whether to permit the second application to acquire the updated first personal information; a first updating unit that, when the update information acquiring unit acquires the update information and the first setting unit has already set automatic updating of the first personal information, acquires the updated regular personal information from the management server and updates the first personal information; and a second update unit that, when the first update unit updates the first personal information and the second setting unit has already permitted the second application to acquire the updated first personal information, updates the second personal information used by the second application using the first personal information.

[0007] In order to solve the above-mentioned problems, the present invention provides a control method for an information processing system using a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, the method comprising: The computer Acquire update information indicating that the user's official personal information managed by at least one of the management servers of the national and local governments has been updated; configure automatic updates of first personal information of the user managed by the first application; Set whether to allow the second application to acquire the updated first personal information; When the updated information is acquired, if automatic updating of the first personal information has already been set, acquire the updated regular personal information from the management server and update the first personal information; When the first personal information is updated, if the second application is already permitted to acquire the updated first personal information, the second personal information used by the second application is updated using the first personal information.

[0008] Furthermore, in order to solve the above-mentioned problems, the present invention provides an information processing system using a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, On the computer, an update information acquisition step of acquiring update information indicating that the user's regular personal information managed by a management server of at least one of a national government and a local government has been updated; a first setting step for setting automatic updates of first personal information of the user managed by the first application; a second setting step of setting whether to allow the second application to acquire the updated first personal information; a first updating step of acquiring the updated regular personal information from the management server and updating the first personal information when the updated information has been acquired in the updated information acquisition step and automatic updating of the first personal information has already been set in the first setting step; and a second update procedure for updating second personal information used by the second application using the first personal information when the first personal information is updated in the first update procedure and the second application has already been permitted to obtain the updated first personal information in the second setting procedure. [Effects of the Invention]

[0009] According to the present invention, when a user's regular personal information is updated, the personal information on the application can be effectively managed by the user. [Brief explanation of the drawings]

[0010] [Figure 1] 1 is a schematic block diagram showing an information processing system according to a first embodiment. [Figure 2] FIG. 2 is a diagram illustrating an example of a hardware configuration of an information updating device. [Figure 3] FIG. 4 is a diagram showing a processing flow relating to updating of personal information of an application on a first user terminal by the information updating device according to the first embodiment. [Figure 4] FIG. 10 is a diagram showing a processing flow relating to permission for automatic updating of first personal information by a first setting unit of the information updating device. [Figure 5]FIG. 10 is a diagram showing an example of a processing screen related to permission for automatic updating of first personal information by a first setting unit of the information updating device. [Figure 6] FIG. 10 is a diagram showing a processing flow relating to permission for automatic updating of second personal information by a second setting unit of the information updating device. [Figure 7] FIG. 10 is a diagram showing an example of a processing screen related to permission for automatic updating of second personal information by a second setting unit of the information updating device. [Figure 8] FIG. 10 is a diagram showing an example of a processing screen for permitting automatic updating of second personal information by a second setting unit of the information updating device. [Figure 9] FIG. 10 is a diagram showing an example of automatic update prompt information displayed on the screen of the first user terminal. [Figure 10] FIG. 10 is a diagram showing an example of a screen display of the first user terminal in a state where automatic update of first personal information is set. [Figure 11] FIG. 10 is a diagram showing an example of first personal information update information displayed on the screen of the first user terminal. [Figure 12] FIG. 10 is a schematic block diagram showing an information processing system according to a second embodiment. DETAILED DESCRIPTION OF THE INVENTION

[0011] Hereinafter, embodiments of the present invention will be described with reference to the drawings. In all the drawings, like components are designated by like reference numerals, and the description thereof will be omitted as appropriate.

[0012] In the following description, each component of each device represents a functional block, not a hardware configuration. Each component of each device is realized by any combination of hardware and software, centered around the CPU of any computer, memory, a program loaded into the memory, a storage medium such as a hard disk that stores the program, and a network connection interface. There are many variations in the realization method and device.

[0013] First Embodiment (Configuration of information processing system 100) 1 is a schematic block diagram showing an information processing system 100 according to the first embodiment. The information processing system 100 includes a management server 1 in which at least one of a national government and a local government directly or indirectly manages information, a first user terminal 2 of a user who uses the information processing system 100, and an information update device 3, and these devices are connected to each other via well-known communication networks 50 and 60 such as the wired or wireless Internet or a dedicated line.

[0014] The communication networks 50 and 60 include, for example, communication over 4G or 5G lines. The communication networks 50 and 60 may be networks independent of each other, or may share part or all of the network.

[0015] A memory unit 4 is connected to the information updating device 3. The memory unit 4 is a storage that stores predetermined information. The memory unit 4 may be provided inside or outside the information updating device 3. Furthermore, the information updating device 3 may be a so-called cloud server.

[0016] The management server 1 managed by at least one of the national government and a local government may include a management server managed (operated) by a corporation operated by at least one of the national government and a local government (for example, the Japan Agency for Local Authority Information Systems (J-LIS)). The management server 1 may also include a server managed or operated directly or indirectly by an organization equivalent to the national government or a local government.

[0017] The first user terminal 2 is a terminal device owned, managed, carried, or used by a user of the information processing system 100, and is, for example, a mobile phone such as a smartphone, a tablet, a personal computer, or a multifunction peripheral. Here, the user refers to a customer who receives goods or services using the information processing system 100.

[0018] A My Number Card (Individual Number Card) is an IC card that can be used as a document certifying a personal number or as an official identification document (identification medium) for identity verification. When identity verification is completed by an authentication server, four basic pieces of information—name, date of birth, address, and gender—can be obtained from the My Number Card. In this embodiment, a user is authenticated by a public personal authentication service using a My Number Card or a smartphone digital certificate (a so-called Smartphone JPKI), and is issued a digital ID (digital ID application) that reflects these pieces of information in an application on the first user terminal 2. The user can then use this digital ID to perform personal authentication and make cashless payments (electronic payments), allowing them to purchase goods (items) at stores and receive services.

[0019] Installed on the first user terminal 2 are a first application 21 (for example, the digital ID card application described above) that functions as an application for managing the user's personal information on the first user terminal 2, and a second application 22 that works in conjunction with the first application. Here, "working in conjunction" means, for example, that the second application 22 works as an application that uses the user's personal information managed by the first application 21.

[0020] The first application 21 functions as an ID authentication platform serving as a digital ID card and also functions as a so-called super app. The second application 22 may include one or more mini apps with the first application 21 as the super app. The mini apps may be, for example, a disaster prevention app that issues evacuation instructions appropriate for each resident, or a local point app that grants and uses local points. The second application 22 may also be one or more applications that link with the first application 21 but provide a completely separate service (e.g., a smartphone app or a web service) rather than a mini app of the first application. The second application 22 may be, for example, a banking app related to a bank. In this case, the banking app serving as the second application may be able to open a bank account using personal information managed by the digital ID app serving as the first application.

[0021] When the user's legitimate personal information managed by the management server 1 is updated, the information updating device 3 reflects the updated personal information in the first application 21 on the user's first user terminal 2. The information updating device 3 is configured to include a communication unit (not shown) for communicating with external devices and the like via the communication networks 50 and 60.

[0022] The update information acquisition unit 31 acquires update information indicating that the user's official personal information managed by at least one of the management servers 1 of the national and local governments has been updated. Here, the user's official personal information includes at least resident registration data. The user's official personal information also includes at least the four basic pieces of information: name, address, gender, and date of birth. In addition to the above four basic pieces of information, the user's official personal information may also include information such as birthplace, telephone number, occupation, email address, and family composition.

[0023] The first setting unit 32 sets automatic updating of the user's first personal information. The first personal information is the user's personal information managed by the first application 21 of the first user terminal 2, and in this embodiment, is the user's four basic pieces of information: name, address, gender, and date of birth. In addition to the four basic pieces of information, the first personal information may also include information such as birthplace, telephone number, occupation, email address, and family composition. The first setting unit 32 may also function as a determination unit that determines whether automatic updating of the user's first personal information is permitted.

[0024] The second setting unit 33 sets whether the user permits the second application 22 to acquire updated (including automatic updates) first personal information. In other words, the second setting unit 33 allows the user to set whether the updated first personal information is to be provided to the second application 22, or whether the second application 22 is permitted to refer to the updated first personal information. The second setting unit 33 may also set whether the second application 22 is permitted to refer to the first personal information (to acquire the first personal information) when a predetermined action in the second application 22 (such as launching the second application 22) is detected. Furthermore, the second setting unit 33 can set whether the second application 22 is permitted to acquire updated first personal information for a specified period of time or always. Note that if the second application 22 is a plurality of mini apps, the second setting unit 33 may be able to set whether the second application 22 is permitted to acquire first personal information for each of the plurality of mini apps.

[0025] When the update information acquisition unit 31 acquires update information for the resident registration data and the first setting unit 32 has already set the user to automatically update the first personal information, the first update unit 34 acquires updated regular personal information (e.g., including at least the latest version of the resident registration data) from the management server 1 and updates the first personal information.

[0026] When the first updating unit 34 updates the first personal information and the second setting unit 33 has already permitted the second application 22 to acquire the updated first personal information, the second updating unit 35 updates the second personal information. Here, the second personal information is the user's personal information used in the second application 22 using the first personal information. For example, if the second application is a banking app and the user's address information as the first personal information is updated, the second updating unit 35 updates the user's address information as the second personal information used in the banking app. Note that the second personal information may include information such as place of birth, telephone number, occupation, email address, and family composition in addition to the four basic pieces of information (name, address, gender, and date of birth). Note that the second setting unit 33 may function as a determination unit that determines whether or not updating of the second personal information is permitted.

[0027] When the first setting unit 32 has not set automatic updating of the first personal information, the display control unit 36 ​​controls the first user terminal 2 to display automatic update prompting information that prompts the user to set automatic updating. Specific examples of the automatic update prompting information will be described later with reference to FIG. 8 and other figures. Furthermore, when the first setting unit 32 has set automatic updating of the first personal information, the display control unit 36 ​​can also control the first user terminal 2 not to display the automatic update prompting information or to change the display mode of the automatic update prompting information on the first user terminal 2. Furthermore, when the first updating unit 34 updates the first personal information, the display control unit 36 ​​can also control the first user terminal 2 to display first personal information update information indicating that the first personal information has been updated. Furthermore, there may be a function that allows the user to cancel the automatic update setting after setting automatic updating using the first setting unit 32.

[0028] The forced logout unit 37 forcibly transitions the user's login state to the first application 21 to a logout state when the update information acquisition unit 31 acquires update information and the first setting unit 32 has not set automatic update of the first personal information.

[0029] (Hardware configuration example) 2 is a diagram showing an example of the hardware configuration of the information updating device 3. The information updating device 3 includes a bus 1010, a processor 1020, a memory 1030, a storage device 1040, an input / output interface 1050, and a network interface 1060.

[0030] The bus 1010 is a data transmission path for transmitting and receiving data among the processor 1020, memory 1030, storage device 1040, input / output interface 1050, and network interface 1060. However, the method of connecting the processor 1020 and the like to each other is not limited to bus connection.

[0031] The processor 1020 is implemented by a CPU (Central Processing Unit), a GPU (Graphics Processing Unit), or the like.

[0032] The memory 1030 is a main storage device realized by a RAM (Random Access Memory) or the like.

[0033] The storage device 1040 is an auxiliary storage device realized by removable media such as a hard disk drive (HDD), a solid state drive (SSD), or a memory card, or a read-only memory (ROM), and has a recording medium. The recording medium of the storage device 1040 stores program modules that realize each function of the information updating device 3 (e.g., an update information acquisition unit 31, a first setting unit 32, a second setting unit 33, a first updating unit 34, a second updating unit 35, a display control unit 36, and a forced logout unit 37). The program modules are related to applications (first application 21, second application 22) installed in the first user terminal 2. The processor 1020 loads and executes each of these program modules into the memory 1030, thereby realizing each function corresponding to the program module. The storage device 1040 may also function as part or all of the memory unit 4 connected to the information updating device 3.

[0034] The input / output interface 1050 is an interface for connecting the information updating device 3 with various input / output devices.

[0035] The network interface 1060 is an interface for connecting the information updating device 3 to a network. This network is, for example, a LAN (Local Area Network) or a WAN (Wide Area Network). The method for connecting the network interface 1060 to the network may be a wireless connection or a wired connection. The information updating device 3 may communicate with the first user terminal 2 via the network interface 1060.

[0036] The hardware configuration of the first user terminal 2 is also similar to that of the information updating device 3, and therefore a description thereof will be omitted here.

[0037] (Operation example of the first embodiment) 3 is a diagram showing a processing flow for updating personal information of an application on a first user terminal 2 by the information updating device 3 according to the first embodiment. Here, the processing will be explained after a user who has installed the first application 21, which is a digital identification card, on the first user terminal 2, gets married, moves, or experiences other events, resulting in changes to the information recorded on the user's resident card on the management server 1 managed by J-LIS, and the data on the resident card is updated.

[0038] If there is a change in the information recorded on the resident registration card, the signature digital certificate on the user's My Number card (and smartphone digital certificate) will become invalid. The reason for the invalidation is that the signature digital certificate contains the user's legitimate personal information, such as name, address, date of birth, and gender, and the information recorded on the resident registration card and the digital certificate will differ due to marriage, relocation, etc. On the other hand, the user authentication digital certificate does not contain the user's name, address, date of birth, or gender, so it will not become invalid even if the resident registration data is updated.

[0039] In the processing flow according to this embodiment, the trigger is when the data in the resident card is changed by the user submitting a marriage notification, a moving-out notification, or a moving-in notification to the city / ward / town / village office (for example, when the administrator of the management server 1 inputs new address card data of the user into the management server 1). As a result, the management server 1 updates the data in the resident card (for example, name and address) among the regular personal information of the user (step S11).

[0040] When the data of the resident record managed by the management server 1 is updated, the information of the electronic signature certificate on the My Number card differs from the information of the resident record, and therefore the electronic signature certificate becomes invalid (step S12).

[0041] Meanwhile, the update information acquisition unit 31 of the information updating device 3 acquires information that the electronic signature certificate of the My Number card of the user, which is managed by the management server 1, has expired (step S21). The timing at which the update information acquisition unit 31 acquires the information that the electronic signature certificate has expired is arbitrary. For example, the update information acquisition unit 31 may be set to check the expiration information of the electronic signature certificate at a fixed time every day and acquire information that the electronic signature certificate has expired.

[0042] In step S21, the information updating device 3 acquires, in addition to the information that the digital signature certificate has been revoked, information regarding the reason for the revocation of the digital signature certificate, i.e., whether the reason for the revocation is due to "update of at least one of the data items of name, address, date of birth, and gender." Examples of the reason for the revocation include updating address data due to moving, or updating name data due to marriage. For example, the information regarding the reason for the revocation can be acquired as tag information attached to the information regarding the revocation, indicating which data update caused the revocation, simultaneously with the acquisition of the information regarding the revocation. Furthermore, the information regarding the reason for the revocation may be acquired as information associated with the information regarding the revocation, either simultaneously with the acquisition of the information regarding the revocation, or at a different timing.

[0043] The update information acquisition unit 31 determines whether the reason for revocation of the acquired digital signature certificate is due to "update of at least one of name, address, date of birth, and gender" (step S22). For example, the update information acquisition unit 31 can determine whether the reason for revocation is due to "update of at least one of name, address, date of birth, and gender" from the acquired information on the reason for revocation.

[0044] If the update information acquisition unit 31 determines in step S22 that the reason for the invalidation of the digital signature certificate is due to "update of at least one of the data items of name, address, date of birth, and gender" (YES), the first setting unit 32 determines whether automatic update of the user's first personal information (e.g., the four basic pieces of information: name, address, date of birth, and gender) is permitted (step S23). On the other hand, if it is determined in step S22 that the reason for the invalidation is not due to "update of at least one of the data items of name, address, date of birth, and gender" (NO), the forced logout unit 37 forcibly changes the user's login status to a logout status in the first application 21 of the first user terminal (step S24). Note that in this case, the user's digital identification card may become unusable simultaneously with the forced logout.

[0045] For example, if a user loses or has their My Number card stolen, the signature digital certificate will be invalidated by submitting a lost My Number card report. In such a case, the reason for invalidation in step S22 is determined to be not due to "update of at least one of the following data: name, address, date of birth, and gender" (NO), so a forced logout occurs in step S24. Even if someone else logs in illegally in this state, the forced logout prevents them from using the app, preventing them from illegally viewing personal information or using services.

[0046] In addition, if the second application 22 is linked to the first application 21 and the second application 22 cannot be used unless the first application 21 is logged in (for example, if the second application is a mini-app), when the login state of the first application 21 is forcibly logged out, the login state of the second application 22 may also be forcibly logged out.

[0047] If the first setting unit 32 determines in step S23 that automatic updating of the user's first personal information is permitted (YES), the first updating unit 34 (information updating device 3) acquires the latest version of the resident registration data, which is the updated regular personal information, from the management server 1 (step S25). Then, the first updating unit 34 updates the first personal information managed by the first application 21 of the first user terminal 2 using the latest version of the personal information acquired in step S25 (step S27).

[0048] If the first setting unit 32 determines in step S23 that automatic updating of the user's first personal information is not permitted (NO), the forced logout unit 37 forcibly logs out the user's login status to the first application 21 of the first user terminal (step S26). In an embodiment, for example, after logging out in step S26, when logging in again, the user may be required to perform personal authentication using a valid digital signature certificate before logging in. The forced logout function prevents the user from using the digital ID when the contents of the resident registration data and the contents of the digital ID differ. That is, it prevents the user from continuing to use personal information (inaccurate personal information) that is outdated before the resident registration data is updated. Specifically, if the reason for expiration is a move (moving), it is possible to prevent the user from continuing to use a mini-app limited to residents of the area at their previous address at a different address after the move. Furthermore, when the login status to the first application 21 is forcibly logged out, the login status to the linked second application 22 may also be forcibly logged out.

[0049] After the first personal information of the first application of the first user terminal 2 is updated to the latest version in step S27, the second setting unit 33 determines whether the second application 22 is permitted to obtain the updated latest version of the first personal information (step S28).

[0050] If the second setting unit 33 determines in step S28 that the second application 22 is permitted to acquire the latest version of the first personal information (YES), the process proceeds to step S29, where the second update unit 35 (information update device 3) determines whether a predetermined action has been taken from the second application 22. In the first embodiment, for example, the second update unit 35 may detect whether the second application 22 has been started (whether the user has launched the second application 22) and determine whether the predetermined action (launch of the second application 22) has been taken. If the second update unit 35 determines that the predetermined action has been taken from the second application 22 (YES), the process proceeds to step S30. Then, in step S30, the second update unit 35 updates the second personal information used by the second application 22 using the first personal information updated to the latest version in step S27, and ends the information update process. Note that if the second update unit 35 determines that the predetermined action has not been taken from the second application 22 (NO), the process returns to step S29 and repeats the determination in step S29. For example, if the timing for updating the second personal information used in the second application 22 is set to 7 p.m. every day, the above-mentioned specified action may be taken at 7 p.m. In this case, in step S29, the second update unit 35 may detect the timing at which the second personal information is updated at 7 p.m. and determine that the above-mentioned specified action has occurred (detecting the timing of 7 p.m.).

[0051] Also, if the second setting unit 33 determines in step S28 that the second application 22 is not permitted to obtain the latest version of the first personal information (NO), the information update process is terminated without updating the second personal information used by the second application 22.

[0052] The second setting unit 33 can set whether or not to permit the second application 22 to acquire the second personal information of the user used by the second application 22, for each piece of information related to the name, address, sex, and date of birth. Even when permitting acquisition, the second setting unit 33 may permit acquisition only for a certain period of time (for example, one week from the time of granting permission), rather than permitting it all the time.

[0053] FIG. 4 is a diagram showing a processing flow for permission to automatically update the first personal information by the first setting unit 32 of the information updating device 3. The user of the first user terminal 2 can permit automatic updating of the first personal information used (managed) by the first application 21 (step S31). FIG. 5 is a diagram showing an example of a processing screen for permission to automatically update the first personal information by the first setting unit 32 of the information updating device 3. For example, the user may press an "Automatic Update" UI button 51 displayed on the first user terminal 2, causing the first setting unit 32 to permit automatic updating of the first personal information (step S31). Note that at this time, the automatic update is performed only after the user agrees to the terms of use regarding the automatic update.

[0054] 4, the permission for automatic updating of the first personal information by the user through the first user terminal 2 in step S31 is given by the user himself / herself, and upon receiving this consent from the user, the information updating device 3 stores information (permission information) indicating that automatic updating of the first personal information is permitted in the storage unit 4 (step S41). The determination by the first setting unit 32 in the processing of the above-mentioned step S23 by the information updating device 3 as to whether automatic updating of the user's first personal information is permitted is made by checking this permission information. Note that the first setting unit 32 can also revoke permission for automatic updating of the first personal information (cancel automatic updating).

[0055] 6 is a diagram showing a processing flow related to permission for automatic update of second personal information by the second setting unit 33 of the information updating device 3. The user of the first user terminal 2 selects which information of the second personal information used in the second application 22 is to be acquired from the first personal information used in the first application 21, that is, which information is to be set for automatic update (step S51). Specifically, the second setting unit 33 selects which information of the information related to name, address, sex, and date of birth acquired as the first personal information is to be acquired as second personal information, that is, which information is to be set for automatic update.

[0056] Next, the second setting unit 33 can set, for each piece of second personal information selected in step S51 (each piece of information related to the selected name, address, sex, and date of birth), whether to permit the second application 22 to acquire the information. Furthermore, even when permitting acquisition, the second setting unit 33 may permit acquisition only for a certain period of time (for example, one week from the time of granting permission), rather than permitting it all the time.

[0057] The permission and setting of automatic update of the second personal information by the user through the first user terminal 2 in steps S51 and S52 is consented to by the user himself, and upon receiving this consent from the user, the information updating device 3 stores information (setting information) relating to the setting of automatic update for the selected information among the second personal information in the storage unit 4 (step S61). The determination by the second setting unit 33 in the processing of the above-mentioned step S28 by the information updating device 3 as to whether acquisition of the latest version of the first personal information to be used in the second application 22 is permitted is made by checking this setting information.

[0058] FIG. 7 is a diagram showing an example of a processing screen related to permission to automatically update second personal information by the second setting unit 33 of the information updating device 3. In the example of FIG. 7, it is assumed that the first application 21 is a super application and the second application 22 is a mini application installed in the first user terminal 2. In the example of FIG. 7, it is assumed that permission to automatically update second personal information for the second application 22 (mini application) can be set on the first application 21. For example, as shown in FIG. 7, an information selection screen 63 is displayed by launching the first application 21 installed in the first user terminal 2 and opening a "Second App Information" directory 62 located in a "Privacy Settings" directory 61, which is located in a lower hierarchy of "Settings," which is located in a lower hierarchy of "Home." For example, to select "Address" as the second personal information to be automatically updated, the user clicks or touches the ">" portion of the mark prompting screen transition in an area 64 displaying the selected information.

[0059] FIG. 8 is a diagram showing an example of a processing screen for permitting automatic updating of the second personal information by the second setting unit 33 of the information updating device 3. For example, by pressing area 64 in FIG. 7, a selection screen 72 for selecting a period for obtaining update information (i.e., a period during which address setting is possible) located in an "Address Update Setting" directory 71, which is located at a lower level in the "Second App Information" directory 62, is displayed. Here, if the user wants to always permit obtaining update information (address setting in this case) without specifying a specific period, the user issues an instruction by checking a checkbox in the "Always Allow" area 73. For example, when the user presses the "Always Allow" area 73, the processing of step S52 in FIG. 6 is performed. With the settings as shown in the example of FIG. 8, when the address information in the first personal information is updated, the address information in the second personal information of the second application 22 is also updated.

[0060] 9 is a diagram showing an example of automatic update prompting information displayed on the screen of the first user terminal 2. When automatic update of the user's first personal information is not set, the information updating device 3 may prompt the user to automatically update the first personal information. That is, when automatic update of the user's first personal information is not set (when the first setting unit 32 has not set automatic update of the first personal information), the display control unit 36 ​​causes the first user terminal 2 to display automatic update prompting information that prompts the user to set automatic update.

[0061] 9, the automatic update prompt information is provided as a user interface (UI) button 87 displaying the character string "Automatic Update," and the user can set the automatic update by clicking or touching the UI button 87 to select it and making predetermined settings on the transition destination screen (such as obtaining the user's consent to the automatic update or obtaining consent to the terms of use). In this way, by displaying the UI button 87 related to the automatic update prompt information on the display screen of the first user terminal 2, it becomes clear that the user has not set up automatic updating of the first personal information, and it is possible to prompt the user to set up automatic updating of the first personal information.

[0062] 9, a user's digital identification card 81 is displayed on the screen of the first user terminal 2 by the first application 21. The display content of the digital identification card 81 includes at least the so-called four basic pieces of information: the user's name 83, address 84, date of birth 85, and gender 86.

[0063] 9, a hide button 82 may be displayed to hide the screen display of the digital identification card 81. When the user touches this hide button 82, the display of the digital identification card 81 can be hidden, thereby preventing information leakage due to others looking in, etc.

[0064] Note that when the first setting unit 32 has set automatic update of the first personal information (in other words, when the first setting unit 32 has determined that automatic update of the first personal information has been set), the display control unit 36 ​​of the information updating device 3 can perform control so that the automatic update prompt information is not displayed on the first user terminal 2. For example, the display control unit 36 ​​may perform control so that the UI button 87 that was displayed on the screen of the first user terminal 2 is not displayed. Furthermore, the display control unit 36 ​​can also perform control so that the display mode of the automatic update prompt information on the screen of the first user terminal 2 is changed.

[0065] FIG. 10 is a diagram illustrating an example of a screen display of the first user terminal 2 when automatic updating of the first personal information is enabled. FIG. 10 illustrates an example in which, when a user enables automatic updating of the first personal information, the display mode of the automatic update prompt information on the screen of the first user terminal 2 is changed so that the UI button 87 displaying the text "Automatic Update" is hidden from view (the area where the UI button 87 was located is indicated by reference numeral 88 in FIG. 10). Here, "changing the display mode of the automatic update prompt information" may include hiding the UI button itself or changing the brightness, color, font, etc. of the text "Automatic Update" on the UI button to make the automatic update prompt information less visible. In this way, with regard to the display of the automatic update prompt information, after the user allows automatic updating, the UI button prompting automatic updating is hidden or made less visible. This prevents the display of the digital identification 81 from becoming cluttered, providing the user with a user-friendly digital identification. Furthermore, in order to give the user an incentive to want to remove the cumbersome "Auto Update" UI button, a pop-up such as "If you perform an automatic update, the "Auto Update" UI button will disappear" may be displayed, encouraging the user to perform an automatic update.

[0066] The display control unit 36 ​​can also perform control so that, when the first updating unit 34 updates the first personal information in the processing of step S27 shown in FIG. 3, information indicating that the first personal information has been updated (first personal information update information) is displayed on the screen of the first user terminal 2. FIG. 11 is a diagram showing an example of first personal information update information 91 displayed on the screen of the first user terminal 2. In FIG. 11, as an example, the first personal information update information 91 displays a pop-up message stating "Updated to the latest resident registration information." After confirming the display of the first personal information update information 91, the user of the first user terminal 2 can close the pop-up display by touching / clicking a close button (for example, a button indicated by an "x") in the display.

[0067] As described above, in the first embodiment, the information processing system 100 is a system that uses the first user terminal 2, the first application 21, and the second application 22, and includes an update information acquisition unit 31, a first setting unit 32, a second setting unit 33, a first update unit 34, and a second update unit 35. As described above, private businesses can inquire about an individual's four pieces of information from the J-LIS (management server) through the latest user information (four pieces of information) provision service. However, when personal information stored in the J-LIS (management server) is updated, typically, the four pieces of information are simply updated under the management of a private business that has obtained the user's prior comprehensive consent. The user has not directly managed the updating of personal information on the application and has selective control over the permission, cancellation, period, and type of updated four pieces of information. However, the information processing system 100 according to this embodiment includes the first setting unit 32 and the first update unit 34, and is capable of setting automatic updates of the first personal information (including the four pieces of information) in the first application 21 (e.g., a digital ID card). Furthermore, the information processing system 100 according to the present embodiment includes a second setting unit 33 and a second updating unit 35. This allows the user to set whether to individually update the second personal information of one or more second applications 22 (e.g., mini-applications) associated with other services linked to the first application 21 (e.g., digital ID card) using the automatically updated first personal information, the content of the information to be updated (which personal information, such as name and address, to update), and the period during which the update is permitted. That is, the first application 21 (digital ID card) according to the first embodiment is linked to other services (e.g., mini-applications), and the user can individually control the updating of the second personal information used in each service linked to the first application 21. Therefore, the information processing system 100 according to the present embodiment not only allows the user to set the updating of the personal information of the first application 21 to the latest version, but also allows the user to set the updating of the personal information used in various applications (second applications 22) (linked to the first application 21), thereby enabling the user to manage the currency of the personal information.Furthermore, because updates to the personal information in the first application 21 and the second application 22 can be configured, the user can centrally manage their personal information by configuring the first application 22. As described above, in the information processing system 100 according to this embodiment, when the user's legitimate personal information is updated, the personal information in the applications (first application 21, second application 22) of the first user terminal 2 can be effectively managed by the user. That is, when the user's legitimate personal information is updated, the user can choose whether or not to update the personal information in the applications of the first user terminal 2. Even if the user has selected to update the personal information, the user can also stop the update. The user can also select which personal information to update and the period during which updates are permitted. Therefore, the user can efficiently and selectively manage the personal information in the applications by the user. Furthermore, even if the user's legitimate personal information (e.g., resident registration data) stored in the management server 1 is updated due to, for example, the user moving or getting married, the personal information in the first application 21 and the second application 22 can be updated smoothly.

[0068] Second Embodiment (Another configuration of the information processing system 100) Fig. 12 is a schematic block diagram showing an information processing system 100 according to the second embodiment. When each component of the information processing system 100 in Fig. 12 has the same configuration as the component of the information processing system 100 in Fig. 1, the same reference numerals are used and the description thereof will be omitted as appropriate.

[0069] Unlike the first embodiment, the information processing system 100 according to the second embodiment further includes a second user terminal 5. In this embodiment, the second user terminal 5, like the first user terminal 2, is a terminal device that is owned, managed, carried, or used by a user who uses the information processing system 100, and is, for example, a mobile phone such as a smartphone, a tablet, a personal computer, or a multifunction peripheral.

[0070] In this embodiment, a first application 21 that functions as an application for managing personal information of a user is installed on the first user terminal 2. A second application 22 that works in conjunction with the first application 21 installed on the first user terminal 2 is installed on the second user terminal 5.

[0071] In this embodiment, the first application 21 of the first user terminal 2 and the second application 22 of the second user terminal 5 are installed on different hardware (terminals), but their application functions are the same as those described in the first embodiment. The remaining configuration of the information processing system 100 according to this embodiment is the same as that of the information processing system 100 according to the first embodiment. Therefore, the flow of the process for updating the user's personal information described in the first embodiment differs only in that the second application 22 is installed on the second user terminal 5, and the other aspects of the update process are the same. Therefore, according to the information processing system 100 according to this embodiment, when the user's personal information, which is the so-called four basic pieces of information, is updated, the personal information can be effectively reflected in the applications of the user terminals.

[0072] In the present embodiment, the update information acquisition unit 31, the first setting unit 32, the second setting unit 33, the first updating unit 34, the second updating unit 35, the display control unit 36, and the forced logout unit 37 are all described as being included in the information updating device 3, but at least some of the update information acquisition unit 31, the first setting unit 32, the second setting unit 33, the first updating unit 34, the second updating unit 35, the display control unit 36, and the forced logout unit 37 may be included in at least one of the first user terminal 2 and the second user terminal 5. For example, in the first embodiment, the first setting unit 32 and the second setting unit 33 are included in the information updating device 3, but they may also be included in the first user terminal 2 (the first application 21 and the second application 22). In this case, a program module realizing the first setting unit 32 and the second setting unit 33 may be stored in a storage unit included in the first user terminal 2.

[0073] Note that the flowcharts according to this embodiment (FIGS. 3, 4, and 6) are merely one embodiment. Within the scope of not changing the gist of the present invention, processes other than those described in FIG. 3, 4, and 6 may be included, some of the processes described in FIG. 3, 4, and 6 may be omitted, or the order of the processes may be changed. For example, the forced logout process described in step S24 in FIG. 3 may be omitted. Furthermore, for example, the process in step S29 in FIG. 3 may be omitted.

[0074] Although the embodiments of the present invention have been described above, the embodiments disclosed herein are illustrative in all respects and should not be considered limiting. The scope of the present invention is defined by the claims rather than the above description, and it is intended to include meanings equivalent to the claims and all modifications within the scope of the claims. [Explanation of symbols]

[0075] 1 Management Server 2. First user terminal 3 Information update device 4 Storage section 5. Second user terminal 21 First Application 22 Second Application 31 Update information acquisition section 32 First Setting Section 33 Second Setting Section 34 1st update part 35 2nd update part 36 Display control unit 37 Forced Logout Section 50, 60 Communication Network 100 Information Processing Systems

Claims

1. An information processing system using a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, an update information acquisition unit that acquires update information indicating that the user's official personal information managed by a management server of at least one of a national government and a local government has been updated; a first setting unit that sets automatic updating of the first personal information of the user managed by the first application; a second setting unit that sets whether to permit the second application to acquire the updated first personal information; a first updating unit that, when the update information acquiring unit acquires the update information and the first setting unit has already set automatic updating of the first personal information, acquires the updated regular personal information from the management server and updates the first personal information; An information processing system comprising: a second update unit that updates second personal information used by the second application using the first personal information when the first update unit updates the first personal information and the second setting unit has already permitted the second application to acquire the updated first personal information.

2. 2. The information processing system according to claim 1, The information processing system further includes a display control unit that displays automatic update prompting information on the first user terminal to prompt the user to set the automatic update when the first setting unit has not set the automatic update of the first personal information.

3. 3. The information processing system according to claim 2, An information processing system in which, when the first setting unit sets the automatic update of the first personal information, the display control unit does not display the automatic update prompt information on the first user terminal, or changes the display mode of the automatic update prompt information on the first user terminal to another display mode.

4. 2. The information processing system according to claim 1, The information processing system further includes a display control unit that, when the first update unit updates the first personal information, displays first personal information update information on the first user terminal indicating that the first personal information has been updated.

5. 2. The information processing system according to claim 1, The second setting unit can be set to permit the second application to acquire the updated first personal information only for a predetermined period of time.

6. 2. The information processing system according to claim 1, The first personal information includes at least one of information regarding the user's name, address, gender, and date of birth; An information processing system, wherein the second setting unit can set whether to allow the second application to acquire information regarding the user's name, address, gender, and date of birth.

7. 2. The information processing system according to claim 1, the second application includes one or more applications that work in conjunction with the first application on the first user terminal; The second setting unit can set whether or not to permit acquisition of updated first personal information for each of the one or more applications.

8. 2. The information processing system according to claim 1, The second application is an application that functions in conjunction with the first application on a second user terminal different from the first user terminal.

9. 2. The information processing system according to claim 1, The information processing system further includes a forced logout unit that forcibly transitions the user's login status to the first application to a logged-out state when the update information acquisition unit acquires the update information and the first setting unit has not set the automatic update of the first personal information.

10. A control method for an information processing system using a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, the method comprising: The computer Acquire update information indicating that the user's legitimate personal information managed by at least one of the management servers of the national and local governments has been updated; configure automatic updates of the first personal information of the user managed by the first application; Set whether to allow the second application to acquire the updated first personal information; When the updated information is acquired, if automatic updating of the first personal information has already been set, acquire the updated regular personal information from the management server and update the first personal information; A control method for an information processing system, in which when the first personal information is updated and the second application is already permitted to obtain the updated first personal information, the first personal information is used to update the second personal information used by the second application.

11. In an information processing system using a first user terminal of a user, a first application that functions as an application for managing personal information of the user on the first user terminal, and a second application that works in conjunction with the first application, On the computer, an update information acquisition step of acquiring update information indicating that the user's regular personal information managed by a management server of at least one of a national government and a local government has been updated; a first setting step for setting automatic updating of the first personal information of the user managed by the first application; a second setting step of setting whether to permit the second application to acquire the updated first personal information; a first updating step of acquiring the updated regular personal information from the management server and updating the first personal information when the update information has been acquired in the update information acquisition step and automatic updating of the first personal information has already been set in the first setting step; A computer-readable information processing program for executing a second update procedure in which, when the first personal information is updated in the first update procedure and the second application is already permitted in the second setting procedure to acquire the updated first personal information, the second update procedure uses the first personal information to update the second personal information used in the second application.