System and method for secure online transaction processing and verification
A decentralized system for online transactions securely stores user biometric and payment info locally, addressing fraud and regulatory issues by enabling on-demand authorization and prompt disposal, enhancing security and compliance.
Patent Information
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- SIMPELLO LLC
- Filing Date
- 2025-03-28
- Publication Date
- 2026-07-23
AI Technical Summary
Existing online transaction systems face heightened fraud risks due to the absence of physical card presence, leading to increased transaction fees and regulatory challenges, while biometric verification is difficult to deploy without central repositories that compromise user privacy and trust.
A decentralized system where user biometric and payment information is stored locally on a wireless user device, allowing secure authorization and verification on demand, with information shared only when necessary and promptly deleted, using a trusted service for verification.
Enhances transaction security and compliance with regulations by maintaining user control over data, reducing fraud risk and storage liabilities, while ensuring just-in-time access and prompt disposal of sensitive information.
Smart Images

Figure US2025021958_23072026_PF_FP_ABST
Abstract
Description
[0001] PCT / US25 / 2195828 March 2025 (28.03.2025)
[0002] #2303682 80S9--'l5-80£K>95
[0003] 1
[0004] SYSTEM AND METHOD FOR
[0005] SECURE ONLINE TRANSACTION PROCESSING AND VERIFICATION
[0006] CROSS REFERENCE TO RELATED APPLICATIONS
[0007] 5 The present application claims the benefit of United States Provisional Patent Application Serial No. 63 / 570,897 filed March 28, 2024 entitled “SYSTEM AND METHOD FOR SECURE ONLINE TRANSACTION PROCESSING AND VERIFICATION” which is hereby incorporated by reference in its entirety to the extent not inconsistent.
[0008] 10 FIELD OF THE INVENTION
[0009] The present invention generally relates to a transaction authorization and verification system including a user, a wireless user device associated with the user, a trusted service and a remote entity requesting payment, such as a website or internet-based merchant. More particularly, the present invention pertains to a distributed transaction authorization system 15 which maintains at least a necessary portion of a user’s biometric information and payment information locally on the user’s wireless user device and utilizes it for authorization and / or verification of payment or other transactions on an as needed basis.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0010] #2303682
[0011] 2
[0012] BACKGROUND
[0013] In the United States alone there are roughly 40 billion credit card purchase transactions completed annually. A significant and rapidly growing percentage of all of the transactions occur online. While all transactions are subject to fraud risk, which results in billions of dollars of losses per year, the risk is enhanced for online transaction as the card is not required to be physically present. As a result of this enhanced risk, credit card issuers often charge a higher transaction fee for these “card not present” transactions.
[0014] While enhanced chips present on credit cards has increased security for transactions where the card is physically present, nothing has been done to improve online transactions. What is needed is a system for reliably bringing transaction verification online, such as that using biometric verification. However, whenever biometric information is involved, user privacy and trust must be completely respected.
[0015] At present, biometric systems are difficult to widely deploy as, absent a central repository, tire user’s biometric information would need to be stored by each potential transaction partner. As we have seen with credit card information, passwords and other account details, this information can be compromised in a data breach, which are becoming all too common. Obviously the larger the number of transaction partners the greater the risk. Moreover, even if one were to design a central repository user trust would not be particularly high. As such, what is needed is a distributed localized system where the user maintains controls of all or at least a critical portion of its biometric profile until it is needed for authorization, and then and only then is the required information shared. Following use, the shared information is deleted and not persistently stored.
[0016] Furthermore, as a result of the harm previously done to users through data breaches, businesses have begun to face stricter regulations from many jurisdictions around the world, including most prominently the European Union. These regulations apply whenever a country’s citizens’ data is collected and or stored. The potential liabilities and regulatory risks, which include substantial fines, as well as the framework needed to comply presents a significant challenge to the modem business* information technology (IT) department as well as its bottom line.
[0017] Accordingly, many users and businesses would benefit from a solution that alleviates many of the above concerns while maintaining just in time access to a user’s data when needed so that that data need not be persistently stored, thereby reducing risk and increasing trust. What is needed is a decentralized system having user permissions stored or requestedPCT / US25 / 2195828 March 2025 (28.03.2025)
[0018] #2303682 80S9--'IS-80£K>95
[0019] on demand which is otherwise virtually transparent to the user and operates to verify the user and deliver the necessary information to the requesting party in a just in time manner for use and prompt disposal rather than long-term storage.
[0020] This disclosure is applicable to all areas where the verification of an identifiable 5 customer or other individual enables one or more desired transactions or secured aetion(s), such as a purchase, permitting access to a structure, secured area or computer facility or account, age or identity verification, user confirmation or the like.
[0021] In addition, other potential and non-limiting applications will be discussed herein.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0022] #2303682 80S9--'IS-80£K>95
[0023] 4
[0024] BRIEF DESCRIPTION OF THE DRAWINGS
[0025] FIG. 1 is a diagrammatic view of one embodiment of a localized permission-based transaction authorization system according to the present invention.
[0026] 5 FIG. 2 is a plan view of a web page suitable for use with the transaction authorization system of FIG. 1.
[0027] FIG. 3 is a flowchart illustrating one set of steps involved in an illustrative process for provisioning a mobile phone for use within the system shown in FIG. 1, according to one form of the present invention.
[0028] 10 FIG. 4 is a flowchart illustrating one set of steps involved in an illustrative process for completing a verified transaction using the system shown in FIG. 1, according to one form of the present invention.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0029] #2303682
[0030] 5
[0031] DETAILED DESCRIPTION OF THE INVENTION
[0032] For the purposes of promoting and understanding of the principles of the invention, reference will now be made to the embodiment illustrated in the drawings and specific language will be used to describe the same. It will nevertheless be understood that no limitation of the scope of the invention is thereby intended. Any alterations and further modifications in the described embodiments, and any further applications of the principles of the invention as described herein are contemplated as would normally occur to one skilled in the art to which the invention relates.
[0033] Shown in FIG. 1 is one embodiment of a proximity based biometric transaction processing and verification system which advantageously confirms that the user’s wireless device is within proximity of the computer or other device seeking to complete such a transaction and also permits a user to securely store their personal payment and / or identity information locally under their custody and control and temporarily make it available for use with requesting authorized users on demand via a trusted service for prompt use and disposal. Such personal information may include, but shall in no way be limited to or required to include personal identifying information, age, payment information and / or credit information. In a farther form, some portion of this user personal information may be stored elsewhere, but not a sufficient enough amount to be concerning and / or useful for nefarious purposes should it fall into the wrong hands. This way, collection of at least some portion of the user’s personal information from the user is required for any utilization.
[0034] The system 10 includes a user side 100, a trusted service side 200 and a third-party side 300, which are merely logical divisions based upon which entity controls the hardware, software and data flow within those areas of the system 10, and do not necessarily indicate the location of the various components. For purposes of communication within system 10, it shall be appreciated that a network 20 and other known methods of data exchange, such as wired, wireless transmission (including Bluetooth® or other known point to point standards) and others may be utilized, with network 20 potentially not belonging, either in whole or in part, to any logical side. Various communication pathways, such as those shown as lines or wireless waves, connecting to and through network 20. transmit data amongst devices and from one logical side to another. Network 20, as shown in this embodiment, can be in the form of a Local Area Network (LAN), Municipal Area Network (MAN ), Wide Area Network (WAN), such as the Internet, a satellite or cellular network, any combination of the foregoing, or such other network arrangement as 'would occur to those skilled in the art. ItPCT / US25 / 2195828 March 2025 (28.03.2025)
[0035] #2303682 ODS9--I5-OO0O95
[0036] 6
[0037] should be understood that more or fewer devices than are shown in FIG. 1 can be coupled together by network 20 and in various alternate arrangements.
[0038] In the illustrated form, network 20 may include numerous separate networks and multiple pathways, including in part the Internet and a cellular phone network which may he the universal mobile telecommunications system (UMTS), global system for mobile communication (GSM), and a code division of multiple access (CDMA) network, or similar technology. The cellular phone network within network 20 utilizes cell tower to establish a wireless bi-directional transmission link between user device 110 and other devices connected thereto, including those shown in FIG. 1, which may comprise a wireless data link, such as the Evolution-Data Optimized (EVDO), Enhanced Data rates for GSM Evolution (EDGE), 3G, 4G, LTE, 5G, WiMax, Ultra- Wide Band, orthogonal frequency-division multiple access (OFDMA) or other wireless data connection.
[0039] Turning to the user side 100, the primary components according to the illustrated embodiment is user device 110 and computer 120. In the illustrated embodiment, user device 110, is a user’s smartphone, such as for example an Apple iPhone® running Apple’s iOS operating system or a Samsung® or other brand smartphone running the Android or some other operating system. It shall be appreciated that other electronic devices may be utilized in addition to or in place of user device 110, such as a smart watch, a tablet, a specialized wireless token, implant, a Bluetooth appliance or the like, In the illustrated embodiment, user device 110 may include a biometric sensor 112, such as a camera, infrared camera, true depth camera, facial recognition sensor, fingerprint reader, palm / hand scanner, iris scanner, voice recognition microphone or some other known biometric or identity confirming sensor. In other embodiments a separate biometric sensor 112 may be utilized, or the biometric sensor 112 may be not be required. In one form, the user device 110 also includes an installed application 114 which in one form may be provided by the service provider operating service side 200, or in another form may be provided by an operator on third-party side 300 (optionally including functionality provided by the service provider operating service side 200). The installed application 114 may be provided through a known mobile application distribution platform, such as Apple’s App Store or the Google Play Store, or it may be a native or dedicated application or some other type of application or software usable on the user device 110. Alternatively, the functions of the application may be partially or totally integrated into the installed application 114, resident within the operating system or otherwise within the user device 110 or within a webpage, applet or the like.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0040] #2303682 ODS9--I5-OO0O95
[0041] 7
[0042] In the illustrated embodiment, computer 120 is a traditional desktop, laptop, tablet, all in one computer or other suitable device where a user may wish to enter into an online transaction or purchase. It shall be appreciated that other devices may be used in place of computer 120, such as a mobile device, television, transaction terminal, application or the like. Computer 120 may include a biometric sensor 122 such as a camera, infrared camera, true depth camera, facial recognition sensor, fingerprint reader, palm, hand scanner, iris scanner, voice recognition microphone or some other known biometric or identity confirming sensor. In other embodiments a separate biometric sensor 122 may be utilized, such as a connected webcam, or the biometric sensor 122 may be not be required. In one form, the user device 110 also includes a web browser or other application for completing the online transaction 128, which in one form may be provided by Microsoft, Google apple, GNU, Mozilla, or the like.
[0043] User device 110 and computer 120 are each preferably capable of data communication over a network, such as network 20. In addition to the standard voice function of a mobile phone, user device 110 preferably supports many additional services, and accessories, such as SMS for text messaging, e-mail, packet switching for access to the Internet, third-party application download, Bluetooth, infrared, NFC and / or GPS while computer 120 supports many conventional computer functions. It shall be appreciated that a vast number of user devices, such as user device 110 and computer 120, are contemplated for use within system 100, but that only one is shown for ease of understanding.
[0044] User device 110 also includes a user data vault 116 which may be a segment of memory located within the user device or securely accessible by the user device (but located remotely) where the user’s personal information may be securely stored. In one form, this personal information is stored in a secured and / or encrypted form to protect it from unauthorized access.
[0045] Moving to the trusted service side 200, included are a gateway 210 and a server 230, which includes or is connected to a database 232. Gateway 210 is illustrated as being a specialized server for facilitating the sharing of personal information and is connected to network 20. It shall be appreciated that in alternate forms gateway 210 and / or server 230, as well as any other server described herein, may be implanted as one or more conventional servers, virtual machines or one or more virtual services operating in the cloud, such as using Amazon Web Services (AWS) or the like.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0046] #2303682 ODS9--I5-OO0O95
[0047] 8
[0048] Server 230 operates in conjunction with gateway 210 to implement the business logic of the system 10 described herein, including maintaining user accounts, user preferences, vendor accounts, audit trails of data sharing and the like. Computers and devices, such as gateway 210 and server 230 and other devices within third-party side 300 (as well as computer 120) may each include one or more processors or CPUs and one or more types of memory. Each processor may be comprised of one or more components configured as a single unit. Alternatively, when of a multi-component form, a processor may have one or more components located remotely relative to the others. One or more components of each processor may be of the electronic variety defining digital circuitry, analog circuitry, or both. Ln one embodiment, each processor is of a conventional, integrated circuit microprocessor arrangement, such as one or more Xeon® processors supplied by INTEL Corporation of 2200 Mission College Boulevard, Santa Clara, Calif. 95052, USA.
[0049] It should be understood that any devices shown in system 10 may be arranged to include both a client and server or comprise dedicated hardware or a combination of conventional hardware adapted using software. It should also be understood that while numerous devices and servers are illustrated, more or fewer may be utilized in alternative embodiments, including the integration of two or more device illustrated into one. Moreover, depending upon the traffic and capacity required, numerous servers such as server 230 may be provided for to collectively share the workload and balance the efforts of server 230 illustrated and described herein or multiple virtual cloud base services may be used in place of all or a portion of server 230.
[0050] With respect to third-party side 300, included are any number of Vendor Servers (including Vendor Server 310A, 310B and 310N), which are operated and controlled by individual third-party entities. For example, Vendor Server 310A may belong to a given retailer, Vendor Server 310B may belong to another retailer and Vendor Server 310N may belong to a third retailer. It shall be appreciated that many more Vendor Servers may be included within system 100 depending upon the number of third-party vendors which desire to securely receive and act upon a user’s personal information in order to transact with and serve one or more of the users of system 100. In other forms, one or more of these Vendor Servers 310 may be one or more virtual services operating in the cloud, such as using Amazon Web Services (AWS) or the like.
[0051] Additionally, provided are an Identity Verification Source 320 and a Payment Processor 330. Identity Verification Source 320 is a third-party trusted server or servicePCT / US25 / 2195828 March 2025 (28.03.2025)
[0052] #2303682 ODS9--I5-OO0O95
[0053] 9
[0054] which enables system 100 to verify a user’s identity, such as by using a driver license, passport or other government authenticated document, card or the like. The Identity Verification Source 320 may be a governmental or private server or service, such as a state driver’s license verification system, credit reporting service or the like which enables a user’s identity to be verified with the requisite level of trust. In addition, Payment Processor 330 may be a payment system which enables the processing of transactions for goods and services which may occur between a user and third-party within system 100. These also may be may be one or more virtual services operating in the cloud.
[0055] It shall be understood that many of the descriptions herein with respect to a retail environment are meant for illustrative purposes and that the concepts herein are generally applicable to other transactions and are not limited to only commercial transactions or retail purchases.
[0056] Turning to FIG. 2, a representative web page 200 is provided in a plan view showing how the secure verification of a transaction could be initiated by a user with a given vendor. As can be seen, web page 200, which would be operated by a vendor and hosted by a Vendor Server, such as Vendor Server 310A, includes many of the standard and conventional features, including an identification of the items in the cart being purchased, the estimated total with shipping and tax, as well as shipping and payment detai l sections if more information is desired. Web page 200 also includes a SECURE CHECKOUT button 202, or some comparable selection, regardless of the actual text displayed, that the user may select to initiate the secure checkout described in the following description. As will be appreciated, the button 202 or some variant thereof may similarly be incorporated into many other conventional checkout pages, thereby giving the vendor autonomy in designing their customer experience but still being able to incorporate the benefits of the present system and method by integrating a button or other selection such as button 202 within their own purchase process and website.
[0057] Turning to FIG. 3, one set of steps involved in illustrative process for provisioning a user device 110 for use with trusted service 200, as well as the rest of system 10, is provided. The process begins at start point 301 with the user installing a dedicated application 114 on their user device 110, such as by using an application source such as the Apple App store or the Google Play store. The application 114 may be distributed by the operator of trusted service 200, a credit card issuer, a payment processor, a retail store or some other third-party integrator. As suggested above, in the case of a dedicated user device, or a pre-installedPCT / US25 / 2195828 March 2025 (28.03.2025)
[0058] #2303682
[0059] 10
[0060] application, or a web-app this step may not be required. Once installed, the user creates an account or profile with server 230 using the application 114 on their user device 110 (stage 303). Within the account or profile, but only stored in complete form locally on the user device 110 within user data vault 116, the user populates their profile within the application 114 with the user’s own personal information (stage 305). The server 230 may be advised of what pieces of information are shared by the user, and stored within the user’s data vault 116, but the actual personal information itself is not transmitted to or made known in complete form to the server 230 or other devices within system 100.
[0061] In addition to the personal information provided, an e-wallet with one or more forms of payment, such as credit card, debit card or other suitable payment information may be provided by the user within the application 114 on user device 110 (stage 307). It shall be appreciated that this information may include a credit card number, expiration date and security code, or other alternative information sufficient to enable to payment, such has Venmo, PayPal or the like. This information may be confirmed with Payment Processor 330, or merely maintained, either in whole in part, within data vault 116 for subsequent use, Next, the user is requested to and provides biometric information for themselves to the application (stage 309). This information may be input using a sensor 112 resident on the user device 110, as has been described above. Alternatively, an auxiliary sensor may be provided to the user which is usable with the phone, such as by Bluetooth, USB or other hardwired connection to allow the user to input their biometric information. The auxiliary sensor may be maintained by the user or returned to the service provider, depending upon cost. In other forms, the user may be required to provide their biometric information at a designated location using other equipment.
[0062] In a further form, a verification step is required to ensure that the user inputting their biometric information is in fact the person authorized for the various payment methods. This may be accomplished by requiring the user io take a photo of their government issued identification using the user device 110 (stage 311). The photo would include the user’s photo and information on the front of the I D and may also include the barcode or other independently verifiable information thereon, which can be validated by using various known identity verification services. Subsequently, Server 230 attempts to verify the user’s upload of their government issued ID and biometric informa tion using ID Verification Server 320 to confirm the authenticity of the ID (stage 313 ). ID Verification Server 230 may be a third-party service, a federal government service or some other service operating from a trustedPCT / US25 / 2195828 March 2025 (28.03.2025)
[0063] #2303682
[0064] 11
[0065] government database of information. Examples include ID.me or Persona (available at withpersona.com). Alternatively, or additionally, Gateway 210 and / or Server 230 may select and present challenge questions to the user via the mobile application 114 to ensure that the user is who he / she claims to be (stage 315). Examples of these questions include street names the user previously lived on, cities in which the user previously resided, the name of entities to whom the user has a loan balance with, or other questions which is often presented in an automated fashion during a background check, credit check or the like.
[0066] Thereafter, the server 230 utilizes the user’s biometric information input in stage 309 and optionally 311, as well as potentially the user’s photos from the government issued ID, to confirm and build or request and receive from a third-party a biometric profile for the user (stage 317). The biometric profile of the user may be developed in part using the other components of service side 200, but shall be protected for privacy concerns. Assuming all processes complete with no validity issues arising, the process concludes with the user’s biometric profile being created and stored in the user’s user device 110, such as within data store 116 (stage 319). Preferably, this biometric profile is sufficient to enable a user to be verified, but not sufficient to enable a reverse construction of the user’s appearance, so as to make any attempted fraud virtually impossible. Part of the biometric profile may be stored by gateway 210 or server 230, with at least the remainder stored within the user device 110 to enable a complete copy to be complied for use when desired and permission from the user device 110 is present. This charring function enables some data to be stored without invoking regulations, and also provides from increased efficiency and security. The process ends at end point 323.
[0067] Next, as illustrated in FIG. 4, one set of steps involved in an illustrative process for completing a verified online or ecommerce transaction using the system 100 is provided, It shall be appreciated that it is known that consumers have an account configured according to the method shown in FIG. 3 or comparable, and the existence of such accounts for a user are presumed.
[0068] The process begins with the user utilizing computer 120 to visit the webpage of a given vendor and identifying one or more items for purchase (stage 401). This vendor webpage may resemble, in part, that shown in FIG. 2, and may be hosted by a Vendor Server such as 310A. The items purchased may be tangible, intangible or the purpose may be for any other transaction or transfer, such as a bill payment or peer-to-peer money transmission. In alternate forms, the transaction may not be a purchase, but rather a security transaction,PCT / US25 / 2195828 March 2025 (28.03.2025)
[0069] #2303682
[0070] 12
[0071] such as the permitting of access to secured data, computers, facilities or the like. Once ready to complete the transaction, the user selects “SECURE CHECKOUT’ button 202 (stage 403). This may be accomplished using the mouse, a touchscreen or otherwise. When the button 202 is selected, the user either provides or has previously provided their account information, such as via a unique ID, login and password, linking with a vendor specific account or the like (stage 405). The Vendor Server hosting the webpage then transmits a request to the gateway 210, including the user’s account information, requesting to complete the pending transaction (stage 407). Upon receiving a request, the server 230 looks up and verities the user’s account and initiates a process to determine the approximate geographic location of each of the user device 110 as speci fied in the user’s account and the computer 120 from where the transaction was initiated (stage 408). Depending upon the level of security desired, the tolerances in the determined location(s) and perceived distances between the two to enable the user device 110 to qualify as being in “proximity” to the computer I 20 may vary. For example, the threshold may be within one mile, one kilometer, one-quarter mile, 1,000 meters, one-hundred yards, one-hundred feet, 25 feet or the like, as may be statically or dynamically specified within the system. In alternate forms, proximity may not be based purely on distance, but instead may be determined using other indicia, such as a Bluetooth connection between user device 110 and computer 120 or a determination that user device 110 and computer 120 are both on the same Wi-fi connection, or a determination that user device 110 and computer 120 are each connected to a certain wireless beacon, or a combination thereof It shall be appreciated that this location detection process may make use of one or more of the following technologies, or a combination thereof global positioning system (G PS), assisted GPS, IP address geolocation, wireless network membership, wireless beacons, cellular triangulation or the like.
[0072] Following the above proximity determination, if a satisfactory proximity between the user device 110 and the computer 120 is not determined by the server 230, then the transaction is denied and the process end. In an alternate form, the location determination process may be repeated, either automatically or at the request of the user or vendor.
[0073] Alternatively, if a satisfactory proximity between the user device 110 and the computer 120 is determined by server 230, then the server 230 or some other portion of the system transmits a request to the user’s device 110, via application 114, to retrieve the user’s biometric information and / or payment information for purposes of completing the transaction (stage 409), This process may require a positive confirmation, entered by the user using thePCT / US25 / 2195828 March 2025 (28.03.2025)
[0074] #2303682 ODS9--I5-OO0O95
[0075] 13
[0076] user device 110 and perhaps application 114, or prior approval may have been granted by the user, such as for all transactions, selected transactions or transaction of a certain time, with designated parties and / or under a designated amount. The confirmation may include an identification of the requesting entity and / or the amount of the transaction to provide the user with more information in which to made an educated confirmation decision. Once authorized, the user device 110 shares the biometric profile for the user stored within user data vault 116 with gateway 210 (stage 411). This may be accomplished in one of many ways, some or all of which may be secured and / or encrypted. In one form, the user device 110 transmits the user’s biometric token and / or payment information to the gateway 210 over network 20. In a further form, the user device 110 may split the user’s biometric profile into two or more non-complete but re-combinable parts and transmit a first portion along one path and a second portion along a separate and distinct path and / or encryption protocol, thereby providing additional security. Which method is utilized may depend upon service, vendor or user preferences and settings, or may be dictated at least in part by the types of connections available to user device 110 and gateway 210. In an alternate form, the biometric profile or payment information may be transmitted from the user device 110 to the computer 120 for verification and use on computer 120, and in a further form, the biometric profile may be transmitted directly by a local link as opposed to across global network 20.
[0077] In yet another form, the user device 110 may only transmit a portion of the user’s biometric profile and / or payment information, which may then be combined with a non¬ complete portion of the biometric profile and or payment information stored in, known to or accessible by the gateway 210 to arrive at the complete biometric profile for subsequent use. In this manner, the user’s biometric profile is charred, meaning that only a non-complete biometric profile is ever persistently stored outside of the user’s device, thus requiring some portion from the user’s device to be provided before the biometric profile is in any way useful.
[0078] Simultaneously, shortly thereafter or in interchangeable order, the webpage operated by the Vendor Server causes computer 120 to capture a biometric scan of the user (stage 413). This may be accomplished by using the biometric sensor 122 on computer 120. Now that computer 120 is in possession of the user’s biometric scan, the computer 120 or Vendor Server hosting the webpage transmits the collected user biometric profile to the gateway 210 (stage 415), Having both the user’s biometric profile from data store 116 on the user device 110 and the recently collected biometric scan regarding the user actually seeking to completePCT / US25 / 2195828 March 2025 (28.03.2025)
[0079] #2303682
[0080] 14
[0081] the transaction, the Server 230 can attempt to complete a biometric profile match to confirm that the user seeking to complete the transaction is in fact the authorized user (stage 417). It shall be appreciated that various methods of biometric verification exist, including facial recognition, palm scanning, iris scanning and fingerprint reading, and the use of any of these models or other known methods is contemplated. For example, in the present embodiment in which facial recognition is utilized, the biometric sensor 122 of computer 120 may create the model by pinpointing and measuring facial features from a live video stream showing the user. In further form, a 3-D facial recognition model may be utilized. Alternatively, voice recognition, fingerprint recognition, iris scanning or the like may be utilized, so long as the appropriate information for performing such a match is provided for in the user’s biometric profile and is authorized by the service and the user. It shall also be appreciated that, depending upon preference, the biometric match may be completed, in whole or in part, by the computer 120, gateway 210, server 230, the Vendor Server, or some other designated entity or service, depending upon trust levels.
[0082] Assuming the Server 230 (or some other device) is able to do verify the transaction, the gateway 210 notifies the Vendor Server and / or Payment Processor 330 that the transaction is authorized (stage 419). In one form, this may also include the gateway 210 providing the user’s payment information, or a necessary portion thereof, to the Vendor Server or Payment Processor 330 to enable to transaction to be completed. It shall be appreciated that the biometric matching described herein may be performed on any number of human aspects, including face, eye (e.g. iris or retina), hand, fingerprint, voice, and / or ear. For purpose of illustration, in the situation where facial matching is utilized, the system and method may utilize the one or many known methods of biometric matching, including that of U. S. Patent 8,312,291, which is hereby incorporated by reference to the extent not inconsistent.
[0083] After the transaction is completed and no further processing is anticipated or required, the Gateway 210, Server 230 and any Vendor Server, Payment Processor or other device which may have received the user’s biometric or payment information erases it either entirely or in substantial part (stage 421). In this manner, the sole location of the user’s complete biometric and / or payment information remains the user’s device 110. The process ends at end point 423.PCT / US25 / 2195828 March 2025 (28.03.2025)
[0084] #2303682 ODS9--I5-OO0O95
[0085] 15
[0086] In an alternate form, the user’s biometric profile and payment information may be provided to the Vendor Server and / or Payment Processor to complete the verification described above as being performed by the Trusted Service 200.
[0087] One main advantage of this embodiment of the present invention is the local establishment of a biometric profile within the memory of the user’s user device 110 and the passing of this biometric profile to the trusted service only when requested and authorized by the user combined with a geographic token presence confirmation. This establishes a decentralized system where the user controls their information and trust is placed in the Trusted Service to locally verify the received biometric information to confirm the user’s identify and contemporaneously verify the presence of the user’s device near the computer seeking to complete the transaction before authorizing the processing of a transaction.
[0088] In the case of a simple purchase, the process of FIG. 4 may include the selection of a card or account, from the list of authorized ones permitted for sharing with the vendor, may be designated by the user through direct input into user device 110, computer 120 or by using a default previously specified.
[0089] In a further and even more secure form, the process of FIG. 4 may include an additional factor of authentication prior to clearing the transaction in stage 319. Specifically, the user may be required to input during the initial set up of FIG. 3 a selected gesture, such as waving, tapping their nose, winking, or some other easily recognizable and distinct movement or another biometric indicator such as voice. Thereafter, the Server 230 would attempt to detect the user performing this gesture or matching the additional biometric indicator, such as voice, by prompting the user’s to vocally confirm. In addition, the Gateway 210, Vendor Server and / or computer 120 may prompt the user to perform this gesture or speak at the conclusion of another stage, or at some point adjacent thereto, if it has not previously been identified.
[0090] In various embodiments, thresholds may be set for the requirement of further biometric verification. For example, for common transactions known to occur for a given user, no biometric verification may be required. However, for uncommon transactions above a certain threshold, such as $50, or $100, or for additional controls such as on the purchase of controlled substances, such as alcohol, cigarettes or pharmaceuticals or other medications, tire biometric verification step may be required.
[0091] This disclosure is applicable to all areas where the verification of an identifiable customer or other individual enables one or more desired transactions or secured action(s),PCT / US25 / 2195828 March 2025 (28.03.2025)
[0092] #2303682 80S9--'IS-80£K>95
[0093] 16
[0094] such as an online transaction, online purchase, age verification, security authorization or the like.
[0095] While the invention has been illustrated and described in detail in the drawings and foregoing description, the same is to be considered as illustrative and not restrictive in 5 character, it being understood that only the preferred embodiment has been shown and described and that all equivalents, changes, and modifications that come within the spirit of the inventions as described herein and / or by the following claims are desired to be protected.
[0096] Hence, the proper scope of the present invention should be determined only by the broadest interpretation of the appended claims so as to encompass all such modifications as 10 well as all relationships equivalent to those illustrated in the drawings and described in the specification.
Claims
PCT / US25 / 2195828 March 2025 (28.03.2025)#2303682 ODS9--I5-OO0O9517CLAIMSWhat is claimed is:
1. A method for processing an online transaction using a biometric presence and authorization system, comprising the steps of:receiving an electronic indication that a first financial transaction between a first user at a first terminal having a biometric sensor and a first merchant operating a first server is pending;determining electronically the geographic location of a first wireless user device associated with the first user, wherein the first wireless user device has a memory and stores therein at least a portion of a first biometric profile which is associated with the first user; confirming that the geographic location of the first wireless user device is within a defined proximity of the first terminal contemporaneous with the electronic indication;capturing a first biometric capture from the first user operating the first terminal using the biometric sensor;receiving the first biometric profile from the first wireless user device and electronically comparing the first biometric capture to the first biometric profile and determining that the first biometric capture matches the first biometric profile; and electronically authorizing the first transaction as a result of said determining that the first biometric capture matches the first biometric profile.
2. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes the detection by a wireless beacon signal broadcast by the first terminal and received by the first user device.
3. The method of any of the preceding claims, wherein the defined proximity is a specified distance.
4. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes an IP address.
5. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes the global positioning system.PCT / US25 / 2195828 March 2025 (28.03.2025)#2303682186. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes the assisted global positioning system.
7. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes at least two cellular network transceivers,8. The method of any of the preceding claims, wherein said determining electronically the geographic location of a first wireless user device associated with the first user utilizes information regarding the 802.11 wireless network to which the first wireless device is connected.
9. The method of any of the preceding claims, wherein the receiving the first biometric profile from the first user device is performed by the first terminal.
10. The method of any of the preceding claims, wherein at least a first part of the first biometric profile is transmitted to the first terminal directly from the user device and not via the Internet,11. The method of any of the preceding claims, wherein the biometric profile associated with the riser profile is stored at least in part on the user device.
12. The method of any of the preceding claims, wherein the first biometric profile is persistently stored solely on the user device and not persistently elsewhere within the authorization system.
13. The method of any of the preceding claims, wherein the first biometric profile is validated using a third-party validation service.
14. The method of any of the preceding claims, wherein the first biometric profile is validated using at least one government issued photo identification.
15. The method of any of the preceding claims, wherein each biometric profile comprises a facial recognition profile.
16. The method of any of the preceding claims, wherein the biometric sensor is a camera.
17. The method of any of the preceding claims, wherein the first user device is a smartphone or a smartwatch.18, The method of any of the preceding claims, wherein the first terminal is a computer.PCT / US25 / 2195828 March 2025 (28.03.2025)#2303682 80S9--'IS-80£K>951919. The method of any of the preceding claims, wherein the first financial transaction is for the sale of goods.
20. The method of any of the preceding claims, wherein the determining electronically the geographic location of a first wireless user device associated with the first 5 user involves determining electronically a second geographic location of the first terminal.
21. The method of any of the preceding claims, wherein the first server is an e- commerce website.