Information integration system, information integration method, and program
Patent Information
- Application Number
- JP2024565556
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Priority Date
- 2022-12-23
- Filing Date
- 2022-12-23
- Publication Date
- 2025-08-15
AI Technical Summary
The challenges of data integration include difficulties in name matching due to variations in user information across services and a low adoption rate due to complex user interfaces presenting numerous combinations of benefits and risks, leading to a small number of users and services utilizing data integration.
An information integration system that acquires biometric information for authentication, extracts users across multiple services by comparing biometric characteristics, and displays a user interface allowing users to select data integration options, simplifying the consent process by presenting relevant information and benefits.
The system promotes increased adoption of data integration by accurately identifying users and simplifying the consent process, reducing errors in name matching and improving user convenience, thereby expanding the number of users and services participating in data integration.
Abstract
Description
Information integration system, information integration method, and recording medium
[0001] The present disclosure relates to an information integration system and the like that displays a user interface that allows a user to select whether or not to perform data integration.
[0002] Generally, for each service, user information such as the name, ID (identifier), and password of the user who uses that service is registered, and historical information such as service usage history is linked to each user and recorded. Integrating the user information registered for each service enables single sign-on, allowing access to each service with a single authentication. Cross-sectional analysis of the historical information linked to the user across each service can provide a detailed understanding of the user's hobbies and preferences, enabling the provision of new personalized services. From this perspective, integrating user information and historical information registered for each service offers service providers new commercial opportunities and users the benefit of being able to receive services more tailored to them. Hereinafter, this will be referred to as "data integration."
[0003] On the other hand, data integration may expose users' privacy, such as their hobbies and preferences, to service providers. Therefore, service providers are not permitted to integrate data without the users' permission, and are required by the laws and regulations of each country to obtain the users' consent in advance.
[0004] To integrate data, it is necessary to extract the same person from the user information registered in different services. Hereinafter, this is called "name matching." There are two methods for name matching: the service provider compares user information registered in multiple services to extract the same person, and the user self-reports the IDs of the multiple services they use to the service provider. In this case, if different people are mistakenly identified as the same person and name matching is performed, the personal information of the user in question will be leaked to others, so no mistakes are allowed in name matching.
[0005] As an example of a technology for a service provider to perform name matching, Patent Document 1 discloses a data processing device that performs name matching using person images. The data processing device of Patent Document 1 uses person images acquired from a terminal to search for information such as personal information associated with the user's person images registered in multiple databases. The data processing device of Patent Document 1 performs name matching by matching the searched information of the same person. In the method described in Patent Document 1, the data processing device identifies the user using person images taken under specified conditions for personal identification, making it possible to accurately determine whether the information is of the same person.
[0006] JP 2014-71610 A
[0007] Data integration has two problems: the first problem is that name matching is difficult, and the second problem is that the number of users and services that use data integration is small.
[0008] Regarding the first problem, when a service provider performs name matching, it compares registered information such as a user's address, name, and place of employment between multiple services that are the subject of data integration to extract the same person, but there are often cases where the same person does not match exactly due to address changes, name changes, job changes, variations in spelling, etc., making it difficult for the service provider to perform user name matching without error. Patent Document 1 discloses a technology that solves this problem by comparing "images of a person taken under specified conditions for personal authentication," but there are very few services that register such images of a person or user biometric information such as fingerprints, and the first problem, including the issue of how to register such biometric information, remains unsolved.
[0009] Even when the user declares and performs name matching, there is a possibility of impersonation by another person, so the service provider must verify that the person is the same person in order to protect personal information, which creates the same issues as when the service provider performs name matching.
[0010] Regarding the second issue, data integration requires obtaining user consent in advance under national laws and regulations. Therefore, a user interface is provided to obtain user consent by presenting the terms of use, privacy policy, and other terms and conditions of the data integration service to the user. However, many users tend to hesitate to agree to data integration if they only consider the risks stated in the terms and conditions. Therefore, data integration providers provide a user interface that presents the benefits to users of data integration, encouraging many users to weigh the benefits and risks before agreeing to data integration. However, there is a problem with the large number of combinations of multiple services that can be integrated. Specifically, for example, if information from five different services is to be integrated, there are 26 possible combinations between the services, and therefore 26 different patterns of benefits and risks presented to the user. Users are forced to carefully read these 26 possible combinations of benefits and risks before selecting which combination to agree to. Therefore, the user interface for obtaining consent is very cumbersome for many users, and many users tend to choose not to use data integration. However, the number of combination patterns increases exponentially as the number of services to be integrated increases, resulting in a more complicated interface. As a result, the number of users and services using data integration is low, which is a second problem.
[0011] An object of the present disclosure is to provide an information integration system etc. that can promote an increase in the number of people using name matching and data integration and the number of services.
[0012] An information integration system according to one embodiment of the present disclosure includes an acquisition means for acquiring biometric information for biometric authentication in a service, an extraction means for comparing biometric characteristics calculated from the acquired biometric information with biometric characteristics stored in a storage means in which the biometric characteristics of users using the service are registered for each service to extract the same user across multiple services, an identification means for identifying text information indicating text corresponding to a combination of services used by the same user, and a display control means for displaying a user interface that allows the user to select whether or not to integrate data from multiple services used by the same user, and the text is displayed on the user interface.
[0013] In one aspect of the information integration method of the present disclosure, a computer acquires biometric information for biometric authentication in a service, compares biometric characteristics calculated from the acquired biometric information with biometric characteristics stored in a storage device in which the biometric characteristics of users using the service are registered for each service, extracts the same user across multiple services, identifies text information indicating a text corresponding to the combination of services used by the same user, and displays a user interface that allows the user to select whether or not to integrate data from multiple services used by the same user, with the text displayed on the user interface.
[0014] A program recorded on a computer-readable non-transitory recording medium according to one aspect of the present disclosure causes a computer to perform the following processes: acquiring biometric information for biometric authentication in a service; comparing biometric characteristics calculated from the acquired biometric information with biometric characteristics stored in a storage device in which the biometric characteristics of users using the service are registered for each service, thereby extracting the same user across multiple services; identifying text information indicating a text corresponding to a combination of services used by the same user; and displaying a user interface that allows the user to select whether or not to integrate data from multiple services used by the same user, with the text being displayed on the user interface.
[0015] According to the present disclosure, it is possible to provide an information integration system etc. that can promote an increase in the number of people using name matching and data integration and the number of services.
[0016] 1 is a diagram illustrating an example of a configuration of an information integration system according to the first embodiment. FIG. 1 is a diagram illustrating an example of a user information database stored in a storage device of the service providing system according to the first embodiment. FIG. 2 is a diagram illustrating an example of a login screen displayed on a terminal according to the first embodiment. FIG. 3 is a diagram illustrating an example of a biometric information registration screen displayed on a terminal according to the first embodiment. FIG. 4 is a block diagram illustrating an example of a configuration of an information integration system according to the first embodiment. FIG. 5 is a diagram illustrating an example of a biometric feature database stored in a storage device of the information integration system according to the first embodiment. FIG. 6 is a diagram illustrating an example of a solicitation material database stored in a storage device of the information integration system according to the first embodiment. FIG. 7 is a diagram illustrating an example of a user interface displayed on a terminal according to the first embodiment. FIG. 8 is a diagram illustrating an example of a user interface displayed on a terminal according to the first embodiment. FIG. 9 is a diagram illustrating an example of an information provision consent screen displayed on a terminal according to the first embodiment. FIG. 10 is an example of a biometric feature integrated database stored in a storage device of the information integration system according to the first embodiment. FIG. 11 is a sequence diagram illustrating an example of the operation of the information integration system according to the first embodiment. FIG. 12 is a sequence diagram illustrating an example of the operation of the information integration system according to the first embodiment. FIG. 13 is an example of an integrated customer database stored in a storage device of the information integration system according to a modified example of the first embodiment. FIG. 14 is a diagram illustrating a modified example of the configuration of the information integration system according to the first embodiment. It is a figure which shows the example of the structure of the information integration system based on 2nd Embodiment. It is a flowchart which shows the example of the operation|movement of the information integration system based on 2nd Embodiment. It is a figure which shows the example of the hardware structure which executes the process of each embodiment.
[0017] Hereinafter, embodiments for carrying out the present disclosure will be described with reference to the drawings. However, the embodiments described below are limited in a manner that is technically preferable for carrying out the present disclosure, but the scope of the invention is not limited to the following. In all drawings used to describe the following embodiments, the same reference numerals are used for similar components unless otherwise specified. Furthermore, in the following embodiments, repeated description of similar components or operations may be omitted.
[0018] First Embodiment First, an information integration system 1 according to a first embodiment will be described. The information integration system 1 according to the first embodiment integrates information about a user registered in each service in accordance with the user's consent.
[0019] [Configuration Example] Fig. 1 is a diagram showing a configuration example of an information integration system 1 according to a first embodiment. As shown in Fig. 1, the information integration system 1 includes an information integration device 2 and a storage device 2-1. The information integration system 1 is connected to service providing systems 3-1, 3-2, ..., 3-n (n is an integer equal to or greater than 2) using wired or wireless communication. For example, each of the service providing systems 3-1 to 3-n is connected to the information integration system 1 via a network such as the Internet.
[0020] Each of the service providing systems 3-1 to 3-n provides a service provided by a service provider to a registered user.
[0021] The services provided by each of the service providing systems 3-1 to 3-n are not particularly limited. For example, a railway service, a sales service, a daycare service, a management service that manages information on employee personnel and information evaluating employee performance, and a family register information management service that manages family register information related to residents' family registers are provided. Sales services are provided by supermarkets and superstores that sell products to users in front of train stations, etc. In the following description, an example is given in which one service is provided by one service providing system, but this is not limiting. For example, two or more services may be provided by one service providing system.
[0022] The information integration device 2 performs a data integration process that integrates the registration details of a user who is individually registered with multiple services, an authentication process that authenticates the user, and an information provision process that provides user information to an information provider. Details of the data integration process, the authentication process, and the information provision process will be described later.
[0023] If the information integration device 2 integrates the user identification information of each user that is managed separately for railroad services, sales services, daycare services, etc., service providers may be able to provide new services using the integrated information. Therefore, there is potential demand for data integration.
[0024] For example, service providers can use integrated information to understand the behavioral habits of users, such as which stations each user commutes to and from, what age children they leave at daycare centers, and what they shop for before returning home. Service providers can offer new services such as the following: - A new service that establishes a supermarket in a station where a user transfers, allowing users to shop while waiting for a train. - A new service that establishes a daycare center near a user's workplace or at a transfer station, allowing users to leave their children there even during overtime hours. - A new service that recommends dinner menus and ready-to-eat ingredients based on the user's return time and the age of their children. - A new service that automatically contacts a daycare center when there is a significant train delay, or requests the supermarket in front of the station to stock more ready-to-eat ingredients such as boxed lunches and prepared meals.
[0025] The terminal 4 is connected to one of the service providing systems 3-1 to 3-n using wired or wireless communication. In FIG. 1 , the terminal 4 is connected to the service providing system 3-1. For example, the terminal 4 is connected to one of the service providing systems 3-1 to 3-n via a network such as the Internet. The terminal 4 is used by a user who uses at least one of the multiple services provided by each of the service providing systems 3-1 to 3-n. When requested by the information integration system 1, the terminal 4 displays on its screen a user interface that allows the user to select whether or not to integrate data from the multiple services that the user is using.
[0026] Referring to FIG. 1, the configuration of each of the service providing systems 3-1 to 3-n will be described in detail using the service providing system 3-1 as an example.
[0027] The service providing system 3-1 includes a service providing device 31-1 and a storage device 32-1.
[0028] The service providing device 31-1 is a server for providing services to users.
[0029] The storage device 32-1 stores a user information database, an authentication information database, and a history information database. The user information database, the authentication information database, and the history information database will be described in detail later.
[0030] [Registering User Information] The service providing device 31-1 acquires user information of a user who is using a service for the first time. The user information is information about the user that is collected by the service providing system (in this example, the service providing system 3-1) when the user uses the service for the first time. For example, the user information includes personal information such as name, date of birth, address, and gender, as well as age information indicating the user's age. If the user is biometrically authenticated at login, the user information may include registered biometric information, which is the user's biometric information.
[0031] For example, the service providing device 31-1 displays an input form on the screen of the user's terminal 4, which prompts the user to enter information for each item included in the user information. The information for each item included in the user information is entered into the input form by operating an input device (not shown) on the terminal 4. The service providing device 31-1 receives the user information entered into the input form from the terminal. In response to receiving the user information, the service providing device 31-1 sets user identification information for the user. The user identification information is information that can identify each user who uses the service. For example, the service providing device 31-1 sets user identification information composed of an arbitrary symbol string or the like for the user. Note that the user identification information may be set in response to an operation input by the user on the terminal 4. For example, the user identification information may be an email address, telephone number, an arbitrary symbol string, or the like entered by the user.
[0032] The service providing device 31-1 also acquires the password of the user identified by the user identification information. The password is set in response to an operation input by the user on the terminal 4. The service providing device 31-1 associates the user information with the user identification information and registers them in the user information database (FIG. 2). The service providing device 31-1 also associates the user identification information with the password and registers them in the authentication information database.
[0033] FIG. 2 shows an example of the user information database in the storage device 32-1 when the service providing system 3-1 authenticates a user through facial recognition when logging in to a service. The service providing system 3-1 also provides service A. The user information database stores user information of users who use service A in association with integrated identification information. In the example of FIG. 2, the user information includes user identification information, name information, age information, gender information, and facial image data. The name information indicates the user's name. The age information indicates the user's age. The gender information indicates the user's gender. The facial image data is data of a facial image captured of the user's face. The facial image is an example of registered biometric information. The registered biometric information may be a facial image used on an identification card or a facial image captured using a camera (not shown) of the terminal 4. Note that the registered biometric information may include features of the facial image calculated by the service providing device 31-1 or the like.
[0034] FIG. 2 illustrates an example in which information on a user identified by user identification information "0001," a user identified by "0002," and a user identified by "0003" is registered in the user information database. For users who are subject to facial authentication when logging in to service A, facial image data is stored in the user information database. In the example of FIG. 2, users with user identification information 0001 to 0003 are subject to facial authentication when logging in to the service. For users who are not subject to facial authentication, facial image data may not be registered by the user and may not be stored in the user information database. An example of an unauthenticated user is a user who is authenticated by a password. Furthermore, for a user whose registered details for service A in the service providing system 3-1 and registered details for other services are integrated, integrated identification information is stored in the user information database. In the example of FIG. 2, the user with user identification information 0001 and user identification information 0002 are users whose registered details for each service are integrated. Integrated identification information is information that can identify each user who uses multiple services. The information integration device 2 sets the same integrated identification information for the same user who uses each service.
[0035] [User Authentication] When the terminal 4 is connected to the service providing system 3-1, the service providing system 3-1 requests the terminal 4 to display a login screen (FIG. 3).
[0036] The login screen of FIG. 3 is a user interface when the service providing system 3-1 performs authentication using user identification information and a password, or when the information integration system 1 performs biometric authentication, in response to an operation input on the login screen.
[0037] First, a case will be described in which "Perform biometric authentication" is selected in response to an operational input on a login screen, which is a user interface. The terminal 4 acquires biometric information in response to the user's operational input. For example, the terminal 4 activates its camera. The terminal 4 acquires a facial image of the user's face. The acquired facial image corresponds to biometric information. The terminal 4 transmits the biometric information of the user to be authenticated to the service providing system 3-1. The service providing system 3-1 transmits the biometric information of the user to be authenticated to the information integration device 2. When the service providing system 3-1 receives the integrated identification information or user identification information of a user who is permitted to start using the service from the information integration device 2, the service providing system 3-1 provides the service to the user identified by the integrated identification information or user identification information.
[0038] If the information integration device 2 cannot identify either the integrated identification information or the user identification information, the service providing device 31-1 displays again on the screen of the terminal 4 a login screen requesting the user to enter the user identification information and password. The service providing device 31-1 checks whether the pair of the entered user identification information and password is registered in the authentication information database. If the pair of the entered user identification information and password is registered in the authentication information database, the service providing device 31-1 provides service A to the user.
[0039] Next, a case will be described in which user identification information and a password are entered in response to an operation input on the login screen (FIG. 3), which is a user interface. The service providing device 31-1 checks whether the pair of user identification information and password acquired from the terminal 4 is registered in the authentication information database. If the pair of user identification information and password acquired from the terminal 4 is not registered in the authentication information database, the service providing device 31-1 does not start providing the service.
[0040] If the pair of user identification information and password acquired from terminal 4 is registered in the authentication information database, the service providing device 31-1 determines whether the user can be biometrically authenticated when logging in to the service. For example, if biometric information is not stored in the user information database in association with the input user identification information, the service providing device 31-1 determines that the user cannot be biometrically authenticated (a user whose registered biometric information is not registered). If the service providing device 31-1 determines that the user cannot be biometrically authenticated when logging in to the service, it displays a biometric information registration screen (FIG. 4) on the terminal 4.
[0041] In the example of Fig. 4, a message encouraging the use of biometric authentication is displayed on the biometric information registration screen. Fig. 4 also shows an example of the biometric information registration screen when facial image data "IMAGE1.img" is selected in response to an operation input on the user interface. Note that when the service providing device 31-1 invalidates password-based authentication for a user who is biometrically authenticated, the biometric information registration screen may display an advantage of biometric authentication, namely, that it is no longer necessary to manage passwords. Details of invalidating password-based authentication will be described later.
[0042] When the service providing device 31-1 acquires biometric information in response to operation input on the biometric information registration screen, the service providing device 31-1 registers the acquired biometric information as registered biometric information in the user information database in association with the user's user identification information. The service providing device 31-1 transmits the biometric information and the user identification information to the information integrating device 2. When the service providing device 31-1 transmits the biometric information and the user identification information to the information integrating device 2, the service providing device 31-1 starts providing the service when it is notified by the information integrating device 2 that the data integration process has been completed.
[0043] Furthermore, when the user selects not to use biometric authentication on the biometric information registration screen in response to an operation input on the terminal 4, the service providing device 31-1 starts providing the service.
[0044] [Service Provision Processing] The service providing device 31-1 performs the following processing each time it performs a predetermined processing to provide a service to a user. The service providing device 31-1 associates the user identification information of the user who requested the processing, the transaction identification information of the processing, and history information indicating the content of the processing, and stores these in the history information database (FIG. 5). The transaction identification information is identification information that can identify each processing.
[0045] FIG. 5 is an example of a history information database when the service providing system 3-1 provides an attendance management service. In the example of FIG. 5, the user identification information of the user who requested the process identified by transaction identification information "1100" to "1103," the transaction identification information of each process, and the history information of each process are associated and stored in the history information database. FIG. 5 shows an example of a case where history information for one item, attendance management, is included in the history information database. However, history information for multiple items may also be included in the history information database. When history information for multiple items is included in the history information database, the history information is integrated for each item by the information integration device 2, which will be described later.
[0046] Next, the configuration of the information integration system 1 will be described with reference to Fig. 6. The information integration system 1 includes an information integration device 2 and a storage device 2-1. The information integration device 2 includes an acquisition unit 21, an extraction unit 22, an identification unit 23, a display control unit 24, an integration unit 25, authentication units 26-1, ... 26-n, and an information provision unit 27. The configuration of the information integration device 2 will be described using an example in which the information integration device 2 performs processing with a service provision system 3-1.
[0047] [Integration Processing] The acquisition unit 21 is an example of an acquisition means. The acquisition unit 21 acquires biometric information for biometric authentication in a service. Specifically, the acquisition unit 21 acquires biometric information to be used as registered biometric information in biometric authentication. For example, the acquisition unit 21 acquires biometric information to be registered in a service that uses biometric authentication via the terminal 4 and the service providing system 3-1. More specifically, the acquisition unit 21 acquires biometric information entered on a biometric information registration screen ( FIG. 4 ) displayed on the terminal 4.
[0048] The extraction unit 22 is an example of an extraction means. The extraction unit 22 obtains biometric feature data from the biometric information acquired by the acquisition unit 21. The biometric feature data indicates the biometric features of the user. The biometric feature data is, for example, a feature amount calculated from face image data, which is biometric information. Note that the biometric feature data is an example of a biometric feature indicating the biometric features of the user.
[0049] The extraction unit 22 registers the user's user identification information and the user's biometric characteristic data in the biometric characteristic database (FIG. 7) of the service that starts using biometric authentication at login.
[0050] Here, the biometric feature database stored in the storage device 2-1 will be described. The storage device 2-1 stores a separate biometric feature database for each service. Fig. 7 is an example of a biometric feature database stored in the storage device 2-1. Fig. 7 is also an example of a biometric feature database for service A. The biometric feature database stores user identification information of each user and biometric feature data, which is a feature amount calculated from the biometric information of each user, in association with each other. In the example of Fig. 7, the biometric feature data of users identified by user identification information "0001" to "0004" in service A is registered in the biometric feature database for service A. Note that biometric information may also be registered in the biometric feature database.
[0051] The extraction unit 22 compares the biometric feature calculated from the biometric information acquired by the acquisition unit 21 with the biometric feature stored in the storage device 2-1, in which the biometric features of users who use services are registered for each service. The extraction unit 22 extracts the same user across multiple services. The storage means is the storage device 2-1.
[0052] Specifically, the extraction unit 22 calculates the similarity between the feature calculated from the biometric information acquired by the acquisition unit 21 and the feature stored in the biometric feature database of each service. The extraction unit 22 extracts, from the biometric feature database of each service, user identification information associated with a feature whose similarity to the feature calculated from the acquired biometric information is equal to or greater than a predetermined threshold. The extraction unit 22 also outputs the service identification information of the service from which the user identification information was extracted and the extracted user identification information to the identification unit 23 and the display control unit 24. The service identification information is information that can identify each service.
[0053] Note that instead of the extraction unit 22, one of the authentication units 26-1 to 26-n described below, which corresponds to the service that starts using biometric authentication at login, may calculate the feature amount from the biometric information acquired by the acquisition unit 21. The extraction unit 22 may extract the same user using the feature amount calculated by the authentication unit.
[0054] In this way, when the registered biometric information of a user who starts using biometric authentication for authentication when logging in to a service is acquired, the extraction unit 22 performs the following process. The extraction unit 22 compares the biometric features calculated from the registered biometric information with the biometric features in the biometric feature database for each service in the storage device 2-1, and extracts user identification information of the same user across multiple services. The extraction unit 22 also identifies the services from which the user identification information was extracted, i.e., the multiple services used by the same user.
[0055] The identification unit 23 is an example of an identification means. The extracted user identification information and the service identification information of the service from which the user identification information was extracted are input to the identification unit 23 from the extraction unit 22. The service indicated in the service identification information of the service from which the user identification information was extracted by the extraction unit 22 is the service being used by the user indicated in the user identification information.
[0056] The specifying unit 23 specifies material information corresponding to the combination of services indicated by the service identification information. For each combination of multiple services to be integrated, material information, which is material data of a user interface, is registered in advance in the solicitation material database (FIG. 8).
[0057] The solicitation material database stored in the storage device 2-1 will now be described. FIG. 8 shows an example of the solicitation material database. In the example of FIG. 8, material identification information "0001" to "0003" as material identification information, service combination information, and material information are stored in association with each other. The material identification information is information that can identify each combination of material information. The service combination information is information that indicates a combination of services. Note that the solicitation material database pre-registers material information for all combinations of services that are the subject of data integration. For example, if there are five services to be integrated, 26 pieces of material information (5C2 + 5C3 + 5C4 + 5C5 = 26) are pre-registered in the solicitation material database. The material information includes text information that indicates text corresponding to the combination of services. The text information also includes terms and conditions such as terms of use and privacy policy, as well as text indicating the benefits and risks of data integration and how to address those risks.
[0058] The display control unit 24 is an example of a display control means. The display control unit 24 uses the material information identified by the identification unit 23 to display on the screen of the terminal 4 a user interface that allows the user to select whether or not to integrate data for multiple services used by the same user. Specifically, the display control unit 24 displays a basic screen ( FIG. 9 or FIG. 10 ) and a detailed screen ( FIG. 11 ) on the screen of the terminal 4. The basic screen is a user interface that allows the user to select whether or not to integrate data for registered content for each service identified by the extraction unit 22. The detailed screen is a user interface that allows the user to select information to be integrated from the registered content of a service selected in response to a user's operation input on the basic screen.
[0059] 9 is an example of a user interface displayed on the terminal 4. FIG. 9 is an example of a basic screen when "Service A" and "Service C" have been identified by the extraction unit 22. The user interface of FIG. 9 displays a sentence corresponding to the material information identified by the identification unit 23, such as "By integrating the IDs of Service A and Service C, you can use new service R, which offers benefits such as xxx." Furthermore, when [Terms and Conditions 3] is selected in response to an operation input to the user interface, the terminal 4 may display terms and conditions, such as the terms of use and privacy policy for Service A and Service C, and a screen for consenting to the terms and conditions.
[0060] In the example of Fig. 9, in response to an operation input to the user interface, it is selected to integrate the registered contents of service A and service C. Note that in the example of Fig. 9, in response to an operation by the user of the input device of terminal 4, the nickname "NI1" is input. Also, in response to an operation by the user of the input device of terminal 4, it is input to the user interface that the qualification "QU1" will not be integrated.
[0061] Fig. 10 is an example of a user interface displayed on the terminal 4. Fig. 10 is an example of a basic screen when "service A," "service B," and "service C" have been identified by the extraction unit 22. Fig. 10 is a user interface that allows a user to select whether or not to integrate data of two of the three identified services. Although not shown in Fig. 10, the information integration device 2 may allow a user to select whether or not to integrate "service A," "service B," and "service C" on the basic screen displayed on the terminal 4.
[0062] FIG. 11 is an example of a user interface displayed on the terminal 4. The display control unit 24 displays a details screen on the screen of the terminal 4. For example, when an operation input is made on the basic screen ( FIG. 9 or FIG. 10 ) to select a service whose registered contents are to be integrated, the display control unit 24 displays the details screen illustrated in FIG. 11 on the screen of the terminal 4. FIG. 11 is an example of a details screen for service A. The display control unit 24 displays details screens for each service included in the combination of services whose registered contents are to be integrated. In the example of FIG. 11 , information on the user's sleep, walking amount, fatigue level, and heart rate is registered in the history information database of service A. In the example of FIG. 11 , integration of information on sleep and walking amount is selected in response to an operation input to the user interface.
[0063] In addition, the display control unit 24 may display, on the screen of the terminal 4, a user interface that allows the user to select whether or not to integrate each piece of data for the item selected on the details screen, in response to an operation input on the details screen. In the example of Fig. 11, "Yes" is selected in an area that displays "Data for service A will be provided to a third party. Do you want to confirm the data?" In this case, the display control unit 24 displays, on the screen of the terminal 4, a user interface that allows the user to select whether or not to integrate each piece of data in the history information database.
[0064] The display control unit 24 reads out the destination information and the purpose of use information indicating the purpose of use of the user's information at the information destination from the storage device 2-1. The display control unit 24 creates an information provision consent screen according to the information read out from the storage device 2-1. For example, the information destination is a service provider that provides a service to which the registered content is integrated. The storage device 2-1 pre-stores service identification information indicating the service, destination information indicating the information destination to which the information of the service is provided, and purpose of use information indicating the purpose of use of the information at the information destination, all associated with each other. Note that the purpose of use information may include information indicating the terms and conditions for providing personal information to a third party.
[0065] FIG. 12 is an example of a user interface (information provision consent screen) displayed on the terminal 4. FIG. 12 shows a user interface that allows a user to select whether or not to consent to information provision to an information recipient. The user interface (information provision consent screen) for selecting whether or not to consent to information provision indicates at least the information recipient of the user's information to be integrated and the purpose of use of the user's information. In the example of FIG. 12, the display control unit 24 displays the information recipient "IP1" and the purpose of use "new product development through highly accurate data analysis" on the user interface. The display control unit 24 allows the user to select whether or not to consent to information provision for each information recipient.
[0066] The integrating unit 25 is an example of an integrating means. The integrating unit 25 integrates data of registration details of a user individually registered in multiple services in response to an operation input to a user interface (FIGS. 9, 10, and 11). For example, the integrating unit 25 integrates user information and history information held by multiple services for which data integration has been selected in response to an operation input to the user interface. Note that the integrating unit 25 may integrate data of registration details of a user individually registered in multiple services by setting common integration identification information for each user across multiple services.
[0067] Specifically, the integration unit 25 checks whether integrated identification information has been set, that is, whether the registered content is for a user whose registration content has been integrated. If the registered content is for a user whose registration content has been integrated, the user's biometric feature data and the user's integrated identification information are associated and stored in the biometric feature integration database. The biometric feature integration database is stored in the storage device 2-1, details of which will be described later. For example, the integration unit 25 compares the feature amount, which is the biometric feature data in the biometric feature integration database, with the feature amount calculated from the biometric information acquired by the acquisition unit 21. If the integration unit 25 cannot find biometric feature data that matches the feature amount calculated from the biometric information acquired by the acquisition unit 21 through the comparison, it generates integrated identification information that has not been set for any user. The integration unit 25 associates the feature amount calculated from the biometric information of the user whose registration content is to be integrated with the user's integrated identification information as biometric feature data and stores it in the biometric feature integration database. Furthermore, when the registration details are integrated, the integration unit 25 stores the generated integrated identification information in the user information database of the selected service in association with the user identification information of the user.
[0068] If the integration unit 25 finds, through matching, biometric feature data that matches the feature amount calculated from the biometric information acquired by the acquisition unit 21, it extracts the integrated identification information that is associated with the biometric feature data and stored in the biometric feature integration database.
[0069] Then, the integration unit 25 stores the integration selection information and the information provision consent information in the storage device 2-1 in association with the integrated identification information generated according to the matching result or the integrated identification information extracted from the biometric feature integration database according to the matching result. Note that the integration selection information and the information provision consent information may be included in the biometric feature integration database, or may be included in a database separate from the biometric feature integration database. The integration selection information indicates information selected to be integrated among the registered contents of each service. The information provision consent information indicates the information destinations to which the user has agreed to provide information and the registered contents of each service to which the user has agreed to provide information. Furthermore, the integration unit 25 notifies the service providing device 31-1 that the integration process has been completed.
[0070] FIG. 13 shows an example of a biometric feature integrated information database stored in the storage device 2-1. The biometric feature integrated information database stores biometric feature data, which is a feature amount calculated from registered biometric information, and integrated identification information in association with each other. In the example of FIG. 13, biometric feature data of users identified by integrated identification information "0001" to "0004" is registered in the biometric feature integrated database. The integration unit 25 may integrate the registration details of a user individually registered in multiple services by creating a biometric feature integrated database that includes the biometric feature data, integrated identification information, and the registration details of each service to be integrated. In this case, the information providing unit 27, described later, may provide information to an information recipient using information from the biometric feature integrated database.
[0071] [Authentication Processing] The acquisition unit 21 receives biometric information of the user to be authenticated from the service providing system 3-1.
[0072] The authentication units 26-1 to 26-n are examples of authentication means. In this embodiment, the number of authentication units 26-1 to 26-n is an integer equal to or greater than two, and is the same number as the services that are the targets of data integration. Each of the authentication units 26-1 to 26-n is equipped with the same biometric authentication engine. Each of the authentication units 26-1 to 26-n performs biometric authentication when a user logs in to a service that is pre-associated with the respective authentication unit 26-1 to 26-n. For example, the authentication unit 26-1 performs biometric authentication when a user logs in to a service provided by the service providing system 3-1.
[0073] Note that one authentication unit may perform biometric authentication for logging in to all services that are targets of data integration. That is, the information integration system 1 may include one or more authentication units.
[0074] Here, the configuration of each of the authentication units 26-1 to 26-n will be described using the authentication unit 26-1 as an example.
[0075] The authentication unit 26-1 calculates a feature amount from the biometric information of the user to be authenticated that is entered on the login screen. The authentication unit 26-1 identifies the user's integrated identification information using the calculated feature amount and biometric feature data (feature amount) registered in the biometric feature integrated database. Specifically, the authentication unit 26-1 identifies the integrated identification information associated with a feature amount (biometric feature data) whose similarity to the calculated feature amount is equal to or greater than a predetermined threshold. The authentication unit 26-1 notifies each of the service providing systems 3-1 to 3-n of the identified integrated identification information. As a result, the authentication unit 26-1 permits the authenticated user to use multiple services that the authenticated user is using.
[0076] If the authentication unit 26-1 cannot identify the integrated identification information, it performs authentication using a feature amount calculated from the biometric information entered on the login screen and biometric feature data in the biometric feature database of the service to be authenticated by the authentication unit 26-1. If the authentication unit 26-1 can identify user identification information as a result of the authentication, it notifies the service providing system (in this example, service providing system 3-1) that provides the service to be authenticated of the identified user identification information. As a result, the authentication unit 26-1 permits the authenticated user to use the service being used. If the authentication unit 26-1 cannot identify user identification information as a result of the authentication, it requests the service providing system (in this example, service providing system 3-1) to perform authentication using a password on the service providing system side.
[0077] [Information Providing Process] The obtaining unit 21 receives a request for information provision from a terminal (not shown) that is the information providing destination.
[0078] The information providing unit 27 is an example of an information providing means. The information providing unit 27 extracts integrated identification information included in the information provision consent information of an information destination that has requested information provision. The information providing unit 27 acquires the registration content indicated in the integrated selection information of the user identified by the extracted integrated identification information from the storage device of each service (in this example, storage devices 32-1 to 32-n). The information providing unit 27 transmits the acquired registration content to the terminal of the information destination. In this way, the information providing unit 27 provides user information to the information destination that has the user's consent in response to an operation input on the information provision consent screen.
[0079] The information providing unit 27 has been described above using an example in which the integrated registration information for each user is provided as information. The integrated registration information for a certain user and the information provided to the information recipient of that user may be different. For example, on the information provision consent screen, a setting for not agreeing to provide information to a certain information recipient among the integrated registration information may be made in response to a user's operation input. The information providing unit 27 provides information about users for whom the user has agreed to provide information to the information recipient in response to the user's operation input.
[0080] [Operation Example] Next, an operation example of the information integration system 1 of this embodiment will be described with reference to Fig. 14 to Fig. 15. Fig. 14 and Fig. 15 show an operation example between the terminal 4, the service providing device 31-1, and the information integration device 2. Below, an operation will be described in which the information integration device 2 integrates the registered details of each service when it acquires registered biometric information of a user who starts using biometric authentication to log in to a service. Figs. 14 to 15 explain an example in which user identification information and a password are entered into the terminal 4 in response to an operation input on a login screen.
[0081] When the terminal 4 is connected to the service providing system 3-1, the service providing device 31-1 requests the terminal 4 to display a login screen (FIG. 3) (step S101).
[0082] The terminal 4 displays a login screen on its display (step S102). The user's user identification information and password are input to the terminal 4 in response to an operation input on the login screen, which is a user interface. The terminal 4 transmits the user's user identification information and password to the service providing device 31-1 (step S103).
[0083] The service providing device 31-1 receives the user identification information and the password from the terminal 4. The service providing device 31-1 checks whether the received set of user identification information and password is registered in the authentication information database.
[0084] If the pair of user identification information and password acquired from the terminal 4 is registered in the authentication information database, the service providing device 31-1 determines whether biometric authentication of this user is possible (step S104). If the service providing device 31-1 determines that biometric authentication is not possible, it requests the terminal 4 to display a biometric information registration screen (FIG. 4) (step S105). The biometric information registration screen is a user interface that encourages the use of biometric authentication when logging in to a service.
[0085] The terminal 4 displays a biometric information registration screen on the display (step S106). The biometric information is input to the terminal 4 in response to an operation input on the biometric information registration screen. In this manner, the terminal 4 acquires the biometric information (step S107). The terminal 4 transmits the biometric information and the user identification information to the service providing device 31-1 (step S108).
[0086] The service providing device 31-1 receives the biometric information and the user identification information. The service providing device 31-1 registers the received biometric information as registered biometric information in the user information database in association with the user's user identification information (step S109). The service providing device 31-1 transmits the biometric information and the user identification information registered in the user information database to the information integrating device 2 (step S110).
[0087] The acquisition unit 21 of the information integration device 2 receives biometric information and user identification information for biometric authentication in a service. The biometric information received by the acquisition unit 21 is registered biometric information of a user who will start using biometric authentication for authentication to a service.
[0088] The extraction unit 22 calculates a feature amount, which is a biometric feature, from the acquired biometric information. The extraction unit 22 compares the calculated feature amount with a feature amount stored in the storage device 2-1, in which feature amounts of users using services are registered for each service, to extract the same user across multiple services (step S111). Specifically, in step S111, the extraction unit 22 identifies the user identification information of the same user in each service and the service identification information of the service from which the user identification information was extracted.
[0089] The identification unit 23 identifies material information corresponding to the combination of services indicated in the service identification information from the solicitation material database (step S112). The material information includes text information indicating a text corresponding to the combination of services. The identification unit 23 outputs the identified material information to the display control unit 24.
[0090] The display control unit 24 requests the terminal 4 to display a user interface (in this example, a basic screen and a detailed screen) that allows the user to select whether or not to integrate data from multiple services used by the same user, and an information provision consent screen (step S113). In step S113, the display control unit 24 creates a user interface using the material information identified by the identification unit 23.
[0091] The terminal 4 displays on the display a basic screen (FIGS. 9 and 10) or a detailed screen (FIG. 11), which are user interfaces that allow the user to select whether or not to integrate data from multiple services used by the same user (step S114).The terminal 4 also displays on the display an information provision consent screen (FIG. 12) (step S115).
[0092] For example, each time a user selects to integrate the registered details of any of the services on the basic screen in response to an operation input by the user, the terminal 4 displays a detailed screen of the selected service on the display. Then, in response to an input by the user indicating that the user has completed the selection of whether or not to integrate the registered details, the terminal 4 displays an information provision consent screen on the display.
[0093] The terminal 4 transmits the integration selection information, the information provision consent information, and the user identification information of the user in the service providing apparatus 31-1 to the information integration apparatus 2 (step S116).
[0094] The acquisition unit 21 receives the integration selection information, the information provision consent information, and the user identification information of the user. The integration unit 25 integrates the registration details of the user that have been individually registered with multiple services (step S117).
[0095] For example, the service providing device 31-1 may start providing the service when it is determined in step S104 that the user can be biometrically authenticated. If the user is biometrically authenticated and the integrated identification information of the user is not registered in the user information database, the service providing device 31-1 may request integration processing from the information integration device 2. When integration processing is requested, the information integration device 2 performs the processes of steps S111, S112, and S117.
[0096] For example, in step S109, the service providing device 31-1 may invalidate authentication using the user identification information and password of a user who has started using biometric authentication to log in to a service. At this time, the service providing device 31-1 may display a user interface on the screen of the terminal 4, which allows the user to select whether or not to invalidate password-based authentication. When displaying the user interface on the screen of the terminal 4, the service providing device 31-1 invalidates password-based authentication of a user who has agreed to the invalidation in response to an operation input to the user interface.
[0097] For example, a terminal 4 configured to disable password-based authentication for a certain service displays a biometric authentication login screen on its display when logging in to that service. The biometric authentication login screen does not include a field for inputting user identification information or a field for inputting password. If authentication using a user's user identification information and password is disabled, the information integration system 1 performs biometric authentication. As a result, if a user loses or leaks their user identification information and password registered with a service, the information integration system 1 can reduce the risk of a third party impersonating them if password-based authentication has been disabled.
[0098] In the operation example described above with reference to FIGS. 14 and 15 , the information integration device 2 performs the integration process when it acquires registered biometric information of a user who starts using biometric authentication for authentication when logging in to a service. The timing at which the information integration device 2 performs the integration process is not limited to this. For example, as will be described in detail in Modification Example 3 below, the information integration device 2 may perform the integration process at a predetermined timing (e.g., every predetermined time) using biometric feature data (features) from the biometric feature databases of each service. Furthermore, for example, the information integration device 2 may perform the integration process at a predetermined timing using registered biometric information registered in the user information databases of each service for a user whose registration information with the service has not been integrated. More specifically, if integrated identification information is not set in the user information database of a user using one of the services, the information integration device 2 may perform the integration process by comparing the user's registered biometric information with the registered biometric information of other services.
[0099] The information integration system 1 may receive requests from an integrated user to modify the integrated registered content, modify whether or not to integrate the registered content, or modify consent to information provision. For example, by operating the input device of the terminal 4, the information integration device 2 displays a user interface that allows the user to select whether or not to integrate the registered content, and an information provision consent screen on the screen of the terminal 4. The information integration device 2 stores integration selection information and information provision consent information in response to the operation input to the user interface in the storage device 2-1.
[0100] As described above, in this embodiment, the information integration system 1 acquires biometric information for biometric authentication in a service. The information integration system 1 compares biometric features calculated from the acquired biometric information with biometric features stored in a storage unit (storage device 2-1 in this example) in which the biometric features of users using the service are registered for each service, thereby extracting the same user across multiple services. The information integration system 1 identifies text information indicating a text corresponding to a combination of services used by the same user. The information integration system 1 displays a user interface that allows the user to select whether or not to integrate data across multiple services used by the same user. The user interface displayed by the information integration system 1 displays a text corresponding to the combination of services used by the same user. The information integration system 1 displays a user interface on the screen of the terminal 4, which displays a text corresponding to the combination of services used by the user. This allows the information integration system 1 to present to the user terms and conditions, such as terms of use and privacy policies, as well as text indicating benefits, risks, and how to address the risks, depending on the services used by the user. The information integration system 1 can improve user convenience in data integration, thereby promoting an increase in the number of people using name matching and data integration and the number of services.
[0101] In this embodiment, the information integration device 2 compares the biometric features stored in the storage device 2-1, where identification information identifying a user using a service is associated with the user's biometric features and the biometric features are registered, to extract identification information for the same user across multiple services. The information integration device 2 integrates the registration details of users individually registered across multiple services using biometric features, thereby reducing the possibility of integrating the registration details of different people with the same name. Furthermore, even if the registration details of the same user individually registered across multiple services differ due to a name change, address change, or other reason, the information integration device 2 can integrate the registration details of the same person individually registered across multiple services. Therefore, the information integration device 2 can integrate the registration details of users who cannot be identified as the same person based on the registration details of each service. This allows the number of services for which registration details can be integrated to be increased compared to integrating information for users whose registration details, such as name and address, match.
[0102] Furthermore, by integrating the registration details of users who are individually registered with multiple services using biometric characteristics, the information integration device 2 does not integrate the registration details of a third party whose biometric information differs from that of the person being impersonated with the registration details of the person being impersonated. As a result, by integrating the registration details, the information integration device 2 can reduce the possibility of a third party impersonating a user and revealing privacy or leaking personal information to a third party.
[0103] The information integration device 2 of this embodiment further includes an integration unit 25 that integrates user information and history information held by multiple services for which data integration has been selected in response to an operation input to the user interface. This allows the information integration device 2 to perform name matching and data integration in accordance with the user's consent.
[0104] Furthermore, when biometric information is registered in a user information database or biometric feature database of a service, the information integration device 2 integrates the user's registration details for that service with the registration details of the same user for other services. This eliminates the need for the user to perform an operation input on the terminal 4 to start integrating the registration details. Furthermore, since the information integration device 2 identifies each of the multiple services used by the user and proposes data integration, the user does not need to consider services that can integrate the registration details. Generally, when a user performs name integration, the number of users to be integrated and the number of services to be integrated tend to be small. On the other hand, the information integration device 2 can reduce the user's burden in the integration process, thereby facilitating data integration of the registration details of users individually registered in multiple services.
[0105] The information integration device 2 has a single sign-on function that authenticates a user who has integrated the registered information for each service and allows the user to use multiple services. This allows the user to use each service without being authenticated for each service when logging in to the service. In this way, the information integration device 2 can improve user convenience.
[0106] When integrating the registration details of a user who has been individually registered with multiple services, the information integration device 2 displays a user interface for obtaining consent for information provision from the user on the screen of the terminal 4. By displaying the information provision destination and the purpose of use at the information provision destination in the user interface, the information integration device 2 can make the user understand that the integrated registration details will be provided if the user consents to the information provision.
[0107] The information integration device 2 provides the integrated registration details to information recipients who have agreed to the information provided by each user. This allows the business that receives the information to analyze the registration details of users who have been individually registered with multiple services. The business can analyze user preferences, etc., to improve the quality of its services or provide new services.
[0108] The information integration system 1 receives requests from integrated users to modify the integrated registered content, modify whether or not to integrate the registered content, and modify consent to information provision. This allows the information integration system 1 to modify or delete the user's personal information, or to stop providing information about registered content that the user does not want to be provided.
[0109] [Modifications] Modifications of the information integration system 1 of the first embodiment will be described below, with four modifications being given below.
[0110] (Modification 1) The information integrating device of Modification 1 differs from the information integrating device 2 of the first embodiment in that a setting screen for setting service combination information and material information is displayed on the terminal of the service provider.
[0111] The information integration device of the first modification displays a setting screen on the terminal of the service provider for setting service combination information and material information. The material information includes terms and conditions such as terms of use and privacy policy, as well as textual information indicating benefits, risks, and responses to risks.
[0112] (Modification 2) The information integration device of Modification 2 differs from the information integration device 2 of the first embodiment in that a setting screen for setting destination information and purpose of use information is displayed on the terminal of the information requester.
[0113] The information integration device of the second modification displays a setting screen on the terminal of the information requester for setting the destination information and the purpose of use information. For example, the setting screen has an input field for selecting the purpose of use of the provided information from multiple options. For example, the options include the purpose of using the information to provide personalized information according to the user's preferences and attributes, the purpose of using the information for product development, etc.
[0114] (Variant 3) The information integration device of variant 3 differs from the information integration device 2 of the first embodiment in that it performs matching using biometric feature data (features) from the biometric feature database of each service at a predetermined timing (for example, at predetermined intervals).
[0115] The extraction unit of the information integration device of Variation 3 compares biometric feature data registered in the biometric feature databases of different services at a predetermined frequency to create an integrated customer database ( FIG. 16 ). The integrated customer database represents the results of the extraction unit extracting the same user across multiple services. The extraction unit references the biometric feature integrated database to identify integrated identification information for the user of each piece of biometric feature data. The extraction unit registers the identified integrated identification information in the integrated customer database. Note that for users for whom integrated identification information cannot be identified (for example, users for whom data integration has not been performed and integrated identification information has not been set), integrated identification information is not registered.
[0116] Fig. 16 is an example of an integrated customer database. In the example of Fig. 16, integrated identification information "0001" to "0004" are stored in association with user identification information for services A to C. Note that "not used" indicates that biometric authentication is not used for that service, so that user identification information cannot be identified, or that the service is not being used.
[0117] The display control unit of this modified example displays a user interface on the screen of terminal 4 that allows a user whose integrated identification information has not been set in the integrated customer database to select whether or not to integrate data from multiple services when the user starts using a service. The display control unit of this modified example may also display a user interface on the screen of terminal 4 that allows a user whose information on a specific service has not been integrated to select whether or not to integrate the registered content of the service that has not been integrated with the registered content of another service.
[0118] (Modification 4) A modification of the configuration of the information integration system 1 of the first embodiment will be described below.
[0119] 17 is a diagram showing an example configuration of a modified information integration system 5. The information integration system 5 differs from the information integration system 1 in that it includes a user information storage device 6 and a history information storage device 7 instead of the storage device 2-1. The information integration system 5 includes the information integration device 2, user information storage device 6, and history information storage device 7 according to the first embodiment.
[0120] The user information storage device 6 stores an integrated user information database containing the registered contents of the user information database of the user for each service, and an integrated authentication information database containing the registered contents of the authentication information database of the user for each service. The integrated user information database integrates the registered contents of the user information database for each service of a user who has agreed to the integration of the registered contents. Furthermore, the authentication information database integrates the registered contents of the authentication information database for each service of a user who has agreed to the integration of the registered contents.
[0121] An integrated history information database and information provision consent information of each user are stored in the history information storage device 7. The integrated history information database is a database that integrates the registered contents of the same user in the history information databases of each service in accordance with the user's consent.
[0122] The information integration device 2 of this modified example performs integration processing and authentication processing using the integrated user information database and integrated authentication information database stored in the user information storage device 6. Furthermore, the information integration device 2 of this modified example provides information based on the integrated history information database and information provision consent information stored in the history information storage device 7.
[0123] When providing a service, each of the service providing devices 31-1 to 31-n stores the user identification information of the user who requested the service, the transaction identification information in the service provision process, and the history information in the integrated history information database. In this modified example, when integrated identification information is set for the user who requested the service, each of the service providing devices 31-1 to 31-n may store the integrated identification information in the integrated history information database instead of the user identification information. The information integration device 2 may manage the registration details of users registered for each service, as described with reference to FIG. 1. Furthermore, the information integration device 2 may manage the registration details of users for multiple services, as in this modified example.
[0124] In the description of the present embodiment, a case where face authentication is used as biometric authentication has been described as an example, but this is not limiting. The information integration system 1 and the information integration system 5 can use authentication based on any biometric information such as a fingerprint or iris for biometric authentication.
[0125] Second Embodiment An information integration system 8 according to a second embodiment will be described with reference to the drawings. The information integration system 8 of this embodiment has a simplified configuration of the information integration system 1 of the first embodiment.
[0126] 18 is a block diagram showing an example of the configuration of an information integration system 8 according to this embodiment. The information integration system 8 includes an acquisition unit 81, an extraction unit 82, an identification unit 83, and a display control unit 84.
[0127] The acquisition unit 81 is an example of an acquisition unit, and acquires biometric information for biometric authentication in a service.
[0128] The extraction unit 82 is an example of an extraction means. The extraction unit 82 compares the biometric feature calculated from the biometric information acquired by the acquisition unit 81 with the biometric feature stored in a storage unit (not shown) to extract the same user across multiple services. The storage unit stores the biometric features of users who use the services for each service.
[0129] The identification unit 83 is an example of an identification unit. The identification unit 83 identifies text information indicating a text according to a combination of services used by the same user.
[0130] Specifically, for example, the identification unit 83 identifies services for which information of the same user has been extracted by the extraction unit 82. The identification unit 83 reads text information corresponding to the identified combination of services from the storage unit. Text information for each combination of services is registered in advance in the storage unit.
[0131] The display control unit 84 is an example of a display control means. The display control unit 84 displays a user interface that allows the user to select whether or not to integrate data from multiple services used by the same user. The text identified by the identification unit 83 is displayed on the user interface.
[0132] As described above, the information integration system 8 acquires biometric information for biometric authentication in a service. The information integration system 8 compares biometric features calculated from the acquired biometric information with biometric features stored in the storage unit to extract the same user across multiple services. The information integration system 8 identifies text information corresponding to the combination of services used by the same user. The information integration system 8 displays a user interface that allows the user to select whether or not to integrate data across multiple services used by the same user. The identified text is displayed on the user interface. This allows the information integration system 8 to present to the user text indicating terms and conditions, such as terms of use and privacy policies, as well as benefits, risks, and responses to risks, depending on the service used by the user. The information integration system 8 can improve user convenience in data integration, thereby promoting an increase in the number of people using name matching and data integration and the number of services.
[0133] Next, an example of the operation of the information integration system 8 of this embodiment will be described with reference to Fig. 19. Fig. 19 is a flowchart showing an example of the operation of the information integration system 8.
[0134] First, the acquisition unit 81 acquires biometric information for biometric authentication in a service (step S201).
[0135] Next, the extraction unit 82 compares the biometric features calculated from the biometric information acquired in step S201 with the biometric features stored in the storage unit, and extracts the same user across multiple services (step S202). The storage unit stores the biometric features of users who use the services for each service.
[0136] Next, the identifying unit 83 identifies text information indicating a text corresponding to a combination of services used by the same user (step S203).
[0137] Next, the display control unit 84 displays a user interface that allows the user to select whether or not to integrate data for multiple services used by the same user (step S204). The user interface displayed in step S204 shows the text identified in step S203.
[0138] As described above, the information integration system 8 displays a user interface that allows a user to select whether or not to integrate data from multiple services used by the same user. The interface displayed by the information integration system 8 displays a message corresponding to the combination of services used by the same user. This allows the information integration system 8 to promote an increase in the number of people and services using name matching and data integration.
[0139] [Hardware Configuration Example] The procedures described in each of the above-described embodiments can be realized by causing a general-purpose information processing device (computer) to execute processing in accordance with a program that realizes the functions of each embodiment. Below, an example configuration of hardware resources for executing the processing according to each of the above-described embodiments using one information processing device (computer) will be described. Note that the processing according to each embodiment may be physically or functionally executed using at least two information processing devices. Also, the processing according to each embodiment may be executed using a dedicated device. Also, only a portion of the processing according to each embodiment may be executed using an information processing device. All or a portion of the processing according to each embodiment may be executed by a single information processing device. Also, the information processing device may be provided as a dedicated device (server) equipped with hardware that executes the processing according to each embodiment.
[0140] 20 is a diagram illustrating an example of the hardware configuration of an information processing device that can implement the processes according to each embodiment. The information processing device 9 includes a communication interface 91, an input / output interface 92, a calculation device 93, a storage device 94, a non-volatile storage device 95, and a drive device 96.
[0141] The communication interface 91 is a communication means for communicating with an external device via a wired or wireless connection. When the processing according to each embodiment is executed using at least two information processing devices, the devices may be connected to each other via the communication interface 91 so as to be able to communicate with each other.
[0142] The input / output interface 92 is a man-machine interface. A keyboard, which is an example of an input device, is connected to the input / output interface 92. A display, which is an example of an output device, is also connected to the input / output interface 92.
[0143] The arithmetic unit 93 is realized by a general-purpose central processing unit (CPU), a microprocessor, or other arithmetic processing device, and a plurality of electric circuits. The arithmetic unit 93 reads various programs stored in a nonvolatile storage device 95 into the storage device 94, and executes processing in accordance with the read programs, for example.
[0144] The storage device 94 is a memory device such as a RAM (Random Access Memory) that can be accessed by the arithmetic device 93, and stores programs, various data, etc. The storage device 94 may be a volatile memory device.
[0145] The nonvolatile storage device 95 is a nonvolatile storage device such as a ROM (Read Only Memory) or a flash memory, and stores various programs, data, and the like.
[0146] The drive device 96 is a device that processes reading and writing of data from and to a recording medium 97, which will be described later. If data is not read or written from and to the recording medium 97, the drive device 96 may be omitted.
[0147] The recording medium 97 is any recording medium capable of recording data, such as an optical disk, a magneto-optical disk, or a semiconductor flash memory.
[0148] The functions described in each embodiment may be supplied as a computer-executable program. In this case, the processing of each embodiment can be performed by having the arithmetic unit 93 execute the program supplied to the information processing device 9. Furthermore, the information processing device 9 may execute only part of the processing of each embodiment, rather than all of the processing of each embodiment.
[0149] The program may be recorded on the recording medium 97. For example, the program may be stored in the non-volatile storage device 95 at the shipping stage, the operation stage, or the like. In this case, the program may be installed in the information processing device 9 at the manufacturing stage before shipping, the operation stage, or the like. The program may also be downloaded from an external source via a communication line such as the Internet. A general method can be applied to install or download the program.
[0150] Although the present invention has been described above with reference to the embodiments, the present invention is not limited to the above embodiments. Various modifications that can be understood by those skilled in the art can be made to the configuration and details of the present invention within the scope of the present invention.
[0151] 1, 5, 8 Information integration system 2 Information integration device 21, 81 Acquisition unit 22, 82 Extraction unit 23, 83 Identification unit 24, 84 Display control unit 25 Integration unit 26-1 to 26-n Authentication unit 27 Information provision unit 2-1 Storage device 3-1 to 3-n Service provision system 31-1 to 31-n Service provision device 32-1 to 32-n Storage device 4 Terminal 6 User information storage device 7 History information storage device 9 Information processing device 91 Communication interface 92 Input / output interface 93 Arithmetic unit 94 Storage device 95 Non-volatile storage device 96 Drive device 97 Recording medium
Claims
1. an acquisition means for acquiring biometric information for biometric authentication in the service; an extraction means for extracting the same user from a plurality of services by comparing a biometric feature calculated from the acquired biometric information with a biometric feature stored in a storage means in which the biometric features of users who use the services are registered for each service; a specifying means for specifying text information indicating a text corresponding to a combination of services used by the same user; a display control means for displaying a user interface for allowing the user to select whether or not to integrate data of the plurality of services used by the same user; The user interface displays the sentence. Information integration system.
2. The system further includes an integration unit that integrates user information and history information held by a plurality of services for which data integration is selected in response to an operation input to the user interface. The information integration system according to claim 1 .
3. The display control means displays a user interface that allows the user to select whether or not to perform data integration for each data item in the service for which data integration has been selected. The information integration system according to claim 2 .
4. the display control means displays a user interface that allows the user to select whether or not to agree to the provision of information to the information recipient; further comprising an information providing means for providing information about the user to an information providing destination with the user's consent in response to an operation input to the user interface; The user interface for asking whether or not to consent to the provision of information at least indicates the information destination of the user's information to be integrated and the purpose of use of the user's information.
3. The information integration system according to claim 1.
5. The information recipients include providers of services for which data integration is performed. The information integration system according to claim 4 .
6. The computer Collect biometric information for biometric authentication on the Services; extracting the same user from a plurality of services by comparing the biometric feature calculated from the acquired biometric information with the biometric feature stored in a storage means in which the biometric features of users who use the services are registered for each service; identifying text information indicating a text corresponding to a combination of services used by the same user; displaying a user interface that allows the user to select whether or not to integrate data of the plurality of services that the same user uses; The user interface displays the sentence. Information integration methods.
7. In accordance with an operation input to the user interface, the user information and history information held by the plurality of services for which data integration is selected are integrated. The information integration method according to claim 6 .
8. On the computer, Acquiring biometric information for biometric authentication in the service; a process of comparing biometric features calculated from the acquired biometric information with biometric features stored in a storage means in which biometric features of users using services are registered for each service, thereby extracting the same user across multiple services; A process of identifying text information indicating a text corresponding to a combination of services used by the same user; and executing a process of displaying a user interface that allows the user to select whether or not to integrate data of the plurality of services that the same user uses; The user interface displays the sentence. program.
9. In response to an operation input to the user interface, a process of integrating user information and history information held by a plurality of services for which data integration has been selected is further executed. The program according to claim 8.