How to manage data associated with your watch
The NFC chip-enabled card system for watches provides secure access to watch-specific and personal data, addressing outdated communication methods by ensuring reliable authentication and user data protection.
Patent Information
- Application Number
- JP2025543869
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Priority Date
- 2023-01-30
- Filing Date
- 2024-01-30
- Publication Date
- 2026-02-18
AI Technical Summary
Existing communication methods for managing watch-related data with retailers are outdated, insecure, and compromise user personal data, lacking reliable authentication and traceability.
A data management system using an NFC chip-enabled card with a unique identifier, integrated with a user's smartphone, allows secure access to watch-specific and personal data through a web browser, switching between service and anonymous modes based on user possession, ensuring secure and efficient communication.
Enables secure, efficient communication between users and retailers without compromising personal data, leveraging standard terminal functions and multi-factor authentication for enhanced security and user experience.
Smart Images

Figure 2026505768000001 
Figure 2026505768000002 
Figure 2026505768000003
Abstract
Description
[Technical Field]
[0001] The present invention relates to a method for managing data associated with a watch belonging to a user. The present invention also relates to a data management system for implementing the method. The present invention further relates to a computer program for implementing the method. The present invention additionally relates to a recording medium on which the program is recorded. The present invention finally relates to a signal from a data carrier carrying the computer program product. [Background technology]
[0002] When a user delivers a watch to a retailer for additional service (after-sales service), it is essential that the user be able to communicate with the retailer, in particular to obtain a quote and / or agree to the work to be performed on the watch. This communication is typically carried out by email, fax, or telephone. These communication methods are substantially outdated compared to what new technologies may offer and can only provide a relatively limited customer experience. Furthermore, these communication methods are either insecure or have low security guarantees. In particular, they cannot reliably guarantee that the communication was actually exchanged with the actual user of the watch. As a result, the protection of the user's personal data may be compromised.
[0003] Today, solutions in the watchmaking sector implement specific means of access using cards in identity card format according to the ISO 7810 ID-1 standard, making it possible to display specific data about a watch or a combination of its characteristics on the terminal.
[0004] The "Watch Certificate" proposes a card intended to verify the authenticity of a watch. The card can be used to access various specific data of the watch via a web page, for example by scanning a QR code present on the card with a smartphone. Furthermore, various personal data, in particular data relating to the watch's owner, can also be accessed by entering the code printed on the card. The solution uses blockchain technology to guarantee a very high level of traceability of specific and personal data.
[0005] A similar type of blockchain solution by the "Ariane" consortium is being used by other watch manufacturers. It is designed to provide full traceability and prove the authenticity and ownership of a watch. The proposed solution is also a card linked to the watch and equipped with a QR code. Alternatively, the card may be equipped with an NFC (Near Field Communication) chip. When scanned by a smartphone, the card allows the user to access a web page to register their watch and obtain a certificate of authenticity. To obtain the certificate, the user is invited to connect to a dedicated mobile application to generate a certificate in NFT (Non-Fungible Token) format and declare themselves as the first owner.
[0006] The Omega miniature watch brand proposes a solution that can be used to access specific data on the miniature watch using a card equipped with an NFC chip, which requires a user account and a dedicated application on a smartphone compatible with NFC technology.
[0007] Several watch brands are using the solution proposed by the company WISeKey, which uses blockchain technology, in particular to provide watch warranty and / or authentication cards, as well as payment functions linked to the watch.
[0008] It should be noted that the very high level of traceability offered by blockchain technology requires the immutable storage of all historical data and, depending on the measures applied, the personal data of the watch's various owners.
[0009] Furthermore, known solutions require downloading a solution-specific application, creating a user account, and using an identifier, which is inconvenient for the user and prone to security breaches. Summary of the Invention [Problem to be solved by the invention]
[0010] The object of the present invention is to provide a method for managing data associated with a watch belonging to a user, which overcomes the above-mentioned drawbacks and improves on the management methods known from the prior art. In particular, the present invention makes it possible to implement a method that allows easy communication between the user and third parties (database managers and / or retailers and / or organizations responsible for after-sales service) without compromising the security of the user's personal data. [Means for solving the problem]
[0011] The management method according to the invention is defined in claim 1.
[0012] Various embodiments of the method are defined in claims 2 to 11.
[0013] The management system according to the present invention is defined in claim 12.
[0014] Embodiments of the system are defined in claims 13 and 14.
[0015] A program product according to the invention is defined in claim 15.
[0016] The recording medium according to the present invention is defined in claim 16.
[0017] A data carrier signal according to the invention is defined in claim 17.
[0018] The accompanying drawings show, by way of example, embodiments of the management method and of the data management system according to the invention. [Brief explanation of the drawings]
[0019] [Figure 1] FIG. 1 is a schematic diagram of an embodiment of a data management system. [Figure 2] FIG. 2 is a flowchart of a first procedure of an embodiment of a data management method. [Figure 3] FIG. 3 is a flowchart of a second procedure of the embodiment of the data management method. DETAILED DESCRIPTION OF THE INVENTION
[0020] An embodiment of a data management system 100 is described below with reference to Fig. 1. The system 100 may be used to manage data relating to a small watch product 10, for example a clock or small watch, in particular a wristwatch. The small watch product 10 comprises a unique identifier 11, for example a serial number 11. The unique identifier is for example a series of alphanumeric characters, including for example eight random digits. The unique identifier may be printed in a font that allows automatic reading by optical means. The unique identifier is used to manage data relating to the watch product 10, in particular a wristwatch. - on small watch movements, e.g. on the main plate, and / or - on a small watch case, for example on the case or flange, and / or - on the wristlet, for example on the clasp, It may be engraved. The data managed is not limited to data relating to the small watch product 10, but preferably also - data relating to the current user (and also previous users), in particular all or part of the following data: the user's name, the user's address, the user's email address, the user's telephone number, and / or - data relating to the organisation responsible for after-sales service (e.g. retailer), in particular all or part of the following data: name of the organisation, address of the organisation, email address of the organisation, telephone number of the organisation, and / or - data relating to small watch manufacturers or small watch companies marketing small watch products, in particular all or part of the following data: name of the small watch manufacturer or small watch company, address of the small watch manufacturer or small watch company, email address of the small watch manufacturer or small watch company, telephone number of the small watch manufacturer or small watch company; It also relates to.
[0021] The data management system 100 includes: a physical medium 20, for example a card 20 in the format defined by the ISO 7810 ID-1 standard, provided with access means 21 such as an NFC chip 21; a device or terminal or client 30, a web browser application 32 suitable for managing the display of web pages and, more generally, for ensuring communication with the Internet; * a function or means 31 capable of communicating with or reading the access means 21, such as an NFC function 31 or NFC means 31; a device or terminal or client 30, for example a (portable or not) computer, smartphone or tablet, provided with - authentication means 40 verifying the authenticity of the access means 21; a first database 50, for example a relational database, which contains in particular data of a first type 51, in particular personal data 51 of a user, possibly of several users; a second database 60, for example a relational database, that contains data 61 of a second type 61, in particular data specific to the watch product 10, or even to a plurality of watch products 10, such as one or more unique identifiers 11; a server 70, for example a web server or an application server; Includes:
[0022] The web browser application 32 or "web browser" is preferably an application that is integrated as standard into the terminal 30. In other words, the web browser 32 is an application that is pre-installed on the terminal 30 and / or developed by the manufacturer of the terminal 30. The means 31 that are able to communicate with or read the access means 21 are preferably functions that are integrated as standard into the terminal 30, in particular radio communication functions.
[0023] The card 20 , and more particularly the NFC chip 21 , is intended to be associated with at least one particular data item 61 of the miniature watch product 10 , such as the serial number 11 .
[0024] The NFC chip 21 is designed to be activated by the NFC functionality 31 of the terminal 30 when the card 20 is brought close to the terminal 30. The act of bringing the card close to the terminal and activation is referred to herein as a "tap."
[0025] The NFC chip 21 is preferably provided at the point of manufacture with means to guarantee the highest level of security. For this purpose, the NFC chip 21 advantageously comprises a unique number 22, an encryption function, means for generating at least one encryption key 24, such as a character string, and a URL internet address 25. These encryption functions advantageously make it possible to generate encryption parameters 23 using dynamic and / or static variables intended to be transmitted from the terminal 30 to the authentication means 40, via the server 70, during each tap in order to verify the encryption parameters and authenticate the NFC chip 21.
[0026] To be able to decrypt the encrypted parameters 23 , the authentication means 40 include at least one decryption key 41 which in particular corresponds to the encryption key 24 of the NFC chip 21 .
[0027] The NFC chip 21 preferably does not require a power cell or battery, it is powered by electromagnetic induction generated by the terminal 30 during tapping.
[0028] Each tap of the card 20 is designed to initiate a connection to a web page 71 dedicated to the associated watch product 10. On said web page, data contained in the first database 50 and the second database 60 may be displayed. The data associated with the watch product 10 belonging to the user may be: - data of a first type 51 stored in, for example, a first database 50; - data of a second type 61, stored for example in a second database 60; Includes:
[0029] The system 100 includes all hardware and / or software means for implementing the management method that is the object of the present invention. These means may also include software means. Preferably, the means form a distributed computing architecture, the means being located on different computers, machines or physical entities.
[0030] An embodiment of a method for managing data associated with a watch belonging to a user is described below with reference to figures 2 and 3. The embodiment is advantageously implemented by the above-mentioned management system. The management method may therefore be considered as a method for operating the above-mentioned management system.
[0031] The method includes the following exclusive modes: - a first mode S10 in which the user can view data of a first type 51, for example on a smartphone, tablet or computer and / or through a website or application, in step S50; - A second mode S20 in which the user cannot view data of the first type 51 in step S60.
[0032] The two modes are mutually exclusive, i.e., the method and system 100 implementing the modes: - in the first mode S10, or - It is in the second mode S20.
[0033] In the first mode S10, data of the first type 51 is advantageously viewable by the user through the use of the terminal 30 or through the server 70.
[0034] The two modes help provide different experiences for users. Advantageously, in a first mode S10 (hereinafter also referred to as "service" mode), the physical medium 20 allows the user to view, on a web page 71, data 61 specific to the watch product 10 associated with the physical medium 20. In other words, the physical medium 20 may be used to access the identification file and personal information of the watch product. In the first mode, the physical medium 20 allows the user to access personal data 51, such as a quote for after-sales service for the watch product 10 or notices issued by the organization responsible for after-sales service for the watch product 10. Furthermore, in the first mode, the user advantageously has the possibility to interact with the organization via a dedicated interface on the web page 71. This interaction is advantageously protected. In the second mode S20 (hereinafter also referred to as "anonymous" mode), the data of the first type 51, in particular the user's personal information, is not accessible. In fact, the physical medium 20 only allows the user to view, on a dedicated web page 71, the specific data 61 of the watch product 10 associated with the physical medium 20, such as the watch product's identification file and personal information.
[0035] The mode of the management method or the operating mode of the management system (first mode S10 or second mode S20) depends on the association or disassociation of the watch product 10 with the user, in particular - data of a first type 51, for example stored in a first database 50, and - data of a second type 61, stored for example in a second database 60, It is defined according to association or dissociation.
[0036] For example, data is associated / disassociated through actions (such as input) performed by a data manager (e.g., an organization responsible for after-sales service operations, or a retailer) via a computer program or application provided to them.
[0037] For example, data or database association may be foreseen only when the small product 10 is handed over to an organization, e.g., for maintenance. In this case, the management system may be configured in a first "service" mode. Otherwise, the management system may be configured in a second "anonymous" mode.
[0038] Advantageously, the mode can be changed without limit depending on whether the user has the miniature watch product 10 in their possession or not.
[0039] More generally, - in a first "service" mode, the terminal 30 allows the display of data stored in the first database 50, even if the first and second databases are not related; and In a second "anonymous" mode, the terminal 30 does not allow the display or viewing of data stored in the first database 50, even if the first and second databases are associated.
[0040] In a first "service" mode, when a user brings their watch product 10 to an organization, such as a retail store, for after-sales service, the user's personal data 51 is recorded or modified in the first database 50. Personal data 51, such as the user's name, address, email address, and phone number, may be recorded in the database 50, for example. This personal data 51 is necessary, among other things, to generate quotes, invoices, and to communicate with the user. This personal data may be recorded or modified when the user hands over their watch product. Alternatively, the personal data 51 may already be included in the first database 50 when the user hands over their watch product 10. Of course, the first database 50 is not accessible to third parties and uses security methods that optimally protect the user's personal data 51. Security methods may include access control, authentication management, encryption, network segmentation, and filtering. Furthermore, this data may be processed in a manner that complies, among other things, with the General Data Protection Regulation (GDPR), for example, in Europe.
[0041] A physical medium 20, such as a card 20, associated with the watch product 10 is provided to the user to enable the user to connect to a web page 71 dedicated to the watch product 10 via a terminal 30 of the user's choice, which allows access to the server 70 via Internet Protocol. Preferably, however, to enable the user to connect to the web page 71 according to the first "service" mode, at least one item of the user's personal data 51 needs to be associated with a specific data item 61 of the watch product 10. For example, the user's telephone number may be associated with the serial number 11 of the watch product 10. The association is preferably between the user's personal data 51 and the watch product's specific data 61, i.e. - Data from the first database 50; - 60 data from the second database; This is done automatically by a computer system that provides an interface between the
[0042] However, the transition to the first "service" mode S10 (from the second "anonymous" mode S20) is triggered or performed by a first event caused by a data manager (e.g., an organization or retailer). The first event may be, for example, an activation or action on a computer system used by the organization to which the user delivers their watch product. Preferably, the first "service" mode is active or activatable only when the user's watch product 10 is delivered to the organization.
[0043] In the second "anonymous" mode, when a user possesses the watch product 10, preferably no association is established between the user's personal data 51 and the watch product 10's specific data 61. However, the user can still use the physical medium 20 associated with the watch product 10, which allows the user to access the watch product 10's specific data 61 on a dedicated web page 71.
[0044] The transition (from the first "service" mode S10) to the second "anonymous" mode S20 is triggered or performed by a second event, such as - an action by a data manager, such as an activation or action on a computer system running within the organization where the user delivers his / her watch product; - an action by the user, such as a specific action on the human-machine interface of the terminal 30 when connected to the server 70 in a secure mode that allows viewing of data of the first type 51. Such an action may consist of a communication or interaction with the organization, such as, for example, rejecting a quote. - expiry of a timeout: for example, it may be defined that by default the first "service" mode S10 remains active for a given number of days, for example 30 days, at the end of which an automatic switch to the second "anonymous" mode S20 occurs, without any specific action being taken by the user or a third party; may be.
[0045] For this reason, as shown in Figure 2, test step T05 tests whether the most recent event is a first event or a second event. If the most recent event is a first event, there is a transition to first mode S10. If not, the most recent event is a second event and there is a transition to second mode S20.
[0046] Once the physical medium 20 is in the user's hands, the user can connect to the server via a web page 71 dedicated to the miniature watch product 10. It is therefore possible to proceed as follows: 1. A user has a terminal 30, such as a smartphone 30, equipped with an NFC function 31, and taps the NFC chip 21 of the physical medium 20 with the terminal. 2. At the time of the tap, the NFC chip 21 is activated and provides the terminal 30 with parameters 23 encrypted with at least one encryption key 24, and generates a URL 25 pointing to the server 70. The URL is preferably a new, different, and non-reusable URL each time the NFC chip is used or during each tap. 3. The server 70 then relays, among other things, the encrypted parameters 23 to the authenticator 40. 4. Using at least one decryption key 41, the authentication means 40 proceeds to authenticate the NFC chip 21 by decrypting the encrypted parameters 23 and decoding the NFC chip's unique number 22. Furthermore, the authentication of the NFC chip 21 may be controlled by other means to further increase security. 5. If the authenticity of the NFC chip 21 is confirmed, the authentication means 40 returns, in particular, the unique number 22 of the NFC chip 21 to the server 70. If not, the connection procedure is interrupted. 6. Using the unique number 22, the server 70 consults the second database 60 to look for the serial number 11 of the watch product 10 associated with the NFC chip 21. If the serial number 11 is then further associated with an item of the user's personal data 51, the server 70 creates a session in the web browser 32 of the smartphone 30 with a first "service" mode web page 71 that allows access to data from the first and second databases. Otherwise, a session is created with a second "anonymous" mode web page 71.
[0047] In other words, as shown in Figure 3, in the case of an attempt to view data using a physical medium 20, in step T30 a procedure is initiated to authenticate the physical medium, in particular the access means 21, and if the procedure to authenticate the physical medium is successful, a test is performed to learn whether the system is in the first mode S10 or the second mode S20. If the system is in the first mode S10, a strong authentication procedure T40 is initiated, i.e. a procedure to determine whether the user holding the physical medium is authenticated. If the user authentication procedure is successful, access is gained to step S50, where data of the first type 51 can be viewed. Otherwise (i.e. the strong authentication procedure fails or the system is in the second mode S20), access is gained to step S60, where data of the first type 51 cannot be viewed.
[0048] Preferably, only one session can be open at a time with the physical medium 20, and in particular, only one session can be open at a time with the physical medium 20 in the first "service" mode. However, as many sessions as desired can be open, e.g., unlimited and consecutive, as long as the physical medium 20 is associated with the watch product 10.
[0049] Regardless of the mode ("service" or "anonymous"), a session is opened at the user's terminal 30 in the terminal's web browser 32. Advantageously, no additional or dedicated applications, user accounts, or account identifiers are required to browse and display the web page 71.
[0050] In the first "service" mode, it is advantageous to perform strong authentication of the user, such as multi-factor authentication using at least two distinct factors. The authentication may involve biometric data and / or a temporary code and / or a smart card and / or a mobile application. The factors may be: - Knowledge-based elements, such as passwords, PINs, or answers to security questions; - Possession-based elements such as security tokens (hardware or software), smart cards, security keys, mobile authentication, SMS, or notifications received on a mobile device; - Biometric factors such as fingerprint, facial recognition, retina scan, iris scan, or voiceprint; - location-based factors, such as network connectivity or geographic location; may be.
[0051] Indeed, in this first "service" mode, the user's personal data 51 can be accessed via a web page 71 displayed on the terminal 30 and via the server 70. For example, to do this, the user is invited to enter a code previously sent by the server 70 to an email address or phone number entered or stored in the first database 50. This code makes it possible for the user attempting to connect to verify that they are the user who sent their personal data 51 and who delivered the watch product 10 to the organization. Advantageously, a new code is generated for each new session.
[0052] The concept of strong authentication is defined as consisting of access verification, including multiple levels, combining different strategies, one of which may consist of testing in various forms (smartcard, telephone, email, etc.).
[0053] If the physical medium 20 is held by another user while the management system is in "service" mode, the other user will advantageously not be able to access the personal data 51 of the user of the watch product 10 because of the strong authentication. In particular, the other user will not be able to receive the code sent from the server 70 to the email address or phone number of the user of the watch product 10. Therefore, the strong authentication of the user will fail.
[0054] In a second, "anonymous" mode, a session is opened by the web browser 32 on the user's terminal 30 to display a web page 71. The session is opened following authentication of the access means 21 by the authentication means 40, although without strong authentication, since no user information or personal data is associated or accessible. In this mode, the session can be opened by anyone who has the physical medium 20 in their possession or who carries the physical medium 20. Indeed, in this session, the user can only access the specific data 61 of the associated watch product 10, excluding access to personal data 51.
[0055] For this reason, preferably, regardless of the mode (“service” or “anonymous”), a session can only be opened after the access means 21 has been authenticated by the authentication means 40 .
[0056] Preferably, regardless of the mode, if the procedure for connecting and opening the session is successful, the web page 71 generated on the user's terminal 30 in steps S50 and S60 includes data of the second type 61, namely: - Small watch product models, - Small watch product photos, - serial number of the small watch product; - warranty expiry date, - Performance measurement, - User manuals, etc. It may be used to display specific data 61 of a small watch product, such as:
[0057] All of this data is advantageously anonymous. The data is stored in particular in a second database 60. For this reason, in the first mode S10 or in the second mode S20, the data of the second type 61 is preferably viewable by the user. The data of the second type 61 is in particular viewable without a password or user account.
[0058] In a second, "anonymous" mode, it is sufficient to have the physical medium 20 to open a session with the browser 32 and view data located in the second database 60. This mode may be considered a mode without user authentication, since the owner of the physical medium 20 does not need to be known and the physical medium may have been given away by the user or stolen from the user. Thus, browsing is anonymous.
[0059] Furthermore, in the first "service" mode, web page 71 may display personal data 51, after strong authentication of the user, such as information about current after-sales service, after-sales service history, quotes, and receipts. Furthermore, also after strong authentication, a communication interface may be created on web page 71 between the user and the organization that owns watch product 10. Using the communication interface, the organization can, for example, submit a quote to the user. Advantageously, the user can interact with such quote by accepting or rejecting the quote in whole or in part. The user can also leave comments or directly contact the organization by exchanging messages with them.
[0060] Preferably, only strictly necessary user personal data 51 is potentially accessible or viewable on the web page 71 .
[0061] Note that in the first "Service" mode, the user may optionally receive a message from the organization, e.g., an SMS or email, inviting the user to connect to view new notifications on web page 71. Of course, strong authentication is required to open a new session on browser 32 and access these notifications via terminal 30.
[0062] To disconnect from the web page 71, i.e., to close the session, it is sufficient to simply close the web browser 32, regardless of the operating mode of the management system. Preferably, during a short, defined timeout period, which may last for example a few minutes or tens of minutes, the session of the web page 71 remains accessible to the user without the need to perform a new procedure to open a connection or session. This ensures smooth browsing of the website 71 and prevents any inconvenience to the user caused by an untimely disconnection between the terminal and the server or a temporary connection failure.
[0063] Advantageously, the same physical medium 20 is selectively configured to be able to display the web page 71 in a first "service" mode and a second "anonymous" mode.
[0064] Because of its association with the serial number 11 of the watch product 10 and the authentication of the access means 21 during tapping, the physical medium 20 may also be used in a second, "anonymous" mode as a certificate of authenticity for the watch product 10, particularly when the watch product 10 is sold or serviced by an organization. As mentioned above, in the "anonymous" mode, no personal data or history can be accessed. Therefore, the physical medium 20 can be transmitted without any particular precautions and without risking compromising the protection of personal data of previous users of the watch product 10.
[0065] Note that in the first "service" mode S10, the watch product 10 is typically not in the hands of the user, but in the hands of the organization. As a result, the watch product cannot be sold under these conditions. To be sold, the watch product must be retrieved by the user, which inevitably results in the card being moved to the "anonymous" mode S20.
[0066] As an alternative to connection to a terminal provided with means 31 for communicating with or reading the access means 21, the physical medium 20 may also be used to connect to other terminals that do not have means 31 for communicating with or reading the access means 21. In that case, the procedure may be as follows: 1. First, a dedicated web page is opened in the web browser of another terminal and specific data items 61 of the small watch product 10, such as the serial number 11, are entered there. After that, the session is put on standby. 2. To unlock the session, the user is asked to tap the terminal 30 with a physical medium 20 associated with or corresponding to the serial number 11 previously entered at the other terminal. The terminal 30 then displays to the user that the session is on standby at the other terminal and asks for confirmation to open the session. 3. Once unlocked, the web page on that session contains the same or substantially the same functionality and interface as the web page 71 generated on the web browser of the terminal 30.
[0067] As mentioned above, when the management system is in the first "service" mode S10, strong or multi-factor authentication is required to access personal data 51.
[0068] Alternatively, instead of the session being put on standby at the end of the first step of the above procedure, an association request may be generated. To confirm the association request, the user is required to tap the terminal 30 with the physical medium 20. On the terminal 30, the user must then enter the information of the association request displayed on the other terminal. If the association request is confirmed, a session is created and the web page 71 is then generated.
[0069] Preferably, regardless of the embodiment, an NFC chip can only be associated with a single watch product serial number, however, it is preferably possible to associate several NFC chips with the same serial number.
[0070] Regardless of the embodiment, the physical media may include printing or engraving that allows a user to identify, for example, the watch product with which the media is associated.
[0071] Regardless of the embodiment, the miniature watch product may in particular: - Small clocks, especially wristwatches, - Small watch bracelet, - clock movement, may be.
[0072] Regardless of the embodiment, the physical medium 20 may include access means 21 other than an NCF chip. The access means may, in particular, - a QR code, for example printed on a physical medium 20, or - a bar code, for example printed on a physical medium 20, or - RFID tags, for example attached to or embedded in physical media; may be.
[0073] In the case of a QR code or barcode, the user simply needs to scan the QR code or barcode with the terminal during the connection procedure, rather than tapping the NFC chip 21. However, QR codes or barcodes cannot be authenticated, as they do not benefit from encryption features, such as the generation of dynamic variables, which allows optimal security for connections to web pages dedicated to small watch products. Furthermore, unlike NFC chips, and more specifically, unlike the NFC chip 21 of the present invention, QR codes or barcodes can be very easily replicated, for example, by simply taking a photo of them. Alternatively, other types of access means may be used. Furthermore, the physical medium may include an access means 21, including any combination of the following elements and / or other suitable elements, without limitation: - NFC chip, - QR code, or - Barcode, or - RFID tags.
[0074] The physical medium 20 may be a medium other than a card, such as a piece of paper, any object, or a small watch product.
[0075] Alternatively, the system may also use means, such as applications and / or technologies, that are not standardly integrated into the terminal 30. Such means must be specifically added to the terminal 30 in order to become part of the data management system according to the invention.
[0076] The first and second databases may be hosted on separate machines or within the same machine. Of course, even if the databases are hosted within the same machine, the association procedure remains as described above. The association between the user's data and the product's data is preferably only established temporarily, when the user delivers their watch product to the organization.
[0077] The solution according to the invention makes it possible to carry out the method using a smartphone or tablet or computer type terminal, without the need to install any specific application, which may pose a risk to the security of personal data. - browsing the web page 71 requires only applications that are integrated as standard into the terminal 30; - reading or communicating with the NFC means 31 requires only functions that are integrated as standard in the terminal 30; More generally, the method requires only applications and functions that are integrated as standard into the terminal 30.
[0078] Furthermore, viewing web page 71 does not require the creation of a user account or account identifier, which may compromise the security of personal data.
[0079] Finally, the solution according to the invention does not allow the tracking of personal data, or more specifically the tracking of the various owners of the watch.
[0080] The proposed solution helps optimize the customer experience by leveraging the advanced capabilities offered by some mobile devices, such as smartphones. Specifically, the solution allows a user to securely access a web page dedicated to the user's watch on their mobile device using a unique means of access that can be authenticated and associated with the watch product. The access means is in the form of an object provided by the retailer or the organization responsible for after-sales service operations. The solution provides simplified and improved exchange and communication capabilities while enhancing the protection of the user's personal information.
Claims
1. A method for managing data associated with a watch (10) belonging to a user, said data comprising: Data of a first type (51) including or consisting of personal data of said user, and Data of a second type (61) comprising or consisting of data specific to said timepiece, Including, The method comprises: a first mode (S10) in which the data of the first type (51) is viewable by the user; a second mode (S20) in which the data of the first type (51) is not viewable by the user; Including the exclusive mode of The data is viewable via a web page (71). Management method.
2. In the first mode (S10) or the second mode (S20), the data of the second type (61) is viewable by the user. The management method according to claim 1 .
3. The transition from the first mode (S10) to the second mode (S20) is By Data Manager actions, According to the user's actions, Upon said expiration of the timeout, This will be carried out by one of the events, The management method according to claim 1 or 2.
4. The transition from the second mode (S20) to the first mode (S10) is performed by an action of a data manager. The management method according to any one of claims 1 to 3.
5. the data of the first type (51) is viewable by the user subject to a strong authentication of the user or a multi-factor authentication of the user, in particular an authentication using a code sent to the user that allows connection to the web page (71); The management method according to any one of claims 1 to 4.
6. said data of said first type or said second type being viewable by said user subject to authentication of said access means (21), in particular said NFC access means (21), by said authentication means (40); The management method according to any one of claims 1 to 5.
7. said access means being associated with at least one specific data item of said watch, and / or said access means being provided with a cryptographic function that allows the generation of a new URL to a new web page (71) for each use; The management method according to claim 6.
8. In the first and second modes (S10, S20), the data of the second type (61) can be anonymously viewed by the user without user authentication. The management method according to any one of claims 1 to 7.
9. The first mode (S10) allows secure communication between the user and other authorized individuals, in particular the manager, The management method according to any one of claims 1 to 8.
10. the method is implemented using a smartphone or tablet or computer type terminal (30), which only requires the application integrated into the terminal (30) as standard and / or does not require the installation of any specific application and / or does not require the use of a user account and / or does not require the use of a user account identifier, The management method according to any one of claims 1 to 9.
11. When switching from the second mode (S20) to the first mode (S10), at least one data item of the first type (51) is associated with at least one data item of the second type (61), and when switching from the first mode (S10) to the second mode (S20), the data of the first type (51) and the data of the second type (61) are dissociated. The management method according to any one of claims 1 to 10.
12. A system (100) for managing data associated with a watch (10) belonging to a user, said system comprising means (20, 30, 40, 50, 60, 70) for implementing the method according to any one of claims 1 to 11, system.
13. The system includes an NFC access means (21), The system of claim 12.
14. The system includes a means (31) capable of communicating with or reading the access means (21), The system of claim 13.
15. A computer program product downloadable from a communications network and / or recordable on a computer-readable and / or computer-executable data carrier, said program comprising instructions which, when executed by the computer, cause the computer to carry out the method of any one of claims 1 to 11. Computer program products.
16. A computer-readable storage medium containing instructions which, when executed by a computer, cause the computer to perform the method of any one of claims 1 to 11.
17. 16. A signal from a data carrier carrying the computer program product of claim 15.