Systems and methods for connected computing resources and event / activity identification information infrastructure using humanly proximate or existential biometric identification

JP2025517883A5Pending Publication Date: 2026-05-25ADVANCED ELEMENTAL TECHNOLOGIES INC
View PDF 0 Cites 0 Cited by

Patent Information

Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
ADVANCED ELEMENTAL TECHNOLOGIES INC
Filing Date
2023-05-17
Publication Date
2026-05-25

AI Technical Summary

Technical Problem

Modern connected computing lacks a coherent platform for identifying and evaluating resources effectively, leading to inefficient and insecure identification processes, unreliable resource descriptions, and exposure to security risks due to inadequate biometric identification and authentication mechanisms.

Method used

The EBInet system provides a secure and reliable biometric identification network that uses existentially proximal or existentially quality biometric information to establish a root identification anchor for resource and event identification, ensuring authenticity, provenance, and secure resource management.

Benefits of technology

EBInet enhances the reliability and security of resource identification and evaluation, reducing the risk of malicious activities and ensuring that resources and events are authenticated and trusted, thereby improving overall computing productivity and security.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 00000000_0000_ABST
    Figure 00000000_0000_ABST
Patent Text Reader

Abstract

Connected computing enables the use of highly diverse environments that support an operating framework for modern culture. However, the productivity and reliability of computing are impaired by organizations in which most of such environments are inconsistent. These environments and their identity infrastructures are fragmented and, due to the current computing entity (e.g., resource) identification infrastructure design that lacks reliability in route identification, are unnecessarily less reliable, less secure, and of insufficient information value. Such reliability is, in this specification, enabled basically by accurately authentic and guaranteeing an existential nearness or existential quality, and by a biometric and activity-based portable identification and provenance infrastructure. Such an infrastructure provides ubiquitously available identification information that can be used universally for the identification process. Such biometric-based and activity-based identification information can be acquired contemporaneously and securely fused or otherwise combined with a related entity identification information set. Such a set is used to identify and evaluate the fitness and / or authenticity of an entity and / or to establish user identity (a specific human entity) for personal, social, and organizational activities.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] Related Applications This application claims the benefit of U.S. Provisional Patent Application No. 63 / 365,067, filed May 20, 2022, entitled “Existent Biometric Identification,” which is hereby incorporated by reference in its entirety for all purposes. The specification of U.S. Patent No. 9,721,086, filed Sep. 13, 2014, entitled “Methods and Systems for Computing Based on Secure and Reliable Identity,” is a continuation-in-part of PCT Application No. PCT / US2014 / 026912, filed Mar. 14, 2014, entitled “Methods and Systems for Purposeful Computing,” which is a continuation-in-part of U.S. Patent No. 9,378,065, filed Jun. 26, 2013, entitled “Purposeful Computing,” which is a continuation-in-part of U.S. Patent No. 10,075,384, filed Mar. 15, 2013, entitled “Purposeful Computing,” and all of these applications are hereby incorporated by reference in their entirety. These applications are collectively referred to as the parent application set.

Background Art

[0002] Modern connected computing does not provide a coherent, generally applicable platform that supports the identification and evaluation of resources available from a nearly infinite set of resource opportunities. Without specific expertise in a given activity / topic of interest, connected computing often provides inefficient and overly frequent, insecure identification and evaluation of resource opportunities, and such identification and evaluation of resources is unreliable, inappropriate, misleading, and can lead in the wrong direction, and without sufficient resource description / notification including authentic and reliable source information, can unfortunately result in, and sometimes catastrophic results, for example due to embedded malware.

[0003] The current diverse resource environment of computing has arisen, at least in part, from the patchwork evolution of connected computing from desktop and client / server computing architectures used by a nearly infinite array of independent parties. While today's computing capabilities have had a transformative impact on human activities, this ecosystem is a highly decentralized environment where its resources and activities, and the results of their use, are often unreliable, high-risk, inefficient, misrepresented, and / or inappropriate or sub-optimal for a given user's purposes.

[0004] Connected computing has advanced human productivity and knowledge, but often fails to support the quest of individual users or user groups for reliability, credibility, and optimal performance in meeting their priorities and objectives. Computer-based identity information resources provided via connected computing are often insufficient in the descriptive identity and attribute information of stakeholders, and when stakeholders are identified, the information is often presented inappropriately, inaccurately, and / or deceptively. Information about such resources may include incorrect and / or misleading content presented by malicious, misidentified, and / or under-capable people and / or their respective agent computing configurations / organizations, and such people and organizations are subject to relatively weak identification procedures.

[0005] Today's identification information tools often cannot provide sufficient sources of resource description information, are used inconsistently, and when used, often use weak / vulnerable (e.g., insecure) identification information technologies. As a result, resource description information is often insufficient and / or may be substantially inaccessible to both non-experts and experts. Such inappropriate resources that characterize identification information (such as stakeholder provenance information) prevent computer users and organizations from realizing the most beneficial / least risky results from their computing activities, and expose such users / parties to incorrect, misleading, and / or malicious resource content.

[0006] Modern connected computing does not provide a standardized interoperable interpretable framework for converting its trillions (or millions) of resources (e.g., human participants, devices, software, web pages, media, documents, and communication instances), as well as the array of countless events / activities, into generally accessible, secure, and otherwise trustworthy resources. Such a conversion can be achieved using contemporaneous and / or operationally real-time existential or near-existential human biometric identification as a root identification anchor for resource and event / activity identification information, and such functionality operates in a networking infrastructure configuration for acquiring, receiving, carrying, transferring, and using identification information in a distributed highly secure identification information environment. The EBInet (Existential Biometric Identification Network) system of such an identification information infrastructure configuration comprises a highly reliable and secure system that supports entities including humans and events / activities, authenticity, and provenance assessment.

[0007] For example, connected computing such as peer-to-peer, local network, and Internet-based computing enables use in a very diverse range of environments. However, when using today's connected computing environments, productivity and reliability are impaired by the environment and its accessible resources, most of which are inadequately organized, significantly inadequate and unreliable, unsafe, and lack informational identification of the attributes and origin of computing resources. Such an inconsistent resource environment lacks compliance with user-purpose notification attributes and lacks the root reliability resulting from a fundamentally accurate human and other entity identification identifier and attribute infrastructure, regardless of whether such an entity / resource is human, non-human tangible (e.g., device), and / or intangible (e.g., digital data, software).

[0008] The systems described herein support highly reliable and ubiquitously available identification information for use in a very diverse type of identification computing process. Such described systems support entity compliance determination based on biometric / activity, stipulated facts, and assertions, attributes, and such identification information can be used with artificial intelligence and other intentional computing functions. Such identification information is securely associated with all types of entity and event / activity identifiers and can be used to evaluate resources such as people or other entities, compliance, and reliability. Using such the same infrastructure, it is possible to establish the authenticity of users for both personal activities such as starting a vehicle, entering a home, and participating in a contractual financial transaction, define stakeholders, and prove the origin, information for organizational, social, and business purposes.

[0009] Today's connected computing sources' resources and processes are sometimes exposed to destructive security risks that can potentially cause significant damage to individuals and / or groups. For example, understanding the source of digital objects is important and can be critical. When the activity / presence of stakeholders (e.g., creators, modifiers, and / or issuers of digital objects) in communicated digital resources is disguised (e.g., during information acquisition and / or use / memory of activity / presence information), usually, even if stakeholder identification can be trusted with a 99.99% probability, the inability to identify spoofing events of activity / presence is costly, destructive, and even catastrophic (e.g., malware attacks that cause disruptions to social infrastructure such as power grids, hospital operations, financial institution operations, government computer networking, etc.).

SUMMARY OF THE INVENTION

[0010] Embodiments include systems, devices, methods, and computer-readable media for ensuring security related to authenticity of identity, flexibility of identification information composition, and resource identification and intentional computing in a computing architecture.

BRIEF DESCRIPTION OF THE DRAWINGS

[0011]

Figure 1A

Figure 1B

Figure 1C

Figure 1D

Figure 2

Figure 3

Figure 4

Figure 5

Figure 6

Figure 7

Figure 8

Figure 9

Figure 10

Figure 11

Figure 12

Figure 13

Figure 14

Figure 15A

Figure 15B

Figure 15C

Figure 16

Figure 17

Figure 18A

Figure 18B

Figure 19A

Figure 19B

Figure 20

Figure 21

Figure 22

Figure 23

Figure 24

Figure 25A

Figure 25B

Figure 26

Figure 27

Figure 28

Figure 29

Figure 30

Figure 31

Figure 32

Figure 33

Figure 34

Figure 35A

Figure 35B

Figure 36A

Figure 36B

Figure 37A

Figure 37B

Figure 38A

Figure 38B

Figure 38C

Figure 38D

Figure 39

Figure 40

Figure 41

Figure 42

Figure 43A

Figure 43B

Figure 43C

Figure 44

Figure 45

Figure 46A

Figure 46B

Figure 46C

Figure 46D

Figure 46E

Figure 47A

Figure 47B

Figure 47C

Figure 47D

Figure 47E

Figure 48A

Figure 48B

Figure 49

Figure 50

Figure 51A

Figure 51B

Figure 51C

Figure 52A

Figure 52B

Figure 52C

Figure 53

Figure 54A

Figure 54B

Figure 54C

Figure 55A

Figure 55B

Figure 55C

Figure 56A

Figure 56B

Figure 56C

Figure 57A

Figure 57B

Figure 58A

Figure 58B

Figure 58C

Figure 59A

Figure 59B

Figure 59C

Figure 60A

Figure 60B

Figure 60C

Figure 61A

Figure 61B

Figure 62

Figure 63

DETAILED DESCRIPTION OF THE INVENTION

[0012] 1 Existent Biometric Identification Information Network - EBInet - Secure and Reliable, Source and Compatibility of Resources, Connected Computing Infrastructure Connected computing (e.g., peer-to-peer, local network, and Internet-based computing) enables a highly diverse environment that increasingly supports the operating framework for modern culture. Connected computing is widely integrated into the lives of modern humans, significantly changing and improving the lives of people in developed and developing countries. However, the productivity of using today's connected computing environment is constrained by organizations with inconsistent computing resources. There are no technologies and tools to optimally convert the trillions (or trillions) of resources in modern computing (e.g., devices, software, web pages, information and communication instances, human participants), as well as the array of countless events / activities, into usefully secure computing. In modern computing, there is no infrastructure for resources and event / activity identification information to support the computing utilization purpose realization infrastructure, and there is no computing purpose schema to support resource and event / activity opportunities, compliance, and risk assessment.

[0013] Modern computing does not provide a coherent platform that supports the identification, evaluation, and use of an almost infinite array and variety of computing resources. Without specific expertise that is particularly important in a given activity / topic of interest, today's connected computing is inefficient. The results of identification and evaluation activities are inappropriate, leading to misunderstandings and potential for misinterpretation; computing resources and processes are sometimes subject to very significant security risks for individuals and / or groups. The diverse resource environment of computing has arisen, at least in part, from the patchwork evolution of connected computing from desktop and client / server computing architectures. Today's computing capabilities have had a changing impact on human activities, but this ecosystem is a highly distributed environment, and its resources and activities, as well as the results of their use, are often unreliable, dangerous, inefficient, misrepresented, and / or inadequate or sub-optimal for a user's purpose with respect to a given resource. Modern computing has advanced human productivity and knowledge, but often fails to support the quest of individual users or user groups for reliability, trustworthiness, and optimal performance in meeting their priorities and objectives.

[0014] Computer-based information resources provisioned via connected computing are often inaccurately and / or misrepresented. Information about such resources can include incorrect and / or misleading content presented by malicious, misidentified, and / or inadequately capable individuals and / or the computing configurations / organizations of each agent. Such resource representative information is often substantially inadequate and may be effectively inaccessible to non-experts. This prevents computing users / parties from realizing the most beneficial results from their computing activities and exposes users / parties to incorrect, misleading, and / or malicious resource content.

[0015] Modern computing lacks a user notification framework that enables an assessment of the fitness, including the results of use, of connected computing resources and opportunities for activity. User tools for such a framework need to support considerations of basic resource-related information, such as ways to efficiently / easily find and evaluate resources, and such discovery and evaluation include ways to readily obtain information that supports judgments of the reliability and context of the resources that characterize the information, as well as the relative fitness / usefulness of such resources.

[0016] The framework of the invention described herein provides, in some embodiments but not limited to, a connected computing infrastructure that securely supports the following. 1. The authenticity of truly rigorous resources, related events / activities, existentially proximal qualities, and / or partially identifying information by use of existentially real qualities, resources related to biometric-based identifying information of one or more persons, such information being highly mobile, forgery- and inspection-resistant, and provided by use of a secure information conveyance configuration that guarantees highly reliable and ubiquitously available identifying information for the management of events / activities. 2. Resources suitable for user purposes that notify of attributes, such attributes being presented using, at least in part, quantized qualities for assertions of user purposes and very secure rule-based testable / verifiable defined facts. 3. Attributes of each resource and / or event activity, such attributes of the attributes can significantly inform regarding the reliability and / or other fitness of such resources and / or events / activities. For example, the framework of the present invention can provide highly reliable attributes of the attributes of resources, and the attributes of the resources can include its creator, provider, issuer, participants, etc. In such examples, the attributes of such persons can provide essential information regarding each relevant resource of such persons, i.e., regarding the fitness (e.g., reliability and / or usefulness) of such resources for the user's purposes. Such attributes (e.g., in the case of resource certificates) can provide the true identity information (e.g., using biometric identification) and / or capabilities (e.g., expertise) of the person, and / or can clarify information regarding the fitness of such person's motivation / reliability for each user's interests. 4. Related origin identification information that can biometrically identify resources, and relatedly, related event / activities, preceding related participating devices, services, and / or historically related origin information of persons.

[0017] Today's connected computing platforms can be considered "advanced" first-generation environments. While this has proven to be highly enabling / productive, today's computing environments are very primitive in many respects as they cannot provide a consistent distributed infrastructure for identity information resources and events / activities, and further cannot provide formal context-aware computing capabilities.

[0018] There is no general-purpose, category-independent, standardized, interoperably interpretable, highly secure, identity-based, and user-purpose-optimized computing framework for today's connected computing. The embodiments described herein can transform the ability of a computer user to reliably evaluate / understand the compliance, including reliability, of network-based computing resources and events / activities, which can lead to significant improvements in related computer-related cybersecurity, rights management, and overall user job quality and productivity.

[0019] Until recently, it has been completely or at least not distinguishable to create a system that is an actually reliable biometric identification and an attribute, resource, and event / activity compliance framework. More specifically, none of the available or proposed systems support (a) a near-actual or actual-quality biometric-based identification for contextually practical and fundamentally reliable resource identification, (b) an attribute-based computing resource and event / activity object compliance, and participant rights management framework, and (c) do not use a highly mobile, very low-friction, situationally adaptable, e.g., contextual or always-available object (resource and / or event / activity) identification information environment. Such an identity environment is cost-effective, highly mobile, compliant with smart devices, of actual quality, biometric-based, and includes a human and other resource identification information infrastructure. Such an infrastructure can use, in certain embodiments, standardized quality for the purpose, effective facts (prescribed and verifiable facts), and compliance attributes securely associated with the purpose indication, computing resources, and / or event / activity instances.

[0020] Such an association framework can enable a highly flexible and contextually adaptable compliance and rights management computing infrastructure. The absence of a combination of existential or near-existential identification information of human stakeholders and a set of standardized and interoperably interpretable stakeholder attribute information is a significant shortcoming in today's universe of connected computing resources. Such a set of attribute information can be securely associated with a carefully trustworthy set of resources and / or event / activity identification information, significantly improving computing productivity and security. The absence of such an infrastructure represents (a) defending against malicious and other inappropriate cyber activities such as computer hacking, impersonation, news, science, and fact forgery and other manipulations, forgery by labeling, and failures in monitoring or enforcing the rights of stakeholders and users, (b) providing a system for identifying resources and event / activity instances that are optimally appropriate, i.e., most effective for user purposes and interests, and / or otherwise appropriate, a significant shortcoming in modern computing capabilities.

[0021] The present specification describes, for example, resource and related event / activity information management and compliance computing-based systems for social and commercial networking and communication, supply and other value chain management, information quality and integrity assessment (and integrity assurance including identification / assessment of false facts / news), storage and transactions of digital currency value, authentication and integrity maintenance of digital objects, auditing of digital objects and events / activities (e.g., using EBI Blockchain and / or other provenance systems), and / or identification of resources that are optimally useful and / or appropriate for each user's purpose.

[0022] For example, important areas where the EBInet embodiments discussed in this specification can substantially improve calculations include the following. · Cybersecurity, including the use of physical biometric-based identification information coupled with a standardized display of fitness information attributes. Such coupling can provide notifications regarding cybersecurity threats and events, such as malware identification and / or avoidance / invalidation / denial, based on notifications regarding resource cybersecurity considerations, and can block or prevent them. For example, cybersecurity management can be based, at least in part, on information regarding the reliability, expertise, employment, achievements, membership, certifications, publications, and / or other attributes considered relevant to cybersecurity provided by a resource, the source of the resource, and / or the respective attributes of the resource-related party (e.g., of the resource stakeholder) (e.g., the attributes of the owner, creator, provider, and / or issuer of each resource instance). · Enhancement of interpersonal and / or inter-organizational communication security, communication-related source identification, and source identification-related usage management by notifying, for example, information regarding the respective motivations, capabilities, and / or other fitness considerations of communication senders. Such notifications can use the secure coupling of the sender's physical biometric quality identification information to one or more valid fact specifications. For example, a bank can specify in a securely testable / verifiable set of identification information that an email clearly sent by such a bank was genuinely sent by a person the bank specifies as an employee having the authority to send such an email. Such a person can prove that they are the sender by providing, in such a securely coupled set of information, a person who is physically proximate or of physical quality, and the bank's identification information set, obtained contemporaneously and / or operationally simultaneously. (And, if such bank identification information itself can be identified / authenticated by the bank CertPer). Social networking and commercial networking, including ensuring the identification of participants involved in expected and / or ongoing connected computing activities (e.g., providing compliance to notify attribute information). Such identification enables the identification of one or more participants and the attributes of each such individual, such as age, membership, job, location, and / or existence-near and / or existence-quality identification of similar valid factual stipulation information. Monitoring and management of other commercial / social / social chains, including product distribution management with high supply, value, and reliability, blockchain digital currency (e.g., EBICoins), and other chains of handling and control implementation. Verification of authenticity / reliability, such as the authentication of REAL (Resource and / or Event / Activity Instance) using existence-near and / or existence-quality identification of a person (CertPer) and / or other relevant verifiable attributes of related certifiers (e.g., non-biometric). By demonstrating such authenticity / reliability, for example, the management and auditing of a highly reliable Internet of Things (IoT) become possible. Such management and auditing may include, at least in part, the identification of the authenticity / completeness of device configurations through the existence-near and / or existence use of REAL stakeholders, and / or other quality identifications such as the certification of CertPer. · Digital copyright management of REAI that ensures that events / activities are managed according to rights securely associated with a virtually near and / or virtual quality, biometrically identified REAI stakeholder (e.g., REAI user, owner, and / or participant), such copyright management can be managed, at least in part, according to one or more verifiable non-biometric attributes (such as valid facts and / or credibility) of each such individual. Digital copyrights can be implemented, for example, by securely associating REAI rules and controls with (a) biometric-based identification information of the virtual near or virtual quality of the stakeholder's person, and (b) identification information non-biometric attributes of the stakeholder's person forming a set of REAI identification information correspondence rules and controls, and · Digital currency management and auditing, including biometric identification of near-existential and / or existential quality of currency ownership, and prevention of theft and fraud arising from the use by individual / party participants in transactions, and the use may further include the use of one or more of such non-biometric, verifiable valid facts and / or credibility attributes of such individuals / parties. The EBInet digital currency configuration uses EBICoin to define the current owner party for each digital coin, and such ownership is defined using such biometric identification at least in part. EBICoin can contain and / or safely reference each digital coin, and such definition of digital coin ownership can prevent theft and fraudulent transactions of digital coins. Prevention of such theft and fraudulent transactions is made possible by using a set of biometric identification information of near-existential and / or existential quality of the owner, securely associated with the corresponding set of digital coins owned by the owner. Using EBICoin, the underlying (safely contained and / or otherwise safely referenced) set of digital coins can be identified using (a) an instance of information of near-existential and / or existential quality at least in part of the unique identifier of such digital coin and its issuer (e.g., the biometrically identified individual (CertPer) of the issuer), and (b) an instance of information of near-existential or existential quality at least in part of the current owner of such digital coin. In some embodiments, a blockchain configuration (e.g., EBIBlockChains) can be used to at least partially mine, issue, audit, and / or manage EBInet-configured digital currencies such as EBICoins.

[0023] Considering the nature of the emerging cyber world, the greatest threat to computing configuration users is the malicious intent of unrecognized malicious actors, where malicious manipulation of computing resources results in harmful consequences and connected computing users are unable to efficiently or reliably evaluate the fitness of resources and / or event / activity instances (e.g., fitness of information, fitness of one or more relevant parties / participants, and / or fitness of computational processes, etc.). In particular, today's computing environment cannot provide realistic, cost-effective, and user-friendly forms of existential trustable identification recognition tools. Furthermore, today's computing environment is vulnerable to impersonation and enables ID substitution and other malicious impersonations. Without practical, reliable, and cost-effective information tools regarding identified computing actors and / or each person's respective resources and / or attributes, there is a possibility of false identity attribute displays, and such displays may appear inappropriate in the context, such as being suitable for the user's purpose. Today's systems are simply insufficient for the purpose of providing an information set that adequately informs about the motivations and / or capabilities of participants related to computing activities.

[0024] This specification describes the use of (a) physically proximate and / or physical quality biometric-based identification information, and (b) respective characteristic non-biometric attribute information of related persons, each at least partially securely managed, of computing resource related persons (e.g., stakeholders, users, certifiers), to at least partially enable the identification, evaluation, selection, auditing, authorization, provisioning, management of use, and / or communication with computing resources and / or computing event / activity instances. Such a specific system and method combines a biometrically carefully obtained identifier of a resource stakeholder, user, and / or certifier (CertPer) with a respective associated fitness notification attribute of such an identifier to form an identification information set (IIS) that provides information regarding computing resources and events / activities. Such an IIS can be configured and used as an identification information token (IIT) for computing resources and / or event / activity instances, and can further include, when including cryptographic key information, for example, respective IIS certificates (physical biometric identification certificates (EBICerts)).

[0025] Today's connected computing cannot provide a controllable and meaningful recognition of the identities of connected computing participants, candidates, and / or other associated resources and / or event / activity related parties. Current connected computing implementations are affected by the replacement of malicious personally identifiable information and the characterization of inaccurate and insufficient human attributes. Embodiments of EBInet (the "Existent Biometric Identification Information Network") described herein combine uncontrollable biometric recognition with innovative forms of personally identifiable attribute information (e.g., testable valid facts and the quality for the assertions of purpose) to address significant connected computing problems. These problems are related to identifying / understanding the fitness (e.g., based on reliability, risk, productivity, function / capacity) of computing resources (e.g., devices, software, people) and / or to user participation in computing events / activities.

[0026] The EBInet connected computing embodiments address the limitations of today's computing infrastructure that cannot reliably and clearly identify the individuals responsible (e.g., prove) for resources and / or events / activities accessed via connected computing (e.g., ownership, control, and / or use). Using EBInet device configurations and services, such resources and / or events / activities can be effectively identified and / or evaluated to calculate the fitness for use / interaction / participation, at least in part based on the attributes of the people associated with the resources and / or events / activities.

[0027] Today's connected computing has fundamental flaws. It does not adequately address the issues of the effectiveness, efficiency, completeness, and reliability / authenticity of various pressing resources and events / activities. EBInet can support the clear identification of human individuals and provide a highly reliable clear representation of each contextually important attribute of such individuals, individually and / or in combination. Such attributes can include identification information that indicates the suitability for the user's purpose. Such information enables the evaluation of resources and / or events / activities, at least in part, by evaluating the suitability of each relevant human for the user's purpose. For example, such information can inform about the genuineness / reliability / security, efficiency, productivity, relevant rights, and / or similar considerations of the resources.

[0028] Connected computing has the drawback of lacking characteristic information about human attributes, and such information notifies about the suitability of each resource and event / activity (including the case where a person is a resource and / or a REAI creator / provider / authenticator / attester / participant). Without an accurate identification of humans in a form particularly suitable for identifying the suitability of humans or human-related resources for the user's purpose, it is often infeasible to reliably evaluate human motivation, ability, and other suitability factors regarding the use and / or participation in a set of resource and event / activity instances. Connected computing fundamentally depends on humans as resources and / or as stakeholders of resources (e.g., as creators, providers, modifiers, owners / users, authenticators) and / or as participants in events / activities.

[0029] Today's computing configurations do not provide appropriate and reliable compliance / optimality information for informing about (a) the use of computing resources and / or (b) participation related to human events / activities. In particular, today's computing environment does not provide highly reliable REAI-related human-specific identifiers and does not provide highly reliable human identification information for notifying attribute information in many situations. Creating a system that can provide such information enables the evaluation of humans and / or (a) resources and / or (b) events / activities related to them through, for example, the evaluation of the intentions, appropriateness, functions / capabilities, authenticity, and / or digital rights of each such human and / or resource.

[0030] In many embodiments, EBInet supports a new standardized form of resource identification infrastructure that presents (enables the display of) resource / person identification information fusion identification that includes (a) object content instances and / or their respective identifiers (such objects include, for example, documents, devices, services, websites, people, other objects / entities, and / or their respective unique identifiers), and (b) the subject person (e.g., of SubPers) and / or the certified person (e.g., of CertPers) is at least partially biometric-based identification information that is physically proximal or of physical quality. Such a fusion of at least partially identification information with the target content instance and / or identifier and the target object SubPer and / or the certification CertPer provides information regarding one or more persons who prove, authenticate, and / or provide compliance with the REAI identification information attribute. Such individuals can assume direct (CertPers) and / or implicit (SubPers) responsibility for REAI by handling the target and / or certification information of at least partially biometric-based identification information of such individuals as information used to "support" their respective resource and / or event activity instances. For example, an IIS user can use such information to authenticate, manage, and / or notify REAI compliance decisions in response to the attributes of the owner and / or certifier, for example, by using such information when managing event / activity instances.

[0031] To ensure the notified highly reliable identification information of the REAI instance, embodiments of EBInet can use existentially proximal and / or existent qualities, and can use at least partially biometric-based contemporaneously acquired identification information, which can be acquired, for example, at the individual's home in the morning at a biometric identification acquisition and transfer "station" and then "carried" in a mobile device configuration by such identified individuals for subsequent contemporaneous use. Such a carrying configuration can function as an identification information configuration that provides / makes available a CertPer or SubPer resource object composite identification information set that at least partially includes biometric identification information of existentially (and / or existentially proximal) quality associated with the authenticator / attester / owner / user person and resources and / or event / activity identification information related to the safety of such a person. Such contemporaneously carried identification information of existentially proximal and / or existent quality can be widely available for use, for example, by broadcast, and / or can be available in response to requests from another EBInet-compliant configuration so as to be contextually appropriate. Such an EBInet contemporaneous identification information environment provides a very user-friendly (use can be transparent / automated) and cost-effective infrastructure to improve the security and reliability of computing. Such an infrastructure can provide existent identification information using biometric identification acquisition at one or more stations, eliminating the need for an existent acquisition configuration incorporated into any and all biometric identification information, for example, using device configurations such as mobile phones, tablets, laptops, and other computing configurations.

[0032] In EBInet, human identification information, including highly reliable identification of people, is combined with such standardized, interoperable, and interpretable characterizations of each person's intentions / motivations, capabilities, background, expertise, interests, and / or other fitness criteria that reveal personal details. Such an identification information framework is used to generate useful and often essential input regarding the fitness of computing resources and / or events / activities for user purposes. Such associations can provide important information regarding the effectiveness of such REAI and other fitness considerations, for example, information regarding threats embedded in and / or otherwise associated with computing resources and / or processes.

[0033] The EBInet configuration can include a fused identity (a uniquely identified, biometrically identified REAI instance that is firmly bound to each other as a fused object, with no room for human debate) composite identification information set (CIIS, an IIS with composites, a fused object including a human (SubPers), and an IIS with related non-human object components). To date, human identification associated with computing resources and processes (e.g., events / activities) has not been available as a standardized attribute information set that is at least partially securely bound to interoperably interpretable representations, human characteristics (e.g., non-biometric), and biometric identification information of an existential or near-existential quality, and such an identification information set is used, for example, in computer resource and / or event / activity identification, authentication, selection, auditing, authorization, and management. Put simply, there is currently no standardized, interoperably interpretable computing resource identification information infrastructure that securely associates (e.g., cryptographically binds and protects) a person's carefully trusted identification information with such person's respective securely maintained identity-related attributes. As described herein, by providing the EBInet infrastructure, a computer user can be notified about the compliance of a REAI, for example, if such a REAI were to pose a threat to the user's interests, or if the creator of the REAI had questionable or insufficient capabilities / expertise, or if a person lacked the right to participate in a commercial or social networking arrangement (e.g., represented as a verifiable valid fact).

[0034] In some embodiments, the IIS can each include standardized specifications / displays that are interoperably interpretable for the purposes of users and / or stakeholders, and each such objective display related to the REAI has an associated asserted quantization value (e.g., represented as Cred) that represents the relative value of such REAI in meeting such specified / displayed objectives. Such IIS can further or alternatively each include testable / verifiable interoperably interpretable displays of one or more facts related to each such REAI, and / or can include other REAIs that characterize attributes. Each at least partially biometric-based identifier of the IIS, and the attributes securely associated with those identifiers, can be used to ensure and efficiently allocate and evaluate resources, including, for example, determining the suitability of using one or more such resources to meet each user's respective objectives. Resources and events / activities are in many situations sourced from a very large universe of resources and events / activities that do not have a consistent manageable organizational / information infrastructure for identifying and evaluating the very diverse business artifacts of independently operating resource publishers and event / activity managers and / or participants. The EBInetIIS information implementation provides a framework for efficient user objective-related resource and / or event / activity identification, filtering, evaluation, and selection. Using the EBInet framework, the impact of REAI use can be evaluated from the perspective of the capabilities, background, and / or motivation of the creators, publishers, providers, and / or participants of each REAI stakeholder.

[0035] The biometric recognition of REAI stakeholders and individual users, as well as the secure (e.g., encrypted) combination of biometric-based identification information with the characteristic attributes of each such individual, and the further combination of each such information set as described herein to REAI, may enable important improvements in the reliability of REAI, as well as their relevance and fitness in achieving user objectives. Such biometric recognition and liveness testing are performed using near-living or living recognition, and when used as described in the embodiments herein, ensure convenient and cost-effective REAI identification and evaluation of stakeholders and users, and can solve many of the inadequacies inherent in working in an infinite and relatively diverse universe of resources.

[0036] In the known art, it is neither technically, economically nor practically feasible to widely and repeatedly implement a practically reliable biometric identification function within highly mobile device types such as smartphones, tablets, smartwatches, smart bracelets, smart pendants, etc. For example, for each of the users, and / or for each of one or more groups of such users, (a) desktop computers, (b) IoT instances, and / or (c) each computing management configuration such as manufacturing, supply, and / or value chain, and / or other groups, shared computer management configurations, etc., redundantly incorporating such a practically reliable function into various non-mobile computers and computing management configurations is neither sufficiently user-friendly nor economically and / or operationally practical for the user.

[0037] In some embodiments, the present existential biometric identification network provides at least a partially biometric-based human identification configuration that communicates with a related receiving, carrying, using, and forwarding (RCUFD) other biometric identification information device configuration and uses an existential-near and / or existential-quality biometric identification information acquisition configuration. Such RCUFDs receive and carry reliable biometric identification information. They function as mobile identification wallet configurations and supply identification information to a network or other connected computing configuration for event / activity management.

[0038] Human intent / motivation lies at the root of human behavior, and since the beginning of the human species, human safety and trust have been substantially built on knowledge of the motivations and / or intentions of "other" human actors. Unfortunately, current computing resources and event-related technologies typically cannot reliably and specifically notify, for example, human parties involved in computing, and / or the creation, handling, and / or modification of computing management resources, and / or the identity of human computing event / activity participants who participate in or are directly associated with human computing events / activities, as well as aspects of reliability, rights, motivations, and / or other compliance. Reputation and factual attributes regarding such participants (identified by existential-near or existential-quality biometrics) related to computing activities can be essential in determining whether such participants, and / or their respective resources and / or events / activities, are approved for, and / or trustworthy for, and / or compliant with, and / or appropriate for the purposes and / or policies (including REAI rights management) of users, stakeholders, and / or other resources and / or events / activities.

[0039] The foundation of human trust is almost entirely based on the recognition of human intent and / or ability. The reliability of REAI compliance depends on the human ability to recognize relevant attributes that inform generally and / or contextually about the intent, reliability, and ability that are specific to a given human. Considering the importance of reliably identifying who is "later" or "after", and information regarding resources and / or event / activity set instances (e.g., REA instances that a user wishes to use or consider using and / or interact with), EBInet provides a practical and cost-effective identification information acquisition, conveyance, reception, use, and transfer device configuration and information set that supports the existential and / or near-existential recognition and use of identification information of one or more persons related to an instance.

[0040] The effectiveness of today's computing environment is significantly hampered by the low reliability of the placement of resource and event / activity identification information and the inadequate transmission of information. For example, today's computing systems 1. Do not securely acquire, maintain, and provide an existential (or near-existential) trustworthy identification of computing REAI stakeholders and / or users (including, for example, event / activity participants), for example, do not at least partially securely provide such biometric-based identification (with liveness analysis) of the relevant persons of such instances, which is standardized and interoperably interpretable; 2. Do not include a secure human identification information reception and transfer mobile device configuration that receives, from an acquisition and transfer identification device configuration, at least partially near-existential or existential, at least partially near-existential or existential and reliable, near-existential or existential quality biometric-based, and contemporaneously acquired stakeholder and / or user identification information. In contrast, EBInet's reception and transfer mobile device configuration can securely convey such identification information and provide it transparently and contextually. Such identification information can be received and used by devices and / or service arrangements compliant with the EBInet arrangement's standards; 3. Do not securely couple at least a partially biometric-based identifier (SubPers) and / or authenticator (CertPers) of such a stakeholder and / or user to, a. For example, at least a partially standardized and interoperably interpretable object REAI's non-personal identifier, identification attribute information, and / or including the respective standardized and interoperably interpretable quality for each instance with respect to, for example, objectives and / or other assertions, testable / verifiable valid facts, context objective indications, and / or rules and control policies (e.g., rights management) information, b. Attributes of the stakeholders and / or users and / or authenticators of the at least partially standardized and interoperably interpretable REAI (i.e., the respective stakeholders and / or users (SubPer) and / or authenticators (CertPer) of the REAI, one or more attributes of an individual), for example, attributes regarding the characteristics of such stakeholders and / or users, and / or authenticators, for example, quality and / or other assertions for respective objectives, testable / verifiable valid facts, relevant context objective indications, and / or rules and control policies (e.g., rights management of parties and / or individuals) related information, etc., securely. 4. Do not securely and reliably provide an embodiment of a standardized identification information architecture for an exceptionally large and diverse array of resources as described herein. EBInet embodiments enable each stakeholder and / or their agent and / or other parties and / or their respective work products and / or related processes and / or events / activities of computer configuration resources and / or event / activity instances to be a. Regarding the following, compliance, for example, reliability and / or effectiveness, and / or b. Rights and / or other authorizations for performance, to be reliably evaluated with respect to the respective commercial, social, and / or social requirements and / or objectives of the user's connected computing. be made possible.

[0041] The lack of inherent reliability of identifiers associated with remotely sourced resources and event / activity instances, and considering that relevant, reliable, and interoperably interpretable resources and event / activity instances do not identify / characterize attribute and attribute-based computing management, connected computing can be highly inefficient, often providing sub-optimal results, lacking organizational fitness for the target framework, vulnerability to cyber security threats, and being inherent in misrepresentation and mis-evaluation of IDs.

[0042] The EBInet platform and set of components at least partially represent the formulation (e.g., combination) of a new type of computer resource for REAI, and such information sets each, for example, are at least partially biometric-based sets of personal identification information of stakeholders (e.g., SubPer), users, and / or authenticators (e.g., CertPer), where the human identifier is highly reliable or incontrovertibly accurate (e.g., achieved using a physically proximate or physically accurate biometric identification information acquisition transfer device configuration (AFD)), one or more physically proximate and / or physically reliable ones, and are accompanied by the following. (a) One or more secure times and / or dates, where the start, stop, duration, period, and / or other formulations of the time provide a securely maintained (communicated and / or stored) time and / or date information instance for each respective REAI-related event such as the time of IIS creation. The time information instance (e.g., a timestamped information instance) can include, for example, the securely generated / provided time of acquisition of biometric identification information, and for example, the secure time of such acquired information can include the time of emission of an applicable emitter of electromagnetic signals and / or sound wave signals, and / or the time of reception of the corresponding sensor configuration of biometric identification data, (b) Using position correlation based at least in part on the location information of the cellular tower, one or more identified Wi-Fi instances, GPS location acquisition implementation, and / or biometric-based identification information of each of one or more parties (e.g., each individual and / or other party is associated with, for example, each registered place of employment of the individual (as defined as a verifiable valid fact) and / or the like), to safely triangulate and / or otherwise locate such an arrangement, such as one or more secure representations of a location (e.g., of a configuration carried by a composite device / person), (c) One or more unique identifiers for one or more non-human objects of the IIS of resources and / or event / activity instances, which can further include one or more unique identifiers for each such object part of the IIS, (d) A unique identifier of one or more sets of identification information, which is at least partially composed of, or can use information from, such non-human subject-specific identifiers, and / or (e) The purpose specifications of one or more standardized and interoperably interpretable resources (including one or more persons) and / or event / activity instances are a. Attributes of REAI objects and / or object instances that specify the related purpose of use of such instances, such as PERCosCPE, and b. One or more at least partially standardized REAI objects and / or objects of human stakeholders and / or users, the intended computing value of the REAI, and / or the intended computing that notifies attributes such as PERCosQtP that assert verifiable defined valid facts, characterize.

[0043] In some embodiments, the EBInet environment uses at least two forms of secure identification information processing units (IIPUs), such IIPUs can be provided in the form of a highly secure anti-tampering hardware protection processing environment with a strengthened module component (or sub-component) configuration respectively. In some embodiments, such IIPUs operate within an EBInet stand-alone device or are embedded component configurations embedded in a parent (e.g., host) device configuration (e.g., a mobile computing device such as a mobile phone, where such a mobile device can provide, for example, power, storage space, convenient mobile packaging, and / or other complementary functions). Such a modular component IIPU configuration can include several variant forms such as an identification information acquisition route IIPU (RIIPU) used to at least partially acquire biometric identification information of near-real and / or real quality, and a network identification information management IIPU (NIIPU). The network identification information management IIPU (NIIPU) can receive, process, carry, transfer, and at least partially manage the availability and / or use of a set of human or human / device fusion identity composite identification information. The IIPU is tamper and inspection resistant and is designed to very high standards to provide secure processing, memory, and cryptographic functions, and such functions may be implemented to operate independently from other computer processing configurations such as those found in the NIIPU's parent smart device. The IIPU is designed to acquire and / or receive near-real and / or real quality biometric-based identification information, and further, can securely receive and process others characterizing attribute information such as valid facts and credibility. The integrity of the IIPU components can be maintained by supporting only the IIPU minimized for identification information purposes software functions to provide a minimized attack surface.Furthermore, in some embodiments, the EBInetIIPU can use a dedicated IIPU display configuration that includes a dedicated or binary-switchable portion of the display configuration, such as a dedicated portion of the user's parent mobile phone screen, and such IIPU can receive user instructions provided at least in part via the use of respective reliable path configurations.

[0044] In some embodiments, the RIIPU is at least in part a highly secure, isolated, anti-tampering, physically proximate or physically reliable biometric identification information acquisition unit. The RIIPU functions at least in part as one or more components of a respective collection transfer device (AFD) configuration. The RIIPU acquires biometric identification data (e.g., to generate patterns and / or other information) to support the determination and generation of each human's unique biometric identifier. The RIIPU is a modular component configuration that can be used, at least in part, using the respective sensor configuration of such RIIPU, to acquire contemporaneous, physically proximate or physical quality biometric identification information (for subsequent use). Each such RIIPU can at least in part control an AFD electromagnetic and / or acoustic wave (e.g., ultrasonic) emitter configuration. Such human-specific identification information obtained by such biometrics can be used, for example, to supply human biometric-based identification information contemporaneously (as described herein) for use in at least a contemporaneous set of identification information. Each such EBInet human identification information instance is based at least in part on such physically proximate and / or physically reliable biometric acquisition process.

[0045] In some embodiments, the RIIPU parent device can use one or more frequently used, such as used regularly daily, smart mobile device charging and / or other docking configurations (e.g., RIIPU incorporated into an AC adapter and / or other device docking configuration for a smartphone and / or other mobile device), and / or in some embodiments, the RIIPU can be packaged within an AFD external stand-alone device configuration. The RIIPU uses a secure and separate protected processing environment (PPE) from non-RIIPU processes to provide a highly reliable, virtually proximate and / or at least partially biometric-based set of human-specific identification information, and such PPE performs human-specific identification and activity / presence determination. The RIIPU can be embedded in a computing and / or other device configuration and / or connected in other ways. The RIIPU functions as a root of identification information of a biometric acquisition configuration of virtually proximate and / or actual quality that at least partially generates biometric-based identification information that is an "anchor" providing virtually proximate or actual individual-specific identification information for a set of identification information characterizing / identifying resources and / or event / activity instances. Such an anchor information set is securely coupled to attribute information describing respective resources and / or event / activity instances within the RIIPU, NIIIPU, and / or EBInet service configurations. Such a root IIPU device configuration can, in some embodiments, transfer at least partially biometric-based identification information to other EBInet devices and / or service configurations, and such other devices and / or service configurations can, at least partially, perform highly secure EBInet identification management functions, but such other EBInet devices and / or service configurations do not obtain, for example, virtually proximate or actual, raw biometric identification information of an individual.At least a partially biometric-based dataset of such RIIPU can be obtained and processed in a highly secure, isolated processing, forgery and inspection-resistant, resource and / or event activity instance identification information acquisition configuration for each such set. Such a configuration can further formulate, evaluate, transfer, receive, and / or manage / process such a set using a separated process executed in a conforming IIPU configuration.

[0046] Root IIPU (RIIPU) is used in combination with NIIPU in various embodiments, and such NIIPU can include highly secure, separated processing, forgery and inspection resistance, low cost and energy efficiency, modular component identification information reception, conveyance, use, and transfer, component configuration. In contrast to RIIPU, NIIPU does not use its own sensor biometric configurations of near or actual existence quality to obtain at least partially biometric-based personal identification information. The NIIPU configuration typically executes the reception, conveyance, use (e.g., disclosure and / or event / activity permission), evaluation, and / or transfer of one or more contemporaneously AFD-obtained, at least partially biometric-based human identification information sets, at least partially obtained by, for example, AFDRIIPU and transferred from such AFD to embedded RCUFDNIIPU. Such RCFDNIIPU can then transfer such identification information to an EBInet-compliant RUD and / or RUS configuration (such RUD and / or RUS including identification information for receiving and using EBInet devices and / or service configurations) that uses IIS information for event / activity management.

[0047] In some embodiments, the NIIPU configuration can also perform (and / or receive) biometric identification using non-existent biometric identification information of the parent device and / or network-based sensor acquisitions. The EBInet identification information set is used as identification information for each resource and / or event / activity instance, and such contemporaneous identification information can be "aged out" and become invalid after a specific secure time clock (e.g., the NIIPU security clock), period, and / or other securely specified event determined in real time.

[0048] In various embodiments, in addition to having human biometric identification information associated with the REAI, the identification information set can further include other (e.g., tightly coupled) descriptive attributes of such person and / or their respective REAI, such as the associated REAI of such person (such attributes can include, for example, respective qualities for the purpose and / or testable / verifiable defined facts). Such modular components RIIPU and NIIPU configurations are each embedded in their respective parent configurations and / or securely coupled to their respective parent configurations in other ways (e.g., wired, wireless, and / or other I / O connections).

[0049] In some embodiments, at least a portion of the biometric-based Identification Information Set (IIS) of EBInet is made available, registered, and / or otherwise stored as a uniquely identified identification information set to one or more respective identification information devices, platforms, clouds, and / or organizations, services. Such sets and / or their identification information (e.g., identification of hashes) that are made available, registered, and / or otherwise stored are made available for subsequent use by the IIS using parties and / or EBInet compliant devices that are at least partially independent from the respective creation, availability, and / or registration process sets of such sets (e.g., individuals / devices / services that use a given identification information set but are not the creators / issuers). Such process sets (e.g., performed by a biometrically identified party) may generate an encrypted protected IIS (e.g., an IIS that is at least partially cryptographically hashed and biometrically signed).

[0050] Such publicly available, registered, and / or at least partially biometric-based sets of identification information are available for secure reference and use by one or more at least partially independent parties of interest. Such publication can include, for example, secure publication to cloud services and / or other administrative, management, and / or utility services, and such published instances of identification information can be securely registered as resources and / or event / activity IISs. Such IISs characterizing each resource and / or event / activity can be securely associated (e.g., securely coupled) with the object instances of each resource and / or event / activity of such information sets. Such instances can include, for example, documents, digital currencies, computer programs, videos, web pages, digital currencies, NFTs, communication instances (e.g., email, tweet, and / or chat instances), financial-based exchanges of value transactions, computing / communication interfaces to people and / or other tangible items (IoT, user "smart", and / or supply, value, and / or other commercial chains, device configurations, etc.), social networking sessions, metaverse sessions, and the like.

[0051] In some embodiments, at least partially biometric-based identification information instances may be securely stored within a mobile smart parent and / or dedicated identification information device, carried by respective owners and / or users, and / or otherwise associated, and such at least partially biometric-based identification information is at least partially physically proximal or physically accurate (uniquely identifying a person). Such at least partially biometric-based identification information may be used "simultaneously" in, for example, a frictionless and transparent manner, to securely convey, with high reliability, (a) biometrics fused with a particular person and other characteristic identification information sets of such person, and / or contextually, person-specific identification information of such owner and / or user, and (b) a real-world anonymized IIS that securely provides attributes that do not at least partially specifically identify a person (i.e., characterize as non-social). Such an identification information set can be used respectively to permit, evaluate (including authentication and / or verification by other means), identify, select, provide, and / or use computing resources and / or event / activity instances.

[0052] The EBInet process can be used to evaluate and / or guarantee the suitability and / or accessibility (including, in some embodiments, permitting performance) of instances of respective resources and / or event / activity objects for one or more purposes of a user. Such a suitability evaluation process can include, for example, recognizing and / or evaluating the attribute evaluation and / or recognition of an object instance, which can include, for example, completeness (e.g., via authentication and / or other verification), reliability (e.g., via attribute evaluation and / or recognition), respective rights of REAI-related parties (e.g., users, owners, etc.) (e.g., for respective event / activity approvals), provenance information, and / or one or more related characteristics of other closely related resources and / or event / activity instances.

[0053] In some embodiments, EBInet may be stored, at least in part, in a highly secure RIIPU and / or NIIPU modular component configuration that is at least in part biometric-based. Such a configuration can include a secure modular component configuration that is forgery and inspection resistant for obtaining, holding, using, and / or transferring at least in part physically proximate and / or physically-like biometric identification information, as well as other related object attributes. Such identification modular components may be packaged, in some embodiments, as hardware and software configurations that use at least in part separated processing, forgery and inspection resistance, and misuse countermeasure techniques, respectively.

[0054] In some embodiments, there are two general types of EBInet modular components: (a) those that perform more processor-intensive biometric acquisition and analysis functions, such as RIIPU that supports AFSD processing requirements, and (b) those that perform identification information and rights management that is often not processor-intensive, for example, more restricted processing requirements, and thus may have overhead associated with the conveyance, transfer, and / or use of the identification information, and support an economical and secure NIIPU. In some embodiments, such EBInet modular component types (i.e., RIIPU and NIIPU) can populate the EBInet environment. In some embodiments, the functions performed by the RIIPU or NIIPU may be performed by native device component configurations. For example, AFSD may use, for example, Apple's secure enclave function to support secure (e.g., anti-forgery) biometric and / or other identification information functions.

[0055] In some embodiments, AFSD (e.g., using their RIIPUs) may require more powerful processing capabilities than NIIPU, for example, for anomaly analysis, support pattern and / or statistical analysis functions, filtering algorithms, and / or more complex dynamic memory encryption requirements for maintaining information security. In contrast, widely distributed modular components in devices such as mobile and IoT can have simpler identification management functions that are executed using less expensive and less complex identification processing NIIPU configurations.

[0056] In some embodiments, such isolated secure modular component hardware configurations (e.g., each including NIIPU and / or RIIPU) may be respectively embedded or inserted into mobile "parent" (host) smart devices such as smartphones, laptops, tablets, smartwatches, and / or identification list bracelets, and / or pins / brooches. Such a configuration of modular components enables, at least in part, the use of biometric-based smart device users, and / or owners, and / or other stakeholders (e.g., SubPer (object) and / or CertPer (certifier)), identification information. Such a configuration of modular components can enable the processing and use of such at least partially biometric-based identification information sets. Further, such information can be made public and securely associated with resources and / or event / activity instances.

[0057] Such modular components can be included within, or can include, a secure protected processing environment such as an enhanced PERCos Identity Firewall and / or Awareness Manager, and such Identity Firewall and / or Awareness Manager can include AFD and / or RCFD as described herein. Such IF and AM can each be used in secure identity-related event / activity governance operations, for example, using at least partially biometric-based identification information. Such identification information can include one or more securely maintained and securely verifiable facts securely associated with security (e.g., one or more digitally represented rights, respective addresses of identified individuals, educational certificates and / or professional certificates / degrees, employers and / or employment positions, country of residence, age, gender, etc., defined, for example, in the form of PERCosEffectiveFacts) and / or other defined attributes. Such facts can be verified using respective secure testing methods for the facts (e.g., standardized interoperably interpretable testing methods). Such identification information can also include assertions presented in a standardized and mutually operationally interpretable quantized form (e.g., numerical values, binary (yes / no), and / or similar discrete value forms), and such presentations assert one or more qualities associated with each biometrically identified person that are at least partially approximately present, or present, with respect to one or more specified purposes. In some embodiments, both such assertions and facts can be incorporated, for example, into one or more sets of biometric-based identification information carried and contemporaneously acquired by at least a portion of the owners and / or users of a receiving, carrying, and forwarding device (RCFD or other applicable RD) configuration and / or securely coupled in other ways. Such modular components can include any set of NIIPU and / or RIIPU functional sets, and can include, for example, one or more security-enhanced identity firewalls and / or awareness managers.In some embodiments, such a secure component hardware configuration can support the very low effort and / or transparent (e.g., low user friction or frictionless depending on the context) provisioning of a mobile device of each owner, other stakeholder, user, and / or authenticator of the device, which is at least partially biometric-based and at least partially obtained contemporaneously (while being operationally simultaneous at use, but recently obtained and prior to use).

[0058] In some embodiments, the parent device hosts a separate processing EBInet modular component device configuration that can use separate hardware and software processing configurations for anti-tampering of the embedded modular components respectively. Such a modular component configuration constitutes a very strict RCFD (Receive, Carry, Use, and Transfer Device) configuration that can use at least partially contemporaneous and / or physically proximate and / or physical quality people to identify at least partially biometric-based identification information. An EBInet parent device configuration such as a mobile smartphone can have a unique biometric configuration that is not as strict as a physically proximate or physical quality identification EBInet device configuration. For example, biometric recognition performed by an EBInet RIIPU modular component configuration can use, for example, fingerprint, finger and / or wrist and / or palm and / or hand vascular structure and / or composition, face and / or face component ID, and / or electromagnetic biometric recognition using 3D ultrasonic (ultrasound) recognition technology for body components, each of which can support, for example, heart rate, blood flow dynamics, and / or impedance, activity detection, and the activity detection information can be securely and inevitably associated with a person who uniquely identifies the biometric data obtained using such technology. Such a biometric identification configuration can support mask resistance. For example, electromagnetic signal timing anomaly analysis and / or 3D ultrasonic technology are resistant to photo-based, fingertip mold, and / or similar forgery techniques, and the timing anomaly analysis technology can be used for activity detection as described herein, and such technology can use one or more of spatial, temporal, and / or spectral (e.g., wavelength) analysis, which is at least partially for dealing with virtual / augmented reality and / or highly sophisticated, for example, prosthetic-based (e.g., face, fingerprint), mask / forgery attempts.

[0059] In some embodiments, a particular EBInet device configuration can support a host device, an EBInet-compliant virtual ACFD (virtual acquisition carrier transfer device) configuration, which, at the same time, uses a less stringent, non-existent, or non-existent quality biometric identification function, such as a non-existent strict device native sensor configuration, to generate at least a partially biometric-based set of identification information. The acquisition, conveyance, and transfer of such an EBInet-compliant virtual configuration (e.g., operating on a conventional smartphone) generates a biometric-based set of identification information that is less stringent than the biometrically acquired / biometric-based set of identification information of EBInet of near-real or real quality.

[0060] In some embodiments, due to the constraints of commercially available and related practical products, the biometric identification configurations found in today's smartphones and other mobile devices lack very stringent performance due to complex designs and appropriate costs for the market, as well as packaging (e.g., size and / or configuration). As a result, such devices are unable to generate biometric identification results of near-real or real quality.

[0061] In some embodiments of the present specification, the biometric identification configuration of such a mobile device is used to obtain less stringent results of today's devices and then communicate with each of the user's separate processing, highly tamper-resistant and inspection-resistant EBInet modular components RCFD, RUD, and / or RUS-compliant configurations. Such a configuration can use such communicated biometric identification information, for example, as a second element of at least partially biometric-based identification information input for REAI authentication and / or management, which is managed by a configuration of an EBInet modular component, such as NIIPU.

[0062] In some embodiments, the EBInet modular component configuration enables the management of identification information and / or the determination of purpose compliance in a distributed connection device environment / network that at least partially includes an IoT configuration. Such configurations include, for example, security and / or lighting and / or heating (thermostat control) systems, refrigerators (and / or ovens and / or telephone systems), and / or other household and / or work equipment, and / or other household and / or office / work equipment, vehicles and / or their components, manufacturing equipment, drones, and / or commercial distribution management mechanisms (e.g., supply chain shipping containers), etc., integrated with RUD components, depending on the context (e.g., mobile or stationary). Each such distributed environment uses an anti-tampering / security-enhanced identification information processing unit (IIPU) component that provides standardized, highly reliable rights and results, and a managed, distributed, secure, at least partially biometric-based identification information operating environment.

[0063] In some embodiments, using the EBInet modular component hardware configuration supports a secure and isolated processing identification information environment, and such components can share (e.g., use) at least a portion of one or more of their respective smart parent device functions, such as each of their respective packaging, power (e.g., battery), communication (e.g., antenna and / or network components), sensors, security (secure enclave), storage (dynamic and / or persistent memory storage space), and / or processing (e.g., protected processing) configurations and / or portions thereof.

[0064] Some EBInet configurations can securely pass identification information through one or more EBInet devices and / or service configurations, such devices and / or service configurations receiving and relaying IIS information, such information being able to be maintained securely temporarily and / or carried / stored more persistently. Such device configurations can support identification information "hopping", in which case such information is passed via one or more provisional nodes to one or more RUDs (and / or RUS service configurations) that use such information for event / activity identification and / or related management processes. Such information set hopping and related event / activity information can include provenance information (either directly and / or by reference) regarding IIS sequence instance step positions and other attributes, such as each participant's biometric-based identification information, so that it can become part of an IIS sequence or be otherwise securely cryptographically associated. In some embodiments, such information is provided using a device history path information that is securely associated with (a) a composite fusion identity identification information set (CIIS) of EBInet, and / or (b) a separately provided device and / or service configuration information set securely associated with stakeholder and / or user (SubPer) and / or authenticator (CertPer) IIS information sets (e.g., CBEIIS). Such "pass-through" process sequences and related REAI identification information can communicate to organizational and / or cloud information management services such as the EBInet identification information utility, including provenance information (e.g., in the form of an EBIBlockChain including each EBIBlock of such a chain) that can be used by management-side and / or end-user parties when evaluating REAI. Such pass-through devices and / or service configurations can each use an EBInet modular component configuration such as an NIIPU (and / or RIIPU) configuration.

[0065] Establishing human actor identity with certainty is an essential component in achieving cyber security, propriety and rights management, safety and performance optimization, and the universe of connected computing resources and / or event / activity instances. For example, based on at least partially biometric-based identification information of a human actor that is securely coupled with relevant stipulated facts, and other standardized mutually interpretable fitness that notifies the quality of the purpose assertion, attribute information type, it helps to guarantee (a) the authenticity of the REAI, and (b) rights, other policies, and related REAI fitness and management. Such securely combined human actor and device and / or service attribute information constructs (e.g., CIIS such as CIISIIT) can, for example, protect and manage supply, value, and other commercial chains (SVCC) (EBInetEBIBlock secure blockchain can be used), metaverse virtual or augmented reality constructs, and / or EBInet digital currency constructs (EBICoin constructs that can also use EBIBlock), and are essential components in ensuring safe and appropriate choices of who (and / or what) a user interacts with and / or depends on when participating in, for example, online social, commercial, social (e.g., government-related), affinity, entertainment, and / or educational (e.g., knowledge acquisition) networking.

[0066] Combining, in a standardized and interoperably interpretable form, at least partially physically proximal and / or physical-quality biometric-based human identification information with related device, service, and / or event / activity description information securely provides a basis for analyzing / determining the results of REAI use and / or event / activity participation. Such an information set provides an operational dimension basis for composite personal / computing instance identification that notifies the infrastructure used to evaluate / calculate appropriate REAI for user purposes. Such combinations can significantly improve considerations of the reliability and other fitness of computing resources and solve problems underlying many of today's connected computing problems and challenges. These challenges arise from insufficient cybersecurity, SVCC management, communication network security, digital currency (such as blockchain) implementation, metaverse and NFT management, and the reliability of social networking and commercial networking, all of which carry risks flowing from untrustworthy identities. Secure and efficient computing requires an integrated, standardized, interoperably interpretable, distributed human identity notification system that identifies, in a physical (and / or in some embodiments, physically proximal), i.e., essentially surely, computing activity participants and / or related stakeholders / users / CertPers and uses identification information (or information at least partially derived therefrom) as a "root" biometric-based identity anchor (biometric attribute) securely tied to each participant's descriptive (non-biometric) attributes. Such attributes provide an information dimension for calculating and / or evaluating fitness, including, for example, the reliability of REAI and / or effectiveness for user purpose achievement. Such attributes can be combined with other REAI attributes of each device, service, and event / activity instance. REAI attributes can include, for example, unique identifiers of each such instance (e.g., embedded secrets including each instance's private key), as well as information sets of the quality of purpose and effective facts.

[0067] The use of "existent" and its grammatical variations with respect to a human - specific biometric identification system in this specification means that such a system generates an "existentially reliable" set of identification information, and in an actual usage situation / context, a known set of technologies does not impair the accuracy of the existentially determined human - specific identification information of such a system (such accuracy as effectively (practically) and surely distinguishing a particular human from all other particular humans). Such existentially reliable human - specific identification excludes the possibility of successful impersonation and can include one or more anti - impersonation technologies, such technologies including, for example, verification of a living person (e.g., using electromagnetic emitter and sensor signal timing anomaly analysis) and / or recognition of at least a part of an impersonation configuration (e.g., virtual reality impersonation emitter set).

[0068] In some embodiments described herein, without limitation, the EBInet identification information set can include (a) objective indication and compliance - related quantization values (e.g., quality (cred) for PERCos objectives), (b) verifiable facts (e.g., PERCos valid facts), (c) rights and / or objective management, and / or (d) security policies, information sets, and / or can include human - specific and / or human - grouping that is easily interpretable and standardized, and / or can be securely associated. As described in the embodiments of this specification, such a system is used to identify and / or evaluate (including its authorization, for example) the computing - related activities associated with a specifically identified human and / or group of humans and / or otherwise assist in providing, in a very efficient, user - friendly, and cost - effective manner, at least partially biometric - based identification - related information for use in identifying and / or evaluating the fitness of such activities.

[0069] Authentic (or near-authentic) reliable computing activity identification / verification requires the use of advanced biometric recognition techniques, for example using the techniques described herein. Substantially reliable identification of human presence and / or behavior resulting from participation in computing activities such as participation in a social networking session, or creation of stakeholder computing activity artifacts (e.g., creation of a stakeholder's product resources for a computing activity such as a software program, document, or email), results in a reduction of the privacy of computing activities, complements the already rapidly accumulating large datasets mapping each human's activity patterns, and can predict each such human's potential situational responses (e.g., responses to advertisements). This leads to the use and some misuse of such specific human information in attempts to shape an individual's future behavior, including, for example, social attempts to undermine an individual's privacy and commercial attempts to encourage specific commercial actions (e.g., purchase of a specific product), but the ubiquitous use of biometric identification is an emerging reality and, when provided with an authentically near or authentic quality, can provide significant value, for example, through the use of EBInet configurations that provide information regarding REAI suitability, including reliability, trustworthiness, efficiency, productivity, etc. Biometrics, particularly biometrics with an actively verified authentic quality, offer more advantages than the use of passwords and multi-factor device identification configurations. EBInet embodiments support efficient, secure, user-friendly human control in the emerging connected computing universe, can be substantially extended, and can non-socially identify at least partially anonymized REAI identification information.

[0070] In some embodiments described herein, the actual or near-actual quality in the root personal identification information of some biometric-based identification information sets is (1) secure and cryptographically protected, (2) can be made anonymous with respect to social identification information (e.g., not providing an address, name, social security number), and (3) is securely associated (e.g., cryptographically hashed in combination with the attribute) with one or more descriptive but not specifically personally identifying attributes of each identification information set such as Creds and / or EF. Such an information configuration supports, for example, providing compliance notifications, characterizing information (e.g., providing verifiable provisions regarding membership in one or more affinity groups, professional certifications and / or memberships (e.g., certified plumber, doctor, expert), age and / or general approximate physical location, income, and / or level of educational attainment) without using, revealing, or otherwise providing a particular person in the "real world" who identifies an information instance or aggregation and / or violates privacy, in a secure and reliable manner.

[0071] Providing compliance notification attributes of parties associated with identity, including effectively eliminating false presentations of identity and providing a secure, flexible, at least partially biometric-based, standardized, and interoperable identification information configuration, can significantly improve the efficiency and productivity of modern computing, as well as the integrity / reliability of computing resources and the set of event / activity instances. Such functionality can support much more reliable, practical, cost-effective, and frictionless use (e.g., using contemporaneous actual or near-actual quality biometric acquisition and subsequent transparent or targeted use) when computing the management of event / activity participant identification information, as described herein.

[0072] The EBInet system can solve or improve the serious problems arising mainly from today's first-generation connected computing architectures, and there is no system that supports both an existential and / or existentially reliable identifier and standardized and easily interpretable people and other resources. Event / activity instances and their respective compliance notification attributes bring about connected computing. 1. As a result of inefficient and inappropriate personal and commercial computing activities / business products, 2. Insufficient support for commercial value chain activities such as value chain serialization management 3. Exposure to financial losses (and other financial uncertainties) due to cryptocurrency theft, or loss of keys due to the use of traditional blockchain technology, 4. Financial losses and / or other financial impacts due to insufficient identification of REAI stakeholders / participants, 5. Insufficient identity integrity assurance resulting in reputation uncertainties, risks, and consequences due to misuse / abuse of each individual's identifying information, 6. Unnecessary user overhead requirements when performing biometric identification activities, 7. Threats to personal data privacy, including the inability to properly balance the interests of connected computing participants using anonymized root biometric identification information, and being securely bound by the fact that participants characterize but do not specifically socially identify identification attribute information, 8. Providing insufficient information about the identity of participants in social networking activities and commercial networking activities, and as a result, being unable to efficiently, securely, and effectively explore and utilize social networking opportunities and commercial networking opportunities, including insufficient information interaction with other parties in connected computing, 9. Lack of reliable identification information to notify of the failure to identify resources, and / or events / activities, instances (e.g., where there is no reliable constraint on the physical proximity or physical quality of human identity and other attributes), viruses and / or infected software code, other malware-infected / corrupted objects such as emails, web pages, and documents, resulting in insufficient cybersecurity protection against threats arising from the lack of such identification information, 10. Mistransmission (such as misrouting to a fake cell tower), and / or eavesdropping and / or other interference of communication instances such as mobile phone calls, 11. Instances of resources and / or events / activities that are misidentified and / or misleading, e.g., malicious forgery and supply of tangible goods (e.g., food, pharmaceuticals, electronic components) and those that result in inappropriate and inefficient management of the supply, value, and other commercial chain configurations, 12. Costly and complex digital record and information verification implementation forms, 13. Illegitimate information (e.g., fake news), and / or other bad content, including untrustworthy / unreliable and / or maliciously altered information sets, 14. Lack of a standardized, interoperable, and interpretable REAI provenance configuration that uses, at least in part, biometric-based identification information of stakeholders, providers, users, and authenticators in terms of their physical proximity or physical quality, and 15. The inability to provide a standardized, interoperable, and interpretable means for users to characterize and associate the purpose of a computing configuration with attributes related to individuals and / or organizations, and inappropriate information and / or misinformation sets can be excluded and / or mitigated based on the standardized attribute of the fitness of the information set provided and / or created / modified by one or more parties.

[0073] The basis of human trust and understanding is substantially based on the recognition of the intentions, reliability, rights, capabilities, and / or other appropriate attributes of others (and / or groups). In a computing scenario, understanding the appropriateness (conformity) of a person and / or person-related resources and / or event / activity instances depends on the ability of the user / participant to recognize and situationally evaluate one or more intimate attributes of a third party as related to the identification of a trustworthy person. For reliability, such intimate attributes should be fixed to a fundamental and inherently trustworthy human identifier. Such considerations of conformity are generally at least partially recognized as attributes that characterize (e.g., reliability) and / or are closely related situationally / contextually (e.g., capabilities / usefulness related to one or more specified user purposes), and / or can be used to evaluate it. Determining the identification information of a person regarding who each resource and / or event / activity set instance "supports" and / or is associated with can be essential for the reliability, security, efficiency, and productivity and outcome effectiveness of human computing.

[0074] In various EBInet embodiments, resource and event / activity identification information instances are fixed to related persons who are the basis of a set of biometric-based identification information, particularly each SubPer (stakeholder owner, agent, and / or user) and / or CertPer (certifier) of one or more instances, and biometric identification information of an existential quality. Such biometric-based identification information can be securely linked and / or associated (e.g., including integration with these) to information attributes such as computing conformity notifications, quantifiable qualities for assertions of purpose, and / or specifications for context purposes that are unique to an individual in a close relationship.

[0075] In some embodiments, for example, EBInet supports obtaining the identification information of an individual with physical biometric accuracy and defining one or more attributes of such an individual in a form that cryptographically binds such attributes to an identity anchor that includes at least a portion of the physical biometric-based identification information that is physically accurate or nearly physically accurate. Such highly accurate identity-anchored information may be important for ensuring cyber-secure computing and / or for determining the context-specific (or general) appropriateness of computing resources (such as programs, documents, emails, texts, tweets, web pages, devices, and / or people). For example, in many situations, it is essential that the individual identities of one or more "behind-the-scenes" stakeholders, such as the provider / sender of an email or an email attachment, are fundamentally trustworthy. Such identification information of one or more people can then be used, for example, using a biometric identification AFSD configuration (acquisition station and transfer station), to generate and disclose (and / or use in other ways) a resource and / or event / activity instance identification information set contemporaneously (acquired near the time of use). Such near-physical or physical quality for using a biometric identification acquisition configuration enables obtaining near-physical or reliable identification information acquisition without the cost and user overhead of repeated operationally simultaneous information acquisition (e.g., using a biometric acquisition device configuration incorporated into a computing mobile device). Such information can then be used economically and practically in forming a resource and / or event / activity instance identification information set for use, for example, for computing identification and / or authorization purposes.

[0076] The EBInet configuration supports the use of biometric information of an existential proximity and / or existential quality in the recognition and use of stakeholders related to resources and / or instances of events / activities. Such support can provide attribute information that is secure and compliant with the user's purpose. Such attribute information can directly characterize each object of the REAI (including characterizing each human of the REAI that contains the object), or can also characterize the stakeholders and / or authenticators related to the object. As a result of using existential proximity or existential quality discrimination techniques, the EBInet configuration provides, in some embodiments, respective root identifiers, uniquely identifying identifiers, and / or other uniquely differentiating identifiers. Such identifiers can be encryptedly associated, for example, as anchor personal identification information used to authenticate and verify each REAI attribute and enable secure encryption that partially identifies a human in an explicit identification token (and / or a similar set of secure instance information) ecosystem. Such an association can relate biometric-based existential proximity and / or existential quality human-specific identifier information to information that characterizes such identifiers and / or, more generally, information useful for determining the appropriateness / conformance of an instance (e.g., with respect to a class / category). Such an EBInet configuration can include, for example, a highly secure association of one or more of reliability, strength (e.g., using authentication information), and / or rule and control-related attributes (e.g., digital rights management such as authorization, attributes, other policy information attributes, and related secure management / implementation specifications) with root human identification information (e.g., using biometric information of existential quality). In some embodiments, such information and implementation capabilities include providing rules and control management for auditing (such as provenance management) and rights management capabilities.Such capabilities can ensure the integrity of computing activities, including, for example, enabling more reliable serialization (supply, value, and / or other commercial chain) management, more secure and reliable social networking, identification and evaluation of optimized computing resources, reliable communication, substantially more secure and reliable digital currency implementation, and / or much more reliable cybersecurity protection.

[0077] It is not practical to widely commercially implement a substantially reliable biometric identification acquisition function within highly mobile device types such as smartphones, smartwatches, smart bracelets, smart pendants, smart continuous list bands, etc. For example, redundantly incorporating such a substantially reliable function into each computing configuration such as (a) mobile computing devices, (b) desktop computers, (c) IoT instances, and customized digital communication connection device configurations, and (d) manufacturing, supply, value chain, and / or other group-shared computer management configurations into various non-mobile computers and computer management configurations of users is not economically practical. The EBInet configuration uses a substantially proximal and / or contemporaneous biometric identification information acquisition and transfer station that can at least partially acquire and communicate biometric-based identification information having a related receiving, using, transporting, and / or transferring EBInet device configuration. Such a station can, for example, directly and securely transfer updated stakeholder person biometric-based identification information made available for other EBInet-compliant device configurations and / or upon request. Such identification information transfer may be specified by a policy implemented securely in some embodiments.

[0078] In some embodiments, rights management is used to ensure that such parties are purely or operationally currently consenting to the execution of electronic contract obligations (e.g., smart contracts implemented by executable code) and / or other commitments for enabling the execution of a set of digitally executed processes, and that the contract or other contractual terms require such parties' operationally current, direct, and explicit consent (e.g., answering "yes" or "no") using, for example, a reliable path user interface instruction configuration. Such consent (or the rejection of proceeding with such a set of processes) may, for example, require making available at least partially contemporaneous, physically proximate, or physically existent-quality biometric-based identifying information carried by such parties, and matching such information against the parties' anonymized or socially identifiable biometric identifying information. Such information may be carried within a set of transaction (e.g., digital contract) related rules and control information instances such as within a digital currency blockchain information set such as within an EBICoin sequence (e.g., EBIBlockChain) configuration, and / or registered with identifying information that is matched against service permissions. The provision of such identifying information may, in some embodiments, require accompanying user-initiated reliable path instructions to complete the provisions of one or digital contracts.

[0079] EBICoins are a form of digital currency that includes a securely managed person / digital coin identifying information instance. In some embodiments, EBICoins securely specify / stipulate each of the following. (a) Unique identifier information for one or more digital coins, such information including the unique identifier information for one or more digital coins, which may include and / or be securely associated with the date, time, and / or location of the minting or mining and issuance of such digital coins, and which are minted or mined and issued, (b) The monetary value (e.g., face value) of the digital coins that are included and / or securely associated with them, which are cast or mined and issued, and (c) At least partially physically proximate or physical-quality biometric-based identification information of one or more current human owners and / or owner human agents of those digital coins that is included and / or securely associated with them Furthermore, the following can be specified / stipulated: (d) Biometric-based identification information of one or more miners, extractors, and / or issuers of those digital coins, and / or at least partially physically proximate or physical-quality biometric-based identification information of their human agents such as agents of respective financial institutions that is included and / or securely associated with them, (e) Identification information of a financial institution EBICoin / digital coin transfer service provider that issues one or more new EBICoins to securely specify new digital coin ownership information, which uses at least partially biometric-based identification information, information to replace one or more expired / ended EBICoins, and / or (f) Authentication / cryptographic signature information of such EBICoins and / or each securely housed / associated digital coin of EBICoins, such authentication / signature executed by such miners, extractors, issuers, and / or owners, such authentication / signature can be executed by one or more such persons and / or agents, and such authentication / signature can be executed using each respective EBICerts of such persons and / or agents.

[0080] For example, EBICoin in the form of an EBIbox is used for storing the financial value owned by the parties and enables value transfer for consumer financial transactions. The EBICoin set is converted into a new EBICoin set during the transaction to reflect one or more changes in the ownership of one or more of the underlying issued permanent digital coins. For example, during the completion of a transaction such as the purchase of a product, EBICoin set X is converted into EBICoin set Y representing the transfer of the digital coin set of the transaction, and the digital coin set (which may be digitally signed by the miner or the miner's person or other issuer using EBICert and / or other certificates) where the currency is minted or mined is transferred from the purchaser to the product seller, and the securely maintained event / activity specification / policy set (such as being securely implemented by a digital contract) requires the purchaser's digital coin set to be moved from EBICoinX to the product seller's new EBICoinY. Such an EBICoin sequence reflects the start and end of the change in the digital coin ownership of the transaction.

[0081] For example, an EBICoin set can be used by its owner to facilitate / complete a financial transaction by transferring ownership of one or more of the uniquely identified digital coins contained in such EBICoins to a receiving party. In such a configuration, such EBICoins include an object EBICoin owner or owner agent representation that includes at least partially physically proximate or physical biometric-based identification information sets. The "embedded" digital coins of such EBICoins can be cryptographically digitally signed by a human of its issuer (e.g., the central bank of a country or other issuing authority), (e.g., by a human agent of the issuer using EBICert), and the EBICoin is cryptographically digitally signed (e.g., EBICert) to the EBICoin by, for example, such an owner or owner agent, substantially constituting a "parent" digital coin (a coin array including a digital coin set) that explicitly defines the owner of such a parent coin. Such EBICoins also include (or securely reference in some embodiments) one or more digital coins of the cryptographically signed issuer.

[0082] Such EBICoin-related signatures can be executed using EBICerts, and each EBICoin can include at least two signature certificates, one by the issuer of such digital coins, where the issuer's agent has signed the digital coins issued by the issuer, and one by the owner of the EBICoin, where such owner or owner agent signs (at least partially biometrically) the EBICoin containing the digital coins signed by such issuer. The EBICoin signed by such owner becomes invalid after the completion of a financial transaction using such EBICoin. One or more of the issuer signatures and issued digital coins "carried" by the EBICoin survive as a result of being incorporated into one or more new EBICoins, and such new EBICoins are owned by the digital coin recipient. One or more of the original EBICoin owner's digital coins may be held by such owner in the form of one or more new EBICoins representing the changes provided to such owner while remaining owned by the original EBICoin owner, and such one or more digital coins constitute the remaining value-changes from the digital currency used in the transaction.

[0083] The rights management of digital currency has proven to be a difficult issue regarding cryptocurrency. Password theft, loss of currency wallets, cyber security breaches of currency exchanges, and malicious digital contract codes have caused significant harm to many digital currency users. It is estimated that as much as 20% of Bitcoin may have been irrecoverably lost (estimated by both CoinDesk and Bankrate using information provided by Chainalysis, similar to that in the New York Times on January 14, 2021). Using EBInet configuration functions such as using biometric-based identification information functions of near-existential or existential quality to identify the parties who own and / or transfer the currency in an implementation form that is operationally anonymous or operationally socially identifiable can significantly reduce digital currency-related fraud and theft by guaranteeing the effective ownership of digital currency and related computing events / activities such as digital contracts and management.

[0084] For example, the process of implementing a user's rights with respect to digital currency can be carried out, at least in part, with respect to such a user's RCFD that requires an explicit user assertion / acceptance by NIIPU and / or other PPE for transaction processes such as the transfer and / or transfer of digital currency (e.g., approving the execution of the provision of a smart contract), and such process management can alternatively or additionally be required by a cryptocurrency exchange platform such as Coinbase. The biometric identification technology used in such a rights management model can, in addition to or instead of, use identification information obtained operationally in real time, such as smart device native and / or RIIPU biometric identification functions. Assertion / acceptance requirement enforcement rules regarding one or more transaction or other event / activity control processes can also apply to recipient parties such as the recipient and / or transferor of cryptocurrency, and the recipient and / or transferor need to be identified biometrically and, for example, need to be physically or contemporaneously "present" for the applicable transaction or other event / activity to be completed, and furthermore, such currency recipient and / or payer / transferor parties need to define their approvals, for example, by providing a reliable routing order that causes the signature of a transaction event / activity information set (e.g., EBICert). Such information sets can be stored and transmitted to a cryptographic blockchain such as EBIBlockChain. The digital currency sender, transferor, and / or recipient of a transaction can, in some embodiments, also sign (and may need to sign) the transfer including the EBIBlockChain event / activity cryptographic block.

[0085] In some embodiments, EBICoin, EBICoinX, and / or such EBICoin's social and / or biometric-based owner identification information can be exchanged and / or otherwise securely transferred in value for the value of a value transaction in which at least a portion of the digital coin set of EBICoinX is transferred to a new owner party on the receiving side, and, for example, can be deleted operationally simultaneously. When such a transaction is completed, at least a portion of such digital coin set of EBICoin X is securely stored, and / or one or more digital coins securely associated in other ways are owned by the new receiving side. Such a receiving side receives a new EBICoin, for example EBICoinY, that includes the transferred digital coin set. Such a new EBICoin includes, at least in part securely, a set of biometric-based identification information of a human of the new owner party of such digital coin set, or at least in part an existent or existent-like quality biometric-based identification information set of a new owner party agent, and / or otherwise securely references such a set of identification information that defines the identification of the new owner, the receiving side party of such digital coin set. At the time of such transfer of value transaction and creation of such new EBICoin, and at the execution of a secure policy instruction set, or by direct instruction by the initial owner individual or individual agent of the EBICoin (EBICoinX) transferor, such instruction includes providing at least in part biometric-based identification information, designated biometric-based identification information, and / or other such transaction-related information to at least a portion (or all) of such EBICoinX owner, and such instruction securely posts such completion of such transaction and is permanently deleted, and maintaining the EBICoinX-related status and / or event / activity information does not include ensuring the identification anonymity of such EBICoinX transferor.Furthermore, such identification information of such digital coin set transferors / previous set owners can be deleted from any identification information accommodation configuration including, for example, local EBInet devices (e.g., NIIPU and / or RIIPU) and / or service configuration memory, owner-related organizational network-based RUS management memory, and / or EBICoinXTIIRS registration information memory, by a securely implemented policy and / or by directly following the instructions of such past owners. Such memory deletion (and / or alternatively, other anonymity management such as locking the identification information in a way that parties other than the owner of EBICoinX cannot access it, for example, encrypting it and / or storing it securely in other ways, which is only available to the owner of EBICoinX) is only done by securely (e.g., through a reliable path) presenting biometric-based identification information of such an owner or the corresponding owner agent that is existentially close or existential in quality compliant with the EBInet configuration.

[0086] In some embodiments, for example, an EBInet configuration including a pervasive biometric ID environment (pBIDE) function provides substantially higher reliability, practicality, cost - effectiveness, and performance in improving the integrity of resources and / or event / activity instances and the compliance of user interest management. Such improvements are achieved, at least in part, by the use of biometric - based physical proximity and / or physical quality stakeholder individual identification, activation, and authentication techniques, as well as the use of personally - unique and user - personally - related attributes that are securely associated and maintained. Such REAI broadly encompasses considerations for many types of computer activities, including, for example, cyber - security management; social networking and / or commercial networking; supply, value, and / or other commercial chain monitoring and management; IoT and other device configuration operations; the reliability of digital currency communication; and the authenticity of news and documents. Such an EBInet configuration enables the identification, evaluation, and / or other determination, and / or authorization of the appropriateness (e.g., reliability, other compliance) of computing activities, resources, and / or event / activity instance sets. In some embodiments, the enabling of such identification, evaluation, and / or other determination of appropriateness and / or authorization is performed and / or supported by EBInet - compliant local network and / or cloud (e.g., Internet) - related services. Such EBInet device configurations can communicate with each other, and / or one or more such EBInet device configurations can communicate with remote management, utility, and / or platform configurations in order to perform, for example, auditing, rights management, and / or other attributes, and / or policies, information updates, and / or at least partially perform attribute - related resource and / or event / activity instance management. Such management can include, for example, redundantly and operationally simultaneously performing operations at different locations (e.g., across network locations) in order to guarantee the integrity of such operations by producing the same or consistent results according to specifications.

[0087] The EBInet identification information set is particularly useful in management including cyber security threats and avoidance of communication protection issues. These threats and issues include important risk factors that threaten the infrastructure and operations of modern culture, including commercial, personal, and social interests and assets. Since cyber security malware activities are mainly carried out remotely (e.g., initiated) at the physical location of the party mainly threatened, the reality of the EBInet contemporaneous period (e.g., one day) means that malicious actors other than thieves of smart devices that may steal devices do not get the opportunity to misuse devices and abuse the stored (carried) biometric-based identification information, and such thieves have a very limited time frame to use such information (policy-managed contemporaneous identification information times out (e.g., expires) and needs to be refreshed). Since physical control / theft of personal computing devices is not the main cause of cyber security attacks, the contemporaneous, existentially close, or existential quality acquisition of biometric identification information used for subsequent authentication of personal identity, and the coupling of such identity to resource and / or event / activity instance information sets can, in most situations, provide excellent cost, packaging, user convenience, practical flexibility, mobility, and security, performance compared to equivalent quality at the same time as biometric information acquisition and use of identification information.

[0088] Cyber security malicious attacks are, at their base, almost entirely attributable to the actions of remotely located parties, at least initially. Cyber security attacks are usually carried out by hackers using various reasons and usually special tools and skills (not the usual tools and / or skills of a street criminal stealing a phone), so the physical theft of a smart mobile device usually does not lead to cyber security vulnerabilities. In particular, from a cyber security perspective, providing contemporaneously (such as on the same day or within a short period of a day) identifying information of a user's existential proximity or existential quality (such as the evaluated activity) can provide the same advantages of biometric identification as operating a basically reliable biometric identification process set contemporaneously with computing activities. As a result, the physical theft of an EBInet (or other) identification information conveyance and provisioning device rarely poses threats to substances, identity-related, and cyber security (local physical access to the device configuration). For example, in some embodiments, a stolen EBInetRCFD such as an EBInet-compliant smartphone (or other smart device) can be at least partially protected by using its inherent non-existential biometric identification function set. Such a function set can be, for example, managed by an EBInet-configured RCFD mobile device integration, a secure, isolated modular component configuration (such as an NIIPU configuration), within a limited subset / refresh specification requirement (such as the remaining time of a one-day period) of a contemporaneous identity refresh policy set of such a device, with sufficient rigor and related technical and device complexity to prevent a thief (facing a very sophisticated black hacker) from misusing the conveyance user and / or owner identification information of the RCFD device.

[0089] In some embodiments, the EBInet device configuration, in many embodiments, securely obtains at least a partially biometric, physically proximate or physical quality set of human identification information associated with each securely obtained acquisition time and location, and associated acquisition device, information, and uses it contemporaneously (not simultaneously) using an anti-tampering networking device configuration. Such a set of human identification information can be obtained using a biometric identification anti-tampering secure identification information acquisition and transfer station device configuration that uses each RIIPU configuration. Such biometric information, and / or information derived therefrom, can then be transferred to one or more receiving EBInet device configurations for carrying, using, and / or further processing human computing activity-related identification information for one or more purposes. Such receiving device configurations can use and / or carry such biometric identification information (such as other related identification information), and / or information at least partially derived therefrom, and / or transfer such information to one or more further EBInet device configurations, where such information is (a) used as input information for at least partially generating a biometric-based set of identification information that is securely disclosed (and used temporarily and / or maintained persistently) for permitting one or more instances of an event / activity and / or (b) for identifying, evaluating, auditing, and / or otherwise managing and / or calculating management of a set of resources and / or event / activity instances.

[0090] Concurrent with EBInet, provisioning at least a partially biometric-based set of identification information to a human-specific person is done (not operationally concurrently) after each identified person's set of biometric identification acquisition processes. Such concurrent provisioning and use of such identification information enables the use of higher quality and more reliable human-computing activity identification information for the identification, evaluation, auditing, authorization, and / or other administration and / or management of a set of resources and / or event / activity instances. Concurrent with its use, such acquired identification information can be generated using a biometric-based identification information acquisition "station" that enables performance not constrained by the same design considerations related to mobile device packaging, cost, power consumption, sensor configuration, and redundancy (e.g., operationally concurrent acquisition requires implementation in each or multiple of a user's computing device configurations). As a result, such EBInet configuration acquisition stations, such as those enabled by the use of each RIIPU, can guarantee the reliability of the generated human-specific identification information and employ advanced and innovative techniques for secure, e.g., encrypted, association of such highly reliable identification information with identification-related, user-purpose compliance notifications, person-specific attribute information (e.g., information characterizing a person and / or each group of persons, rights management, experts, expertise / abilities, reliability, and / or similar information).

[0091] The acquisition, transfer, and use of a "station" device (AFSD) (which can be complemented by the use of AFD distribution and dedicated EBInet acquisition devices) can, for example, integrate RIIPU into a smartphone charging station that supports a parent smartphone RCFD implementation (e.g., used once in the morning to obtain biometric identification information contemporaneously (from the perspective of use) when picking up the smartphone at the beginning of the day), and eliminate the need to implement the AFD function in ubiquitous smart devices such as smartphones, tablets, watches, and notebook computers that pervade modern life, thereby enabling non-redundant or low-redundant use of the AFD function, and significantly improving the practicality of providing a virtually close or existent-quality biometric identification function. For example, such an implementation form of an AFSD biometric identification station can support both higher-quality biometric identification performance, is designed not only for secure software upgrades, but also for security and / or other performance upgrades and / or security enhancement purposes, and can support a removable RIIPU and / or other EBInet-compliant modular component configuration (e.g., NIIPU) that can be easily "unplugged" or otherwise conveniently removed.

[0092] In some embodiments, the provisioning of contemporaneous biometric-based identification information for EBInet provides, at least in part, an information set for use by each stakeholder public party in the secure disclosure of computing activity resources and / or event / activity instance identification information sets. Such information sets are, for example, disclosed to support the availability of such respective information sets and to notify other parties, for later use, as to who has authenticated and / or otherwise "stood behind" and / or otherwise been associated with a given set of resource instances. Such at least partially biometric-based identification information sets may, for example, be used respectively for a temporary period as an identification information set regarding a set of party communication processes, in which case such information can notify one or more digitally interacting parties as to who is participating in and / or who has authenticated in and / or is otherwise lagging in a communication and / or access control process and / or one or more other REAIs. At least some of such REAIs provide an instance set characterization information set for notifying events / activities involving one or more parties that identify, evaluate, receive, use, and / or verify the trustworthiness, capabilities, and / or other fitness of other parties with respect to (a) computing resource instances, (b) a set of computing rights management processes (e.g., access control), (c) a related set of communication (e.g., protocol, path) processes, and / or (d) participation and / or other involvement in an event / activity set.

[0093] In some embodiments, each use of the EBInet configuration of such a biometric-based set of identification information is time-limited "contemporaneous" and / or can be based on other means such as events caused by a device (and / or, e.g., a violation of a continuous tethering configuration), theft of a segment, etc., at the direction of the user / owner, and such identification information is trusted to be current enough for one or more purposes for the user and / or user organization, and the implementation cost strictness, cost, packaging, mobility, power consumption, sensor configuration, and / or redundancy is a burden that makes a very careful (near-real or real-quality) biometric identification information determination in real-time (e.g., operationally simultaneous with the relevant computing activity event) unrealistic.

[0094] The current use of operationally simultaneous biometric identification information-based information (using a current one that is significantly lower than a near-real or real-quality biometric identification implementation) masks serious identification accuracy and the weaknesses of current and expected vulnerabilities. Considering that it is unrealistic to implement near-real or real-quality biometric identification across various mobile and fixed devices and situations, the use of a single installation, contemporaneous (previously acquired) and more reliable (than current techniques), near-real or real-quality biometric information acquisition station for determining stakeholder and / or other user identification has much greater practical value in most cyber security contexts and many social networking / social venue settings.

[0095] In some embodiments, particularly in cyber security related and manufacturing, supply, value, and / or other commercial chain management applications, malicious organizations and rogue governments can support highly funded and well-equipped laboratories that can perform highly sophisticated identity impersonations, and any material exposure (false rejection rate) to the FRR and particularly exposure to the FAR (false acceptance rate) is unacceptable. Using an existing biometric identification acquisition station (regardless of fixed or portable), and using the station-acquired existing identity contemporaneously can be essential to implement and maintain the integrity of the cyber security (and / or supply, value, and / or other commercial chain) identification information infrastructure. To ensure that the identity associated with a resource and / or set of event / activity instances is indisputably accurate, accurate human identity acquisition and time-frame limited verification of such a person's live presence (e.g., tested biometric activity) is essential. As the use of biometric identification / acquisition technology becomes increasingly widespread and biometric identification database information is misused, the need for an indisputably accurate / impersonation-proof personal identification configuration becomes important.

[0096] In some embodiments, the contemporaneous provisioning of EBInet, while relatively robust, when combined with existing or near-existing and trustworthy biometric identification and authentication functions incorporated into certain current mobile and desktop devices (including desktop computers, smartphones, tablets, laptops, etc.), enables the contemporaneous provisioning of near-existing or near-trustworthy human-specific identification information to function as a complementary configuration to the contemporaneous existing identification function of EBInet and the non-existing biometric information function native to such devices. Such a complementary configuration, for example, provides additional factor input in managing cyber security threats and functions as additional biometric analysis to control threats including theft of malicious actor devices that are locally, physically present and / or misuse of other malicious actor physical presence and devices.

[0097] In some embodiments, one or more AFDs can be used to obtain more recently existent or existent-quality biometric-based identification information, for example, following the acquisition of biometric identification information of the first AFSD user of the day. Such further AFD biometric-based identification information acquisition may then be transferred as contemporaneous information for use by the RCFD and / or used to at least partially verify / authenticate at least a portion of the contemporaneously carried RCFD that is at least partially biometric-based. Such verification can ensure that such initially acquired biometric identification information operatively collates with such newer AFD acquisition information according to the specifications. Such further one or more AFDs can obtain existent or existent-quality biometric identification information and can be used, for example, to (a) update the AFSD biometric identification information of a user of one or more currently carried RCFD configurations, such as one or more sets of contemporaneously received / updated, at least partially biometric-based identification information, and (b) at least one of authenticate and / or otherwise verify one or more of the one or more contemporaneously carried RCFD configurations of, for example, an at least partially biometric-based identification information instance (or one or more portions thereof). Such verification tests can determine whether one or more contemporaneous identification information sets held by such RCFD configurations represent one or more people corresponding to such held identification information sets. For example, such verification tests can determine whether one or more people who are represented as carrying, using, and / or owning an at least partially biometric-based identification information set, as evidenced by the use of a corresponding sensor configuration within the field of view of a mobile RCFD of such a sensor, tested / evaluated by the AFD and / or associated administrative / management identification information service configuration (e.g., compared to such information registered and stored internally and / or accessible), are the same people.

[0098] In some embodiments, biometric identification information of the RCFD user can be obtained and associated with "real world" person identification information (such as business, social, social security, and / or similar information such as employment ID# and / or social security identifier, and / or being designated as an authorized physician). By analyzing and / or comparing the biometrically obtained identification information of such a person's AFSD (including the subsequently associated attribute information, for example, such a combination of information is registered in an identification information utility and / or other management configurations), the RIIPU, NIIPU, and / or related management and / or cloud services and / or other EBInet configurations can determine that such an AFSD-acquired information set represents at least in part the same person and person attributes as the biometric-based identification information carried by such an RCFD at the same time. Such a verification test can use collating at least in part the biometric-based identification information of such an RCFD with the at least in part biometric-based identification information of a person registered (for example, using such an RCFD and / or organization and / or cloud service configuration), for example, the composite of the corresponding person and device can be used for the at least in part biometric-based identification information set, and such a registered and / or similar stored information set is stored, for example, as a registered information set identifying each person of the user and / or owner, and such a set is stored in the respective identification information configuration of the organization and / or cloud service and / or grouped EBInet devices.

[0099] In some embodiments, one or more AFDs can be used at the place of employment for the identification of individuals, such individuals being able to initiate a biometric identification process respectively or any time one or more of such individuals enter the field of operation of the organizational configuration sensor / emitter configuration. Such individuals can be identified respectively, for example, when entering the building of the organization, office facilities, and / or when walking through one or more areas (corridors, external locations, conference rooms and / or high security rooms, common areas (e.g., cafeteria), and / or the like) monitored biometrically by such organization's AFDs, and / or when operating within such organization. Employees, consultants, and / or other persons carrying an RCFD (e.g., an RCFD supporting pBIDE) entering one or more such monitored spaces can be recognized by one or more area biometric monitoring AFD configurations. Such persons can be identified as the appropriate parties registered to carry such a specific RCFD mobile device (or can be identified as not being registered to carry it). Such an identification process can include determining whether such a person identified by one or more sets of biometric identification information carried contemporaneously with such an RCFD is registered to carry a device containing such specific person identification information, and / or whether specifically identified carrying devices are registered to carry it. In such a set of processes that are monitored and then evaluated, such an RCFD can receive, transmit, and / or exchange at least a partial set of biometric identification information from the organizational configuration AFD and / or management configuration, one or more such persons, or person / device complexes.Upon such reception, a secure PPE configuration (e.g., NIIPU) within such RCFD, and / or a secure PPE configuration (e.g., RIIPU) within such AFD configuration and / or RUD or RUS configuration can determine whether the received such identification information complies with the management specifications, i.e., whether it matches sufficiently, as required by the respective AFD and / or RCFD and / or other EBInet management configuration policies. For example, it can be determined whether such an RCFD is carried and at least partially a biometric identification information set or one or more parts thereof (e.g., CBEIIS and / or CIIS and / or a similarly securely combined information set) matches an AFD generated according to such specifications (CBEIIS identifies contemporaneous persons with an identification information set that is at least partially biometric-based, of near or actual existence quality).

[0100] Such an AFD and / or related RUS management configuration can receive and evaluate at least a portion of the carried CBEIIS and / or CIIS identification information of the RCFD, and can take one or more actions based on determining whether such IIS information matches as corresponding to the IIS stored within one or more RCFDs (such a match being securely determined as compliant with the specification). Based on such a determination, such an AFD and / or related RUS configuration can notify a management authority (e.g., identification information registration, and / or event / activity management, services), and / or pass a control instruction (e.g., at least partially invalidate) to such a received RCFD. Such an operation can be based on a determination by such an AFD and / or RUS management entity that one or more such sets of biometric identification information currently operationally obtained from such an organizational configuration of the AFD each match the IIS contemporaneously carried by such an RCFD biometric, i.e., the contemporaneously held set of IIS matches the human presence and / or human / device composite grouping and / or related event / activity information operationally currently observed and obtained from, and / or previously registered for, the biometric. Such information should match, i.e., be compliant with, the relevant policies regarding the stored person, and / or composite identification information (e.g., person and device), stored and registered information. Such information can provide a basis for identifying expected and / or authorized (e.g., registered) mobile EBInet configured users for purposes such as implementing rules and controls for user rights management, management monitoring, and / or threat analysis purposes.Such AFD and / or related network management configurations (organization and / or cloud platform, identification information management service configuration, etc.) can, in response to a failure of verification by comparison between an RCFD that at least partially conveys biometric-based identification information of a user and / or user / device and a set of user / person identification information that is registered and / or otherwise permitted (e.g., obtained by operable current monitoring), at least partially deactivate and / or control (e.g., restrain) the operation of a parent mobile device configuration that conveys such RCFD and / or such a set of compared / evaluated identification information (e.g., that can at least partially deactivate the functions of such an EBInet configuration RCFD and / or a parent compliant parent device (e.g., a smartphone or other smart mobile device) and / or control it in other ways). Such deactivation and / or control by other means can include, for example, broadcasting the location of such a mobile device, shutting off (powering off) the mobile parent device, causing such a parent device configuration to generate sound and / or electromagnetic warning signals, and / or restricting one or more functions of such a mobile device configuration and / or such an RCFD of such a device configuration or one or more of its parts (e.g., its embedded highly secure NIIPU module-style component configuration). The AFD configuration and / or one or more related services can, for example, send commands to a communicating / corresponding RCFD that has no existing permission and registered verifier, at least partially based on biometric-based identification information. Such commands can, at least partially, define stopping and / or otherwise constraining at least some of its capabilities and / or its interaction with other devices and / or service (e.g., EBInet compliant) configurations. Such device and / or service configurations can be instructed to stop the operation of other device configurations and / or appropriate network services, administrators, and / or management groups, and / or notify other device configurations and / or appropriate network services, administrators, and / or management groups, in accordance with specification information, regarding such a failure of verification.

[0101] In some embodiments, the AFD configuration can transfer an updated set of biometric-based user identification information to each such RCFD to enhance and / or replace / refresh at least in part the set of biometric-based identification information with the biometric-based user identification information used in the user and / or composite device configuration. Such information may be used, for example, in one or more pBIDE embodiments. The more recently generated biometric-based identification information of such AFDs can be used, for example, after reception, and older (or newer) information instances can be retained in a manner compliant with audit history and / or operational performance / compliance / governance (e.g., rights management) analysis and control purposes and / or specifications for second (or other) factor identification information authentication.

[0102] In some embodiments, a distributed AFD, such as within the facility configuration of one or more organizations, can make operationally recent or operationally current existentially near or existential quality biometric identification information available without sacrificing the actual cost, size / configuration, ease of use / transparency of use, and improved performance of the parent mobile device (or dedicated RCF device). To obtain at least in part existentially near or existential quality biometric-based identification information contemporaneously, a combination of distributed shared organizational / group AFDs can be used to support substantially higher quality device and / or human identification information performance in a commercially reasonable configuration.

[0103] In some embodiments, the combined use of existentially near or existential quality contemporaneous biometric information and operationally contemporaneous biometric identification information generated by mobile and other portable computing devices can, when properly implemented and used, reduce or eliminate most of the known computer security threats, including attempts at unauthorized use of local device information and / or unauthorized use of other devices.

[0104] In some embodiments, the EBInet configuration can perform user verification of activity instances, such as authorizing the coupling of conveyed CBEIIS and / or CIIS with IIS information for non-human objects such as documents, software code, text messages, emails, devices, events / activities, etc., using the reliable routing function of a smart device. Such verification assertions can use a reliable route to convey event / activity authentication, such as when a user uses a separate auxiliary reliable route for user action declaration / confirmation. Such use can include, for example, the user pressing a reliable route operation confirmation button, or the disclosure of EBInet-compliant emails and / or email-specific types (e.g., to friends, safe people, financial people, etc.) or the storage of data instances such as documents or software programs, where different button sets can include an array of buttons corresponding to different operations. By pressing one or more specific buttons in sequence or simultaneously, data purposes can be distinguished, i.e., for example, signing, registering, and publishing / sending a document, sending an email, or sending text. In some of such embodiments, some or all of such buttons may be programmed by the device user (e.g., programming a first button to start signing and publishing / registering the employer's confidential information, and programming a second button to start preparing a personal document). The above can include, for example, disclosing a corresponding user-CertPer start button set for a document or other dataset and signing such a dataset with a biometric-based EBInet identification information set that is at least partially contemporaneous and existentially close or of existential quality (e.g., using EBICert).

[0105] In some embodiments, a reliable path configuration can be physically and securely integrated into a smart device configuration (e.g., a smartphone or laptop) to perform one or more tamper - resistant reliable path EBInet operations, or such a reliable path configuration can be an auxiliary device configuration that wirelessly connects to and / or is physically fixed to a partner smart device configuration. Such a reliable path device configuration can provide a separate reliable path for initiating and authenticating (e.g., using EBICert) one or more EBInet - related operations, such as securely exposing at least in part a document and security - related device / CertPer composite to a biometric - based IIS. Such button configurations can be programmed to respond to different button - pressing configurations, such as double - pressing a reliable path button to initiate / authorize / confirm the sending of an email, or using two short and one long press of the same button, for example, to expose an IIS for a resource or to securely store a confidential document with that IIS, each corresponding to different event / activity instances.

[0106] In some embodiments, a reliable path configuration can prevent an infiltrated EBInet - compliant smart device or other compliant device configuration from obtaining and / or using a biometric - based identification information set to prove, for example, a resource and / or an event / activity identification information set. Such a configuration can be used to prevent forged signatures (e.g., mis - proving) and / or other uses (e.g., unauthorized access) of an EBInet identification information set, such as forged signatures resulting from malicious infiltration of an EBInet - compliant device configuration (e.g., a smart device having an embedded modular component RIIPU) by one or more remotely distributed bots posing as legitimate EBInet registered users, and such bots cannot fake one or more physical button activations for activating a reliable path.

[0107] In some embodiments, the EBInet configuration supports the use of a contemporaneous, at least partially biometric-based set of identification information to manage, for example, the identification of each computing resource and / or set of event instances, reliability assessment, authenticity and / or other integrity analysis, rights management (such as permitting access to a secure website and / or data store based on usage right attributes related to the identification information of the user), and / or auditing of EBInet-related events / activities (such as provenance management).

[0108] In some embodiments, each at least partially biometric-based set of identification information instances for EBInet resources and / or event / activity instances supports the following. (1) Evaluation of the suitability of users and / or participants for computing resource instances (documents, emails and texts, software, web pages, databases, networks, hardware components, devices, human resources, value chains, digital currencies, etc.) and / or management of their use; process / event instances (such as sets of communication processes such as communication protocol execution); and / or activity instances (such as online banking, online shopping, physical entry management, video networking, etc.) Such evaluation and / or management can use, at least in part, human existential or near-existential qualities, at least in part, based on biometric-based human identifiers and asserted / stipulated characteristics of each resource and / or event / activity instance (such as designated purposes, effective facts, indications of contextual purposes, and / or qualities for things similar thereto), for example, the user evaluation of REAI suitability is based on a set of operating purposes of the user and / or instance participant (if the set is more than one). (2) At least partially, perform standardized interoperable certifications and / or other notifications, assertions, and / or regulations regarding the appropriateness (e.g., usefulness, reliability, compliance, capabilities) by human stakeholders of each resource and / or event / activity instance set identification information set. Such certifications and / or other notifications include, for example, the stakeholder personally approving (and / or associating their identity as an attribute set information set) the completeness, authenticity, validity, performance, applicability, etc. of (a) each content set of the identification information set, and / or (b) the instantiation of each specific object of the identified REA instance (e.g., the identified software program, electronic document, website, human "participant" (e.g., expert), and / or device configuration). In some embodiments, such identification information of such stakeholders can be evaluated as an identification information set of their respective (e.g., associated) REA instances and / or a compliance notification attribute set for each object. (3) Manage the authorization, use, respective object (e.g., rights management related) operations, and / or participation of resources and / or events / activity instances. For example, such management may be performed by and / or on behalf of each resource user and / or event / activity participant, in which case such authorization, use, and / or participation includes at least partially a set of rights, results, and / or purpose fulfillment processes.

[0109] EBInet can securely supply at least a portion of the identification information set (and / or identification information at least partially derived therefrom) obtained biometrically from AFD within the "contemporaneous" period of such biometric acquisition of such information, in which case such acquired information is "carried" securely by RCFD and made available as needed by the EBInet device configuration for later contemporaneous (e.g., as securely specified by policy) use.

[0110] In some EBInet embodiments, the identification, evaluation, and / or management of each computing activity participant in a resource instance set uses, at least in part, standardized and mutually interpretable objects that characterize identification information, such information being, respectively, (a) one or more sets of object identification information that can be used to at least partly define and / or verify the identification information of a unique instance, e.g., a hardware instance (at least in part a hardware resource), one or more sets of identification information of the manufacturer of such a hardware object including, at least in part, one or more identification information including securely held secrets, one or more sets of object identification information embedded in such hardware-specific object identification information, and / or (b) an attribute that notifies of the suitability of each user's purpose, such attribute including, or being securely associated with, one or more sets of attribute information of an object, such as (i) one or more sets of identification information of such an object instance, (ii) an instance of one or more sets of identification information of each resource instance group (e.g., if the instance is a member of a class for which it is identified), and / or (iii) the identification information of a REAI that includes the identification information of such an object, such attributes including, for example, identification information of a stakeholder of a document or email, such as an author, and / or a provider, such as a sender, and may include.

[0111] Each attribute of such a set of identification information instances can also include, for example, one or more specified, at least in part, standardized and interoperably interpretable (a) purposes and / or contextual purpose qualities (e.g., credibility), approximation formulas (e.g., specifications), and / or (b) verifiable facts (e.g., PERCos valid facts), such attributes being usable to evaluate the suitability of an object of each set of REAI instances in fulfilling one or more user purpose-related computing functions.

[0112] In some embodiments, the EBInet identification information set can include one or more unique identifiers for each resource and / or object of the event / activity instance set, and such an identification information set can each have one or more security-related, physically proximate or physical-quality biometric-based personal certifications (e.g., using EBICerts). Such at least partially biometric-based authentication (and its information content) can be used, at least in part, to verify the suitability, attest to it in other ways, and / or supply information indicating it in other ways, for example, by effectiveness, reliability, trustworthiness, relevance, performance, and / or the like, in achieving the respective purpose of the user computing event / activity, achieving it in other ways, and / or contributing to it.

[0113] In some embodiments, each REAI securely includes and / or references one or more sets of identification information. Such sets include object-specific identifiers that include one or more unique descriptors of corresponding objects of a set of resources and / or event / activity instances, such as unique serialized abstract identifiers for each specific copy of a software program, such unique descriptors representing / identifying / linking each specific object instance of the set of resources and / or events / activities. Such sets of identification information can securely reference and / or securely include unique item-specific objects and / or instances of objects, such as identification information such as object model version identifiers, and / or company and / or model-related instance-specific serial numbers, and / or unique secrets provided by the embedded manufacturer of a hardware instance, and / or each information instance securely associated with such secrets, such secrets and / or information instances related to secrets being incorporated, at least in part, to uniquely identify different computing resource devices and / or other REAI configuration instances. In some embodiments, such identification information can further partially include one or more reputation (e.g., quality for a purpose) and / or other contextual purpose and / or testable fact (such as a PERCos valid fact) item attribute information sets, and / or other attribute methods and systems can be used.

[0114] In some embodiments, one or more item identification information elements of the EBInet described herein can be securely combined with the human identification information of each stakeholder of the biometric-based one that is at least partially physically close or of physical quality, to at least partially form a set of biometric-based identification information for each instance composite of one or more human resources, devices, and / or event / activity instance sets. Using an anti-tampering environment, such a combining activity can be performed during the IIS disclosure of the object (e.g., when storing a software program, sending an email, a text message, when conducting a video conference and / or other "live" communication event, and / or when using an Internet banking configuration, etc., when disclosing a set of identification information of a document or other REAI set). Such some biometric-based composite information sets can then be used as a set of human-related resource and / or event / activity instance set identification information, and such information sets are securely created, for example, for use during a secure process disclosure event / activity instance.

[0115] In some EBInet embodiments, such a provisioning of a substantially near or physical quality set of at least partially biometric-based identification information for a resource and / or event / activity instance set publication event can be performed contemporaneously, not operationally simultaneously, but contemporaneously with the acquisition of each stakeholder's and / or user's respective biometric identification information set. Each such composite identification information set can be at least partially cryptographically protected using, for example, one or more cryptographic hashes (which may be based on using at least a portion of the biometric information of the identification instance set when generating one or more cryptographic hash keys), and such hashes may be stored as one or more secure tokens. Each such composite identification information set can be maintained as a genuine and verifiably secure information set. Such a set can be used, for example, in computing activity permissions (e.g., authentication of authorized users) and / or stakeholder signatures (e.g., attestation) of one or more attributes of the associated resource and / or event / activity set object instance set, and / or one or more associated stakeholders and / or other objects, and / or in identification, evaluation, and / or management.

[0116] In some embodiments, at least a portion of the composite identification information set, and / or information at least partially derived therefrom, (a) biometric-based information that uniquely distinguishes one or more stakeholder individuals (e.g., who may be a stakeholder such as CertPers) associated with each information set of a particular resource and / or event / activity instance, and (b) each of the following, namely, (i) One or more EBInet electronic device configurations of each of one or more such stakeholder humans, and / or one or more other big resource target object resource instances, such as one or more pharmaceuticals, food supplies, and / or tangible instances of electronic components, and / or one or more intangible documents, software programs, communication instances / sessions (e.g., email, text), digital currency, and / or web pages, etc., and (ii) One or more process and / or event / activity sets of each of one or more such stakeholder associations (in relation to which, in this specification, generally, the event / activity set includes, at least in part, for example, EBInet configuration-related resources and process sets for content publishing events / activities, bank transaction events / activities, secure communication events / activities, text transmission or email transmission events / activities, biometric information acquisition events / activities, and / or the like), where, for example, each of such one or more events / activities is at least partially composed of a set of one or more purpose-related processes and is further composed of / associated with one or more target object resource instances (where the target object resource is composed of one or more intangible and / or tangible resource instances), one or more process and / or event / activity sets of each of one or more such stakeholder associations, an identification information set for at least one of including.

[0117] In some embodiments, the EBInet identification information for obtaining and / or using a device configuration is used to securely and reliably generate at least in part a biometric-based set of human identification information (such a set of identification information can include one or more unique identifiers for a human, such as an identification number, other unique code or designator, and / or can be at least operationally anonymous with respect to, for example, social identification attribute information). Such identification information can be used to at least in part enable provisioning of human biometrically-derived identification information to other computing environment EBInet device configurations in order to satisfy identification information requirements. Such requirements can include receiving a device configuration using such information to compute an event / activity process set (such as authentication, identification, and / or authorization and / or other management) such as an EBInet disclosure (which can be securely maintained or used temporarily (for a short period of time)) of a set of identification information for a set of resources and / or event / activity instances. Such a set of identification information and / or information derived therefrom can be used to at least in part ensure the reliability, integrity, authenticity, identifiability, evaluability, digital rights compliance, and / or other situational fitness (such as policies such as specified rules and controls, compliance, etc.) of one or more instances of humans, devices, and / or other such computing resources, processes, and / or event / activity sets.

[0118] In some EBInet embodiments, one or more portions of the composite identification information may be securely obtained using an anti-tampering biometric identification information acquisition transfer (e.g., AFSD) device configuration, and at least a portion of such identification information and / or information at least partially derived therefrom may then be transferred contemporaneously (not operationally simultaneously) for conveyance and / or use in a receiving device (RD) EBInet compliant configuration. What is important for the implementation of EBInet is that the acquired human biometric identification information includes at least partially human existential proximity and / or existential quality identification information, and such information can be reliably used to identify at least one of them for specific participation, authentication, and / or authorization in computing environment activities related to each of the resource and / or event / activity instance set human stakeholders. Such human-specific identification of EBInet can inform the stakeholders of the instance set, human intent and / or compliance, and / or the suitability of such stakeholders' associated computing resources and / or event / activity instances for each user's purpose.

[0119] In some embodiments, such human stakeholders, as well as such associated resource and / or event / activity identification information, can be used to notify regarding the value of use of one or more computing resources and / or event / activity instance sets, and / or to audit and / or otherwise characterize, and / or permit and / or otherwise manage the use of one or more computing resources and / or one or more event / activity instance sets. Such characterization, notification, and / or management techniques can include, for example, a set of standardized and mutually operably interpretable quantized quality-to-purpose assertion specifications (e.g., Cred), and / or an effective fact (EF) fact stipulation and test specification set.

[0120] In a reliable computing service, in some embodiments, a computing environment resource set can include an EBInet compliant device configuration in which each set of identification information includes secure EBInet compliant identification information, and such sets of identification information can at least partially include and / or be securely associated in other ways with one or more employees and / or other agents of each manufacturer, each set of biometric-based identification information, and / or one or more users and / or owners, each set of biometric-based identification information (e.g., such sets of information used when performing, for example, REAI and / or stakeholder certification of each IIS of REAI (e.g., if such person is a CertPers)). Such sets can securely include and / or be securely associated with a set of secret information (e.g., one or more securely held secret keys and / or key-related information) supplied by one or more uniquely identifying manufacturers. Such sets of identification information for such device configurations can be used to notify regarding one or more such device configurations and / or values of associated computing resources and / or sets of event / activity instances, and / or regarding whether they enable interaction with and / or use of them. Such sets of identification information can also, or alternatively, provide information for notifying regarding its appropriateness, including, for example, whether to permit interaction with one or more persons who are stakeholders of such one or more device configurations, and / or whether to manage in other ways.

[0121] For example, in some embodiments, a set of EBInet compliant identification information for a stakeholder's electronic device can include the following. (a) Information that at least partially uniquely identifies a device, including at least partially based on a manufacturer and / or other device stakeholders (supply, value, and / or other commercial chain stakeholders), one or more information sets that are securely communicated and / or provided and securely maintained (e.g., in some embodiments, a set of secret information securely associated with each corresponding publicly available device identification information instance, such as a certificate of each instance of EBICerts, etc.), and (b) One or more device-related stakeholder humans of such a device (owners, family members, employees, agents (including, e.g., protectors (such as administrators), etc.)) include at least partially a biometric-based identification information set, and one or more identification information sets of such stakeholder humans further securely include, in some embodiments, the quality of the stakeholder of one or more PERCos identification information sets and / or with reference to which the purpose and / or effective fact instance attributes can be determined.

[0122] In some embodiments, the identification information attributes of the EBInet electronic device configuration can securely include, for example, revision number information, manufacturing location (e.g., address, city, and / or country of origin), and / or manufacturing time and / or shipping date information, respectively. Such attributes can further include biometric-based information obtained from one or more persons of each device configuration, such as one or more persons of the SVCC stakeholders. Such an instance of biometric-based information can respectively include one or more employees and / or other agents of one or more other related parties, such as one or more manufacturers, wholesalers, retailers, value-added changers, retailers, shippers, dispensers, purchasers (e.g., instance owners), and / or SVCC parties of each device configuration. Such information can include at least a portion of the EBInet electronic device identification information set, and different such biometric-based information can be securely and sequentially obtained as such a device moves through the manufacturing, distribution, acquisition, and use life cycle.

[0123] In some embodiments, the EBInet device configuration (e.g., RIIPU and / or NIIPU configuration) can be used, for example, when formulating and managing an identification information set that supports, for example, the serialization management of SVCC and / or other tangible goods (e.g., goods in transit). Such management can include, for example, creating / publishing one or more identification information sets that characterize each object of an event / activity instance. Such objects can include identifiable tangible objects such as clothing, pharmaceuticals, food, electrical appliances, electronic components, jewelry, raw materials, construction materials, vehicles, machinery and / or their components, and / or each instance of an event / activity that includes the foregoing. Such identification information can be used for the electronic inspection, other management, distribution, acquisition, and / or other related activities of such a set of tangible items SVCC, such as use / rights, management monitoring and / or control.

[0124] In some embodiments, such as various SVCC embodiments, the EBInet acquisition and reception component device configuration operates in conjunction with network-related management configurations. The EBInet device configuration can include, for example, a physically proximal and / or physically of quality biometric identification information acquisition and transfer station (AFSD configuration), as well as a mobile reception, conveyance, and transfer device configuration (RCFD), and can further include a fixed position device configuration such as those incorporated into a building's infrastructure (e.g., for access control and / or rights management, employee and / or other human traffic and / or location monitoring / management (e.g., using AFD), manufacturing control computers, manufacturing and / or other robots, IoT configurations, household appliances, and / or the like). Such network connection configurations can solve important problems, for example, by providing a cost-effective, adaptable, user-friendly, highly reliable, and practical contemporaneous physically proximal and / or physically of quality biometric identification implementation. Such device hardware and software configurations can support, for example, applications sensitive to social networking, communication, and cybersecurity, where evaluating stakeholder motivation and / or compliance can be important for the secure / safe and / or other appropriate use of computing resources and / or sets of events / activity instances. When cybersecurity, or reliable social and / or commercial networking or communication, is a high priority, the use of such EBInet device configurations can provide, in particular with one or more stakeholder attribute information sets of PERCos (the attributes can include at least stakeholder Cred and / or EF attributes), motivation, intention, and / or other compliance evaluation tools for determining (or estimating) whether the reliability and / or other compliance of such resources and / or event / activity instances meet the user's purpose considerations.

[0125] In some embodiments, EBInet at least partially realizes the acquisition and authentication of real - world human identification and activity information by using biometric identification emitters and sensor configurations in biometric identification information acquisition and biometric - based human identification transfer “stations”. Such stations are used to acquire at least partially biometrically - supplied human identification information and / or information derived therefrom and transfer it to one or more EBInet receiving device configurations. Such receiving configurations can use such biometrically - acquired information and / or information derived therefrom contemporaneously (within specified time intervals and / or other timing condition sets), and / or transfer such information and / or information derived therefrom to further receiving device configurations. Such at least partially biometric - based information can be used for the management and / or auditing of one or more sets of processes and events that require highly reliable user identification information. Such stations (which may actually be implemented as, for example, a portable but not highly mobile configuration) can use contemporaneous real - world identification displays that include technologies that do not involve active and / or other real - world decisions, implementation costs (manufacturing costs), size, packaging, energy considerations (battery power consumption), emitter and sensor placement, implementation of multiple devices (such as mobile, laptop, desktop, IoT, large devices, etc.), and other commercial considerations, which make the extensive and redundant use of costly real - world quality, operationally simultaneous identification information acquisition systems commercially non - practical and user - unfriendly in various situations. Such acquisition and transfer stations, in cooperation with EBInet's near - real - world and / or real - world quality biometric recognition technologies, partially provide a practical and reliable composite identification information solution for highly secure identification assurance required for a set of reliable object resources and event / activity instances identification information sets.

[0126] In some EBInet embodiments, the use of at least partially biometric-based identification information of stakeholders and / or other users is at least partially managed in accordance with respective specifications of secure maintenance and enforced contemporaneous time interval management. In some such embodiments, a set of substantially trustworthy (e.g., over a period of time) resource and / or event / activity instance composite identification information can at least partially include time intervals and / or other time-based information for forming a set of time-based (e.g., limited time) and time-based management related information for secure acquisition, reception, use, conveyance, and / or transfer, and / or can otherwise be securely integrated (e.g., included and / or associated). This coupling of time with REAI identification information supports a practical biometric identification information acquisition and use configuration, and an acquisition station (e.g., AFSD) is designed to manage a time-based transfer of identification information to one or more identifications using one or more identification conveyance and / or smart device identification configurations (and / or management of reception and / or use of such information) at least partially in accordance with secure maintenance time-related specifications (e.g., secure (trustworthy) clock and anti-tampering hardware logic and memory, e.g., using anti-tampering).

[0127] In some embodiments, one or more such EBInet device configurations can function to obtain, receive, convey, use, and / or transfer (e.g., compliance evaluation, event / activity management), and such hubs can include, for example, one or more network devices (e.g., smart routers) of each such user, smart IoT devices, and / or smart mobile devices (e.g., smartphones, smartwatches, smart pendants, smart jewelry, smart glasses, etc.). Such devices can have respective embedded and / or connected and operationally separated EBInet-compliant components, such as respective EBInet modular component configurations (e.g., RIIPU, NIIPU, etc.) of the device, and the foregoing component configurations enable safe separation of at least partially biometric-based identification information auditing and / or resource and / or event / activity instance set management (e.g., REAI-related authorization and / or other rules and / or management). EBInet smart devices and / or other EBInet configurations can function to identify, convey, use, and / or transfer device configurations that have received user biometric identification information within one or more designated permitted instances constrained by time (and / or context).

[0128] In some embodiments, EBInet has one or more instances of at least partially biometric-based identification information sets embedded, overlaid, and / or otherwise inserted / integrated into digital and / or physical information objects such as documents (e.g., news reports or multi-party contracts), images, audio, video, data streams, web pages, and / or other data files (whether stored or rendered), and such identification information includes an existential proximity or existential quality of at least partially biometric-based identification information sets. For example, when such an information set is provided as a watermark information set, as an authentication / authentication information set for verifying documents such as contracts, content, etc., and / or as a visible overlay on each page of a digital contract integrated into the shape and / or dot pattern of the rendering of text and / or images, etc., it can be provided in the form of one or more overlay information sets printed on a printed page, in the form of visible and / or concealed watermark (e.g., fingerprint) information sets. Such watermarks can be clearly and / or partially or fully encrypted to embed at least partially biometric-based information into such rendered objects, and such rendering can provide and / or use EBICert for such objects. Such watermarks can provide biometric identification of such information objects (through the physical or virtual presence of the parties during creation and / or physical rendering and / or publication), for example, demonstrated by using RCFD conveyed contemporaneously with at least partially biometric-based identification information to supply such information for re-verifying / authenticating such objects (e.g., reconfirming the authenticity of an information object that already has a watermark). Such information supply and / or verification process sets can operate at the time of storage of such objects, and / or at regular and / or scheduled times, and / or at times related to events / activities, such as at the time of signing a contract or when affirming / reconfirming the authenticity of a document.

[0129] Such watermarks may be visible (e.g., oblique watermarks, footers of barcode pages, etc.) and / or invisible / visible (e.g., digital watermarks inserted and / or otherwise embedded in digitally stored and / or physically rendered objects) through information transmissible, for example, through font dot patterns and / or shape modifications, and may be inserted (used therein), for example, into digital storage and / or printed data files or one or more portions thereof. Such insertions can be made during object storage, editing / modification, rendering, compilation, use, registration, publication, and / or communication (such as when communicated for registration with one or more organizational and / or cloud object registration and authentication services), and / or during object rendering (or rendering of at least a portion of such an object). Such rendered objects can take the form of physically printed, displayed, and / or reproduced instances provided in the form of PDF, MSWord® documents, presentation materials, image files, videos, and / or audio files (inserted audio watermarks can be used beyond the display of sound wave data in the human audio frequency / wavelength range). Such watermarks can be used in the evaluation of an object, including "proving" authenticity, applicability, reliability, quality, stakeholder identity, and / or other relevant characteristics of contracts, news reports, scientific research, and other data displays, and / or enforcing rights management of the subject stakeholder. Such watermark information is cryptographically protected, hashed, kept secure, and / or communicated, and is at least in part of an existential proximity or existential quality, for example, received from an RCFD transferred contemporaneously, and / or is at least in part of an existential quality and can include biometric-based identification information (e.g., as included in an IIS) based at least in part on one or more sets of biometric-based identification information.When included within a rendered object, such an information set can provide an associated object identification information set (e.g., identifying / characterizing the IIS where the securely rendered object is embedded). Such an IIS can include securely acquired and stored time and / or location and / or other process set related information regarding an object, such as the creation, modification, communication, rendering, use, registration, publication, and / or execution instance of a contract, multimedia, or software code. Such identification information can further include one or more portions of securely recorded creation, change, communication, rendering, registration, publication, use, object content signature, and / or execution event / activity related identification information of one or more EBInet device configurations of the object.

[0130] In some embodiments, a digital object and / or a tangible instance of such an object (e.g., object content and watermark configuration) and / or a set of identification information watermarks that authenticate and / or sign each such object (e.g., a watermark in the form of an EBInet composite device identification information set provided as information reduction (e.g., a digital hash)) can be securely registered in an EBInet device configuration by, for example, one or more independent parties (e.g., one or more organizational management and / or cloud service registration utilities) and / or using a "local" registration, for the subsequent signature / authentication and / or other verification of digital and / or tangible objects (and / or parts thereof) as described above (such authentication and / or other verification can include, for example, verification of the information content of the object content and / or the object watermark instance). A printed instance of an object using EBInet-based watermark information can be securely scanned and interpreted by a computer scan configuration, for example, a printer / scanner can use an enhanced EBInet modular component protection processing environment (PPE) configuration (such as RUD incorporating NIIPU) that can be used to securely identify and / or interpret the rights associated with the rendered such watermark information. The watermark of a document can carry human identification and associated rights information to identify, for example, whether a physically present user identified by the user's RCFD transferred IIS information meets the watermark control information for identifying the attributes of a given document and / or specifically who (e.g., a biometrically identified person) can copy (and / or use in other ways) a given document. Such PPE can also, in some embodiments, interpret a printable digital object prior to printing to evaluate and / or interpret the digitally stored watermark information and, for example, determine the rights of a user to print such a watermarked object and / or display at least a portion of such watermark information by use of a rights management configuration.

[0131] In some embodiments, an isolated and protected processing environment can be used to interpret watermarks / fingerprints within a file (which can be scanned from a hard copy of each tangible paper-based document), and such PPE can interpret at least a partially biometric-based set of identification information in clear text and / or encrypted, and read / extract such a set from each electronic watermark and / or hard copy watermark. Such object interpretation can render, for example, in a form interpretable, e.g., usable, as clear text, one or more portions of each such embedded and / or otherwise at least partially biometric-based set of watermark identification information, as an EBInet modular component and / or service, for example, for a user and / or EBInet device and / or service. In some embodiments, at least partially biometric-based identification information that is at least partially physically proximate and / or of physical quality can be rendered, for example, in the form of audio information using an encrypted ultrasonic signal, and such communication information can be acquired and, for example, decrypted using an audio ultrasonic receiver / sensor configuration and a secure hardware-separated PPE modular component configuration compliant with EBInet's RD configuration. In some embodiments, the video and / or other image rendering of a data file can include a "video (e.g., the video can include a video image signal and an audio signal) subchannel" of hidden encrypted information that at least partially provides biometric-based identification information of at least partially physically proximate and / or of physical quality, such as one or more IITs and / or EBICerts. Such a channel can be embedded in each video object of the channel in the form of an interpretable and decodable modification of the source image (e.g., a modification / modulation of an unusual and / or other specifically specified color / wavelength, position, and / or intensity / brightness, and / or periodicity / frequency of such signal components within an image including a video sequence).Such information configurations can generate, for example, video data file instance embedded information that is not normally or executable / actually distinguishable and / or interpretable (e.g., lack of encrypted information and respective decryption keys) when there is no secure interpretation configuration for EBInet. Such EBInet watermark implementations can be used to identify and prevent inappropriate use of "fake" objects such as audio, photos, and / or videos ("deepfakes").

[0132] In some embodiments, such image rendering changes / modulations can be carried biometrically, at least in part, based at least in part on encrypted identification information, in the form of embedded images / patterns and / or image / pattern sequence watermark carrier information sets. The identification information of such object watermarks can be securely provided against receiving RD and / or RUS configurations such that when such (to-be-watermarked) objects are respectively stored, edited / modified, rendered, compiled, used, registered, published, communicated, and / or the like by their creators, modifiers, sellers, users, and / or other commercial, social, social, and / or other handling and / or control parties, they are automatically transferred by the respective RCFD (e.g., using pBIDE) of the user. Such information in the form of such watermarks can subsequently be readable and processable by an EBInet-compliant RD configuration such as the user's compliance RCFD configuration and can be rendered in plain text format.

[0133] In some embodiments of the EBInet watermark, the watermark may be at least partially unidentifiable by a user of the device configuration that is playing or reading the watermarked data file. For example, each watermark that is at least partially encrypted may be at least partially hidden in such a file. For example, an EBInet-compliant watermark may be hidden such that only authorized stakeholders, users, and / or device configurations (e.g., such entities (e.g., NIIPU or similar RD configurations) having registered, at least partially biometric-based identification and / or embedded identification secrets) can identify, decrypt, and / or otherwise interpret and render, communicate, and / or store such information in plaintext (unencrypted) form.

[0134] In some embodiments, a computer printer (which may be a printer / scanner) can support, for example, a configuration of an EBInet embedded security hardware modular component (e.g., an NIIPU configuration) within a parent printer configuration, and the RUD of the printer can receive, for example, at least partially biometric-based identification information (e.g., based on contemporaneous biometric information) from at least some of the users from the RCFD. Such information can be transparently provided (transferred) to the RUD configuration of such a printer for secure binding (e.g., object watermarking) to the document being printed (or about to be printed) without user interface “friction”. Such transfer can be performed, for example, by the RCFD communicating at least partially biometric-based EBInet contemporaneous identification information set in such a RUD in response to the user selecting a printing function such as selecting the “securely print watermarked document” function. If available and provided, such identification information, or one or more portions thereof, can be encryptedly embedded at least partially into a visible and / or hidden printed watermark, which may not be visually perceptible by humans and includes, for example, undecipherable (encrypted) changes of one or more types of fonts in a very subtle (e.g., not visually obvious) and encryptedly controlled (e.g., requiring a decryption key) manner.

[0135] In some embodiments, a printed object (which may be in the form of one or more images and / or may include one or more images) can be scanned (or copied) using, for example, an RUD module - based component separation protection processing environment associated with / embedded in a secure scanner (or camera), such a processing environment being able to securely interpret / extract watermark - encrypted information (e.g., read using information cryptographically hashed for verification purposes, such hash information corresponding to the composition of the object). Such RUD, RCFD, and / or related network - based authentication services can, for example, authenticate / verify such an object (and its related watermark composition) against a registered instance of such an object, and if such RUD, RCFD, and / or service, and / or its related user has sufficient object - related rights, the display of the resulting authentic information can be provided in plain text form on an RCUFD smartphone or other corresponding computing such as a laptop or tablet, and such an object can be securely stored, for example, in digital form. Similar to many other EBInet information embodiments, watermark object identification information can securely include time, date, signature and / or location of other stakeholder activities, and / or history / origin, object (a) creation, (b) reception, (c) transfer, (d) storage, and / or (e) modification, and / or other object characteristic information such as EBInet - compliant related device configuration, information, etc.

[0136] In some embodiments, such watermarked objects and their embedded identification information can be automatically communicated to a cloud and / or organizational registration service via a related EBInet device configuration (e.g., printer, smartphone, laptop, tablet, and / or network communication, configuration) at, for example, the time of its printing, other rendering times, and / or other event / activity times, in which case such information can be stored, for example, for auditing and / or future document authentication and / or evaluation purposes.

[0137] In some embodiments, when an EBInet-compliant RUD-configured image sensor (e.g., in a scanner) reads such an object (e.g., a document), such a sensor may be a component of an EBInet-compliant parent smartphone or other mobile device that views such an object using, for example, its camera configuration. Such embedded information instances can be safely interpreted, and one or more portions of such embedded information and / or the content of such a document (if such an object is encrypted) and / or the identification information of such an object can be presented to the user of such a device in a clear, unencrypted form. Such registration information may also be stored (e.g., as a registered instance) in such a parent smart device (e.g., in at least a partially encrypted form), and / or at least a portion of such an object (e.g., the watermark used is at least partially contemporaneously acquired with a physically proximate or physical quality, and the RCFD carries biometric-based identification information) can be authenticated and / or otherwise verified through comparison with such an organizational, device, and / or service configuration, and / or a cloud service storage registration object identification information set. Such stored registration information can be arranged by object type, content, and / or one or more associated organizations and / or specifically identified parties, object purpose, object sensitivity, etc.

[0138] In some embodiments, biometric-based identification information that is physically close to or at least partially contemporaneous with EBInet is received (e.g., transparently upon a printer request) by a printer compliant with the RD specification from an RCFD configuration that communicates each carried identification information set generated contemporaneously at least partially based on biometrics. Such information sets are, in some embodiments, used to create printed documents and images that each at least partially include a visible watermark that is at least partially included in at least a portion of an embedded information set used to guarantee document integrity, origin, specified usage management, and stakeholder responsibility, and / or provide related information characterizing data files printed, displayed, stored, and / or otherwise displayed / stored for visual interpretation such as documents and / or videos. Such watermarks can be visually displayed on printed pages (and / or other printed items) in one or more standardized ways (e.g., including being protected by copyright as each design configuration and / or being clearly branded), and can convey the identity of one or more parties having an interest in such printed items to stakeholders. Such watermarks can include other content object identification related information and can include the platform, service provider, and / or application and / or other stakeholder, organization brand related to the watermark.

[0139] In some embodiments, the watermark-embedded identification information can include one or more types of origin-related information that are securely processed using, for example, the following EBInet modular component NIIPU configuration. 1. The location of document preparation (e.g., including events / activities such as changes, etc.) and / or execution; time and / or date thereof; 2. The location of the device configuration and / or network used for document preparation and / or its execution; 3. Each of the document event / activity-related EBInet users / other document processing participants has, at least in part, biometric-based identification information of an existing or near-existing quality (e.g., based on biometric information obtained by EBInet AFSD during the same period); 4. One or more instance(s) of identification information regarding the device configuration respectively used for the signature of the content instance (e.g., unique device identifier, manufacturer identifier, version number, and / or one or more device stakeholder personal identifiers of SVCC); 5. Rights respectively associated with one or more REAI event / activity stakeholders, for example, if such a person is at least partially biometrically identified by such watermark information; 6. Securely managed control information of an object (e.g., content) control information, such as, when at least a part of the watermark configuration of a document is interpreted, one or more content instance security governance processes (e.g., access right control and / or communication notification such as a network that communicates to the management configuration that such document content is reproduced, displayed, and / or the like) are securely triggered.

[0140] In some embodiments, the data file (e.g., content instance) rendered for visual interpretation can carry at least partially encrypted, embedded, readily visible and / or usually hidden (invisible when printed and / or displayed) watermarks, such information being encrypted and requiring one or more keys and / or other secret (e.g., embedded unique identifier) information instances for decryption. Such keys and / or other secret information instances can be used respectively, for example, to enable automatic interpretation and authentication of the data file content including the watermark information set and / or other verification. Such interpretation and authentication can be automatically performed by an EBInet compliant device and / or cloud service configuration that reads and interprets such information, for example, by comparing such information with each database storage identification information set and / or object content registered in the REAI of the organization and / or cloud service to determine, for example, the authenticity of the data file content. Such checks can include, for example, securely embedded attribute information such as time, date, address, organization / department, and / or object of case / location created, and / or that such information set is at least partially related to a biometric information-based stakeholder and / or device composite identification information obtained by an AFD with an existential proximity and / or existential quality.

[0141] In some embodiments, registering such an identification information set and / or an event of the object content may result in respective secure communication events occurring during such instances. Such events can be initiated at least in part by EBInet for biometric-based identification information using a configuration (such as RUD) that communicates to one or more of such registration services during storage, printing, communication, other uses, and / or other events / activities. Any one (or more) of such registered instances, one or more instance parts, and / or the registration information derived therefrom can then be used when authenticating and / or verifying in other ways the REAI or one or more of its components, when such a REA instance, or one or more parts, are displayed and / or printed and / or rendered in other ways. For example, when EBInet prints a document, a printer, and / or a user's RCFD parent smart device incorporating a printer and / or EBInet module-type component configuration compliant with biometric-based identification information, such a smart device configuration can be used to display information regarding whether such an identification information set and / or object content, instance, or one or more of its parts are authentic based on an EBInet watermark, and / or display document-related attribute information conveyed by such a watermark and extracted from such a watermark. For example, the RUD and / or such an RCFD configuration can at least partially decrypt and extract information from such a watermark. In some embodiments, such extracted information can also include, for example, a unique alpha and / or numeric identifier of such an identification information set, and / or object content, an instance associated with one or more stakeholders, and / or the generation, modification, and / or communication device configuration of such an instance.

[0142] In some embodiments, the EBInet identification information set, and / or the object content, instance watermark process set data file can provide an integrated hash of document characteristics and stakeholder (e.g., CertPer signer) characteristics that includes at least in part a biometrically based uniquely identified information set of near or actual existence quality. Such an information set can be embedded in the identification information set, and / or the object content, instance data file during document creation, modification, and / or registration to a verification service for such data files. Such an information set can also be used in online and / or physical print formats, on the surface / accessories of dedicated biometric machines and / or pen configurations (e.g., having an integrated biometric reader configuration that functions as an operationally simultaneous biometric identification configuration that verifies the actual physical presence of a party identified (and matched against the identification information set) by a biometrically based uniquely identified information set of near or actual existence quality) and / or in document signing using a related printer, and instructions for printing the biometric recognition identification information activity set embed each participant's biometric information set (and / or information derived therefrom) as respective visible and / or hidden information sets on and / or in each document / data set during the printer printing, communication, and / or storage process.Thereafter, for example, a smart scanner (which may be a printer / scanner, for example) and / or a smart device such as a smartphone having a respective embedded EBInet module type component separation protection processing environment configuration that processes watermark identification interpretation software and respective decryption keys, for example, uses respective image sensors thereof (for example, contact image sensors), and / or CCD and / or CMOS digital camera sensors to read a document, generate a corresponding human-interpretable data file, and / or display a visible human-interpretable information content set, and such generation and / or display is at least partially obtained from the decryption of information content (or one or more respective portions thereof) of an at least partially encrypted EBInet watermark configuration that is at least partially visible and / or hidden.

[0143] In some embodiments, the EBInet configuration can store, communicate, interpret, and / or display at least a portion of both the object content (e.g., a contract) of the data file and the hidden watermark information of the data file. For example, at least partially encrypted, physically proximate, and / or physical, high-quality biometrically identified stakeholders (document signers, creators, distributors, recorders, etc.) of contemporaneous and / or operationally simultaneous at least partially biometrically identified identification information sets (some of which result from the use of an AFD to obtain the contemporaneous biometric identification information of the stakeholder) are part of such watermark information. Such an information set can be transferred (communicated) to a printer and / or an external computing configuration (e.g., transparently provided to such a computer and / or printer in response to a request upon receipt of approval and / or designation by the stakeholder, for example, using an EBInet configuration trusted path instruction configuration) to prepare and / or print the identification information set and / or the object content, and includes such one or more visible and / or hidden, embedded, and / or otherwise securely combined watermark information sets.

[0144] In some embodiments, resources and / or event / activity instances (i.e., objects) can be securely coupled to and / or otherwise securely associated with respective plural sets of identification information that are at least partially biometric-based. Such sets can be provided, at least in part, by respective independent parties (such parties can use the same information set disclosure platform (e.g., the same secure compliance disclosure framework) that supports standardized interoperable disclosure), and / or at least one of such sets of identification information can be at least partially composed of plural separately distributed sets of identification information that at least partially function as component information sets of such an identification information set that is at least partially physically proximate and / or of a physical nature, with some of such component information sets being provided by different parties, and at least a portion of such sets of information each include at least partially biometric-based contemporaneous physically proximate and / or of a physical nature identification information. Such an aggregated information set can be configured, for example, as a master IIS (e.g., a parent superclass of an at least partially biometric-based IIS instance of a resource and / or event / activity instance (REAI)). Such a master identification information set has respective master IIS subset components (contextually appropriate) child IIS information instances (e.g., managed according to applicable specifications, e.g., capable of at least partially biometrically identifying different people).

[0145] In some embodiments, when the child IIS of the master IIS is supplemented with non-master IIS information, and in that case, the master can update with such supplementary (and / or modified) information (e.g., form a new master version with the same unique root (e.g., class) identifier) to at least partially reflect its role as the superserset REAIIIS as a set of biometric-based identification information. Each supplementary / modified child (e.g., extended) component set can use at least partially biometric-based identification information, and such biometric-based information uniquely identifies one or more stakeholders associated with at least a portion of each set of information instances. The child IIS can be based at least in part on publicly / designated template frameworks (e.g., with respect to their respective field types and displays) such as those each publicly disclosed by the user's employer, affinity groups (AAA, ACLU, NRA, IEEE, etc.), family groups, social networking groups, national governments, etc. The user's RCFD can store such a child IIS, for example, as an individually deployable component of the IIS configuration.

[0146] In some embodiments, the RCFD can store the respective device / person and / or the master CIIS and / or CBEIIS of the person, such as individual and / or aggregated human grouping (organization of group member information, family, and / or other aggregation), and a particular person can have a master, child, and / or multiple individual IISs within the IIS configuration, and one or more of such IISs can be available for regular and controlled secure transfer to an RD and / or RUS configuration compliant with the EBInet configuration (e.g., based on and / or securely associated with a set of security rules and control information for individual and / or multiple (class / group) of such IISs). In such embodiments, extending the identification attribute information in a complementary and / or other way of the component identification information set can include various forms of information instances such as REAI characterizing the quality for testable valid facts and / or target assertions information, and / or REAI audit and / or provenance information related to characterizing the object of the master IIS.

[0147] In some embodiments, an EBInet device configuration such as an RCFD can carry a device, one or more of its owners / users, and / or a master IIS for the device / user and / or other REAICIIS, and each such master is a separate resource object instance. The child IISs transferred by the RFD (or AFD) can be configured by "drawing" their information sets from any of those master IISs, and when carried, can be configured from the received children generated from, for example, two or more master "parent" IISs. The master and child IISs can be globally and / or selectively published and securely registered, for example, as encrypted and protected REAI instances available from a network such as a cloud and / or other organization managed identification information service, each having its respective IIS.

[0148] In some embodiments, biometric-based personally identifiable information that is physically proximate or of physically comparable quality to EBInet, at least in part contemporaneously, supports identification information that is very convenient (e.g., can be provided transparently) for social and commercial network opportunities, as well as threats, assessments, and decision-making. Such identification information can include verifiable valid fact attribute information, such as a person's age, occupation, authentication, gender, criminal and / or civil legal background (e.g., litigation, indictment, judgment, etc.), education level / degree / concentration, affinity membership, nationality / residence / workplace country and / or location (e.g., city), and / or other non-social but highly important attribute information, and can be cryptographically securely included and / or securely associated in other ways.

[0149] In some embodiments, a biometric-based attribute identification information set that is at least in part contemporaneous, physically proximate, or of physically comparable quality can include the achievement of a particular objective (e.g., quality specifications for the objective) and / or the quality for social and / or organizationally identifiable information, as desired or selectable. For example, such a very useful identification information set, such as can be carried in a RCFDEBInetNIIPU module component configuration of a mobile parent smartphone, can support transparent, easy, and essentially reliable personal identification that supports informed assessment and decision-making by connected computing participants and / or their EBInet-compliant computing configurations.

[0150] In some embodiments, EBInet supports an EIFF (Existential Identity Face Forward) (e.g., supplying IIT) process set that includes a biometric-based set of identification information that is at least partially physically proximate or of physical quality, each transferred to request or receive a device configuration compliant with the specifications when meeting the REAI identification information requirements and / or usage functions of users and / or stakeholders. Such ETFF identification information provisioning can transparently transmit to the sender-user basically reliable human identities and situationally relevant attributes, conditional on compliance of the interacting EBInet configuration with the identification information transfer and reception policy specifications. Such an EIFF process set uses, for use in FD and RD configurations, a secure component configuration (e.g., NIIPU) in a highly reliable and tamper-proof manner, at least partially using biometric-based identification information of at least partially physically proximate or of physical quality. Such identification information transfer can take the form of transferring, from an EFF that supports the parent mobile device RCFD, at least partially contemporaneous biometric-based (e.g., at least partially biometrically derived (e.g., determined)) situationally relevant identification information, identification information that can be used to securely and surely permit actions (events / activities), and / or identification information that can be at least partially securely associated with and / or integrated into any computing resources and / or identification / audit information sets of events / activities. Such a transferred ETIFF identification infrastructure supports using a physically accurate set of human identification information to calculate approvals for other information usage results, such as enabling pass / fail decisions, and / or specified rights management, compliance assessment, and / or cyber security assurance.

[0151] In some ETIFF embodiments, each "master" identification information set of a REAI is configured to support the extraction of a subset of applicable information elements for inclusion in each REAI child IIS of such a master set, and such child IISs are configured by the user and / or each computing configuration of the user according to the specifications and / or as situationally appropriate to meet the purposes of each user and / or stakeholder. Such a child identification information set can be generated to provide a contextually appropriate subset of such a master set, and such a subset can provide at least partially biometric-based identification information and can further provide situationally appropriate identification information such as information consistent with the respective purposes of the user and / or other stakeholders. For example, some contexts can appropriately require different sets of highly confidential personal attributes such as one or more of social security number, confidential employee and / or other organizational ID, age, address, phone number, health information (e.g., health impairments and / or blood pressure information, cardiac function information (e.g., rate, electrocardiogram and / or related information), genetic information such as disease and / or accident history), financial information (e.g., creditworthiness, income, debt, and / or donations), legal information (litigation, results of litigation / trials (e.g., judgments), settlements), family information (e.g., information identifying parents, children, and / or other relationships and / or otherwise describing them), etc.

[0152] In some embodiments, the context identification information manager configuration can determine which elements and / or combinations of elements of the REAIIIS, such as the master REAI or a specific set of child identification information, should or should be made available in the IIS as, for example, at least partially biometric-based child REAIs that are existentially close or existentially accurate, in a given situation, based on, for example, human social networking purposes or organizational supply chain management purposes, and their respective contexts. In a social networking context, for example, one or more specific portions of user identification information stored in the master REAI may not be made available for use in such information use regulations based on the expected context of use of such information, such as in one or more social networkings, whether permanently stored or formed and used ephemerally, for example, a purpose class (e.g., social networking with others), etc. (e.g., if inappropriate, designated not to be revealed through use).

[0153] In some embodiments, the context identification information manager configuration can securely and contextually manage (e.g., control in response to context variables) the receipt, transfer, and / or appropriateness of use of one or more portions of the EBInet device configuration and the identification information set. Such a context identification information manager configuration can operate, for example, as an EBInet configuration service set (operating in an RIIPU or NIIPU configuration (root or networked identification information processing unit configuration)). The EBInet modular component configuration is a hardware / software configuration of a secure, economical, and protected processing environment. They support the use of cryptographically protected IDs that are securely cryptographically associated (e.g., in the form of a UID) with each intangible information object that identifies / characterizes, for example, computing resources and / or event / activity instances and includes an identification information set corresponding to the computing resources and / or event / activity instances. Such an identification information set at least partially includes biometric-based identification information of the stakeholders of such instances, and such identification information includes information that notifies information regarding each such instance. EBInet RIIPU incorporates secure management of biometrically proximate and / or existential quality, stakeholder biometric identification information acquisition, and securely combines both stakeholder biometric identification acquisition, identification information analysis of resources and event / activity instances, and related management into an economical and compact, at least partially isolated, securely protected processing hardware / software configuration. NIIPU is used to at least partially securely manage the use of biometric-based identification information and can perform biometric identification information acquisition when used, for example, with a parent configuration sensor configuration depending on the implementation. In some embodiments, NIIPU can securely manage the creation of an IIS based on such biometrically acquired identification information or biometrically received identification information.

[0154] In some embodiments, the EBInet master and / or child IIS are used as information constructs that can be operably received, carried, transferred, and / or processed by an EBInet device when available and / or situationally appropriate. For example, a mobile RCUFD (Receive, Carry, Use, Forward Device) configuration is used to create a contemporaneous biometric IIS and / or receive identification information that is at least partially physically proximate or of physically proximate quality from a physically proximate or physical quality biometric information acquisition configuration (AFD), and such a mobile configuration can use, carry, and / or transfer such an information set and / or a portion thereof. Such information can, in some embodiments, be used, for example, by an EBInet compliant receive and use device configuration (RUD), and such information is provided for a given social networking context (e.g., social interaction), a given professional activity (e.g., performing work), a given social activity (e.g., paying taxes, or entering into a commercial or other contract / transaction), and / or the like.

[0155] In some embodiments, master IIS elements may be maintained as conditionally anonymous as described herein. For example, one or more securely maintained (e.g., socially identifying) identification information elements (e.g., social security number) may be made available for use, e.g., in a child IIS, only under specified strictly controlled circumstances, such as in accordance with specified rules and controls between compliant devices and / or service configurations, based on the context of the exchange of the IIS set. Such an exchange may require satisfaction of conditions (having appropriate attributes) for another party, service, and / or device configuration in order to accept / receive the transferred identification information and / or to be permitted to receive such information, and may be conditioned based on the situation / context of such an interaction, including the rights / attributes of the person identified by the associated device, service, and / or biometric, and / or other, related interaction conditions.

[0156] In some embodiments, the EBInet EIFF identification information infrastructure adopts a shared information repository configuration in which information elements can be shared / used within and / or by multiple instance identification information sets. For example, a stakeholder (including resource instances) may be associated with multiple different resources such as different devices, and such a person has a stakeholder relationship with each of the multiple different resources, (i.e., is a stakeholder with respect to them), which is an important attribute. In such embodiments, the master IIS, and / or each child IIS of one or more resources that describe such a stakeholder person, can include those used as each securely coupled attribute set (e.g., secondary) of one or more resources of such an attribute set, and can include components of the identification information set of such one or more resources. Such stakeholder information can be notified, for example, regarding the suitability of stakeholder resources for specific and / or intended user purposes, such as the achievement of user computing activity purposes.

[0157] In some embodiments, the EBInet environment at least partially includes a pervasive biometric ID environment (pBIDE). Such an extensive ID environment means that, at least in part, for the evaluation and / or management of each computing event / activity of such a configuration, a biometric-based, physically proximate or physical quality identification information set (IIS) that is contemporaneous and at least partially carried by various people on the RCFD is used for ubiquitous broadcast or other communication to the RD configuration. A pBIDEEBInet instance can provide one or more relevant available IISs (e.g., EBICerts) when enabling the execution and / or auditing of events / activities, such as when a person / RCFD composite is required to interact with a RUD, RUS, and / or another RCFD, and / or when it is useful in other ways. Such use can be transparent and / or require little or no action and / or knowledge / notification on the part of the IIS carrying the RCFD user. The use of IISs, such as IITs, to enable event / activity purposes can include, for example, accessing a secure database, visiting a secure website, opening a door lock, starting a vehicle, publishing a REAIIIS, executing a serialization supply chain instance, participating in social networking, participating in digital currency transactions (e.g., using EBICoin start and end digital coin / owner (fusion identification entity) coin transfer digital coin sets), and / or sending and / or receiving electronic mail, text, or other communications (e.g., EBInet that publishes and transmits an electronic mail or text to a recipient, and EBInetRUD management regarding such a permitted person as the party permitted to open such a communication or as the only party).

[0158] In some embodiments, an EBInet identification information carrier device (e.g., a person / RCFD) can be identified using the near-field communication (NFC) interface of a smart device (e.g., a smartphone) in a process set comparable to a "pay by phone" application, and the smartphone user can walk, for example, to a check-in desk, a store merchandise set purchase checkout configuration, or an entrance control kiosk and physically place / present the smartphone near the NFC (or other short-range) interface of the RD device (guided, for example, by a printed object). The smartphone and the device can then communicate with each other, and the RCFD of the smartphone can contemporaneously carry out biometric identification of an existential or near-existential quality, including any relevant E / A management, information, and other associated attributes. Further, if necessary, the user can perform smartphone-based operational simultaneous biometric identification for authentication purposes to permit the RD device to unlock or respond operationally based on the RCFD transmission device / person identification information (e.g., in the form of one or more IISs), and such information can include both the operational simultaneous biometric and identification information of the contemporaneous person of an existential or near-existential quality of the smartphone.

[0159] In some embodiments, the use of such pBIDEs can include distributing to other parties, such as via their device configurations. Such distribution can be used to determine whether a search to find / identify those who own one or more identification information designating attributes, e.g., when one or more of each other party's IISs (and / or their information components) are physically proximate, is satisfied. Such an attribute match can satisfy one or more requirements as a set of precursor functions that need to be satisfied first for an applicable event / activity to occur. For example, pBIDE precursor electronic interactions to explore matching attributes / interests can then result in a set of direct electronic and / or physically present person-to-person interactions. Some examples of such pBIDE startup activities can include IIT and other RCFD / person RCFD pBIDE broadcasts that receive and respond to such broadcasts, which can result in, for example, interactions between people registered as belonging to a particular affinity group (such as AARP, ACLU, NRA, etc.) or between people / devices, interactions between season ticket holders of a professional sports team (such as sharing a table at a coffee shop), social networking communications between classical music fans, EBInet device / person interactions between each device / employee instance of a large corporation, and / or other shared / common interests and / or sets of attributes. Communications using pBIDEs can be conditioned on a match of specified IIS information attributes, and further can be conditioned on the IIS communications and / or usage management specifications of one or more of each respective event / activity participating EBInet transfer and / or receiving devices and / or service configurations, such management specifications being specific to a given event / activity category (such as directly meeting with another member of an affinity organization).In such embodiments, one or more IISs (e.g., IIT and / or EBICerts) may be available to carry the RCFD for use as a user, and such IIS information is transferred to one or more RUDs and / or RUSs, and such information is made available by such RCFD according to respective specifications (broadcast at one or more given locations, times, and / or other one or more conditions) and / or direct user instructions. In pBIDE, identity information transfer can enable the provisioning of such information to receive party evaluation, response, and / or EBInet-related event / activity management, and such evaluation, response, and / or management is at least partially based on IIS content.

[0160] The EBInet device configuration can be securely transported and / or stored in other ways (e.g., in a remote security information store), and then, for example, transfer IIS information such as information made available using pBIDE that is at least partially biometric-based, existential quality. In some such embodiments, the EBInetRD configuration can request identification information from each RFD (e.g., RCFD) configuration in response to its provision (e.g., periodically broadcast by an EBInet transfer device). Such information can include, for example, the contemporaneous identification of each device and / or user of the configuration as an existence identification token, as each IIT, other IIS, and / or one or more of their parts. Each such request to receive IIS (or a request to be notified of the presence of a person and / or other REAI) may be periodic and / or, for example, based on the context management of an event / activity process set, such as based on a request for one or more specified receiving device configurations (e.g., initiated by an RD sensor / human identification configuration that recognizes the presence of a person, e.g., a human, or a particular person), and / or as a result of a request initiated by a user of each EBInet configuration. Such identification information can include, for example, at least partially contemporaneous, existentially proximate or existential quality, at least partially biometric-based IIS provided by the RCFD, or one or more of its parts.

[0161] The existence of specific fake media and other disguised individuals has emerged as a major social and cyber security issue. Those who use / participate in the EBInet configuration and carry the RCFD can, in some embodiments, be securely provided, contextually managed, broadcast, and / or perform the request and response provisioning of root biometric identification information that is physically proximal and / or of physical quality, and in some embodiments, be securely associated with such root identification information, authentication information, and / or other testable / verifiable valid factual information, for example, by forming an EBInet identification information digital wallet, to address this issue. For example, a person can carry such an RCFD identification information provisioning configuration (for example, when carrying a pBIDE implementation), which can include (a) automatically unlocking the door lock when the person approaches or grasps the doorknob, (b) automatically signing such a person into a secure website when using a bank account management portal, and / or (c) dealing with a group of people, such as during a politician's press question and answer session.

[0162] Regardless of the context, whether writing software code, sending an email, participating in an online social networking session, and / or being observed and recorded by each party of one or more known and approved, and / or unknown events / actions, the RCFD carrier can, in some embodiments, configure its mobile EBInet device configuration to broadcast specific approved identification information and / or respond to event / activity context reception requests for such information, and such information provisioning can be securely managed by context-related rules and controls.

[0163] The EBInet demonstration of the physical presence and / or existential quality of people associated with an event / activity, in some embodiments, requires a control infrastructure that organizes presence information according to the purpose of such information collection for the management of personal information privacy and / or the complexity of participant information. For example, during a politician's press conference, media attendees can turn off their broadcast function, as a result, the identification information of the politician and the politician's supporters can be safely collected, while at the same time press member information is not broadcast (or received / accepted by the media that records the RCFD). As another example, during a politician's political convention, the attendees include various types of participants (with different roles). In order to limit the complexity of contextually unnecessary information and ensure contextually appropriate privacy, politicians, the politician's assistants, and security and facility staff can be instructed to set their devices to broadcast (or request and respond), while rally attendees can be instructed or recommended to turn off the RCFD identification information.

[0164] In some embodiments, the RFD, RUD, and / or RUS that monitor and / or manage rally event activity components can receive and store such EBInet-compatible identification information in a database configuration that uses a field-based structure based at least in part on the role of the RCFD owner / carrier, and can present a user-configurable interface that displays filtered information based on the interests of the RCFD user / user employer and the device / user event activity context.

[0165] In some embodiments, the monitoring and management of events / activities can enable the selective and at least partial secure identification of current devices / people, for example, according to (a) the identification information of reporters and / or other attendees and / or other such fact-checking, and (b) security-related category / type attribute information such as the identification information of politicians and / or other factual roles (e.g., members of a U.S. congressional committee). Such received identification information can be securely associated with the CIIS information of such content that notifies the media content (or other applicable content) and / or information regarding such media events / activities. For example, a person of a camera recording a political event can be securely identified as a party responsible for recording the event / activity by their broadcast identification information, and such identification information can be securely coupled to such recorded event information, and such recorded event information further includes broadcast identification information including the role type of the event / activity participants.

[0166] In some embodiments, the pBIDE interaction can include encryption functions and services such that a specified user and / or user class (group or category) can decrypt the pBIDE identification information IIT and / or other IIS (and / or portions thereof) of another person or group / category of people. Further, in some embodiments, decryption of one or more portions of each pBIDE identification information set can be performed only between a given specific event / activity instance and / or type. Such encryption functions and services can include one or more identity information cloud services that receive and register CIIS and / or CBEIIS information from the AFD and / or RCFD and then perform EBInet device configuration identification (including execution of the encryption service) that includes authenticating one or more applicable EBInet devices and / or related people. When one or more such devices and / or related people are authenticated and meet the applicable specifications, such encryption services can each provide an encryption key for securely pairing / grouping such devices and / or people. This approach enables protection of confidential information that can be communicated as a result of a broadcast / polling / delivery where the EBInet device configuration and / or related people are not initially known to each other. This allows a party to first securely identify / authenticate other parties before disclosing such confidential information, and such identification / authentication enables an authorized supply of encryption keys to the identified / authenticated parties. Such identification / authentication and subsequent key supply includes a two-step process where a person, device, or person / device pair is first identified / authenticated, which enables a second set of security processes including authorized secure transfer and / or decryption of one or more further portions of the identification information set instance to meet specified requirements.

[0167] In some such pBIDE embodiments, the ID information may be available via wireless communication and / or a wired connection, in the form of a biometric-based user personal identification information set, and / or in the form of a composite identification information set that includes at least a partially physically proximate or physical-quality biometric-based owner and / or user information set combined with an owner and / or user corresponding RCFD and / or other RD and / or RUS (Received and Used Service) configuration identification information set. Such an information set may be carried, for example, within each respective carrier mobile RCFD of such an information set and transferred therefrom (e.g., communicated by broadcast or other means), and / or in some embodiments, may be available through the provision and / or retrieval from one or more non-carried server-based information stores. Such an IIS instance (and / or a portion thereof) may be available, for example, when carried by an RCFD, for the authentication of a human (e.g., a device configuration owner and / or user) or device / human presence / identity for event / activity authorization (e.g., unlocking a front door, inputting into an online database, inputting into a consistent transport container, using EBInet EBICoin digital currency, or sending and receiving communications such as email) and / or for other event / activity performance / management (e.g., using at least a portion of such IIS information for the disclosure of an EBInet REAIIIS instance). Such an IIS (or one or more portions thereof) may also or alternatively be securely coupled to each respective associated REAI and such combined IIS information and / or one or more portions thereof, and may be available respectively from an RCFD and / or a server-based information storage device configuration, and such information may be used for human and / or other REAIIIS information EBInet configuration-related assessment, activity management, identification claim or requirement fulfillment, and / or presence auditing.

[0168] In some embodiments, information representing such an IIS and / or one or more portions of such an IIS may be made available in the form of one or more tokens (IITs) and / or at least partially encrypted IIS. Such tokens may, for example, generally be broadcast to carry, e.g., the IIS (e.g., identifying possible candidates) and associated REAI usage opportunities, and / or such information can be securely transferred (provided) in a manner targeted to an RD configuration compliant with one or more EBInet configurations, such targeting being at least partially based on the receiving device identification information attribute of one or more types, e.g., the NIIPU of the receiving device that securely carries the IIS that authenticates / designates the object having one or more specified attributes. Such attributes can include one or more specific types of valid facts and / or qualities for each purpose, and the NIIPU of the receiving device is permitted to decrypt and read / use one or more portions of the broadcast information set if such receiving configuration has one or more of the specified attributes. The foregoing attribute-dependent access to the broadcast identification and / or related information can effectively make the secure distribution of such information targeted to one or more parties and / or devices having one or more such attributes such as one or more defined verifiable / verifiable valid facts.

[0169] In some embodiments, the identification information (e.g., IIS such as IIT) is broadcast and / or transferred when the user's RCFD is in the physical vicinity of one or more RD and / or RUS configurations, as demonstrated by an RD that wirelessly projects (e.g., using Bluetooth® or other short-range wireless means) a generated output signal received by the RCFD (which may be composed in part of pseudo-random signature signal elements for unpredictable unique identification), identifying that such an RCFD and / or RCFD user is in an EBInet configuration where interaction is desired, establishing a round-trip time (receiving a response signal set) and verifying the presence of one or more of the potential receiving RD configurations as being within the physical vicinity by returning to such a broadcast / transfer configuration, and is a proximity parameter securely specified by the rules and controls (e.g., rights and identification information management specifications) of such RCFD and / or other RD and / or RUS configurations.

[0170] In some embodiments, when the RCFD is in wireless physical proximity (and thus communication such as Bluetooth®) to one or more RUDs and / or RUSs, the RCFD can broadcast its presence (and the availability of the identification information of such an RCFD) by transmitting (a) initially unencrypted non-confidential information and / or (b) encrypted information that can be received and decrypted by an authorized EBInet device configuration, such information describing the initial / introduction characteristics of such a broadcast RCFD and / or RCFD user. For example, such an RCFD can broadcast a "I am here" message, or an indication of interest in a group (e.g., social interaction), such as "I am interested in tennis" or "I am a physicist and can provide valid facts regarding my Ph.D. in physics; can your IIS declare / demonstrate that you are a physics student, scholar or professor; is this declaration a verifiable valid fact declaration?" (or, instead of such a question, such a valid fact declaration may be tested automatically (with respect to accuracy) or at the initiation of the querying party). For example, such a broadcast of information including an RCFD that requests characteristic information of the RD and / or RD stakeholders can be followed by secure communication between one or more RDs (which can include using one or more RCFD security module components (e.g., NIIPU)) that meet the RDs that characterize one or more criteria and the user (e.g., NIIPU configuration) carrying such an RCFD. In such a configuration, for example, cryptographically protected rights management operations can determine the suitability of the transfer (which may include mutual exchange) of one or more portions of a relevant IIS information set of the securely protected communication device (e.g., including each user's CBEIIS and / or CIIS) and / or a child IIS device authentication information set. Such an information set can communicate between the respective separate modular components (e.g., NIIPU) of such an EBInet compliant device configuration and, for example, can securely perform encryption and decryption operations.When represented by unencrypted or at least partially encrypted IITs and / or other IIS instances, such broadcast and / or transfer of ride-sharing information can be used by a user and / or to demonstrate the co-presence of the user receiving the RD configuration during the same period or operationally simultaneously. Such broadcast and / or transfer can support, for example, securely transferring / providing user and / or device configuration IIS instance information, or one or more portions thereof, for use in securely executed public and / or event / activity permits and / or other management (e.g., SVCC, digital currency transactions, social networking, documents and / or programs and / or communications, and / or other activities (including, without limitation, creation, publication, registration, monitoring, use, reading, participation, access, editing, deletion, sharing, selling / exchanging, transmitting, receiving, etc.)) management and / or auditing.

[0171] In some embodiments, the pBIDE extensive IIS availability related to the transfer, reception, and / or use of IIS information is at least partially securely managed by the participating EBInet device configurations and / or service applicable and securely implemented rules and control specifications. Such specifications are processed in respective hardware and software tamper-resistant modular components (e.g., NIIPU) and / or related network-based service configurations. Such IIS can be automatically and transparently provided without event / activity-specific user actions for situations where there are EBInet configuration requirements or specifications for such identification information and / or for situations where, for example, the event / activity calculation results can be optimized due to the pBIDE availability of such information, and can include a set of at least partially contemporaneous at least existentially close or existential-quality biometric-based identification information that is carried (e.g., highly mobile).

[0172] In some embodiments, the pBIDE configuration supports enabling technologies for securely managing the IoT (Internet of Things) universe or other (more limited in scope) IoT configurations. Such a universe can include, for example, a vast array of IoT instances (HVAC systems, drones, consumer electronics (e.g., TVs, refrigerators), security systems and door locks, automobiles, embedded systems, wireless sensor networks, control systems, home and building automation, etc.), and a population of such IoT instances includes a distributed configuration that is at least partially managed by pBIDE prevalence identification information. Such an ecosystem can be managed by using the fabric of identity rights management ecosystems and sub - ecosystems, and the electronic universe is highly diverse and includes at least in part biometric - based physical proximity and / or physical qualities, rights, and associated identity characteristics / attributes, commercial and human social and personal connected computing governance infrastructure that are managed. Such infrastructure can be managed, for example, by using the user and stakeholder context purpose - fulfillment elements described herein that together include fundamentally trustworthy object identifiers, object attributes, object - related rights, and a connected computing event / activity management framework.

[0173] In some embodiments, the pBIDE configuration can be set to automatically broadcast (e.g., periodically and, for example, in accordance with the respective specifications of one or more EBInet devices) an IIS (e.g., a situationally appropriate child IIS of a (master)) that is used as a transport “identity wallet” composed of one or more identity attributes regarding the transport device of the RCFD and its carrier / user. Such an IIS can be queried, for example, according to specified rules and controls, regarding whether one or more parties have one or more specific attributes (e.g., presented as a verifiable PERC fact, as a credibility assertion, and / or as other at least partially securely managed metadata). Such attributes can include an EF that defines or requires a definition of skills, etc., defined by the broadcaster of such attributes and / or the employer, hobbies, organizational memberships, past and / or current occupations, recognized certification authorities (e.g., educational institutions regarding the type and field of an individual's degree (e.g., using EF) (e.g., defined by an accredited utility and / or an accredited service) of the recipient. Such an attribute broadcast can be initiated as a result of, for example, the carrier / user of the RCFD determining / recognizing the location, specific address, and / or general area / neighborhood of the RCFD (e.g., determined via GPS and / or a cellular configuration), identifying a time instance (e.g., using the secure clock configuration of the NIIPU), identifying a local WiFi network (e.g., the presence of a specific office building, residence, or office-related configuration), and receiving an “existence” identification information signal (e.g., an IIT) regarding the location of the person, device, group, residence, and / or workplace configuration, location, and / or the configuration of a person and / or commercial establishment (e.g., a coffee shop) that receives an identification information broadcast (e.g., communicated using Bluetooth®).Such attribute notifications may also be initiated by the carrier / user responsible for such RCFD, who defines one or more testable attributes and / or provides one or more quality-to-goal assertion sets. For example, a quality-to-goal assertion for a broadcast (and / or reception) responsible person can have attributes asserted by a qualified authority / expert, and such authority / expert can be verified by an effective fact-testing method such as MIT that defines that John Doe has obtained an excellent degree in the field of biotechnology, which strongly affirms that Doe has expertise in biotechnology.

[0174] In some embodiments, as a result of such pBIDE broadcasts, similarity / equivalence matches are identified by the RCFD and / or received RD (e.g., RCFD) configuration of the pBIDE broadcaster, followed by a securely managed set of processes that includes further identification between devices and / or users based on the identification of one or more other shared attributes / interests. In such a configuration, the contents of the identity wallet can each be progressively revealed in a controlled and secure manner and in accordance with any relevant policies, instructions, and / or context. Then, for example, a determination can be made as to whether, for example, the specific physical location (and / or other potentially sensitive information) of one or more such broadcast and / or receiving parties is revealed to one or more other party(s), and / or whether, for example, one or more instances or portions of further IIS can be communicated, such revelation being an initial broadcast operator and / or RCFD device, and / or receiver and / or RCFD receiving device that conducts an evaluation as to whether to "permit" further communication of information and / or whether to initiate a physical meeting (between parties) and includes one or more further steps. For example, a person carrying an RCFD can walk around to appropriate respective times / places to broadcast "I am a member of the ACLU, an IT service manager for Amazon®, middle-aged, and have a socially anonymous identifier XXXX for an existential quality based at least in part on biometrics, all of which are provided as verifiable valid facts."

[0175] In some EBInet embodiments, the EBInet ID second element identification confirmation device configuration can include, at least in part, anti-theft, anti-illegal use, and anti-fraudulent identification information modification (ATMUM) prevention pairing, IIS conveyance, and device configuration for biometric-based identification information of a person. Such a second element device configuration can form, in pair with EBInetRCFD, a tethering device configuration that provides the guarantee that the set of person identification information transferred by RCFD effectively indicates the presence of such a person (e.g., using tamper- and inspection-resistant NIIPU). Such an ATMUM configuration can be adopted as a secure pairing configuration that can be securely registered with its associated RCFD as a secure operational inter-device / pairing configuration. The implementation of the ATMUM / RCFD device set can be registered, for example, using a management network-based service, and / or such pairing can be managed by mutual registration of such devices, each of such devices recognizing its corresponding pairing partner as a registered partner device. Such a paired, registered, partner configuration can function securely as a tethered identification information verification device configuration.

[0176] Such an ATMUM tether / verification device configuration can include a highly portable device in the form factor of a FOB or wallet card that provides biometric-based identification and presence information verification of a second element that is physically proximate or of physical quality. The ATMUM device configuration is cryptographically associated with EBInet modular components, such as RCFD included in an EBInet RCFD configuration that includes NIIPU modular components included in a parent EBInet-compliant smartphone or smartwatch or similar device configuration. Such a coordinated device configuration can include a "parallel" identification information conveyance transfer configuration that provides verification (e.g., of a person's identity / confirmation) that the same person is carrying such a coordinated device configuration, and the biometric identities received and carried by such a device can identify the same person (and can be obtained from the same AFD operationally simultaneously). Each person identification information of such a device includes at least partially contemporaneous identification information that is at least partially biometric-based and represents physically proximate or of physical quality identification information. Such compared identification information is conveyed by both coordinated device configurations. Such anti-theft and person presence confirmation device configurations, such as a FOB or card (or pin / broach, etc.) that functions as a second element person identification verification configuration, can verify the contemporaneous identification information of a person that is conveyed and / or transferred by primary identification information that provides an EBInet device configuration such as an RCFD. Such RCFD and ATMUM device configurations can obtain the biometric identification information of the corresponding individual from the AFD safely and operationally simultaneously (or at different times) using the same (and / or one or more different (e.g., verification)) AFDs as one or more biometric identification information acquisition sources. Such RCFD and ATMUM device configurations reliably support the availability of such identification information as a second factor of the information reliability assurance configuration. The information provided by such a second factor ATMUM device configuration can perform identification information transfer and / or verification operations, for example, independently of its paired first factor parent smart device embedded NIIPU modular components, RCFD configuration.Such ATMUM devices and such RCFD configurations can, for example, periodically compare their respective carried IIS information to ensure that they carry contemporaneous biometric-based identification information identifying the same person, and / or such configurations can transfer at least a portion of their respective biometric-based person identification information to a RUD and / or RUS network identification integrity assurance service to confirm that the carried and transferred person identification information is carried by the RCFD and represents the identified person (and that such RCFD carried information is not carried by an alternative person and / or configuration and / or that such RCFD primary factor information has not been modified in an unauthorized manner).

[0177] In some embodiments, such pairing of ATMUM and RCFD supports one or more EBInet identification information sets for use in event / activity authentication, authorization, and / or management. Such pairing helps ensure that a party using the RCFD is reliably and securely (e.g., accurately) identified as the IIS transfer party (e.g., to a RUD configuration). As a result, the person identified by the paired ATMUM device and RCFD configuration, and / or the composite person / device information, can be evaluated by the RUD and / or RUS for identity assurance, ensuring that both of the transferred information sets of such paired devices identify the same person (using at least partially biometric and physically proximate or physical-quality identification information). The identity integrity assurance service also ensures that any other required identification information attributes match and / or meet specifications such as time, date, location, etc., and / or can ensure, for example, the matching of the user's biometric identification information and / or the AFD configuration for obtaining such information. Both such device configurations can be verified to carry the same, or suitably corresponding, person and / or person / device (and / or service) identification information (e.g., CIIS and / or CBEIIS) including the same information regarding identification information acquisition such as time, date, location, etc.

[0178] In some embodiments, the RCFD can securely receive biometrically obtained person identification information and / or identification information (such as EBInetIIS) at least partially derived therefrom. Such information reception can be securely time-stamped at the reception time of the RCFD for one or more instances of such information, and / or at the creation time and / or transfer time of the AFD. Almost simultaneously, or operationally simultaneously, a secure token representing such the same information and / or at least a material portion of such information can be provided to both such a secure mobile EBInetRCFD configuration and a second configuration, such a second configuration being, for example, an IIS carrier device configuration such as a wallet card that communicates securely wirelessly, electronically and battery-powered, or a key FOB, or a pin / broach or belt clip device, for example, a security-enhanced EBInet version of an electronic key configuration used for unlocking an automobile. Such a card or FOB (or pin / broach, bracelet, or other carrier / wearable device) can be held by the user's person or otherwise carried / worn such that the theft or other loss of such other devices such as the FOB, wallet card, pin / broach, bracelet, RCFD (verification device), etc. is highly unlikely to coincide with the theft or loss of its paired EBInet device, because such, for example, the FOB or wallet card, and such paired devices are carried and / or worn by the user as separate / isolated devices at different locations. Such a verification device can, for example, be carried in a pocket, or attached to clothing, or worn as a band such as a wristband, or comprise an eyeglass component, or such a second element configuration can be embedded / securely isolated in a smartwatch (or, for example, securely carried by a built-in NIIPU module type component chip of a security card carried in the user's wallet and / or other mobile host device configuration).Such a second element conveyance and transfer configuration may be redundantly and separately supported in a modular, embedded component, e.g., a secure, separate RCFD / NIIPU configuration, which can perform the verification / enhancement / authentication of the EBInet identification function as a mobile conveyance smart device, a primary and / or auxiliary function set in the configuration, and such a verification device can, in some embodiments, communicate directly with other EBInet devices and / or remote / external service configurations to provide, e.g., authentication / verification / confirmation of identification information.

[0179] In some aspects, the EBInet RCFD master and / or one or more child IISs may be securely, ubiquitously, and transparently available for identification-related purposes. Such IISs may each be securely coupled to their corresponding object resources and / or resource interfaces. Such IISs can include, for example, each resource that is an information instance having its own respective IIS instance, and one or more sets of child IISs that include instances of such masters and / or a substantially infinite population of various intangible and tangible resources. Such IISs can identify and describe instances of their corresponding objects, such as, for example, a set of identification information that identifies and characterizes each particular person.

[0180] In some embodiments, the IIS can be associated with one or more respective specified purposes, for example, using specified inferences, cores, and / or other PERCos context purpose displays. Such displayed purposes are at least partially existentially proximate or existential in nature and can each be identified as being associated with one or more object resources by using any applicable one or more IISs that are at least partially biometric-based. Such IISs each include and / or securely reference a REAI that characterizes one or more standardized interoperably interpretable object attributes / attribute classes / types. Such IISs can, in some embodiments, be used to determine the optimality, availability, and / or fitness of resources and / or events / activities for a particular purpose (including, for example, evaluating a person who functions as an advisor with expertise on a given topic). Such IISs, such as IIT, can also be used in determining whether one resource is permitted to interact with one or more other resources (for example, whether there is a right (such as a privilege) to use a particular resource, such as a web-based resource, and / or a right to participate in a particular event / activity, and / or a right to use a resource (such as a right arising from ownership of the resource or other securely specified relationship with the resource) (for example, getting into and / or operating a vehicle, using digital currency in a transaction, removing a cargo crate from a SIMC, etc.).

[0181] In some embodiments, at least a portion of the REAI event / activity involves multiple parties exchanging with each other at least partially biometric-based identification information that is at least partially physically proximate or of a physical nature, for example, in the form of IIT (such as CIISIIT) that includes information regarding rights and / or one or more other relevant attributes associated with each such party's respective event / activity. In such situations, for example, two users can securely communicate with each other at least partially cryptographically, policy-managed IIS information between their respective, for example, smartphone, laptop computer, tablet, smartwatch, and / or other EBInet-compliant smart device configurations (e.g., exchange using a device configuration compliant with those EBInet embodiments). Using such IIS information, each user (or one user) can authenticate the true identity and live presence of one or more other parties who are the intended participants (or are being evaluated as to whether they should be one or more parties who are participants in a communication group, e.g., when selected, approved, and / or authenticated) of the communication.

[0182] In some embodiments, a user and / or each computing configuration can evaluate the authenticity of each candidate resource and / or party participating in or able to participate in an event / activity, for example, using each user / device's EBInet smart device, and / or using an EBInet dedicated device, a configured embedded NIIPU security separation processing module component, and / or each EBInet compliant identification platform service. For example, an applicant and / or participating user and / or their EBInet devices and / or service configurations can use the quality of an authenticated party for an objective and / or valid fact attribute, and such user and / or EBInet device and / or service configurations can evaluate the suitability of one or more applicant and / or participating resource instances (e.g., people and / or device configurations) for such an instance's direct and / or indirect involvement in each user's event / activity.

[0183] In some embodiments, an event / activity instance of an EBInet object can respectively include or can include, for example, an email, a text message, a video conference, the manufacture of electronic devices and components, the execution of a transaction using digital currency, the publication of a software program and a video presentation, the control of an IoT device, the management of SVCC-related activities, social networking and / or commercial networking including event / activity (e.g., communication interaction) related to affinity group computing, the publication of content (such as the publication of an IIS instance) and / or the like (event / activity instance). One or more E / A related IISs can be carried by the RCFD and can be selectively or ubiquitously made available to EBInet specification compliant devices and / or service configurations via a secure identification information exchange that enables respective verification / authentication, and / or authorization and / or other management.

[0184] Computer security, rights management, intentional computing optimization, etc. currently rely on weak identification of specific individuals, which often leads to problems such as inefficiency, insufficient productivity, and / or untrustworthy computing. The EBInet embodiments described herein provide significantly improved reliability, practicality, cost-effectiveness, informativeness / conformity, and usability of computing identification information, based in part on root-existentially close and / or existential-quality human identification and related computing resources and / or event / activity instance attribute information.

[0185] There are various reasons today for not using at least partially biometric-based and / or otherwise "fixed / routed" human-specific identification information to securely provide resource and / or event / activity fitness information. This is despite the fact that such information can be valuable and sometimes essential for ensuring computer security, optimizing intentional computing, and enabling the authentication of events / activities and the enforcement of user / participant fitness for purpose.

[0186] Reasons for not using such at least partially biometric-based identification information include, but are not limited to, the following.

[0187] A. Failure to recognize the fundamental importance of resources and / or event / activity instances and develop practical ways to clearly identify the individuals who are respectively responsible for and / or otherwise associated with (e.g., prove) those resources and / or event / activity instances. The inability to evaluate (e.g., recognize) such specific individuals' REAI participation instances with respect to the implications of respective associated fitness, based on the relevant / characteristics of the specific individuals (e.g., the intentions and capabilities of the associated humans), reflects the following. a) The inability to identify the commercial importance of implementing root-existentially close and / or existential human biometric identification. b) There is no commercially practical method developed for performing near-existence and / or existence-quality human biometric identification. Due to the limitations in the accuracy and reliability of current biometric identification technologies, it is unrealistic to configure a small, cost-effective, portable, and highly accurate biometric identification component. As a result, the biometric identification currently performed by portable devices is vulnerable to malicious impersonation and / or other forms of impersonation. To date, the reliability of cyber security and the contextual suitability of resources, processes, and events / activities have been hampered by the lack of a practical approach for commercially and rationally implementing human identification tools (such as represented by assertions or other means) that guarantee the authenticity of human identity. The performance of biometric identification systems is hampered by considerations such as cost, size, package, usability, power consumption, and redundancy factors (implementation may require many, if not all, user computing devices such as smartphones, tablets, computers, smartwatches, IoT configurations, etc. to perform human identification with near-existence or existence-quality accuracy). In particular, it is not technically practical to widely commercially implement a near-existence-reliable function for highly mobile device types such as smartphones, smartwatches, smart bracelets, smart pendants, etc., c) The inability to recognize the informational importance of securely combining such near-existence and / or existence-quality human biometric identification with each person's standardized, interoperably interpretable descriptive attributes (such attributes can be in the form of verifiable facts, for example, and / or in the form of quality for purpose attribute assertions certified by an individual (CertPers)).

[0188] Such failures to recognize and implement such identities and attributes (including, for example, intentional computing attributes) greatly limit the ability of computer users and computing configurations to identify and / or manage the following. a) Resources that are optimal for each such computing user's purpose (e.g., identifying both resource opportunities and expected resource usage results related to the purpose), b) Cybersecurity threats (e.g., computer security, internet security, and mobile security threats), c) Threats to communication processes (e.g., unauthorized use of information and / or unauthorized modification of transmitted information), d) Opportunities for the best, most appropriate, and / or otherwise suitable social and / or commercial network exchanges, e) Supply, value, and / or other commercial chain audits, integrity protection, and / or event / activity management related to human identity (e.g., rights management rules and controls including event / activity authorization), f) "False" news and / or false regulated information (e.g., news, science, and / or facts fabricated and / or inappropriately manipulated, presented as fact or as a well-developed theory (e.g., rendered in video and / or audio format and / or provided in text)), and g) Digital currency theft and fraud.

[0189] In some embodiments, such limitations can be addressed, at least in part, by providing highly reliable information that, for example, notifies information regarding the reliability, trustworthiness, motivation, capabilities, and / or rights of, e.g., REAI stakeholders. Such information is provided, for example, through a secure coupling of at least partially biometric-based identification information (of a human-specific (physically proximate and / or physical quality reliability)) with identity-related attributes. Such attributes can include one or more of the following. 1. Descriptive facts associated with a person, e.g., testable valid facts such as age, gender, group membership, education level, occupation, affiliation, and / or employer, etc., and for example, one or more of such attributes can be presented as a verifiable set of information, such as working as a senior engineer at IBM as defined on an IBM-secure accessible website by John Doe. Such descriptive facts can include, for example, other computing resources and / or identifying information elements specific to an event / activity instance, such as a unique instance identifier (embedded secret information, passport number, home address, web address, DOI number, and / or one or more other instance-related unique identifiers), a revision (e.g., version) number, a model identifier, a time, a date, a physical location, a historical origin, etc. 2. Quality for an objective metric (e.g., for reliability, power, cost), at least partially presented by the associated relative quality for an objective value, such as an objective indication (such as PERCosCreds, etc.) and quantization values associated with each standardized objective indication. 3. Identity-related rights (identity-related right specifications). 4. Identity-based human-specific interests (e.g., interests such as cooking, basketball, learning astrophysics, etc., which are definitions of a person's interests providing information about the person's activity purpose, and such interests may be specified, for example, as context objective indications).

[0190] B. The inability to address user and social concerns regarding the violation of a user's privacy due to the theft and subsequent misuse of the user's biometric identification information. Such privacy concerns can be addressed, at least in part, by using an identification ability that is existentially accurate and whose activity has been verified. For example, in some EBInet embodiments, stolen biometric identification pattern information cannot be misused to falsely represent the existence of a given individual because only the true existence of a given individual is existentially valid.

[0191] To mitigate concerns about the privacy of past biometric identification information, this specification describes, for several embodiments, the support of a biometric identification information configuration that uses anonymity management techniques related to biometric identification, where the unique identification information instance of a particular person is protected by encryption and the attribute information is managed by rules and controls to prevent the inappropriate disclosure of sensitive information such as socially unique identification information. In some embodiments, such identification information instances are securely associated with the respective reliability and / or other compliance-related attributes of such persons. Such attributes can include, for example, (a) other persons characterizing the PERCos Creds, EF, and / or CPE attributes, and / or (b) the respective resources and / or events / activities of the person (e.g., EBInet device configuration stakeholders and / or users), instance identification information, for example, the identification information of each EBInet-compliant RCFD smartphone. In embodiments of such anonymity techniques, real-world names, addresses, contact information, and / or other privacy-related information may be at least partially absent and / or unavailable (e.g., except under the control of a highly accurate and contextually unique secure access mechanism). As a result of such capabilities, various PERCos and / or EBInet embodiments can substantially mitigate the impact of the theft of PERCos and / or EBInet individual-specific biometric pattern identi...

Claims

1. A system for determining biometrically evaluated human activity and human response identification, A computing configuration comprising at least one processor and associated memory, The aforementioned computing configuration is Using a biometric signal detection and signal information processing configuration for a biometric identification information registration process set, human identification pattern information is obtained from biometrically evaluated human feature configurations. Using a secure clock configuration and signal detection and signal information processing configuration for a biometric identification information registration process set, the timing of at least one dynamic biological process set occurring at a first location on the body of the registered human, and the timing of one or more corresponding dynamic biological process sets occurring at one or more other locations on the human body, From the registration timing measurements of one or more physical event sets of the dynamic biological process set, timing relationship information of the dynamic biological process set at a first location and one or more other locations on the human body is determined, and the timing relationship information is configured for subsequent use in the authentication process set to determine whether a tangible object presented for biometric evaluation represents a living, physically present, identified human being. By deriving pattern and timing information from the same and / or correlated, essentially related sets of information arising from functionally interrelated anatomical components and / or physiological processes, the person identification pattern information is correlated with the activation notification information, at least in part. For a set of authentication processes relating to a tangible object presented as a human body feature configuration, (a) information characterizing the timing relationships of a set of physical event processes at locations corresponding to the first body position and one or more other body positions of the registered human, and (b) location-corresponding human identification pattern information are securely combined. (a) The similarity of the timing relationship activation information obtained for the registration process set to the timing relationship relationship information obtained for the authentication process set, and (b) the similarity of the person identification pattern information of the registration process set to the person identification pattern information of the authentication process set, Whether the authentication process set of the presented tangible object generates information whose similarity matches that obtained from registered living human feature configurations is determined by (a) the timing relationship and (b) the required similarity that matches one or more thresholds for human feature configuration person identification pattern information, and Based on the aforementioned authentication decision, a set of human identification-related processes is securely managed. A system configured to enable this.

2. The system according to claim 1, wherein measuring the timing of the set of dynamic biological processes includes obtaining timing-related information relating to each of (a) PPG, photoplethysmogram, (b) SPG, speckleplethysmogram, (c) ECG, electrocardiogram, (d) thermal state and / or fluctuations, and / or (e) SFDI data, spatial frequency domain imaging data, wherein the timing information is obtained from a first location and one or more other locations on the human body.

3. The system according to claim 1 or 2, wherein measuring the timing relationship information relating to the set of dynamic biological processes includes measuring the location-specific timing of blood flow through the vascular system.

4. The system according to claim 1, wherein the safe clock configuration and the signal detection and signal information processing configuration are configured to measure the position-specific timing of blood flow through the vascular system.

5. The system according to claim 1, wherein the set of dynamic biological processes is at least partially periodic.

6. The system according to claim 1, wherein the set of dynamic biological processes is at least partially aperiodic.

7. The system according to claim 5, wherein the set of dynamic biological processes is at least partially aperiodic.

8. The system according to claim 5, wherein determining the timing relationship information relating to the periodic dynamic biological process set includes determining one or more phase relationships of the dynamic biological process set at a first location and one or more other locations on the human body.

9. The system according to claim 1, wherein measuring the timing of the set of dynamic biological processes includes obtaining timing relationship information relating to position-related observation signal intensity, wavelength, polarization, and / or structural relationships detected by one or more optical sensors, ultrasonic sensors, capacitive sensors, and / or thermal sensors.

10. The system according to claim 1, wherein, for the purpose of registering biometric identification information, the person identification information includes and / or is securely coupled to the activity information relating to the person during the acquisition of the person identification information.

11. The system according to claim 1, further comprising enabling the use of the biometric identification information and / or information derived from the biometric identification information by enabling the secure association of the information with one or more securely maintained authentication credentials of the person and / or one or more other securely maintained characteristic factual attributes of the person.

12. The system according to claim 1, wherein the dynamic biological process set comprises one or more parts of one or more dynamic biological process sets.

13. The system according to claim 1, wherein the body position includes (a) locations and / or (b) a continuum of one or more body positions.

14. The system according to claim 1, wherein the biometric evaluation of the aforementioned human body feature configuration includes obtaining information on one or more parts of one or more blood vessels, iris, retina, other facial features, hand, wrist, skin features, and / or fingerprints.

15. The system according to claim 1, wherein acquiring the biometric identification information includes performing the acquisition of existentially close or existentially high-quality biometric identification information of a human being within a housing comprising at least three walls and at least one environmental anomaly detection configuration.

16. The system according to claim 15, further enabling the use of at least one sensor for safely monitoring the introduction of a tangible object presented as a human body feature into the housing.

17. The system according to claim 15, further enabling the determination of whether an object inserted into a housing is a genuine human body feature configuration and / or an abnormally and inappropriately present object, using a sensor configuration embedded in or mounted on at least one housing wall.

18. The system according to claim 1, further enabling the use of a secure clock configuration within the biometric signal detection and signal information processing configuration to timestamp and / or date stamp one or more acquired and / or authenticated process set information sets.

19. The system according to claim 1, wherein securely managing a set of human identification-related processes includes using the biometric identification information and / or information derived from the biometric identification information at the same time as the acquisition of the biometric identification information.

20. The system according to claim 1, wherein obtaining the biometric identification information includes generating biometric identification information that is existentially close or of existential quality.

21. A system for securely obtaining, authenticating, and managing identification information for connected computing, comprising a hardware and software configuration set, A configuration for acquiring human biometric identification information of existentially close or existentially good quality, comprising at least one secure computing hardware and software, One or more secure human biometric identification and related attribute, information cloud service registration and management configurations, One or more secure computing hardware and software configurations configured to carry and transmit human biometric identification information and / or information at least partially derived from said human biometric identification information, One or more secure computing hardware and software configurations configured to receive and use human biometric identification information and / or information at least partially derived from such human biometric identification information, Equipped with, The aforementioned hardware and software configuration set is Human existentially close or existentially high-quality biometric identification information is obtained by such a secure and tamper-proof existentially close or existentially high-quality human biometric identification information acquisition configuration. The biometric identification information of existential proximity or existential quality obtained from the aforementioned human being and / or information at least partially derived from said biometric identification information is registered in one or more of the aforementioned information cloud service registration and management configurations. The transport and transfer configuration receives the existentially close or existentially high-quality biometric identification information and / or information at least partially derived from the biometric identification information from the existentially close or existentially high-quality human biometric identification information acquisition configuration, and the transport and transfer configuration then transports the identification information and / or information at least partially derived from the identification information. In order to authenticate the identity of the person requesting to be permitted to perform the authorized use of the tamper-proof receiving and use configuration, a similarity matching analysis is performed by comparing the acquired set of person biometric identification information with the pre-registered set of person biometric identification information. The transport and transfer configuration acquires biometric identification information of the second factor that is operationally simultaneous, and evaluates the identification information of the second factor and / or information that is operationally simultaneous with the biometric identification information of the second factor in terms of similarity matching with the transported biometric identification information of existentially close or existential quality and / or information that is at least partially derived from said biometric identification information, in order to determine that the transported biometric identification information of existentially close or existential quality and / or information that is at least partially derived from said biometric identification information identifies the same person. Based on one or more similarity matches corresponding to each result, it is determined whether at least one of the following can perform one or more operations: (a) one or more carrier and transfer configurations, (b) one or more receive and use configurations, and (c) receive and use of one or more cloud service configurations. A system configured to enable this.

22. The system according to claim 21, wherein the hardware and software configuration set is configured to perform identity-sensitive operations using trusted computing isolation and cryptographic techniques, and the configurations for (1) acquisition, (2) transport and transfer, and (3) receive and use each use tamper-proof hardware identity processing configurations that support secure processing and storage of identity information.

23. The system according to claim 21 or 22, further comprising a human identification information acquisition configuration having an opening on at least one side of a tangible container, wherein one or more biometric sensors and / or emitter configurations are integrated within and / or on the walls of the tangible container.

24. The system according to claim 21, further comprising a human identification information acquisition configuration having an opening on at least one side of a tangible container, wherein one or more biometric sensors and / or emitter configurations are integrated within and / or on the wall of the tangible container.

25. The system according to claim 21, wherein the biometric identification information of existential proximity or existential quality of a human being is securely linked to human aptitude that notifies attribute information.

26. The system according to claim 23, wherein using one or more sensor configurations of the tangible container allows for the acquisition of signal information that can be used to detect timing anomalies related to the spoofing of virtual reality and / or augmented reality object displays.

27. The system according to claim 23, wherein the configuration of the tangible container uses one or more emitter and sensor configurations used to investigate the internal environment of the tangible container for the presence of one or more tangible objects in order to determine at least one of (a) the presence of an inappropriate human tangible component and (b) one or more impersonating elements of a non-human tangible component.

28. The system according to claim 27, wherein the emitter and sensor configuration uses electromagnetic emission and / or sound wave emission.

29. The system according to claim 25, wherein the human attribute information includes, at least in part, one or more verifiable authentication details that characterize one or more human stakeholders in the digital and / or physical entities in order to determine the suitability of the entity use.

30. The system according to claim 25, wherein human attribute information includes, at least in part, one or more valid facts that characterize each of one or more human stakeholders in the digital and / or physical entities in order to determine the suitability of entity use.

31. The system according to claim 21, 29, or 30, wherein the conformity notification information relating to an entity's stakeholders includes attribute information designated as a quantized contextual purpose representation that is securely associated with a biometric identification of the existential proximity or existential quality of the stakeholders.

32. The system according to claim 21, wherein the secure registration of existentially close or existential biometric identification information and / or information at least partially derived from said biometric identification information is performed operationally simultaneously with the acquisition of said biometric identification information, the registration using at least one of (a) the human biometric identification information acquisition configuration, (b) the receiving and transport configuration, and / or (c) one or more said information cloud service registration and management configurations, and the information registered in at least one of these is securely stored.

33. The system according to claim 32, wherein authentication of existentially close or existentially high-quality biometric identification information of the person obtained and / or information at least partially derived from said biometric identification information is performed by similarity matching between the existentially close or existentially high-quality identification information of the person obtained and / or information at least partially derived from said identification information and person identification information previously obtained and registered and stored in the person biometric identification information acquisition configuration, transport configuration, and / or cloud service.

34. The system according to claim 21, 29, or 30, wherein the existentially close or existentially quality biometric identification information, and / or information at least partially derived from said biometric identification information, includes and / or is otherwise securely combined with device identification secret information to form a fused or otherwise securely combined set of device / person identification information.

35. The system according to claim 34, wherein the fused or otherwise securely combined set of device / person identification information includes at least one of the stakeholder and / or device, and the fact-verifiable information set of fact-authority provisions.

36. The system according to claim 21, wherein the human biometric identification information acquisition configuration includes a hardware-based acquisition and transfer device configuration that securely uses one or more RIIPU root identification information processing units.

37. The system according to claim 21, wherein the human biometric identification information acquisition configuration includes one or more secure transport and transfer computing hardware and software configurations using one or more NIIPU network identification information processing units for securely transporting and transferring human biometric identification information and / or information at least partially derived from said human biometric identification information.

38. The system according to claim 21, wherein the human biometric identification information acquisition configuration includes (a) a hardware-based acquisition and transfer device configuration using one or more RIIPU root identification information processing units, and (b) the one or more secure transport and transfer computing hardware and software configurations using one or more NIIPU network identification information processing units for securely transporting and transferring human biometric identification information and / or information at least partially derived from the human biometric identification information.

39. The system according to claim 21, wherein the one or more secure computing hardware and software configurations for securely receiving and using human biometric identification information and / or information at least partially derived from said human biometric identification information include one or more NIIPU network identification information processing units.

40. The system according to claim 21, wherein one or more security clocks within the human biometric identification information acquisition configuration are used for timestamps and / or date stamps of one or more acquisition and / or authentication process set information sets.

41. A method for determining whether a presented object corresponds to a specific living human being that can be biometrically identified, The step of providing at least one or more partially standardized resources and / or specifications for determining biometrically evaluated human activity and human correspondence identification, using a hardware and software computing configuration including at least one processor and associated memory, wherein the step of providing is Using a biometric signal detection and signal information processing configuration for a biometric identification information registration process set, human identification pattern information is obtained from biometrically evaluated human feature configurations. Using a secure clock configuration and signal detection and signal information processing configuration for a biometric identification information registration process set, the timing of at least one dynamic biological process set occurring at a first location on the body of the registered human, and the timing of one or more corresponding dynamic biological process sets occurring at one or more other locations on the human body, From the registration timing measurements of one or more physical event sets of the dynamic biological process set, timing relationship information of the dynamic biological process set at a first location and one or more other locations on the human body is determined, and the timing relationship information is configured for subsequent use in the authentication process set to determine whether a tangible object presented for biometric evaluation represents a living, physically present, identified human being. By deriving pattern and timing information from the same and / or correlated, essentially related sets of information arising from functionally interrelated anatomical components and / or physiological processes, the person identification pattern information is correlated with the activation notification information, at least in part. For a set of authentication processes relating to a tangible object presented as a human body feature configuration, (a) information characterizing the timing relationships of a set of physical event processes at locations corresponding to the first body position and one or more other body positions of the registered human, and (b) location-corresponding human identification pattern information are securely combined. (a) The similarity of the timing relationship activation information obtained for the registration process set to the timing relationship relationship information obtained for the authentication process set, and (b) the similarity of the person identification pattern information of the registration process set to the person identification pattern information of the authentication process set, Whether the authentication process set of the presented tangible object generates information whose similarity matches that obtained from registered living human feature configurations is determined by (a) the timing relationship and (b) the required similarity that matches one or more thresholds for human feature configuration person identification pattern information, and Based on the aforementioned authentication decision, a set of human identification-related processes is securely managed. A method to make this possible.

42. The method according to claim 41, wherein the steps provided further include measuring the timing of the set of dynamic biological processes, which may include obtaining timing relational information relating to (a) PPG, photoplethysmogram, (b) SPG, speckleplethysmogram, (c) ECG, electrocardiogram, (d) thermal state and / or fluctuations, and / or (e) SFDI data, spatial frequency domain imaging data, the timing relational information being obtained from a first location and one or more other locations on the human body.

43. The method according to claim 41 or 42, wherein by the steps provided, measuring the timing relationship information relating to the dynamic biological process set can characterize the position-specific timing of blood flow through the vascular system.

44. The method according to claim 41, wherein the steps provided further enable the secure clock configuration and signal detection and signal information processing configuration to measure the position-specific timing of blood flow through the vascular system.

45. The method according to claim 41, wherein the steps provided further enable the set of dynamic biological processes to be at least partially periodic.

46. The method according to claim 41, wherein the steps provided further enable the set of dynamic biological processes to be at least partially aperiodic.

47. The method according to claim 45, wherein the steps provided further enable the set of dynamic biological processes to be at least partially aperiodic.

48. The method according to claim 45, wherein the steps provided further include determining the timing relationship information relating to the periodic dynamic biological process set, which may include determining one or more phase relationships of the dynamic biological process set at a first location and one or more other locations on the human body.

49. The method according to claim 41, wherein the steps provided further include measuring the timing of the dynamic biological process set, which may include obtaining timing relationship information relating to position-related observation signal intensity, wavelength, polarization, and / or structural relationships detected by one or more optical sensors, ultrasonic sensors, capacitive sensors, and / or thermal sensors.

50. The method according to claim 41, wherein, by the steps provided, the person identification information may further include and / or be securely coupled to the person activity information during the acquisition of the person identification information, for the purpose of registering biometric identification information.

51. The method according to claim 41, wherein the use of the biometric identification information and / or information derived from the biometric identification information includes securely binding the information to one or more securely maintained authentication information of the person and / or one or more other securely maintained characteristic factual attributes of the person.

52. The method according to claim 41, wherein the steps provided above enable the dynamic biological process set to include one or more parts of one or more dynamic biological process sets.

53. The method according to claim 41, wherein the steps provided above enable the body position to include (a) locations and / or (b) a continuum of one or more body positions.

54. The method according to claim 41, wherein the steps provided include biometrically evaluating the human body feature configuration, which may include obtaining information about one or more parts of one or more blood vessels, iris, retina, other facial features, hand, wrist, skin features, and / or fingerprints.

55. The method according to claim 41, wherein the steps provided above include obtaining the biometric identification information, which may include obtaining existentially close or existentially-quality biometric identification information of a human being in a housing comprising at least three walls and at least one environmental anomaly detection configuration.

56. The method according to claim 55, wherein the steps provided further enable the use of at least one sensor for securely monitoring the introduction of a tangible object presented as a human body feature configuration into the housing.

57. The method according to claim 55, wherein the steps provided further enable the determination of whether an object inserted into a housing is a genuine human body feature configuration and / or an abnormal, inappropriately present object, using a sensor configuration embedded in or mounted on at least one housing wall.

58. The method according to claim 41, wherein the step provided further enables timestamping and / or date stamping one or more acquired and / or authenticated process set information sets using a secure clock configuration within the biometric signal detection and signal information processing configuration.

59. The method according to claim 41, wherein the steps provided further include securely managing a set of human identification-related processes by using the biometric identification information and / or information derived from the biometric identification information at the same time as the acquisition of the biometric identification information.

60. The method according to claim 41, wherein the steps provided further include obtaining the biometric identification information, which may include generating biometric identification information that is existentially close or of existential quality.

61. A method for securely obtaining, authenticating, and managing identification information for connected computing, The process includes the step of providing at least one or more resources and / or specifications that are at least partially standardized for obtaining, authenticating, and managing secure identification information of connected computing, wherein the obtaining, authenticating, and managing secure identification information of connected computing uses a set of hardware and software configurations, and the set of hardware and software configurations is A configuration for acquiring human biometric identification information of existentially close or existentially good quality, comprising at least one secure computing hardware and software, One or more secure human biometric identification and related attribute, information cloud service registration and management configurations, One or more secure computing hardware and software configurations configured to carry and transmit human biometric identification information and / or information at least partially derived from said human biometric identification information, One or more secure computing hardware and software configurations configured to receive and use human biometric identification information and / or information at least partially derived from such human biometric identification information, Equipped with, By providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is: Human existentially close or existentially high-quality biometric identification information is obtained by such a secure and tamper-proof existentially close or existentially high-quality human biometric identification information acquisition configuration. The biometric identification information of existential proximity or existential quality obtained from the aforementioned human being and / or information at least partially derived from said biometric identification information is registered in one or more of the aforementioned information cloud service registration and management configurations. The transport and transfer configuration receives the existentially close or existentially high-quality biometric identification information and / or information at least partially derived from the biometric identification information from the existentially close or existentially high-quality human biometric identification information acquisition configuration, and the transport and transfer configuration then transports the identification information and / or information at least partially derived from the identification information. In order to authenticate the identity of the person requesting to be permitted to perform the authorized use of the tamper-proof receiving and use configuration, a similarity matching analysis is performed by comparing the acquired set of person biometric identification information with the pre-registered set of person biometric identification information. The transport and transfer configuration acquires biometric identification information of the second factor that is operationally simultaneous, and evaluates the identification information of the second factor and / or information that is operationally simultaneous with the biometric identification information of the second factor in terms of similarity matching with the transported biometric identification information of existentially close or existential quality and / or information that is at least partially derived from said biometric identification information, in order to determine that the transported biometric identification information of existentially close or existential quality and / or information that is at least partially derived from said biometric identification information identifies the same person. Based on one or more similarity matches corresponding to each result, it is determined whether at least one of the following can perform one or more operations: (a) one or more carrier and transfer configurations, (b) one or more receive and use configurations, and (c) receive and use of one or more cloud service configurations. A method that can make that possible.

62. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is capable of performing identity-sensitive operations using trusted computing isolation and cryptographic techniques, and the configurations of (1) acquisition, (2) transport and transfer, and (3) receive and use each use tamper-proof hardware identity processing configurations that support secure processing and storage of identity information.

63. The method according to claim 61 or 62, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set may further include a person identification information acquisition configuration having an opening on at least one side of the tangible container, and one or more biometric sensor and / or emitter configurations are integrated within and / or on the walls of the tangible container.

64. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set may further include a person identification information acquisition configuration having an opening on at least one side of the tangible container, and one or more biometric sensor and / or emitter configurations are integrated within and / or on the wall of the tangible container.

65. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can enable a secure combination of biometric identification information of the existential proximity or existential quality of the human being and human suitability that informs attribute information.

66. The method according to claim 63, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is able to acquire signal information using sensors of the configuration of the tangible container, the signal information is used to detect timing anomalies related to spoofing of virtual reality and / or augmented reality object displays.

67. The method according to claim 63, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can be configured to use one or more emitter and sensor configurations used to investigate the internal environment of the tangible container for the presence of one or more tangible objects in order to determine at least one of (a) a presented human tangible component and (b) one or more impersonating elements of a non-human tangible component.

68. The method according to claim 67, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is capable of enabling the emitter and sensor configuration to use electromagnetic emission and / or sound wave emission.

69. The method according to claim 65, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can be made so that human attribute information can at least partially include one or more verifiable authentication pieces that characterize one or more human stakeholders in each digital and / or physical entity for determining suitability for entity use.

70. The method according to claim 65, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can be such that human attribute information can at least partially include one or more valid facts that characterize each of one or more human stakeholders in the digital and / or physical entities for determining suitability for entity use.

71. The method according to claim 61, 69, or 70, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set may be configured to include attribute information designated as a quantized contextual purpose representation that is securely associated with a biometric identification of the existential proximity or existential quality of the entity's human stakeholders.

72. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can enable the secure registration of existentially close or existential biometric identification information and / or information at least partially derived from such biometric identification information to be performed operationally concurrently with the acquisition of such biometric identification information, wherein the registration uses at least one of (a) the human biometric identification information acquisition configuration, (b) the receiving and transport configuration, and / or (c) one or more of the information cloud service registration and management configurations, and the information registered in at least one of these is securely stored.

73. The method according to claim 72, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can be enabled to authenticate acquired existentially close or existentially biometric identification information of the person and / or information at least partially derived from such biometric identification information by similarity matching between the acquired existentially close or existentially biometric identification information of the person and / or information at least partially derived from such identification information and person identification information previously acquired and registered and stored in the person biometric identification information acquisition configuration, transport configuration, and / or cloud service.

74. The method according to claim 61, 69, or 70, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can further include device identity secret information to form a fused or otherwise securely combined set of device / person identification information, and / or can otherwise be securely combined with the device identity secret information.

75. The method according to claim 74, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can further enable the fused or otherwise combined device / person identification information set to include at least one of the stakeholder and / or device fact-verifiable information sets of fact-authority provisions.

76. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can further enable the human biometric identification information acquisition configuration to include a hardware-based acquisition and transfer device configuration that securely uses one or more RIIPU root identification information processing units.

77. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set may further include the one or more secure transport and transfer computing hardware and software configurations that use one or more NIIPU network identification information processing units for securely transporting and transferring human biometric identification information and / or information at least partially derived from the human biometric identification information.

78. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set can be configured such that the human biometric identification information acquisition configuration includes (a) a hardware-based acquisition and transfer device configuration using one or more RIIPU root identification information processing units, and (b) the one or more secure transfer and transfer computing hardware and software configurations using one or more NIIPU network identification information processing units for securely transporting and transferring human biometric identification information and / or information at least partially derived from the human biometric identification information.

79. The method according to claim 65, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the set of hardware and software configurations can be configured such that the one or more secure computing hardware and software configurations for receiving and using human biometric identification information and / or information at least partially derived from said human biometric identification information include one or more NIIPU network identification information processing units.

80. The method according to claim 61, wherein by the step of providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is able to use one or more secure clocks in the person biometric identification information acquisition configuration for timestamps and / or date stamps of one or more acquisition and / or authentication process set information sets.

81. A system for determining biometrically evaluated human activity and human response identification, A computing configuration comprising at least one processor and associated memory, The aforementioned computing configuration is Using a biometric signal detection and signal information processing configuration for a biometric identification information registration process set, human identification pattern information is obtained from biometrically evaluated human feature configurations. Using a secure clock configuration and signal detection and signal information processing configuration for a biometric identification information registration process set, the timing of at least one dynamic biological process set occurring at a first location on the body of the registered human, and the timing of one or more corresponding dynamic biological process sets occurring at one or more other locations on the human body, From the registration timing measurements of one or more physical event sets of the dynamic biological process set, timing relationship information of the dynamic biological process set at a first location and one or more other locations on the human body is determined, and the timing relationship information is configured for subsequent use in the authentication process set to determine whether a tangible object presented for biometric evaluation represents a living, physically present, identified human being. By deriving pattern and timing information from the same and / or correlated, essentially related sets of information arising from functionally interrelated anatomical components and / or physiological processes, the person identification pattern information is correlated with the activation notification information, at least in part. For a set of authentication processes relating to a tangible object presented as a human body feature configuration, (a) information characterizing the timing relationships of a set of physical event processes at locations corresponding to the first body position and one or more other body positions of the registered human, and (b) location-corresponding human identification pattern information are securely combined. (a) The similarity of the timing relationship activation information obtained for the registration process set to the timing relationship relationship information obtained for the authentication process set, and (b) the similarity of the person identification pattern information of the registration process set to the person identification pattern information of the authentication process set, Whether the authentication process set of the presented tangible object generates information whose similarity matches that obtained from registered living human feature configurations is determined by (a) the timing relationship and (b) the required similarity that matches one or more thresholds for human feature configuration person identification pattern information, and Based on the aforementioned authentication decision, a set of human identification-related processes is securely managed. A system configured to enable one or more of the following things.

82. A system for securely obtaining, authenticating, and managing identification information in connected computing, A human biometric identification configuration of existentially close to or of existential quality, comprising at least one secure computing hardware and software. One or more secure human biometric identification and related attribute, information cloud service registration and management configurations, A first configuration which is one or more secure computing hardware and software configurations configured to carry and transmit human biometric identification information and / or information at least partially derived from said human biometric identification information, and A second configuration is one or more secure computing hardware and software configurations configured to receive and use human biometric identification information and / or information at least partially derived from said human biometric identification information. Includes a hardware and software configuration set comprising one or more of the following: The set of the first and second configurations is configured to enable a set of existentially close and / or existentially good, at least partially biometric-based identification information. system.

83. The set of the first and second configurations is Human existentially close or existentially high-quality biometric identification information is obtained by such a secure and tamper-proof existentially close or existentially high-quality human biometric identification information acquisition configuration. The biometric identification information of existential proximity or existential quality obtained from the aforementioned human being and / or information at least partially derived from said biometric identification information is registered in one or more of the aforementioned information cloud service registration and management configurations. The transport and transfer configuration receives the existentially close or existentially high-quality biometric identification information and / or information at least partially derived from the biometric identification information from the existentially close or existentially high-quality human biometric identification information acquisition configuration, and the transport and transfer configuration then transports the identification information and / or information at least partially derived from the identification information. Following the registration of biometric identification information, in order to authenticate the identity of the person requesting to be permitted to perform authorized use of the tamper-proof receiving and use configuration, similarity matching is performed between the acquired set of person biometric identification information and the previously registered set of person biometric identification information. The transport and transfer configuration acquires biometric identification information of the second factor that is operationally simultaneous, and determines that the transported biometric identification information of existentially close or of existential quality and / or information at least partially derived from said biometric identification information and the operationally simultaneous biometric identification information of the second factor and / or information derived from said biometric identification information identify the same person, by similarity matching the identification information of the second factor and / or information at least partially derived from said identification information of the second factor with the transported biometric identification information of existentially close or of existential quality and / or information at least partially derived from said biometric identification information. Based on the results of the identification matching process set, it is determined whether to enable one or more operations to be performed by at least one of the following: (a) one or more of the transport and transfer configurations, (b) one or more of the receive and use configurations, and (c) one or more of the receive and use configurations of the cloud service configuration. The system according to claim 82, configured to perform one or more of the following:

84. A method for determining whether a presented object corresponds to a specific living human being that can be biometrically identified, The step of providing at least one or more partially standardized resources and / or specifications for determining biometrically evaluated human activity and human correspondence identification, using a hardware and software computing configuration including at least one processor and associated memory, wherein the step of providing is Using a biometric signal detection and signal information processing configuration for a biometric identification information registration process set, human identification pattern information is obtained from biometrically evaluated human feature configurations. Using a secure clock configuration and signal detection and signal information processing configuration for a biometric identification information registration process set, the timing of at least one dynamic biological process set occurring at a first location on the body of the registered human, and the timing of one or more corresponding dynamic biological process sets occurring at one or more other locations on the human body, From the registration timing measurements of one or more physical event sets of the dynamic biological process set, timing relationship information of the dynamic biological process set at a first location and one or more other locations on the human body is determined, and the timing relationship information is configured for subsequent use in the authentication process set to determine whether a tangible object presented for biometric evaluation represents a living, physically present, identified human being. By deriving pattern and timing information from the same and / or correlated, essentially related sets of information arising from functionally interrelated anatomical components and / or physiological processes, the person identification pattern information is correlated with the activation notification information, at least in part. For a set of authentication processes relating to a tangible object presented as a human body feature configuration, (a) information characterizing the timing relationships of a set of physical event processes at locations corresponding to the first body position and one or more other body positions of the registered human, and (b) location-corresponding human identification pattern information are securely combined. (a) The similarity of the timing relationship activation information obtained for the registration process set to the timing relationship relationship information obtained for the authentication process set, and (b) the similarity of the person identification pattern information of the registration process set to the person identification pattern information of the authentication process set, Whether the authentication process set of the presented tangible object generates information whose similarity matches that obtained from registered living human feature configurations is determined by (a) the timing relationship and (b) the required similarity that matches one or more thresholds for human feature configuration person identification pattern information, and Based on the aforementioned authentication decision, a set of human identification-related processes is securely managed. A method that makes one or more of the following possible.

85. A method for securely obtaining, authenticating, and managing identification information for connected computing, The process includes the step of providing at least one or more resources and / or specifications that are at least partially standardized for obtaining, authenticating, and managing secure identification information of connected computing, by using a hardware and software computing configuration including at least one processor and associated memory, the obtaining, authenticating, and managing secure identification information of connected computing, A human biometric identification configuration of existentially close to or of existential quality, comprising at least one secure computing hardware and software. One or more secure human biometric identification and related attribute, information cloud service registration and management configurations, One or more secure computing hardware and software configurations configured to carry and transmit human biometric identification information and / or information at least partially derived from such human biometric identification information, One or more secure computing hardware and software configurations configured to receive and use human biometric identification information and / or information at least partially derived from such human biometric identification information, Using a hardware and software configuration set that includes one or more of the following: By providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set may enable a set of identification information that is at least partially biometric-based and / or existentially close and / or of existential quality. method.

86. By providing one or more resources and / or specifications that are at least partially standardized, the hardware and software configuration set is: Human existentially close or existentially high-quality biometric identification information is obtained by such a secure and tamper-proof existentially close or existentially high-quality human biometric identification information acquisition configuration. The biometric identification information of existential proximity or existential quality obtained from the aforementioned human being and / or information at least partially derived from said biometric identification information is registered in one or more of the aforementioned information cloud service registration and management configurations. The transport and transfer configuration receives the existentially close or existentially high-quality biometric identification information and / or information at least partially derived from the biometric identification information from the existentially close or existentially high-quality human biometric identification information acquisition configuration, and the transport and transfer configuration then transports the identification information and / or information at least partially derived from the identification information. Following the registration of biometric identification information, in order to authenticate the identity of the person requesting to be permitted to perform authorized use of the tamper-proof receiving and use configuration, a similarity matching analysis is performed between the acquired set of person biometric identification information and the previously registered set of person biometric identification information. The transport and transfer configuration acquires biometric identification information of the second factor that is operationally simultaneous, and determines that the transported biometric identification information of existentially close or of existential quality and / or information at least partially derived from said biometric identification information and the operationally simultaneous biometric identification information of the second factor and / or information derived from said biometric identification information identify the same person, by similarity matching the identification information of the second factor and / or information at least partially derived from said identification information of the second factor with the transported biometric identification information of existentially close or of existential quality and / or information at least partially derived from said biometric identification information. Based on the results of the identification matching process set, it is determined whether to enable one or more operations to be performed by at least one of the following: (a) one or more of the transport and transfer configurations, (b) one or more of the receive and use configurations, and (c) one or more of the receive and use configurations of the cloud service configuration. The method according to claim 85, which can perform one or more of the actions described above.