Authentication system, authentication method, and authentication program
The authentication system uses a Web3 registration card with pre-certified biometric information to enhance identity verification, addressing the issue of forged passport photos and reducing manual check-in processes, thus improving efficiency and customer satisfaction.
Patent Information
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2024-09-30
- Publication Date
- 2026-04-09
AI Technical Summary
Existing authentication systems, such as those used in hotel check-ins, are vulnerable to identity fraud when passport photos are forged, leading to unreliable identity verification.
An authentication system that utilizes a Web3 registration card certified by a KYC authority, which includes biometric information, to verify the identity of a user by comparing it with biometric information obtained from the user during the check-in process.
This system provides more reliable identity verification by using pre-certified biometric information, reducing the need for manual passport checks and staff interaction, thereby improving efficiency and customer satisfaction.
Smart Images

Figure 2026061554000001_ABST
Abstract
Description
Technical Field
[0001] One aspect of the present invention relates to an authentication system, an authentication method, and an authentication program for determining whether a user of certified information, in which each piece of information included has been previously certified by a certification authority as being that of the user himself / herself, is the target user or not.
Background Art
[0002] In Patent Document 1 below, when a reception terminal receives an input indicating a check-in application of a guest, at the time of check-in, the face photo information of the passport scanned from the passport at the time of check-in is compared with the face photo information taken of the guest at the time of check-in, and it is confirmed whether the person indicated by the face photo information of the passport at the time of check-in and the person indicated by the face photo information taken at the time of check-in match or not. A reception system is described.
Prior Art Document
Patent Document
[0003]
Patent Document 1
Summary of the Invention
Problems to be Solved by the Invention
[0004] In the above reception system, for example, if the photo of the passport is forged, there is a possibility that even if the person is not the original owner of the passport, the person will be confirmed as the owner, that is, the person himself / herself. Therefore, it is desired to more reliably determine the person.
Means for Solving the Problems
[0005] An authentication system according to one aspect of the present invention comprises at least one processor, which acquires certified information that includes the user's biometric information, where each piece of information included is previously certified by a certification authority to belong to the user, and which includes the user's biometric information. Based on the biometric information included in the acquired certified information and the biometric information of the target user obtained from the target user, the system determines whether the user of the certified information is the target user.
[0006] An authentication method relating to one aspect of the present invention is an authentication method performed by an authentication system comprising at least one processor, comprising the steps of: obtaining certified information which includes biometric information of the user, and each piece of information included has been previously certified by a certification authority as belonging to the user; and determining whether the user of the certified information is the target user based on the biometric information included in the obtained certified information and the biometric information of the target user obtained from the target user.
[0007] An authentication program according to one aspect of the present invention causes a computer to perform the following steps: acquire certified information which includes the user's biometric information, and each piece of information included is certified in advance by a certification body to belong to the user; and determine whether the user of the certified information is the target user based on the biometric information included in the acquired certified information and the biometric information of the target user obtained from the target user.
[0008] In this respect, the determination of whether the user of the certified information is the same user is made based on the biometric information contained in the certified information, which has been pre-certified by a certification body as belonging to the user, and the biometric information of the target user obtained from the target user. This allows for more reliable identity verification. [Effects of the Invention]
[0009] According to one aspect of the present invention, identity verification can be performed more reliably. [Brief explanation of the drawing]
[0010] [Figure 1] This diagram shows an example of the concept of a Web3 register card. [Figure 2] This figure shows an example of the configuration of the authentication system according to the embodiment. [Figure 3] This figure shows a typical hardware configuration of a computer used in an authentication system according to the embodiment. [Figure 4] This figure shows an example of the configuration of an authentication program according to the embodiment. [Figure 5] This figure shows an example of the flow of using a Web3 register card in the authentication system according to the embodiment. [Figure 6] This figure shows another example of the flow of using a Web3 register card in the authentication system according to the embodiment. [Figure 7] A flowchart illustrating an example of the operation of the authentication system according to the present invention. [Modes for carrying out the invention]
[0011] Embodiments of the present invention will be described in detail below with reference to the attached drawings. In the description of the drawings, the same or equivalent elements will be denoted by the same reference numerals, and redundant descriptions will be omitted.
[0012] [term] This disclosure provides an explanation of the terms used.
[0013] An "OTA (Online Travel Agency)" is an online travel agency that sells accommodations (hotels, inns, etc.) or travel products via the internet.
[0014] "BE (Booking Engine)" is a system that provides functionality for accommodation providers to sell their accommodation plans through their own official websites.
[0015] "PMS (Property Management System)" is a lodging facility system used by lodging facilities when making reservations or managing guest rooms.
[0016] A "registration card" (hereinafter sometimes referred to as a "reg card") is a form filled out by a lodging guest (guest) at check-in. Generally, it contains information such as the guest's name, address, and contact details.
[0017] "Front desk" is the reception of a lodging facility.
[0018] "Self-check-in" is a system where the user performs the check-in procedure themselves.
[0019] "Inbound" refers to foreign tourists visiting Japan.
[0020] "Visit Japan Web (registered trademark)" is a web service where information necessary for immigration procedures (immigration inspection, customs declaration) and duty-free purchases can be registered, and it falls under the jurisdiction of the Digital Agency. Hereinafter, Visit Japan Web (registered trademark) will be referred to as "VJW" as appropriate.
[0021] "QR (Quick Response) code (registered trademark)" is a type of two-dimensional barcode that enables the display of information and access to websites by being read with a smartphone or the like.
[0022] "Web3" aims to be a Web (concept) that utilizes decentralized technologies and allows users to have more self-directed control. Conventional Web (Web1.0 and Web2.0) has provided information and services on centralized servers and platforms.
[0023] "W3C (World Wide Web Consortium)" is an international standardization organization for the Internet.
[0024] "SSI (Self-sovereign Identify)" is a self-sovereign identity.
[0025] A "DID (Decentralized Identifier)" is a unique, decentralized identifier, like a name, for a person, organization, or thing.
[0026] "VC (Verifiable Credentials)" refers to verifiable credentials.
[0027] "Identity verification" is the process of confirming that the other party is indeed the person they claim to be.
[0028] "Identity verification" is the process by which the service provider confirms that the service user is indeed the person who was registered in advance.
[0029] "KYC (Know Your Customer)" refers to the process by which a certification authority (service provider) verifies the identity of a customer (user), or to the certification authority itself.
[0030] A "KYC Agency" is a business that acts as an agent for KYC (Know Your Customer) procedures. The KYC Agency performs identity verification.
[0031] [Traditional in-person check-in] As one of the traditional services, we will explain in-person check-in. The typical flow of human check-in, that is, the procedure for accommodation facilities, is as follows (1) to (7). (1) Reservation confirmation: Check the PMS data to see if the visitor actually has a reservation. (2) Identity verification using passport: The passport photo will be checked to confirm that the guest's face matches the guest's face, and their identity will be verified. (3) Copy of passport: Make a copy of your passport. (4) Guidance on filling out the register card: Guidance on filling out the register card. (5) Key exchange: The key is exchanged. (6) Room and facility information and service information: Provide information about rooms, facilities, and services. Also provide information about bathing hours and meals. (7) Answering questions: Answer any other questions guests may have.
[0032] In face-to-face check-in, guests must check in each time they change accommodations during their stay.
[0033] [Traditional self-check-in service] As one of the conventional services, we will explain the self-check-in service. The typical flow of the self-check-in service is as follows (1) to (9). (1) (In advance) Register card guidance: Guidance will be given to customers to create a register card in advance. (2) (In advance) Fill out the registration card: Those who have made a reservation should fill out the registration card. (3) (Pre-)Generation of QR code (registered trademark): A QR code (registered trademark) linked to the reservation information will be generated by the self-check-in service. (4) Reservation confirmation (to be performed on the day thereafter): When the person with the reservation holds the QR code (registered trademark) over the self-check-in machine, the self-check-in machine reads the reservation-related information from the QR code (registered trademark) and checks the reservation information in the PMS. (5) Copy of passport: A copy of your passport will be made by a self-check-in machine or by a staff member. (6) Identity verification using passport: The staff will verify that the photo on the passport matches the guest's face to confirm their identity. In most cases, the staff will perform this verification in the back room rather than at the front desk. (7) Key handover: Keys will be handed over by a self-check-in machine or by a person. (8) Room and facility information and service information: Provide information about rooms, facilities, and services. Also provide explanations about bathing hours and meals. (This may be replaced by information systems such as VOD (Video On Demand).) (9) Answering questions: Accommodation staff will answer any questions guests may have.
[0034] Because few guests use self-check-in (according to one survey, only 5% of reservations utilize self-check-in), staffing at the front desk remains necessary. Furthermore, the presence of staff at the front desk means that guests may ask questions to staff after self-check-in, meaning self-check-in does not completely replace the work of front desk staff. In addition, guests must fill out a registration card each time they change accommodations during their stay.
[0035] [System Configuration] The authentication system 10 according to this embodiment is a computer system that determines whether or not a user of a Web3 registration card (certified information), whose included information has been previously certified by a KYC (Know Your Customer) authority as belonging to the user, is the target user (the user being targeted for determination).
[0036] The user represents a user of the authentication system 10. In this embodiment, the user may represent, as appropriate, the person who made the reservation for the accommodation, the guest, the user (owner) of the Web3 register card, the end user, etc.
[0037] This document explains the details of the Web3 Register Card. The Web3 Register Card (SSI system) is a system defined by the W3C that allows individuals to manage their own digital identity and use it as a register card. Figure 1 shows an example of the Web3 Register Card concept. We will explain while referring to Figure 1. The user possesses a DID (Digital Identity Card). The user also provides their own information to KYC (Know Your Customer), and KYC certifies that the information belongs to the user and issues a certificate. The certificate is linked to the DID as a VC (Virtual Certificate). In Figure 1, passport information related to the user's passport and basic information, which is the user's basic information, are linked to the DID as VCs. These DIDs and VCs are owned and managed by the individual user. With the user's consent, the accommodation facility obtains the VC information, which has been verified, and registers the (user's) personal information as a register card. In this embodiment, personal information and basic information may be the same or different.
[0038] In this embodiment, the information registered on the Web3 register card is assumed to be passport information and information of users who are not one-time users (address, contact information, etc.), but is not limited to these. Information of users who are one-time users includes check-in / check-out dates and flight numbers.
[0039] The Web3 registration card includes the user's biometric information. The Web3 registration card may further include the user's personal information. The Web3 registration card may further include passport information relating to the user's passport.
[0040] Biometric information refers to information about individual physical characteristics such as face, iris, ear, voiceprint, palm print, and fingerprints. Biometric information may also be three-dimensional (three-dimensional) facial information obtained by imaging the face from multiple angles using imaging means such as a camera.
[0041] Figure 2 shows an example of the configuration of the authentication system 10. In this embodiment, the authentication system 10 includes a storage unit 11, an acquisition unit 12, a determination unit 13, and a processing unit 14 as functional elements.
[0042] The storage unit 11 stores arbitrary information used in calculations and other operations in the authentication system 10, as well as the results of calculations in the authentication system 10. The information stored in the storage unit 11 may be referenced as appropriate by each functional element of the authentication system 10.
[0043] The acquisition unit 12 acquires a Web3 registration card (as described above, verified information in which each piece of information is proven to belong to the user through KYC), which includes the biometric information of the user (the user of the Web3 registration card). It is assumed that the user's biometric information is linked to the user's DID as a VC, but is not limited to this.
[0044] The acquisition unit 12 acquires the Web register card via the internet or other means. The acquisition unit 12 may acquire the Web3 register card (of the target user) with the consent of the target user. The means of obtaining the target user's consent may be any means using existing technology. The acquisition unit 12 may acquire the Web3 register card (of the target user) specified by the target user. The means of specification by the target user may be any means using existing technology.
[0045] The acquisition unit 12 may acquire biometric information of the target user from the target user. For example, the acquisition unit 12 may acquire biometric information of the target user from the target user using imaging means provided by the authentication system 10, or imaging means linked with the authentication system 10. The acquisition unit 12 may acquire any other information at any time.
[0046] The acquisition unit 12 may store the acquired information (Web3 registration card, biometric information, etc.) in the storage unit 11, or it may output it to the determination unit 13 or the processing unit 14.
[0047] The determination unit 13 determines whether the user of the Web3 register card is the target user based on the biometric information contained in the Web3 register card acquired (input) by the acquisition unit 12 and the biometric information of the target user obtained from the target user. The determination based on the two biometric information is based on existing technology.
[0048] The biometric information of the target user obtained from the target user may be information obtained when the determination unit 13 performs the determination (at the timing when the determination unit 13 performs the determination). For example, when the determination unit 13 performs the determination (whether or not the user of the Web3 register card is the target user), the acquisition unit 12 may acquire the biometric information of the target user from the target user, and the determination of whether or not the user of the Web3 register card is the target user may be made based on the biometric information contained in the Web3 register card acquired by the acquisition unit 12 and the biometric information of the target user acquired by the acquisition unit 12.
[0049] The authentication system 10 may acquire a Web3 register card with the consent of the target user and make a determination based on the acquired Web3 register card. For example, the acquisition unit 12 may acquire a Web3 register card with the consent of the target user, and the determination unit 13 may make a determination (whether or not the user of the Web3 register card is the target user) based on the Web3 register card acquired by the acquisition unit 12.
[0050] The authentication system 10 may acquire a Web3 register card specified by the target user and make a determination based on the acquired Web3 register card. For example, the acquisition unit 12 may acquire a Web3 register card specified by the target user, and the determination unit 13 may make a determination (whether or not the user of the Web3 register card is the target user) based on the Web3 register card acquired by the acquisition unit 12.
[0051] The authentication system 10 may use only the information contained in the Web3 register card for which the target user has given prior permission for disclosure. For example, the acquisition unit 12 may acquire only the information contained in the Web3 register card for which the target user has given prior permission for disclosure, and the determination unit 13 may use only the information acquired by the acquisition unit 12 to determine whether the user of the Web3 register card is the target user. Alternatively, the determination unit 13 may use only the information contained in the Web3 register card for which the target user has given prior permission for disclosure to determine whether the user of the Web3 register card is the target user. The means by which the target user grants permission for disclosure may be any means based on existing technology.
[0052] The determination unit 13 may store the determination result (information regarding whether or not the user of the Web3 register card is the target user) in the storage unit 11, or it may output it to the acquisition unit 12 or the processing unit 14.
[0053] If the determination unit 13 determines that the user of the Web3 register card is the target user (i.e., the determination result input from the determination unit 13 indicates that the user of the Web3 register card is the target user), the processing unit 14 performs processing using the information contained in the Web3 register card.
[0054] The processing by processing unit 14 may involve processing using the personal information (of the target user) contained in the Web3 registration card. The processing by processing unit 14 may involve processing using the passport information (of the target user's passport) contained in the Web3 registration card. The processing by processing unit 14 may involve the check-in process when the target user stays at a hotel.
[0055] If the determination unit 13 determines that the user of the Web3 register card is not a target user (i.e., the determination result input from the determination unit 13 indicates that the user of the Web3 register card is not a target user), the processing unit 14 may perform a predetermined process (for example, error handling).
[0056] The authentication system 10 consists of one or more computers. When multiple computers are used, these computers are connected via a communication network such as the Internet or an intranet to logically construct a single authentication system 10.
[0057] Figure 3 shows a typical hardware configuration of a computer 100 that constitutes the authentication system 10. For example, the computer 100 includes a processor 101, a main memory unit 102, an auxiliary memory unit 103, a communication control unit 104, an input device 105, and an output device 106. The processor 101 executes the operating system and application programs. The main memory unit 102 consists of, for example, ROM (Read Only Memory) and RAM (Random Access Memory). The auxiliary memory unit 103 consists of, for example, a hard disk or flash memory, and generally stores a larger amount of data than the main memory unit 102. The auxiliary memory unit 103 stores an authentication program 110 for making at least one computer function as the authentication system 10. The communication control unit 104 consists of, for example, a network card or a wireless communication module. The input device 105 consists of, for example, a keyboard, mouse, touch panel, etc. The output device 106 consists of, for example, a monitor and speakers.
[0058] Each functional element of the authentication system 10 is realized by loading an authentication program 110 onto the processor 101 or main memory 102 and executing the program. The authentication program 110 includes code for realizing each functional element of the authentication system 10. If the storage unit 11, acquisition unit 12, determination unit 13, and processing unit 14 are each implemented in separate computers 100, the authentication programs 110 stored in each computer 100 may be different. In any case, the processor 101 operates the communication control unit 104, input device 105, or output device 106 according to the authentication program 110, and reads and writes data to the main memory 102 or auxiliary storage unit 103. Each functional element of the authentication system 10 is realized through this process. The data or database necessary for the process may be stored in the main memory 102 or auxiliary storage unit 103.
[0059] The authentication program 110 may be provided by being permanently recorded on a tangible recording medium such as a CD-ROM, DVD-ROM, or semiconductor memory. Alternatively, the authentication program 110 may be provided via a communication network as a data signal superimposed on a carrier wave.
[0060] Figure 4 shows an example of the configuration of the authentication program 110. The authentication program 110 is composed of an acquisition module 111, a determination module 112, and a processing module 113. The functions realized by executing the acquisition module 111, the determination module 112, and the processing module 113 are the same as the functions of the acquisition unit 12, the determination unit 13, and the processing unit 14 of the authentication system 10 described above.
[0061] [System operation] Referring to Figure 5, a specific example of the operation of the authentication system 10 will be explained, along with the authentication method according to this embodiment. Figure 5 is a diagram showing an example of the flow of using a Web3 register card in the authentication system 10. More specifically, Figure 5 shows the flow from guidance to use of the Web3 register card in a KYC pattern.
[0062] The authentication system 10 includes a self-check-in machine and a KYC agency (a computer device owned and managed by the agency and functioning as a KYC agency; the same applies hereinafter) as shown in Figure 5. The authentication system 10 may further include at least one of the PMS, OTA (or BE), and KYC (a computer device owned and managed by the agency and functioning as a KYC agency; the same applies hereinafter) as shown in Figure 5.
[0063] In Step S1, the user makes a hotel reservation. More specifically, the user (end user) makes a hotel reservation through an OTA or BE. In Step S2, the OTA or BE links the reservation information to the PMS. That is, the reservation information is linked from the OTA or BE to the PMS. The reservation information is the information entered by the user when they made the hotel reservation through the OTA or BE in Step S1, or information based on that information. Specific examples of reservation information include name, address, contact information, check-in date, check-out date, number of guests, and flight number. In Step S3, the PMS sends a Web3 registrar card registration guide. More specifically, the accommodation facility (PMS) sends a Web3 registrar card registration guide to the user after the reservation information has been linked. The Web3 registrar card registration guide may be sent from a Marketing Automation (MA) or email distribution system that automatically sends emails linked to the PMS. Furthermore, the means of contacting the user for the registration guide is at the accommodation facility's convenience, so this service does not restrict the means (e.g., email, LINE®, etc.).
[0064] In Step S4, the user provides their Web3 registrar card registration information (identity verification documents). More specifically, the user provides the KYC agency with their Web3 registrar card registration information and identity verification documents (passport for inbound tourists, driver's license, My Number card, passport, etc. for domestic travelers). The Ministry of Health, Labour and Welfare requires a copy of the passport at check-in, but when creating the Web3 registrar card, the data of a photograph of the passport's face is also registered. Therefore, front desk staff will not need to make a copy of the passport on the day of check-in. Examples of registration items for inbound tourists include biometric information such as facial features, passport information (input) (passport number, name, nationality, date of birth, registered domicile, gender, issue date, expiration date), and passport information (photographed). Examples of registration items for domestic travelers include biometric information such as facial features, and basic information (name, address, date of birth, gender). Additional registration items can be added according to local government regulations.
[0065] In Step S5, the KYC agency delegates the authentication process. More specifically, the KYC agency relays the Web3 register card registration information and identity verification document information obtained from the user (in Step S4) to KYC. In Step S6, KYC conducts a KYC review. More specifically, KYC verifies the user's identity using the information relayed from the KYC agency (in Step S5). In Step S7, KYC performs authentication. More specifically, KYC relays to the KYC agency that identity verification is complete. In Step S8, the KYC agency distributes the signed Web3 register card. More specifically, the KYC agency (or KYC) confirms the completion of identity verification and distributes the signed Web3 register card to the user (issuing a certificate and linking the VC to the DID). The user receives the register card on Web3.
[0066] In step S9, the user presents their Web3 registration card. More specifically, on the day of their stay, the user goes to the accommodation and checks in at the front desk, where they have their Web3 registration card read by the accommodation's self-check-in machine (corresponding to the acquisition of the Web3 registration card by the acquisition unit 12). The method of having the Web3 registration card read by the self-check-in machine is assumed to be a QR code (registered trademark), but is not limited to this.
[0067] For example, a self-check-in machine (or a tablet device provided at the accommodation) displays a QR code (registered trademark) for check-in. When a user scans this QR code with a device containing their Web3 registration card, the check-in process for that user begins. The QR code (registered trademark) provided by the accommodation contains URL information. Accessing this URL transfers the user's Web3 registration card information to the accommodation. There is a wallet (app) that accesses Web3 information. Upon logging into this wallet, the accommodation requests permission (permission to disclose information) to show the user's personal information. The user has personal information, passport information, and a passport image stored in the wallet, and authorizes (opts in to) the information necessary for check-in. Note that scanning the check-in QR code (registered trademark) from any device capable of reading QR codes will display the login screen for the wallet where the Web3 registration card is stored. Once logged in, the user can submit / present their Web3 registration card and begin the check-in process.
[0068] In step S10, the self-check-in machine and the KYC agency verify authentication using biometric information such as the face registered on the Web3 register card and camera facial information (biometric information such as the face) (corresponding to the determination by the determination unit 13). More specifically, the KYC agency performs identity authentication (biometric authentication) by matching the biometric information such as the face registered on the Web3 register card with the biometric information such as (3D) facial information captured by the camera installed on the device on the day (regardless of whether it is a self-check-in machine or a terminal such as a smartphone owned by the user).
[0069] In step S11, the self-check-in machine retrieves the reservation information. More specifically, once identity verification is complete, the self-check-in machine retrieves the reservation information from the PMS (Property Management System). The name may be used to retrieve the reservation information. If the reservation information cannot be retrieved using the name, other information may be used to supplement it. In municipalities where face-to-face identity verification is not required by ordinance, camera-based identity verification may be used.
[0070] In step S12, the self-check-in machine registers the registration card. More specifically, it registers the information on the Web3 registration card to the PMS. Specific examples of the information on the Web3 registration card include passport information, a photo of the passport's face, name, address, and contact information (limited to information requested by the accommodation and required by the accommodation, and permitted by the user). The accommodation may request the user to share all the information on the Web3 registration card that the accommodation requires. The user may share only the information requested by the accommodation that they are permitted to share. The accommodation uses the reservation information from step S2 and the information on the registration card in this step (step S12) to register the accommodation. Under the Hotel Business Act, accommodations are required to store guest information, so the accommodation performs the registration in this step (step S12).
[0071] In step S13, the PMS (Property Management System) confirms the reservation. More specifically, the PMS verifies the existence of the reservation based on the user information linked from the self-check-in machine. The PMS then notifies the self-check-in machine that the reservation information check is complete. The user may also confirm the existence of the reservation information checked in step S11.
[0072] In step S14, the self-check-in machine issues the room key and meal vouchers. More specifically, after the self-check-in machine receives confirmation from the PMS that the reservation information has been verified, it issues the room key and meal vouchers.
[0073] As described above, instead of copying passports and filling out registration cards at the front desk on the day of arrival, a tamper-proof, verified Web3 registration card is created in advance. On the day of arrival, check-in is completed simply by authenticating the guest's identity using biometric information such as their face, based on the information on the pre-created Web3 registration card. This eliminates the need for front desk staff to perform manual check-in procedures, and since the Web3 registration card is created in advance, the check-in time is also shortened, reducing the waiting time for users at the front desk.
[0074] Next, with reference to Figure 6, another specific example of the operation of the authentication system 10 will be explained, along with the authentication method according to this embodiment. Figure 6 is a diagram showing another example of the flow of using a Web3 register card in the authentication system 10. More specifically, Figure 6 shows the flow from guidance to use of the Web3 register card in a pattern that works in conjunction with VJW. The differences from Figure 5 will be explained in detail from here on.
[0075] The authentication system 10 includes a self-check-in machine and a KYC agency as shown in Figure 6. The authentication system 10 may further include at least one of the following as shown in Figure 6: PMS, OTA (or BE), VJW (a computer device owned and managed by and functioning as a VJW; the same applies hereinafter), and KYC.
[0076] Steps S20 to S22 are the same as steps S1 to S3 in Figure 5, so their explanation is omitted.
[0077] In step S23, the user submits an application. More specifically, the user applies to use VJW. In step S24, VJW issues a QR code (registered trademark) for immigration and tax exemption purposes. More specifically, VJW issues the user a QR code (registered trademark) that allows them to access the information sent by the user during the application process.
[0078] In step S25, the user provides identity verification information based on scanning a QR code (registered trademark). More specifically, the user scans a QR code (registered trademark) issued by VJW and submits it to a KYC agency as personal information. At the same time, the user also submits biometric information such as a facial photograph and a photograph of the passport page (because biometric information such as a facial photograph and a photograph of the passport page are submitted in addition to the QR code (registered trademark), it is impossible to impersonate someone by scanning another person's QR code (registered trademark) to attempt identity verification). The personal information here may specifically include name, address, contact information, and information listed on the passport (gender and passport number, etc.). Furthermore, the submission process may be performed by an app on the user's device, where the app scans the QR code (registered trademark), automatically extracts the necessary information (name, address, contact information, etc.) and submits it to the KYC agency, minimizing the effort required from the user. Examples of information obtained from VJW during the application process include passport information (input) (passport number, full name, nationality, date of birth, registered domicile, gender, date of issue, and expiration date). Additional information can be registered according to local government regulations. Examples of information submitted by the user during the application process include passport information (photographed) and biometric information such as facial recognition.
[0079] In step S26, the KYC agency will handle the authentication process. More specifically, the KYC agency will send information to KYC from the user, including information read from the QR code (registered trademark) issued by VJW, biometric information such as facial photographs, and photographs of the passport face.
[0080] Steps S27 to S35 are the same as steps S6 to S14 in Figure 5, so their explanation is omitted.
[0081] [Authentication Method] An example of an authentication method performed by the authentication system 10 will be described with reference to Figure 7. Figure 7 is a flowchart of an example of the operation of the authentication system 10. In step S40, the acquisition unit 12 of the authentication system 10 acquires a Web3 register card that contains biometric information of the user, and whose information has been previously proven to belong to the user through KYC. In step S41, the determination unit 13 of the authentication system 10 determines whether the user of the Web3 register card is the target user, based on the biometric information contained in the Web3 register card acquired in S40 and the biometric information of the target user obtained from the target user.
[0082] [effect] An authentication system (authentication system 10) according to one aspect of the present invention comprises at least one processor, which acquires a Web3 register card (certified information) in which each piece of information contained is pre-certified by a KYC (certification authority) to belong to the user, and which includes the user's biometric information, and determines whether the user of the Web3 register card is the target user based on the biometric information contained in the acquired Web3 register card and the target user's biometric information obtained from the target user.
[0083] An authentication method relating to one aspect of the present invention is an authentication method performed by an authentication system comprising at least one processor, and includes the steps of: acquiring a Web3 register card in which each piece of information contained therein has been previously proven to belong to the user through KYC, and which includes the biometric information of the user; and determining whether the user of the Web3 register card is the target user based on the biometric information contained in the acquired Web3 register card and the biometric information of the target user obtained from the target user.
[0084] An authentication program according to one aspect of the present invention causes a computer to perform the following steps: acquire a Web3 register card containing biometric information of a user, wherein each piece of information contained in the Web3 register card has been previously certified to belong to the user through KYC; and determine whether the user of the Web3 register card is the target user based on the biometric information contained in the acquired Web3 register card and the biometric information of the target user obtained from the target user.
[0085] In this regard, the determination of whether the user of the Web3 register card is the target user is made based on the biometric information contained in the Web3 register card, which has been pre-certified by KYC to belong to the user, and the biometric information of the target user obtained from the target user. This allows for more reliable identity verification.
[0086] In authentication systems relating to other aspects, the biometric information of the target user obtained from that user may be the information obtained when determining whether the Web3 register card user is the target user. This allows for more timely and accurate identity verification, as the determination is made based on the target user's biometric information at the time of determination (the timing of the determination).
[0087] In authentication systems relating to other aspects, at least one processor may acquire a Web3 register card with the consent of the target user, and may make a determination based on the acquired Web3 register card (whether or not the user of the Web3 register card is the target user). This allows for a determination that is more considerate of the target user's privacy and respects the target user's wishes, as the determination is made based on a Web3 register card acquired with the target user's consent.
[0088] In authentication systems relating to other aspects, at least one processor may acquire a Web3 registration card specified by the target user, and may make a determination based on the acquired Web3 registration card (whether or not the user of the Web3 registration card is the target user). This allows for a determination that is more considerate of the target user's privacy and respects the target user's wishes, as the determination is made based on the Web3 registration card specified by the target user.
[0089] In authentication systems relating to other aspects, at least one processor may use only the information contained in the Web3 registration card for which the user has given prior permission for disclosure. This allows for decisions that are more considerate of the user's privacy and respect their wishes.
[0090] In authentication systems relating to other aspects, at least one processor may perform processing using the information contained in the Web3 register card if it is determined that the user of the Web3 register card is an eligible user. This allows for safer and easier processing using the information contained in the Web3 register card when the user of the Web3 register card is an eligible user.
[0091] In authentication systems relating to other aspects, the Web3 register card may further include the user's personal information, and the processing (using the information contained in the Web3 register card) may be processing that utilizes the personal information contained in the Web3 register card. This allows for safer and easier processing of personal information contained in the Web3 register card when the user of the Web3 register card is the target user.
[0092] In authentication systems relating to other aspects, the Web3 register card may further include passport information relating to the user's passport, and the processing (using the information contained in the Web3 register card) may be processing that utilizes the passport information contained in the Web3 register card. This allows for more secure and easier processing using the passport information contained in the Web3 register card when the user of the Web3 register card is the target user.
[0093] In authentication systems relating to other aspects, the processing (using information contained in the Web3 registration card) may be the check-in process when the target user is staying at the hotel. This allows for a safer and easier check-in process when the user of the Web3 registration card is the target user.
[0094] According to one aspect of the present invention, the authentication system, authentication method, and authentication program make it theoretically possible for accommodations to complete the legally mandated identity verification process (the process of confirming that the other party is who they claim to be) at check-in remotely by utilizing DID / VC technology. In particular, for inbound tourists, a Web3 registration card with pre-verified identity can be created, eliminating the need to present a passport at the front desk during check-in. Furthermore, when staying at accommodations that have adopted this technology during a stay in Japan, the hassle of creating a registration card each time is eliminated. In this embodiment, DID / VC using blockchain technology has been described as an example, but the authentication system, authentication method, and authentication program according to one aspect of the present invention always demonstrate novelty, regardless of conditions such as Web2 or Web3.
[0095] Accommodation facilities face the challenge of a shortage of personnel. Specifically, front desk operations are concentrated during check-in hours, requiring extra staff, but many employees who left during the COVID-19 pandemic have not returned, resulting in a shortage of personnel at these facilities. Furthermore, multilingual front desk staff are needed to accommodate inbound tourists, but such personnel are scarce. According to one aspect of the present invention, the authentication system, authentication method, and authentication program can reduce the number of front desk staff. Specifically, since almost everyone (including inbound tourists) can self-check in, it becomes unnecessary to have staff constantly stationed at the front desk.
[0096] Accommodation facilities face the challenge of reduced efficiency. Specifically, the check-in process itself is time-consuming and inefficient, involving tasks such as filling out and verifying registration cards and copying passports. According to one aspect of the present invention, the authentication system, authentication method, and authentication program can shorten check-in time. Specifically, by obtaining a registration card in advance, face-to-face check-in at the front desk on the day of arrival becomes unnecessary.
[0097] Accommodation facilities face the challenge of declining customer satisfaction. Specifically, making guests wait can lower customer satisfaction. According to one aspect of the present invention, the authentication system, authentication method, and authentication program can improve customer satisfaction. Specifically, customer satisfaction can be improved by shortening check-in times.
[0098] There is a challenge in terms of decreased satisfaction among travelers (especially inbound tourists). Specifically, because guests tend to concentrate at check-in times, they may experience long waits (mental stress due to wasted time). According to one aspect of the present invention, the authentication system, authentication method, and authentication program can improve satisfaction. Specifically, satisfaction improves by reducing waiting times through shortening check-in times by obtaining pre-registration cards. Increasing satisfaction has an impact on repeat customer rates and improving word-of-mouth ratings.
[0099] There is a challenge in terms of decreased satisfaction for tourists (especially inbound tourists). Specifically, when staying at multiple accommodations during a stay in Japan, it is inconvenient to have to present a passport at every facility. According to one aspect of the present invention, the authentication system, authentication method, and authentication program can improve satisfaction. Specifically, once a Web3 registration card is registered with this service, if the accommodation has already implemented this service, it will not be necessary to fill out a registration card or present a passport at check-in, thus improving satisfaction.
[0100] According to one aspect of the present invention, the authentication system, authentication method, and authentication program prove that the information (including biometric information) contained in the Web3 register card belongs to the person concerned, and when checking in at an accommodation facility, identity verification can be performed based on this information. Conventionally, for example, a front desk staff member would check the passport to confirm that the person standing in front of them was the same person as the one in the passport's photograph. According to one aspect of the present invention, the authentication system, authentication method, and authentication program can be implemented even without face-to-face interaction.
[0101] According to one aspect of the present invention, the authentication system, authentication method, and authentication program eliminate the need for inbound tourists to create a registration card or present their passport each time they visit an accommodation facility that has already implemented this service (a difference from self-check-in services).
[0102] According to one aspect of the present invention, the authentication system, authentication method, and authentication program allow users to register information on their Web3 POS card, verify their identity in advance, and guarantee, based on biometric authentication and key information, that the data owner and the disclosing party are the same person, enabling them to disclose the information voluntarily. Furthermore, the user can verify reservation information and check in using the identity verification information as a key.
[0103] According to one aspect of the present invention, an authentication system, authentication method, and authentication program can be used in the check-in process of accommodation facilities. By combining pre-acquired biometric information with KYC-certified information and performing biometric authentication again when disclosing information, it is possible to guarantee that the information of the person in question is disclosed with their consent. This allows for the automation of identity verification (such as verifying whether the person in front of the person in the passport photo is the same person) that was previously done visually, leading to labor savings. For example, if person A presents a Web3 registration card that has been previously authenticated as belonging to them through KYC at the front desk, the front desk can verify that they are indeed the owner of the Web3 registration card through biometric authentication, grant them permission to stay, and obtain correct guest information. All of this can be done automatically.
[0104] [Differentiation] The present disclosure has been described in detail above based on its embodiments. However, the present disclosure is not limited to the embodiments described above. The present disclosure can be modified in various ways without departing from its essence.
[0105] The processing steps for an authentication method performed by at least one processor are not limited to the examples in the above embodiment. For example, some of the steps described above may be omitted, or each step may be performed in a different order. Also, any two or more of the steps described above may be combined, or some of the steps may be modified or deleted. Alternatively, other steps may be performed in addition to each of the above steps.
[0106] For example, some of the processes described in the "System Operation" section above may be omitted. [Explanation of Symbols]
[0107] 10...Authentication system, 11...Storage unit, 12...Acquisition unit, 13...Determination unit, 14...Processing unit, 100...Computer, 101...Processor, 102...Main memory unit, 103...Auxiliary memory unit, 104...Communication control unit, 105...Input device, 106...Output device, 110...Authentication program, 111...Acquisition module, 112...Determination module, 113...Processing module.
Claims
1. Equipped with at least one processor, The at least one processor, Each piece of information included is certified information that has been previously certified by a certification authority as belonging to the user, and certified information including the user's biometric information is obtained. Based on the biometric information contained in the acquired certified information and the biometric information of the target user obtained from the target user, a determination is made as to whether or not the user of the certified information is the target user. Authentication system.
2. The biometric information of the target user obtained from the aforementioned target user is the information obtained when performing the aforementioned determination. The authentication system according to claim 1.
3. With the consent of the aforementioned target user, the verified information is obtained, and the determination is made based on the obtained verified information. The authentication system according to claim 1.
4. The system obtains the verified information specified by the target user and performs the determination based on the obtained verified information. The authentication system according to claim 1.
5. Of the information included in the aforementioned certified information, only the information for which the target user has given prior permission for disclosure will be used. The authentication system according to claim 1.
6. If, in the above determination, it is determined that the user of the verified information is the target user, then processing shall be performed using the information contained in the verified information. The authentication system according to claim 1.
7. The aforementioned verified information further includes the user's personal information, The aforementioned process is a process that utilizes the personal information contained in the certified information. The authentication system according to claim 6.
8. The aforementioned verified information further includes passport information relating to the user's passport, The aforementioned process is a process that utilizes the passport information contained in the certified information. The authentication system according to claim 6.
9. The aforementioned process is the check-in process for the aforementioned user upon arrival at the accommodation. The authentication system according to any one of claims 6 to 8.
10. An authentication method performed by an authentication system comprising at least one processor, The steps include obtaining certified information, which is certified by a certification body to be the user's own information, and which includes the user's biometric information. A step of determining whether the user of the certified information is the target user based on the biometric information contained in the acquired certified information and the biometric information of the target user obtained from the target user, Authentication methods including those mentioned above.
11. The steps include obtaining certified information, which is certified by a certification body to be the user's own information, and which includes the user's biometric information. A step of determining whether the user of the certified information is the target user based on the biometric information contained in the acquired certified information and the biometric information of the target user obtained from the target user, An authentication program that causes a computer to execute something.
Citation Information
Patent Citations
Authentication device and authentication method
WO2022172491A1
Reception system, reception method, and program
JP6777340B1