Information processing device, information processing system, information processing method, and program
The system manages digital assets by registering agents, sending confirmations, and granting authority to agents upon successful authentication, addressing unresponsive owner issues and reducing user workload.
Patent Information
- Authority / Receiving Office
- JP · JP
- Patent Type
- Patents
- Current Assignee / Owner
- NEC CORP
- Filing Date
- 2025-04-17
- Publication Date
- 2026-05-11
AI Technical Summary
Existing digital asset management systems face challenges in managing digital assets when the owner becomes unresponsive for an extended period, leading to unmanaged assets or excessive user interaction due to inappropriate setting periods for confirmation messages.
A system that registers agent information for a member, sends confirmation messages if there's no account access, transitions to sending messages to agents if the member doesn't respond, and grants authority to the agent upon successful authentication.
Ensures proper management of digital assets by authorizing agents when owners are unresponsive, preventing unmanaged assets and reducing user workload from excessive confirmations.
Smart Images

Figure 0007856195000001 
Figure 0007856195000002 
Figure 0007856195000003
Abstract
Description
Technical Field
[0001] The present disclosure relates to a digital asset management device, a digital asset management system, a digital asset management method, and a non - temporary computer - readable medium.
Background Art
[0002] In recent years, transactions using digital assets, in which the economic value of assets is expressed digitally, have been carried out. Digital assets include, for example, electronic money, Internet bank accounts, cryptographic assets, accounts of SNS (Social Networking Service), etc.
[0003] Such digital assets have information stored in a predetermined management server or the like in digital form. Therefore, when the owner of a digital asset dies or when it becomes difficult for the owner to manage it, the digital asset may not be managed. In the case of a paid membership service, the fee will continue to be charged until the withdrawal procedure is completed. Also, even if the owner's family members, etc. know the existence of the digital asset, they may not be able to promptly take over the management of the asset because they do not know the ID and password.
[0004] In response to such problems, as a related technology, Patent Document 1 discloses an information processing apparatus including receiving means for transmitting confirmation information for confirming whether a user is alive to a user terminal and receiving response information to the confirmation information from the user terminal. When the information processing apparatus determines that no response information has been received within a certain period of time, it reads asset information and successor identification information from a storage unit based on the user's identification information, and includes control means for associating the asset information and the successor identification information and storing them in the storage unit. With such a configuration, the information processing apparatus disclosed in Patent Document 1 can read the location information of the successor and inquire whether to approve or abandon the succession. Also, when approval information indicating approval of the inquiry is received, it executes processing related to the succession of assets for the successor.
Prior Art Documents
[0005] [Patent Document 1] Japanese Patent Publication No. 2012-248021 [Overview of the Initiative] [Problems that the invention aims to solve]
[0006] In the technology disclosed in Patent Document 1, if the setting period for sending confirmation information to the user is long, there is a risk that the user will not respond, and by the time inquiries are made to the heirs, a considerable amount of time may have passed since the user became unable to respond. In such cases, digital assets may remain unmanaged for an extended period. On the other hand, if the setting period is short, a large amount of confirmation information will be sent to the user, creating extra work for the user to send response information.
[0007] The purpose of this disclosure is to provide a digital asset management device, a digital asset management system, a digital asset management method, and a non-temporary computer-readable medium that can appropriately manage digital assets, in light of these challenges. [Means for solving the problem]
[0008] The digital asset management device relating to this disclosure is A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a confirmation message to the member if there has been no access to the account for a period of time set by the member, If the member does not respond to the confirmation notice, a second transmission means sends a message to the agent; Authentication control means for controlling authentication to the agent when the agent responds to the agent's contact, The system includes, upon successful authentication, a means for granting authority to the agent to grant authority over the member's digital assets.
[0009] The digital asset management system relating to this disclosure is Authentication device, Equipped with a digital asset management device, The aforementioned digital asset management device is A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a confirmation message to the member if there has been no access to the account for a period of time set by the member, If the member does not respond to the confirmation notice, a second transmission means sends a message to the agent; In response to the aforementioned agent contact, if the agent responds, the authentication device is provided with authentication control means to control the authentication of the agent, The system includes a means for granting authority to the agent to grant authority over the member's digital assets if the authentication is successful.
[0010] The digital asset management method relating to this disclosure is: Register the agent's information for the member who has an account. If there is no access to the account for a period longer than the period set by the member, a confirmation message will be sent to the member. If the member does not respond to the aforementioned confirmation notice, a message will be sent to the agent. When the agent responds to the agent's contact, the authentication of the agent is controlled. If the authentication is successful, the agent is granted authority over the member's digital assets.
[0011] The non-temporary computer-readable medium on which the program relating to this disclosure is stored is, A registration process to register the agent's information for the member information of a member who has an account, When there is no access to the account for a period set by the member, a first transmission process of sending a confirmation notice to the member; When there is no response from the member to the confirmation notice, a second transmission process of sending an agent notice to the agent; When there is a response from the agent to the agent notice, an authentication control process of controlling the authentication of the agent; When the authentication is successful, an authorization process of giving the agent the authority regarding the digital assets of the member, and Execute on a computer.
Effect of the Invention
[0012] According to the present disclosure, it is possible to provide a digital asset management device, a digital asset management system, a digital asset management method, and a non-temporary computer-readable medium capable of appropriately managing digital assets.
Brief Description of the Drawings
[0013] [Figure 1] It is a block diagram showing the configuration of the digital asset management device according to Embodiment 1. [Figure 2] It is a flowchart showing the flow of the digital asset management process according to Embodiment 1. [Figure 3] It is a block diagram showing the configuration of the digital asset management system according to Embodiment 2. [Figure 4] It is a block diagram showing the configuration of the authentication device according to Embodiment 2. [Figure 5] It is a flowchart showing the flow of the face information registration process according to Embodiment 2. [Figure 6] It is a flowchart showing the flow of the face authentication process according to Embodiment 2. [Figure 7] It is a block diagram showing the configuration of the digital asset management device according to Embodiment 2. [Figure 8] It is a diagram showing an example of the member information according to Embodiment 2. [Figure 9] This figure shows an example of agent information according to Embodiment 2. [Figure 10] This figure shows an example of asset management information according to Embodiment 2. [Figure 11] This figure shows an example of a registration screen for asset management information according to Embodiment 2. [Figure 12] This figure shows another example of the asset management information registration screen according to Embodiment 2. [Figure 13] This is a flowchart showing the asset management information registration process according to Embodiment 2. [Figure 14] This is a flowchart showing the confirmation contact transmission process according to Embodiment 2. [Figure 15] This is a flowchart showing the agent contact transmission process according to Embodiment 2. [Figure 16] This flowchart shows the authentication control process and authorization granting process according to Embodiment 2. [Figure 17] This flowchart shows the agent verification process according to Embodiment 2. [Figure 18] This is a diagram showing an example of a hardware configuration. [Modes for carrying out the invention]
[0014] Embodiments of the present disclosure will be described in detail below with reference to the drawings. In each drawing, the same or corresponding elements are denoted by the same reference numerals, and redundant explanations will be omitted where necessary for clarity.
[0015] <Embodiment 1> Embodiments of this disclosure will be described below with reference to the drawings. Figure 1 is a block diagram showing the configuration of the digital asset management device 10 according to this embodiment. The digital asset management device 10 includes a registration unit 11, a first transmission unit 12, a second transmission unit 13, an authentication control unit 14, and an authorization granting unit 15.
[0016] The registration unit 11 registers the agent's information for the member information of the member who has an account. The first transmission unit 12 sends a confirmation message to the member if there has been no access to the account for a period of time set by the member. The second transmission unit 13 sends a message to the agent if the member does not respond to the confirmation message. The authentication control unit 14 controls the authentication of the agent when it receives an agent response to an agent contact. The authorization unit 15 grants the agent authorization regarding the member's digital assets if authentication is successful.
[0017] Figure 2 is a flowchart showing the flow of digital asset management processing performed by the digital asset management device 10 according to this embodiment. The registration unit 11 registers the agent's information with the member's information (S11). The first transmission unit 12 determines whether or not there has been access to the account within the period set by the member (S12). If there has been access (YES in S12), the process ends. If there has been no access (NO in S12), the first transmission unit 12 sends a confirmation message to the member (S13).
[0018] The second transmission unit 13 determines whether or not a member has responded to the confirmation message (S14). If a member has responded (YES in S14), the process ends. If there is no member response (NO in S14), the second transmission unit 13 sends a representative message to the representative (S15).
[0019] The authentication control unit 14 determines whether or not a response has been received from the agent in response to the agent contact (S16). If there is no response from the agent (NO in S16), the process ends. If there is a response from the agent (YES in S16), the authentication control unit 14 controls the authentication for the agent (S17). For example, the authentication control unit 14 requests authentication using biometric authentication or a password from an external authentication device and receives the authentication result.
[0020] The authorization granting unit 15 determines whether authentication to the agent was successful (S18). If authentication fails (NO in S18), the process terminates. If authentication is successful (YES in S18), the authorization granting unit 15 grants the agent authority over the member's digital assets (S19).
[0021] As described above, in the digital asset management device 10 of this embodiment, if there is no access to the account within the period set by the member, the device sends a confirmation message to the member. If the member does not respond, the digital asset management device 10 sends a message to the agent. If the agent responds, the digital asset management device 10 authenticates the agent, and if the agent is authenticated successfully, it grants the agent authority over the member's digital assets.
[0022] In this way, even if a member has not accessed their account for a set period of time, they can still properly manage their digital assets by granting authority to a representative.
[0023] <Embodiment 2> Next, an example configuration of the digital asset management system 1000 according to Embodiment 2 will be described. This embodiment is a specific example of Embodiment 1 described above.
[0024] (Digital Asset Management System 1000) Figure 3 is a block diagram showing the configuration of the digital asset management system 1000 according to this embodiment. The digital asset management system 1000 includes an authentication device 100, a digital asset management device 200, a communication terminal 300, a communication terminal 301, and a communication terminal 302.
[0025] The authentication device 100, the digital asset management device 200, the communication terminal 300, the communication terminal 301, and the communication terminal 302 are all connected via network N. Network N can be wired or wireless, and the type of communication protocol is irrelevant.
[0026] The digital asset management system 1000 registers the agent's information for the member's information and, if the member has not accessed the digital assets for a set period of time or longer, performs a predetermined determination process and grants authority over the digital assets to the agent. Digital assets may include, for example, electronic money, deposits in internet bank accounts, securities held by online securities firms, or digital data such as text, images, videos, and music posted on social media. Digital assets may also include management information for managing these assets. Management information may include, for example, the ID and password for logging into services that utilize digital assets. Therefore, for example, the ID and password for accessing an account on an e-commerce (EC) site used by a member may be included in digital assets.
[0027] For example, suppose a member is making regular purchases of products (such as supplements or cosmetics) on an e-commerce site. If the member has not accessed the e-commerce site for a set period of time, a predetermined decision process will be followed, and authority will be granted to an agent. Once the agent is authorized to obtain the ID and password for logging into the e-commerce site, the agent can use them to access the member's account. The agent can then stop the regular purchase of products as needed. In this way, even in cases where payments are automatically made via bank account withdrawal, etc., the use of the service can be stopped promptly. Note that the content of digital assets is not limited to these examples.
[0028] In this embodiment, the explanation will be based on the case where the agent information of agents B1 and B2 is registered in the member information of member A1, who is a member of a service that utilizes digital assets. Here, we will use the example that agents B1 and B2 are the spouse and child of member A1, respectively, but the relationship between the member and the agent is not limited. For example, an agent may be someone who is not related by blood. In the following, agents B1 and B2 may be collectively referred to simply as "agents." Also, member A1 may be referred to simply as "member."
[0029] (Communication terminals 300-302) The communication terminal 300 is a communication terminal owned by member A1. The communication terminal 300 is an information processing device such as a personal computer, smartphone, or tablet terminal. However, it is not limited to these, and various information processing devices capable of communicating via the network N may be used as the communication terminal 300. The communication terminal 300 is equipped with a display unit 310. The display unit 310 is at least a display device. The display unit 310 may also be an input / output unit including a display device and an input device, such as a touch panel. Member A1 registers member information and agent information with the digital asset management device 200 using the communication terminal 300 according to the registration screen 310a displayed on the display unit 310. The communication terminal 300 receives confirmation messages and the like transmitted from the digital asset management device 200. The communication terminal 300 also provides member responses to confirmation messages and the like to the digital asset management device 200.
[0030] Communication terminals 301 and 302 are communication terminals owned by agents B1 and B2, respectively. Communication terminals 301 and 302 are equipped with display units 311 and 312, respectively. The configuration of communication terminals 301 and 302 is the same as that of communication terminal 300, so a description is omitted. Communication terminals 301 and 302 receive agent communications and the like transmitted from the digital asset management device 200. Communication terminals 301 and 302 also provide agent responses to agent communications and the like to the digital asset management device 200. Furthermore, communication terminals 301 and 302 receive agent confirmation communications transmitted from the digital asset management device 200 and provide responses thereto.
[0031] (Authentication device 100) The authentication device 100 is an information processing device that performs user authentication in response to an authentication request from the digital asset management device 200. Here, the user refers to member A1, agent B1, or agent B2. The authentication device 100 may perform authentication using an ID or password, or it may perform biometric authentication using biometric information such as a face or iris. The authentication device 100 returns the authentication result to the digital asset management device 200. Furthermore, biometric authentication may be performed for some users. For example, password authentication may be performed for member A1, and biometric authentication may be performed for agent B1 or B2.
[0032] The following describes the configuration of the authentication device 100 in detail, using the case where the authentication device 100 performs biometric authentication as an example. The authentication device 100 is an information processing device that, in response to a biometric authentication request received from an external source, compares the biometric information contained in the request with the biometric information of each user that has been stored in advance, and returns the comparison result (authentication result) to the requester. The biometric information is the characteristic information of the biometric information used for biometric authentication. The biometric information may be, for example, a face, voiceprint, fingerprint, iris, or vein. The biometric information may also use data (feature quantities) calculated from physical characteristics unique to an individual, such as a face or voiceprint, as feature information.
[0033] In this embodiment, the authentication device 100 uses the user's facial feature information as biometric information to perform facial authentication of the user. The authentication device 100 receives a facial authentication request along with the user's facial image from the digital asset management device 200 and performs facial authentication of the user. The authentication device 100 returns the authentication result to the requesting digital asset management device 200.
[0034] Figure 4 is a block diagram showing the configuration of the authentication device 100 according to this embodiment. The authentication device 100 comprises a biometric information DB (DataBase) 110, a detection unit 120, a feature point extraction unit 130, a registration unit 140, and an authentication unit 150.
[0035] The biometric information DB 110 stores the user ID 111, the biometric characteristic information 112 of the user ID, and the biometric authentication method 113 in association with each other. User ID 111 is identification information used to identify the user. The biometric feature information 112 is a feature quantity calculated from the physical characteristics unique to each individual user. In this embodiment, the biometric feature information 112 is a set of feature points extracted from the user's face image. Hereafter, the biometric feature information 112 may be referred to as face feature information.
[0036] The biometric authentication method 113 is an authentication method such as facial recognition, voiceprint recognition, and fingerprint recognition. In this embodiment, the biometric authentication method 113 is facial recognition. When the authentication device 100 performs biometric authentication using multiple authentication methods, the biometric authentication method 113 may include multiple different authentication methods. The authentication device 100 may perform biometric authentication using biometric characteristic information 112 corresponding to the requested authentication method. Furthermore, the authentication device 100 may perform authentication using multiple authentication methods as requested.
[0037] The detection unit 120 detects the face region included in the registration image for registering face feature information and outputs it to the feature point extraction unit 130. The feature point extraction unit 130 extracts feature points from the face region detected by the detection unit 120 and outputs face feature information to the registration unit 140. Furthermore, the feature point extraction unit 130 extracts feature points contained in the facial image received from the digital asset management device 200 and outputs facial feature information to the authentication unit 150.
[0038] The registration unit 140 issues a new user ID 111 when registering biometric characteristic information. The registration unit 140 associates the issued user ID 111 with the biometric characteristic information 112 extracted from the registered image and registers it in the biometric information DB 110.
[0039] The authentication unit 150 performs biometric authentication using biometric feature information 112. Specifically, the authentication unit 150 compares the facial feature information extracted from the facial image with the biometric feature information 112 in the biometric information DB 110. If the comparison is successful, the authentication unit 150 identifies the user ID 111 associated with the matched biometric feature information 112.
[0040] The authentication unit 150 returns to the digital asset management device 200, as the result of biometric authentication, whether or not the biometric characteristic information matches. The presence or absence of a match in the biometric characteristic information corresponds to the success or failure of authentication. A match in the biometric characteristic information (match found) means that the degree of match is equal to or greater than a predetermined value. Furthermore, if biometric authentication is successful, the biometric authentication result will include the identified user ID 111.
[0041] (Facial information registration process) Next, the face information registration process according to this embodiment will be described. Figure 5 is a flowchart showing the flow of the face information registration process according to this embodiment. First, the authentication device 100 acquires the registration image included in the face information registration request (S21). For example, the authentication device 100 receives the face information registration request from the digital asset management device 200 or the registration website via the network N.
[0042] Next, the detection unit 120 detects the face region included in the registered image (S22). Next, the feature point extraction unit 130 extracts feature points from the face region detected in step S22 and outputs biometric feature information (face feature information) 112 to the registration unit 140 (S23). Finally, the registration unit 140 issues a user ID 111 and registers the user ID 111 and the biometric feature information 112 in association with each other in the biometric information DB 110 (S24). The authentication device 100 may receive the biometric feature information 112 from a communication terminal or the like owned by the user and register the biometric feature information 112 and the user ID 111 in association with each other in the biometric information DB 110.
[0043] (Facial recognition processing) Next, I will explain the facial recognition process. Figure 6 is a flowchart showing the flow of facial recognition processing by the authentication device 100 according to this embodiment.
[0044] First, the feature point extraction unit 130 acquires facial feature information included in the biometric authentication request (S31). For example, the authentication device 100 receives a facial authentication request from the digital asset management device 200 via the network N and extracts facial feature information from the facial image included in the facial authentication request in steps S21 to S23.
[0045] Next, the authentication unit 150 compares the acquired facial feature information with the biometric feature information 112 in the biometric information DB 110 (S32). If the facial feature information matches, that is, if the degree of matching of the facial feature information is greater than or equal to a predetermined value (YES in S33), the authentication unit 150 identifies the user ID 111 of the user whose facial feature information matched (S34). The authentication unit 150 then sends a message to the digital asset management device 200 indicating that facial authentication was successful and the identified user ID 111 (S35). If no matching facial feature information exists (NO in S33), the authentication unit 150 sends a message to the digital asset management device 200 indicating that biometric authentication failed (S36).
[0046] (Digital asset management device 200) Next, the digital asset management device 200 will be described. The digital asset management device 200 is an information processing device that performs information processing for managing the user's digital assets. Figure 7 is a block diagram showing the configuration of the digital asset management device 200. The digital asset management device 200 includes a storage unit 210, a memory 220, a communication unit 230, and a control unit 240.
[0047] The storage unit 210 is a storage device such as a hard disk or flash memory. The storage unit 210 stores the program 211 and asset management information 212. Program 211 is a computer program that implements the processing of the digital asset management method according to this embodiment.
[0048] Asset management information 212 is information for managing a member's digital assets. Asset management information 212 is information that associates member information 2121, agent information 2122, asset information 2123, setting period 2124, and authority scope 2125. Asset management information 212 is registered, for example, by receiving input from the member via the registration screen 310a described later.
[0049] In the following section, we will explain the asset management information 212 by referring to Figures 8 through 10, in addition to Figure 7. Figure 8 shows an example of member information 2121. Figure 9 shows an example of agent information 2122. Figure 10 shows an example of asset management information 212.
[0050] Member information 2121 is information about the member. Refer to Figure 8 to explain member information 2121. Member information 2121 is, for example, information that associates a member ID 2121a, which identifies a member, with the member's personal information. Member ID 2121a is the information that corresponds to user ID 111. The member's personal information includes information for sending a confirmation message from the digital asset management device 200 to the communication terminal 300. The member's personal information includes, for example, the member's name 2121b, address 2121c, telephone number 2121d, email address 2121e, and facial image 2121f. Details of each piece of information will be described later.
[0051] Furthermore, member information 2121 may include biometric authentication information used for biometric authentication of members. Biometric authentication information may include biometric authentication methods and biometric feature information. In this embodiment, the biometric authentication information includes the member's facial feature information as biometric feature information. In this embodiment, the facial feature information is stored in the biometric information DB 110 as biometric feature information 112. The digital asset management device 200 can refer to and manage the member's facial feature information stored in the biometric information DB 110 via the member ID 2121a corresponding to the user ID 111 of the authentication device 100. Therefore, it can be said that member information 2121 substantially includes the member's facial feature information.
[0052] Agent information 2122 is information about the agent. Agent information 2122 is registered in association with member information 2121. Multiple agent information 2122 entries may be registered for a single member's member information 2121.
[0053] The agent information 2122 will be explained with reference to Figure 9. Agent information 2122 is, for example, information that associates an agent ID 2122a, which identifies the agent, with the agent's personal information. Agent ID 2122a is information that corresponds to user ID 111. The agent's personal information includes information for sending agent contact from the digital asset management device 200 to the communication terminal 301 or 302. The agent's personal information is, for example, the agent's name 2122b, address 2122c, telephone number 2122d, email address 2122e, and facial image 2122f. Agent information 2122 may also include relationship 2122g with the member. Relationship 2122g with the member is, for example, information indicating a spouse, child, parent, sibling, or friend.
[0054] Furthermore, similar to the member information 2121, the agent information 2122 may include biometric authentication information used for the agent's biometric authentication. In this embodiment, the biometric authentication information includes the agent's facial feature information as biometric feature information. The digital asset management device 200 can refer to and manage the agent's facial feature information stored in the biometric information DB 110 via the agent ID 2122a corresponding to the user ID 111 of the authentication device 100. Therefore, it can be said that the agent information 2122 substantially includes the agent's facial feature information.
[0055] Returning to Figure 7, we continue the explanation. Asset information 2123, setting period 2124, and authority scope 2125 are information that is associated with the member information 2121 and agent information 2122 mentioned above for asset management purposes. The asset management information 212 will be explained in detail with reference to Figure 10. Figure 10 is a diagram showing an example of asset management information 212, including asset information 2123, setting period 2124, and authority scope 2125.
[0056] Asset information 2123 is information regarding the member's digital assets. Asset information 2123 is, for example, information that associates an asset ID 2123a, which identifies an asset, with an asset name 2123b, which indicates the content of the digital asset.
[0057] The setting period 2124 indicates the period of time until a confirmation message is sent to the member. The setting period 2124 is associated with member ID 2121a and asset ID 2123a. The setting period 2124 accepts input from the member and is set to any desired period. The setting period 2124 may represent the number of days (e.g., 30 days) or months (e.g., 2 months) since the last access to the digital asset account. Alternatively, the setting period 2124 may represent a specific date and time (e.g., XXXX / X / X / XX / XX).
[0058] The setting period 2124 may be set differently for each digital asset. For example, a member can set the setting period 2124 according to the importance of the digital asset. By setting a shorter setting period 2124 as the importance of the asset increases, the time until the digital asset management device 200 sends a confirmation notice is shortened. Therefore, if a member has difficulty responding to a confirmation notice, their agent can quickly understand the situation. Alternatively, a member may set the setting period 2124 according to the frequency of access to their account. A similar effect can be achieved by setting a shorter setting period 2124 for assets that are accessed frequently.
[0059] Scope of Authority 2125 is information indicating the scope of authority granted to the agent. The scope of authority may, for example, indicate all or part of the authority related to digital assets. The authorization range 2125 is associated with Member ID 2121a, Asset ID 2123a, and Agent ID 2122a. The authorization range 2125 is set within an arbitrary range based on input from the member. The authorization range 2125 may be set for each agent. For example, even for the same asset, different authorization ranges 2125 may be set depending on the agent. Also, the authorization range 2125 may be set for each asset. For example, even for the same agent, different authorization ranges 2125 may be set depending on the asset.
[0060] Let's explain this in detail using the example shown in Figure 10. Member A1 is a member with member ID 2121a "A1", and agents B1 and B2 are agents with agent IDs 2122a "B1" and "B2", respectively. For member A1's digital assets, agents B1 and B2 are set as agents for the "online bank" asset with asset ID 2123a "101". Agent B1 is set to have the "All" permission scope 2125, and agent B2 is set to have the "Notification Only" permission scope 2125. If member A1 does not access the "online bank" for a set period of time or more and does not respond to the confirmation notice, an agent confirmation will be sent to agents B1 and B2. If agents B1 and B2 respond and authentication is successful, agent B1 is granted the "All" permission and agent B2 is granted the "Notification Only" permission.
[0061] If the scope of authority 2125 is "all," as in the case of agent B1, the digital asset management device 200 grants agent B1 all the authority that member A1 possesses. For example, the digital asset management device 200 grants agent B1 all authority, including the authority to use the ID and password to access the bank account, and the authority to manage the account balance. If the scope of authority 2125 is "notification only," as in the case of agent B2, the digital asset management device 200 notifies agent B2 that a digital asset exists. In this case, the digital asset management device 200 notifies agent B2 that member A1 has an online bank account, but does not grant agent B2 the authority to use the ID, password, etc.
[0062] Note that while permission range 2125 and "All" or "Notifications Only" were used as examples above, the settings for permission range 2125 are not limited to these. For example, permission ranges may be set for each item in more detail, such as "Login Only" for "SNS".
[0063] Returning to Figure 7, we continue the explanation. Memory 220 is a volatile storage device such as RAM (Random Access Memory), and is a storage area for temporarily holding information when the control unit 240 is operating. The communication unit 230 is the communication interface with network N.
[0064] The control unit 240 is a processor, or control device, that controls each component of the digital asset management device 200. The control unit 240 loads program 211 from the storage unit 210 into memory 220 and executes program 211. In this way, the control unit 240 realizes the functions of the registration unit 241, the first transmission unit 242, the second transmission unit 243, the authentication control unit 244, and the authorization granting unit 245.
[0065] The registration unit 241 corresponds to the registration unit 11 in Embodiment 1. The registration unit 241 associates the member information 2121 of member A1, who has an account, with the agent information 2122 of agents B1 and B2, and registers it in the asset management information 212. The registration unit 241 also associates this information with asset information 2123, setting period 2124, and scope of authority 2125, and registers it in the asset management information 212. In other words, the registration unit 241 associates multiple pieces of information used for managing member A1's digital assets and registers them in the asset management information 212.
[0066] The registration unit 241 can register asset management information 212 by receiving input from the communication terminal 300 via a registration website or the like. For example, member A1 enters the necessary information according to the registration screen 310a displayed on the display unit 310. The registration unit 241 receives the input from member A1 and registers the asset management information 212.
[0067] Figure 11 shows an example of a registration screen 310a for registering asset management information 212. For example, the registration screen 310a includes a "Member Information" field for registering member information 2121, and a "Registered Assets" field for registering agent information 2122, asset information 2123, setting period 2124, and authority scope 2125.
[0068] The "Member Information" section includes Member ID 2121a, Name 2121b, Address 2121c, Telephone Number 2121d, Email Address 2121e, and Face Image 2121f. Member A1 enters the necessary information in each field using the communication terminal 300. Note that Member ID 2121a may be assigned automatically.
[0069] Email address 2121e is, for example, an email address that can receive confirmation messages sent from the digital asset management device 200 on a communication terminal 300. Multiple email addresses 2121e may be registered. However, email address 2121e is not required if, for example, confirmation messages are sent via notifications from a designated application or automated voice confirmation messages are sent to telephone number 2121d.
[0070] The facial image 2121f may be captured using a camera connected to the communication terminal 300 or a camera built into the communication terminal 300, or a pre-captured image file may be registered. When member A1 uses facial recognition, the authentication device 100 may extract facial feature information from the facial image 2121f and register the facial feature information in the biometric information DB 110.
[0071] The "Registered Assets" field includes Asset ID 2123a, Asset Name 2123b, Setting Period 2124, Agent's Name 2122b, Relationship 2122g, and Scope of Authority 2125. Similar to the "Member Information" field, Member A1 enters the necessary information in the "Registered Assets" field. Note that Asset ID 2123a may be automatically assigned. As described above, Member A1 can set different agent information 2122, setting period 2124, and scope of authority 2125 for each asset.
[0072] Regarding the agent information 2122, since it can be entered using the same display screen as the "Member Information" field on the registration screen 310a, illustrations and detailed explanations are omitted. Member A1 may also enter the agent's name 2122b, address 2122c, telephone number 2122d, email address 2122e, facial image 2122f, and relationship 2122g in the same manner as the member information 2121. Agent B1 or B2 may also enter the agent information 2122.
[0073] Furthermore, when registering agents, an approval confirmation may be performed to confirm with the agents whether or not they approve of registering as agents. For example, the registration unit 241 sends an approval confirmation email to the email addresses 2122e of agents B1 and B2, and registers the agent information 2122 of agents B1 and B2 when it receives a reply indicating approval.
[0074] Note that the content of registration screen 310a is not limited to what is shown in Figure 11. For example, the "Member Information" field and the "Registered Assets" field do not have to be displayed on the same screen. Also, only a portion of the content shown in Figure 11 may be displayed, or other elements may be displayed as well.
[0075] Figure 12 shows an example of another registration screen 310b for registering asset management information 212. For example, the registration screen 310b includes input fields for asset name 2123b, setting period 2124, agent name 2122b, relationship 2122g, and authority scope 2125.
[0076] Each input field may be configured to allow input via direct input, as well as via a dropdown menu or radio buttons. Members can easily input data by selecting their desired input from multiple options. As an example, the figure shows a setting period selection area 2124a for inputting the setting period 2124 using radio buttons. The setting period selection area 2124a displays the options "30 days," "2 months," and "6 months," and accepts the member's selection. The setting period selection area 2124a may also accept input for the setting period 2124 via a calendar display.
[0077] The setting period selection area 2124a may display different input options depending on the digital asset, member, or agent. For example, the setting period selection area 2124a may display shorter periods as options as the value of the digital asset increases. This makes it easier to set shorter setting periods 2124 as the asset value increases. The value of the digital asset may be determined based on its monetary value, or based on the importance of the digital asset set by the member.
[0078] Furthermore, on the registration screen 310b, when entering the agent's name 2122b, the user may also register the agent's biometric information and proof of their agent status. Alternatively, the agent's biometric information may be registered on the agent's communication terminal after the user is notified when the user appoints an agent. At this time, the user may also request the agent's consent to become an agent.
[0079] (Registration process for asset management information) The registration process of asset management information 212 performed by the digital asset management device 200 will be explained using a flowchart. The registration process of asset management information 212 is a process of registering member information 2121, agent information 2122, asset information 2123, setting period 2124, and authority range 2125 in association with each other. The digital asset management device 200 receives input from member A1 at the communication terminal 300 and registers the asset management information 212.
[0080] Figure 13 is a flowchart showing the registration process for asset management information 212. First, the registration unit 241 registers member information 2121 (S41). Member information 2121 may include a facial image 2121f used for biometric authentication of member A1. Next, the registration unit 241 registers asset information 2123 in association with the member information 2121 (S42). Subsequently, the registration unit 241 registers a set period 2124 until confirmation contact is sent for each asset (S43). The set period 2124 may be set for different periods depending on the digital asset. Then, the registration unit 241 registers agent information 2122 for each asset (S44). Agent information 2122 may include a facial image 2122f used for biometric authentication of the agent. In addition, agent information 2122 for multiple agents may be registered for the member information 2121 of one member. Finally, the registration unit 241 registers the scope of authority to be granted to each agent (S45). The scope of authority granted may differ depending on the agent. Furthermore, even for the same agent, the scope of authority granted may differ depending on the assets.
[0081] Note that the order of processing is not limited to the order described above. Processing may be done in a different order as appropriate. Also, if there are multiple agents or assets, steps S42 to S45 may be repeated as appropriate.
[0082] Returning to Figure 7, we continue the explanation of the control unit 240. The first transmitting unit 242 corresponds to the first transmitting unit 12 of Embodiment 1. The first transmission unit 242 sends a confirmation message to the member if there has been no access to the account for a period of time set by the member.
[0083] For example, in the example shown in Figure 10, member A1 has set the setting period 2124 to "30 days" for the "online bank" with asset ID "101". Therefore, the first transmission unit 242 sends a confirmation message to member A1 if member A1 has not accessed this online bank account for 30 days or more.
[0084] The first transmitting unit 242 determines whether or not member A1 has accessed the account, for example, by whether or not they have logged into the online bank's web service. For example, the first transmitting unit 242 obtains the last login date and time to the web service and measures the elapsed time. If more than 30 days have passed without a login, the first transmitting unit 242 determines that member A1 has not accessed the account for a set period of time or longer. If there is another login within 30 days, the first transmitting unit 242 resets the elapsed time and measures the elapsed time from the last login date and time again. However, the first transmitting unit 242 may also determine whether or not member A1 has accessed the account by using applications such as smartphones that support the web service, or by using or checking the balance of an online bank account at ATMs, etc. The determination of whether or not there has been access to the account is not limited to the above. The first transmitting unit 242 may determine whether or not there has been access to the account depending on the digital assets.
[0085] If the first transmitting unit 242 determines that there has been no access for a set period of time, it refers to the member information 2121 and obtains member A1's email address 2121e (see Figure 8). The first transmitting unit 242 sends a confirmation email to the obtained email address. The confirmation email is a notification to check on member A1's status. The confirmation email may include a message such as, "Member A1, you have not accessed your XX Bank account for more than 30 days. Please reply to this email for confirmation." The confirmation email may simply request a reply, or it may include an item to select member A1's status. Member A1's status may indicate, for example, "busy" or "not feeling well." The confirmation email may also include a deadline for a response.
[0086] Furthermore, the confirmation notice is not limited to email and may take any form. For example, the first transmitting unit 242 may obtain the telephone number 2121d and send a confirmation notice using SMS (Short Message Service), or it may send a confirmation notice by automated voice or the like. Alternatively, the first transmitting unit 242 may send a confirmation notice by push notification or the like via a predetermined application installed on the communication terminal 300.
[0087] In this embodiment, the digital asset management device 200 will use email to send confirmation messages and agent communications. In the following description, sending a confirmation email to member A1's email address 2121e may be simply referred to as "sending a confirmation message to member A1." Similarly, sending agent communications emails to agent B1 and B2's email addresses 2122e may be simply referred to as "sending agent communications to agents B1 and B2." The same applies to confirmation messages and communications or notifications other than those sent by agents.
[0088] The first transmitting unit 242 may notify agents B1 and B2 that it has sent a confirmation message to member A1. This allows agents B1 and B2 to know that member A1 has not accessed their account for longer than the set period. The first transmitting unit 242 obtains the email addresses 2122e of agents B1 and B2 by referring to agent information 2122 and sends an email informing them that a confirmation message has been sent. This email may include a message such as, "Member A1 has not accessed their XX Bank account for more than 30 days. We have sent a confirmation email to member A1."
[0089] The second transmitting unit 243 corresponds to the second transmitting unit 13 of Embodiment 1. The second transmitting unit 243 sends a proxy contact to agents B1 and B2 if member A1 does not respond to the confirmation message sent from the first transmitting unit 242 to member A1's email address. The member response indicates member A1's response to the confirmation message. For example, the second transmitting unit 243 determines that a member response has been received if it receives a reply email from member A1 to the confirmation message. The proxy contact informs the agents that member A1 has not responded. The proxy contact may be an email containing a message such as, for example, "We have not received a response from member A1. Please reply to this email."
[0090] The second transmission unit 243 sends the agent contact described above if there is no response from the member within a predetermined period (e.g., 1 day) after the confirmation email is sent. The predetermined period may be set for each asset and agent based on input from member A1, similar to the setting period 2124, or any arbitrary period may be set automatically. The second transmission unit 243 obtains the email addresses 2122e of agents B1 and B2 by referring to the agent information 2122, and sends the agent contact to agents B1 and B2.
[0091] Furthermore, the second transmitting unit 243 may notify member A1 that it will send a proxy contact before sending the proxy contact. For example, the second transmitting unit 243 may send a message to member A1's email address such as, "We will inform proxy B1 and proxy B2 that member A1 has not responded." This prevents proxy contact from being sent to proxy B1 and B2 if member A1 simply forgot to respond.
[0092] Furthermore, the second transmitting unit 243 may notify member A1 that agent B1 or B2 has responded to the agent contact. An agent response indicates the response of agent B1 or B2 to the agent contact. For example, if the second transmitting unit 243 receives a reply email from agent B1 or B2 to the agent contact, it determines that an agent response has been received. The second transmitting unit 243 sends an email to member A1's email address containing a message such as, "Agent B1 has responded." This allows member A1 to know that agent B1 or B2 has responded, even if member A1 did not notice the notification that a confirmation message and agent contact would be sent.
[0093] Furthermore, if member A1 responds to the confirmation message, the second transmission unit 243 may notify agents B1 and B2 that member A1 has responded. The second transmission unit 243 sends a message such as "Member A1 has responded" to the email addresses of agents B1 and B2. This allows agents B1 and B2 to confirm that member A1 is available to respond. Also, since they can understand the timing of the confirmation message and the confirmation response, agents B1 and B2 can understand the time between when member A1 receives the confirmation message and when they send the confirmation response. This allows them to understand whether member A1 is responding promptly or whether it is taking some time to respond.
[0094] Furthermore, the first transmission unit 242 and the second transmission unit 243 can confirm the status of agents B1 and B2 by sending agent confirmation notices to agents B1 and B2, similar to the status confirmation of member A1 described above. Agent confirmation notices are notices to confirm the status of agents B1 and B2. Agent confirmation notices may be sent at any time. By sending agent confirmation notices regularly (for example, every three months), the status of agents can be confirmed.
[0095] Specifically, first, the first transmitting unit 242 sends a confirmation notice to the agent. The confirmation notice may be an email containing a message such as, "Agent B1, please reply to this email to confirm your status." The second transmitting unit 243 notifies member A1 that there has been no response to the confirmation notice from agent B1 or B2. The notification to member A1 may be an email containing a message such as, "We sent a confirmation notice to agent B1, but have not received a response." This allows member A1 to understand the status of agents B1 and B2, and to consider adding or changing agents as needed.
[0096] The authentication control unit 244 corresponds to the authentication control unit 14 in Embodiment 1. The authentication control unit 244 controls authentication for the agent when the agent responds to agent contact. The authentication control unit 244 controls authentication to authenticate the agent's identity using biometric authentication or two-factor authentication. In this embodiment, the authentication control unit 244 controls the agent's facial authentication. As already described, agent information 2122 includes the agent's facial feature information used for the agent's facial authentication. The digital asset management device 200 can also refer to and manage the agent's facial feature information stored in the biometric information DB 110 via the agent ID 2122a corresponding to the user ID 111.
[0097] The authentication control unit 244 receives a facial recognition request including the facial image of agent B1 or B2 via the communication terminal 301 or 302. The authentication control unit 244 transmits the facial recognition request including the facial image of agent B1 or B2 to the authentication device 100. The authentication control unit 244 receives the facial recognition result from the authentication device 100.
[0098] The authorization granting unit 245 corresponds to the authorization granting unit 15 in Embodiment 1. The authorization unit 245, upon successful authentication of agent B1 or B2, refers to the asset management information 212 and grants agent B1 or B2 authorization regarding member A1's digital assets.
[0099] In the example shown in Figure 10 above, member A1 has set the scope of authority for their spouse, agent B1, to "all" and for their child, agent B2, to "notification only". Therefore, if agent B1 successfully authenticates, the authorization unit 245 grants agent B1 all authority regarding the digital asset "Net Bank". The authorization unit 245 provides agent B1 with, for example, notification of the account's existence, disclosure of the ID and password, disclosure of the contents of the digital asset, and guidance on account migration procedures or continued use. For example, the authorization unit 245 sends this information to agent B1's email address. As a result, agent B1 can access member A1's digital asset "Net Bank" using the disclosed ID and password. Agent B1 can manage member A1's digital asset on behalf of member A1.
[0100] Furthermore, if agent B2 successfully authenticates, the authorization unit 245 grants agent B2 the authority to receive notifications of the account's existence. For example, the authorization unit 245 sends information to agent B2's email address to notify agent B2 of the account's existence. This allows agent B2 to become aware of the existence of member A1's digital asset, "Net Bank."
[0101] (Digital asset management processing) Next, the processes performed by the digital asset management device 200 will be explained using the flowcharts shown in Figures 14 to 16. Figure 14 is a flowchart showing the process of sending a confirmation message to member A1. Figure 15 is a flowchart showing the agent contact transmission process, which sends agent contacts to agents B1 and B2. Figure 16 is a flowchart showing the authentication control process and authorization granting process for agents B1 and B2. In the following explanation, please also refer to Figures 7 through 10.
[0102] First, we will explain the confirmation message sending process using Figure 14. The first transmitting unit 242 refers to the asset management information 212 and obtains the setting period 2124 set by member A1 and associated with the digital asset. The first transmitting unit 242 determines whether member A1 has accessed the account for longer than the setting period (S51). If there has been access (YES in S51), the process in step S51 is repeated. If there has been no access (NO in S51), the first transmitting unit 242 refers to the asset management information 212 and obtains member A1's email address 2121e. The first transmitting unit 242 sends a confirmation message to the obtained email address of member A1 (S52). The first transmitting unit 242 obtains the email addresses 2122e of agents B1 and B2 and sends a message to each of their email addresses stating that a confirmation message has been sent (S53). Similarly, in the following processes, each functional unit of the digital asset management device 200 obtains the email addresses of member A1, etc., by referring to the asset management information 212. Duplicate explanations are omitted below.
[0103] Next, we will explain the agent contact transmission process using Figure 15. The second transmitting unit 243 determines whether or not a member response has been received from member A1 within a predetermined period (S61). If a member response has been received from member A1 (YES in S61), the second transmitting unit 243 notifies agents B1 and B2 that a member response has been received from member A1 (S64) and terminates the process.
[0104] If member A1 does not respond (NO in S61), the second transmitting unit 243 notifies member A1 that a proxy contact will be sent (S62). The second transmitting unit 243 then sends the proxy contact to either proxy B1 or B2 (S63). If member A1 responds before the proxy contact is sent, the process ends without sending the proxy contact.
[0105] Next, we will explain the authentication control process and the authorization granting process using Figure 16. The second transmitting unit 243 determines whether or not a response has been received from agent B1 or B2 (S71). If no response has been received from either agent B1 or B2 (NO in S71), the second transmitting unit 243 notifies member A1 of this fact (S77) and terminates the process.
[0106] If an agent response is received from agent B1 or B2 (YES in S71), the second transmitting unit 243 notifies member A1 of this fact (S72). Here, it is assumed that agent responses have been received from both agents B1 and B2. The authentication control unit 244 receives an authentication request from agent B1 or B2 via the communication terminal 301 or 302 and controls the authentication for agent B1 or B2 (S73). Here, the authentication control unit 244 receives a facial authentication request including the facial image of agent B1 or B2 and transmits the facial authentication request to the authentication device 100. The authentication control unit 244 receives the facial authentication result from the authentication device 100.
[0107] The authorization granting unit 245 determines whether or not it has successfully authenticated agent B1 or B2 (S74). If authentication fails (NO in S74), the authorization granting unit 245 does not grant authority to agent B1 or B2, notifies them of the authentication failure (S78), and terminates the process. If authentication is successful (YES in S74), the authorization granting unit 245 grants authority over member A1's digital assets to agent B1 or B2 (S75). Here, it is assumed that agents B1 and B2 have successfully undergone facial recognition. The authorization granting unit 245 refers to the asset management information 212 and grants authority to agents B1 and B2 according to the set authority range 2125. For example, the authorization granting unit 245 grants all authority to agent B1 and part of the authority to agent B2. The authorization granting unit 245 notifies member A1, agents B1 and B2 that authority over digital assets has been granted to agents B1 and B2 (S76), and terminates the process.
[0108] Furthermore, the digital asset management device 200 may perform agent verification processing at any time to confirm the agent's status. Figure 17 is a flowchart showing the agent verification process. The first transmitting unit 242 sends agent confirmation notices to agents B1 and B2 (S81). The second transmitting unit 243 determines whether or not agent B1 or B2 has responded to the agent confirmation notice (S82). If a response is received (YES in S82), the process ends. If no response is received (NO in S82), the second transmitting unit 243 notifies member A1 that no response was received to the agent confirmation notice (S83). The second transmitting unit 243 may also notify member A1 if a response is received from agent B1 or B2 in step S82 (YES in S82).
[0109] As described above, in the digital asset management system 1000 according to this embodiment, in the digital asset management device 200, the registration unit 241 registers the agent information of an agent for the member information of a member who has an account. The first transmission unit 242 sends a confirmation message to the member if there has been no access to the account for a period set by the member or longer. The second transmission unit 243 sends an agent message to the agent if there is no member response to the confirmation message. The authentication control unit 244 controls the authentication of the agent when there is an agent response to the agent message. The authorization granting unit 245 grants the agent authorization regarding the member's digital assets if the authentication of the agent is successful.
[0110] This prevents digital assets from being left unattended without an administrator, even if members find it difficult to manage their digital assets. Furthermore, the digital asset management device 200 allows for different settings for the period before sending confirmation notices, depending on the type of digital asset. This enables sending confirmation notices to members at appropriate intervals based on access frequency and the importance of the asset.
[0111] Furthermore, the digital asset management device 200 allows for the designation of multiple agents for a single member, enabling the granting of different permissions to each agent. This allows for asset transfers to be carried out according to the relationship between the member and the agent. For example, the scope of permissions can be set to decrease progressively, starting with a spouse, then a child, and finally a friend.
[0112] Furthermore, the digital asset management device 200 notifies the agent that a confirmation message has been sent to the member and that a response has been received from the member. This allows the agent to contact the member as needed, even if the member is able to respond. In this way, the agent can be aware of the member's situation in advance, rather than only learning about it when the member becomes unable to respond. Therefore, changes such as a delay in the member's response can be quickly detected. This makes it easier to transfer assets between the member and the agent in a way that reflects the member's intentions.
[0113] Furthermore, the digital asset management device 200 allows members to determine whether their agent is available to respond by sending an agent verification message to the agent. This enables members to respond quickly even if the transfer of assets to the agent becomes difficult. In addition, the digital asset management system 1000 can perform biometric authentication at the authentication device 100, allowing for strict authentication of the agent's identity before granting them authority.
[0114] Note that the configuration of the digital asset management system 1000 shown in Figure 3 is merely an example. Each of the authentication device 100, the digital asset management device 200, the communication terminal 300, the communication terminal 301, and the communication terminal 302 may be configured using a device that integrates multiple components, or each functional unit may be processed in a distributed manner using multiple devices. For example, the functions of the authentication device 100 and the digital asset management device 200 may be integrated into the same device.
[0115] <Example Hardware Configuration> Each functional component of the authentication device 100, the digital asset management device 200, the communication terminal 300, the communication terminal 301, and the communication terminal 302 may be implemented by hardware (e.g., hardwired electronic circuits) or by a combination of hardware and software (e.g., a combination of electronic circuits and programs that control them). The following will further explain the case in which each functional component of the authentication device 100, etc., is implemented by a combination of hardware and software.
[0116] Figure 18 is a block diagram illustrating the hardware configuration of a computer 900 that implements the authentication device 100, etc. The computer 900 may be a dedicated computer designed to implement the authentication device 100, etc., or it may be a general-purpose computer. The computer 900 may also be a portable computer such as a smartphone or tablet terminal.
[0117] For example, by installing a predetermined application on computer 900, the computer 900 can implement various functions of the authentication device 100, etc. The above application consists of a program for implementing the functional components of the authentication device 100, etc.
[0118] Computer 900 includes a bus 902, a processor 904, memory 906, a storage device 908, an input / output interface 910, and a network interface 912. The bus 902 is a data transmission path for the processor 904, memory 906, storage device 908, input / output interface 910, and network interface 912 to send and receive data to and from each other. However, the method of connecting the processor 904 and other components to each other is not limited to bus connection.
[0119] The processor 904 is a variety of processor, such as a CPU (Central Processing Unit), a GPU (Graphics Processing Unit), or an FPGA (Field-Programmable Gate Array). The memory 906 is the main memory, implemented using RAM (Random Access Memory), etc. The storage device 908 is the auxiliary storage, implemented using a hard disk, SSD (Solid State Drive), memory card, or ROM (Read Only Memory), etc.
[0120] The input / output interface 910 is an interface for connecting the computer 900 with input / output devices. For example, input devices such as keyboards and output devices such as display devices are connected to the input / output interface 910.
[0121] The network interface 912 is an interface for connecting computer 900 to a network. This network may be a LAN (Local Area Network) or a WAN (Wide Area Network).
[0122] The storage device 908 stores programs that implement each functional component of the authentication device 100 (programs that implement the aforementioned applications). The processor 904 reads these programs into memory 906 and executes them to implement each functional component of the authentication device 100.
[0123] Each processor executes one or more programs containing a set of instructions for causing a computer to perform the algorithms described with reference to the drawings. These programs, when loaded into a computer, contain a set of instructions (or software code) for causing the computer to perform one or more functions described in the embodiments. The programs may be stored on non-temporary computer-readable media or tangible storage media. Examples, but not limited to, include random-access memory (RAM), read-only memory (ROM), flash memory, solid-state drives (SSDs), or other memory technologies, CD-ROMs, digital versatile discs (DVDs), Blu-ray® discs, or other optical disc storage, magnetic cassettes, magnetic tapes, magnetic disk storage, or other magnetic storage devices. The programs may be transmitted over temporary computer-readable media or communication media. Examples, but not limited to, include electrical, optical, acoustic, or other forms of propagating signals.
[0124] This disclosure is not limited to the embodiments described above, and may be modified as appropriate without departing from its intent.
[0125] Some or all of the above embodiments may also be described as follows, but are not limited to the following:
[0126] (Note 1) A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a confirmation message to the member if there has been no access to the account for a period of time set by the member, If the member does not respond to the confirmation notice, a second transmission means sends a message to the agent; Authentication control means for controlling authentication to the agent when the agent responds to the agent's contact, The system includes, upon successful authentication, a means for granting authority to the agent to grant authority over the member's digital assets. Digital asset management device. (Note 2) The setting period differs depending on the digital asset. The digital asset management device described in Appendix 1. (Note 3) For the membership information of one member, the agent information of multiple agents is registered. A digital asset management device as described in Appendix 1 or 2. (Note 4) The aforementioned authority differs depending on the agent. The digital asset management device described in Appendix 3. (Note 5) Notify the agent that the aforementioned confirmation message has been sent. A digital asset management device as described in any one of the items 1 to 4 of the appendix. (Note 6) The agent shall be notified that the aforementioned member has responded. A digital asset management device as described in any one of the items 1 to 5 of the appendix. (Note 7) The member shall be notified that the aforementioned proxy response has been received. A digital asset management device as described in any one of the items 1 to 6 of the appendix. (Note 8) A confirmation notice for the agent will be sent to the agent, and if there is no response to the confirmation notice for the agent, the member will be notified that there has been no response to the confirmation notice for the agent. A digital asset management device as described in any one of the items 1 to 7 of the appendix. (Note 9) The aforementioned agent information includes biometric information used for biometric authentication. A digital asset management device as described in any one of the items 1 to 8 of the appendix. (Note 10) After sending the aforementioned confirmation notice, and before sending the aforementioned agent contact, the member shall be notified that the agent contact will be sent. A digital asset management device as described in any one of the items 1 to 9 of the appendix. (Note 11) Authentication device, Equipped with a digital asset management device, The aforementioned digital asset management device is A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a confirmation message to the member if there has been no access to the account for a period of time set by the member, If the member does not respond to the confirmation notice, a second transmission means sends a message to the agent; In response to the aforementioned agent contact, if the agent responds, the authentication device is provided with authentication control means to control the authentication of the agent, The system includes a means for granting authority to the agent to grant authority over the member's digital assets if the authentication is successful. Digital asset management system. (Note 12) The setting period differs depending on the digital asset. The digital asset management system described in Appendix 11. (Note 13) Register the agent's information for the member who has an account. If there is no access to the account for a period longer than the period set by the member, a confirmation message will be sent to the member. If the member does not respond to the aforementioned confirmation notice, a message will be sent to the agent. When the agent responds to the agent's contact, the authentication of the agent is controlled. If the aforementioned authentication is successful, the agent will be granted authority over the member's digital assets. Digital asset management methods. (Note 14) A registration process to register the agent's information for the member information of a member who has an account, A first transmission process that sends a confirmation message to the member if there has been no access to the account for a period longer than the period set by the member, If the member does not respond to the aforementioned confirmation notice, a second transmission process is performed to send a message to the agent. When the agent responds to the agent's contact, an authentication control process is performed to control the authentication of the agent. If the authentication is successful, the authorization process grants the agent authority over the member's digital assets, A non-temporary, computer-readable medium containing programs to be executed by a computer. [Explanation of Symbols]
[0127] 10 Digital Asset Management Device 11. Registration Department 12 First Transmitter 13. Second Transmitter 14 Authentication Control Unit 15. Authorization Department 100 Authentication Devices 110 Biological Information Database 111 User ID 112. Biological characteristics information (facial characteristics information) 120 Detection unit 130 Feature point extraction unit 140 Registration Department 150 Certification Department 200 Digital Asset Management Devices 210 Storage section 211 Programs 212 Asset Management Information 2121 Member Information 2121a Member ID 2121b Name 2121c Address 2121d Phone number 2121e email address 2121f Face image 2122 Agent information 2122a Agent ID 2122b Name 2122c Address 2122d Phone number 2122e email address 2122f Face image 2122g relationship 2123 Asset Information 2123a Asset ID 2123b Asset Name 2124 Setting period 2124a Selection area for setting period 2125 Scope of Permissions 220 memory 230 Communications Department 240 Control Unit 241 Registration Department 242 First Transmitter 243 Second Transmitter 244 Authentication Control Unit 245 Authorization Department 300, 301, 302 Communication terminals 310, 311, 312 Display section 310a, 310b Registration Screen 900 Computers 902 Bus 904 Processor 906 memory 908 Storage Devices 910 Input / Output Interface 912 Network Interface 1000 Digital Asset Management Systems A1 Member B1, B2 agent N Network
Claims
1. A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a contact message to the agent if there has been no access to the account for a predetermined period of time, Authentication control means for controlling authentication to the agent, The system includes, upon successful authentication, a means for granting authority to the agent to grant authority over the member's digital assets associated with the account, Depending on the digital assets, the predetermined period may differ. Information processing device.
2. The aforementioned predetermined period can be set by the member. The information processing apparatus according to claim 1.
3. The system further includes a second transmission means for sending a confirmation message to the member if there has been no access to the account for a predetermined period of time or longer. The first transmission means transmits the agent contact if the member does not respond to the confirmation contact. The information processing apparatus according to claim 1.
4. Depending on the agent, the aforementioned authority may differ. The information processing apparatus according to any one of claims 1 to 3.
5. Authentication device, Equipped with an information processing device, The aforementioned information processing device is A registration method for registering the agent information of an agent for the member information of a member who has an account, A first transmission means that sends a contact message to the agent if there has been no access to the account for a predetermined period of time, Authentication control means that transmits an authentication request to the authentication device requesting authentication to the agent and receives an authentication result from the authentication device, The system includes, upon successful authentication, a means for granting authority to the agent to grant authority over the member's digital assets associated with the account, Depending on the digital assets, the predetermined period may differ. Information processing system.
6. A method of information processing that is performed by a computer, Register the agent's information for the member who has an account. If there is no access to the aforementioned account for a specified period of time, a contact message will be sent to the aforementioned agent. Control authentication for the aforementioned agent, If the authentication is successful, the agent is granted authority over the member's digital assets associated with the account. Depending on the digital assets, the predetermined period may differ. Information processing methods.
7. A registration process to register the agent's information for the member information of a member who has an account, If there has been no access to the account for a specified period of time, the first transmission process sends a contact message to the agent, Authentication control processing that controls authentication for the agent, If the authentication is successful, the computer is instructed to perform a granting process that gives the agent authority over the member's digital assets associated with the account. Depending on the digital assets, the predetermined period may differ. program.