Terminal, terminal control method, and storage medium

The terminal provides a digital business card that verifies a user's affiliation with a specified organization, addressing the issue of forgery in traditional business cards by ensuring authenticity through cryptographic verification.

WO2025257933A1PCT designated stage Publication Date: 2025-12-18NEC CORP
View PDF 5 Cites 0 Cited by

Patent Information

Application Number
PCT/JP2024/021188
Authority / Receiving Office
WO · WO
Patent Type
Applications
Current Assignee / Owner
Filing Date
2024-06-11
Publication Date
2025-12-18

AI Technical Summary

Technical Problem

Existing business cards are prone to forgery, making it difficult for recipients to verify the authenticity of the cards they receive immediately after exchanging them.

Method used

A terminal that acquires and provides a digital business card, which is a certificate proving a user's affiliation with a specified organization and can be verified online, ensuring authenticity through cryptographic verification.

Benefits of technology

Enables recipients to verify the authenticity of received business cards using cryptographic verification, enhancing trust in the identity of the cardholder.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure JP2024021188_18122025_PF_FP_ABST
    Figure JP2024021188_18122025_PF_FP_ABST
Patent Text Reader

Abstract

Provided is a terminal which enables a person who has received a business card to verify said received business card. This terminal comprises a first acquisition means and a provision means. The first acquisition means acquires a digital business card, which is a certificate certifying that a first user belongs to a prescribed organization and the content of which can be verified online. The provision means externally provides the acquired digital business card.
Need to check novelty before this filing date? Find Prior Art

Description

Terminal, terminal control method, and storage medium

[0001] The present invention relates to a terminal, a terminal control method, and a storage medium.

[0002] There are technologies related to the disclosure of personal information.

[0003] For example, Patent Document 1 describes controlling disclosure of personal information indicating that an owner has a specific attribute. The attribute management information in Patent Document 1 includes multiple pieces of attribute information, and has a hierarchical structure in which the range of attributes indicated by one piece of attribute information among the multiple pieces of attribute information is included in the range of attributes indicated by attribute information higher than that piece of attribute information. A computer accepts a disclosure request requesting disclosure of personal information indicating that a personal information owner has a specific attribute. The computer performs a determination process to determine whether a first attribute indicated by first attribute information and a second attribute indicated by second attribute information higher than the first attribute information correspond to the specific attribute in the attribute management information. The first attribute information corresponds to one or more pieces of personal information held by the personal information owner. Based on the result of the determination process, the computer selects one or more pieces of personal information as personal information to be disclosed.

[0004] International Publication No. 2023 / 132049

[0005] In business situations, parties exchange business cards. However, paper business cards are easy to forge, making it difficult for the recipient to verify the authenticity of the business card they receive from the other party. In particular, it is difficult for the recipient to verify the authenticity of the business card they receive immediately after exchanging cards.

[0006] A primary object of the present invention is to provide a terminal, a method for controlling the terminal, and a storage medium that contribute to enabling the recipient of a business card to verify the received business card.

[0007] According to a first aspect of the present invention, there is provided a terminal comprising: a first acquisition means for acquiring a digital business card which is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision means for providing the acquired digital business card to an external party.

[0008] According to a second aspect of the present invention, there is provided a method for controlling a terminal, comprising: a first acquisition step of acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision step of providing the acquired digital business card to an external party.

[0009] According to a third aspect of the present invention, there is provided a computer-readable storage medium that stores a program for causing a computer installed in a terminal to execute a first acquisition process for acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online, and a provision process for providing the acquired digital business card to an external party.

[0010] According to each aspect of the present invention, a terminal, a method for controlling the terminal, and a storage medium are provided that contribute to enabling the recipient of a business card to verify the received business card. Note that the effects of the present invention are not limited to those described above. The present invention may achieve other effects instead of or in addition to the above effects.

[0011] FIG. 1 is a diagram illustrating an overview of an embodiment. FIG. 2 is a flowchart illustrating an operation of an embodiment. FIG. 3 is a diagram illustrating an example of a schematic configuration of an information processing system according to an embodiment of the present disclosure. FIG. 4 is a diagram illustrating an example of a display of a terminal according to an embodiment of the present disclosure. FIG. 5 is a diagram illustrating an operation of the information processing system according to an embodiment of the present disclosure. FIG. 6 is a diagram illustrating an operation of the information processing system according to an embodiment of the present disclosure. FIG. 7 is a diagram illustrating an example of a display of a terminal according to an embodiment of the present disclosure. FIG. 8 is a diagram illustrating an example of a processing configuration of a terminal according to an embodiment of the present disclosure. FIG. 9 is a flowchart illustrating an example of an operation of an identity verification unit according to an embodiment of the present disclosure. FIG. 10 is a flowchart illustrating an example of an operation of an acquisition control unit according to an embodiment of the present disclosure. FIG. 11 is a diagram illustrating an example of a processing configuration of a server device according to an embodiment of the present disclosure. FIG. 12 is a diagram illustrating an example of an employee management database according to an embodiment of the present disclosure. FIG. 13 is a sequence diagram illustrating an example of an operation of an information processing system according to an embodiment of the present disclosure. FIG. 14 is a diagram illustrating an example of a display of a terminal according to a modified example of an embodiment of the present disclosure. FIG. 15 is a diagram illustrating an operation of an information processing system according to a modified example of an embodiment of the present disclosure. FIG. 16 is a diagram illustrating an example of a hardware configuration of a terminal according to the present disclosure.

[0012] First, an overview of one embodiment will be described. Note that the reference numerals in the drawings are added to each element for convenience as an example to facilitate understanding, and the description of this overview is not intended to be limiting in any way. Furthermore, unless otherwise specified, the blocks shown in each drawing represent functional units, not hardware units. Connection lines between blocks in each drawing include both bidirectional and unidirectional lines. Unidirectional arrows are used to schematically indicate the flow of the main signal (data) and do not exclude bidirectionality. Note that in this specification and drawings, elements that can be similarly described may be assigned the same reference numerals to avoid redundant explanation.

[0013] A terminal 100 according to one embodiment includes a first acquisition unit 101 and a provision unit 102 (see FIG. 1). The first acquisition unit 101 acquires a digital business card, which is a certificate that proves that a first user belongs to a predetermined organization and whose contents can be verified online (step S1 in FIG. 2). The provision unit 102 provides the acquired digital business card to an external party (step S2).

[0014] The terminal 100 acquires a digital business card whose name is that of the owner (first user) and whose contents can be verified online. The terminal 100 provides the acquired digital business card to another person (e.g., the first user's business partner). More specifically, the terminal 100 provides the digital business card to a device such as a smartphone owned by the other person. The other person's device verifies the acquired digital business card and notifies the user (the first user's business partner) of the result. In this way, the terminal 100 realizes verification of a business card received by a user other than the owner of the terminal 100.

[0015] Specific embodiments will be described in more detail below with reference to the drawings.

[0016] First Embodiment The first embodiment will be described in more detail with reference to the drawings.

[0017] [System Configuration] The information processing system according to the first embodiment includes at least one or more groups or organizations. Organizations included in the information processing system include, for example, companies, local governments, non-profit organizations, educational institutions, etc. These groups or organizations issue business cards that certify the identity of members belonging to the organizations, etc. In the first embodiment, a description will be given taking a company as an example of a group or organization that issues business cards.

[0018] As shown in Fig. 3, the information processing system includes a server device 10 managed and operated by each company that issues business cards. The server device 10 controls and manages employees of the company. In particular, the server device 10 issues electronic business cards (digital business cards) to employees. The server device 10 may be installed within the company's premises or on a network (cloud).

[0019] Furthermore, a user (employee) carries a terminal 20. The user operates the terminal 20 to access the server device 10. The user inputs various information to the server device 10 via the terminal 20 and obtains various information from the server device 10.

[0020] 3 are connected to a network. Specifically, the server device 10 and the terminal 20 are connected to the network by wired or wireless communication means.

[0021] 3 is an example and is not intended to limit the configuration. For example, the information processing system may include multiple server devices 10. The multiple server devices 10 may achieve load balancing and redundancy.

[0022] [Overall Operation] Next, an overall operation of the information processing system according to the first embodiment will be described.

[0023] <Preparing a Digital Wallet> The user terminal 20 has a digital wallet function. A digital wallet is an electronic information storage service that guarantees information security such as data integrity, reliability, and availability.

[0024] A user installs an application for realizing a digital wallet on their terminal 20. By opening a digital wallet on terminal 20, the user can store digital content on terminal 20, such as digital business cards, digital employee ID cards, electronic money, identification documents such as passports and driver's licenses, and various tickets such as airline tickets.

[0025] For example, the user's terminal 20 stores digital content such as that shown in Fig. 4. The digital content stored in the terminal 20 includes official identification documents such as passports and driver's licenses, digital business cards issued by companies, digital employee ID cards, and the like.

[0026] When the digital wallet application is launched for the first time, the terminal 20 performs identity verification using an identification card issued by a public institution such as a government agency. The terminal 20 also performs identity verification of the user when opening a digital wallet.

[0027] For example, the terminal 20 performs identity verification using an identification document that contains the biometric information of the holder, such as a My Number card or a passport. The terminal 20 uses the My Number card or the passport as a root of trust.

[0028] Examples of biometric information include data (features) calculated from physical characteristics unique to an individual, such as a face, fingerprint, voiceprint, veins, retina, or iris pattern. Alternatively, the biometric information may be image data such as a face image or fingerprint image. The biometric information may be any information that includes the user's physical characteristics. In this disclosure, a case where biometric information related to a person's "face" (a face image or features generated from a face image) is used will be described.

[0029] The terminal 20 acquires information about the holder (issuer) of the identification card from the user's identification card. For example, the terminal 20 acquires information about the holder of the My Number card from an integrated circuit (IC) of the My Number card.

[0030] Specifically, the terminal 20 acquires biometric information (facial image) of the cardholder of the My Number card, and stores the biometric information read from the My Number card internally.

[0031] Furthermore, the terminal 20 acquires biometric information of the user (the person who opened the digital wallet). For example, the terminal 20 acquires and stores a facial image of the user by photographing the user.

[0032] The terminal 20 performs a matching process (authentication process) using the biometric information acquired from the identification card and the biometric information of the user. If the authentication process (one-to-one authentication) is successful, the terminal 20 opens a digital wallet. The terminal 20 confirms through the matching process (authentication process) using the biometric information that the person who was issued the identification card and the user who uses the digital wallet of the terminal 20 are the same person.

[0033] <Creating an Account> When an employee joins a company, the employee registers as an employee and operates the terminal 20 to access the server device 10.

[0034] The server device 10 acquires the name, gender, date of birth, address, biometric information (face image), employee number, department, contact information (telephone number, email address, etc.) from a web page or the like for employee registration. Alternatively, a person in the human resources department or the like may input the employee's name, gender, etc. into the server device 10.

[0035] When the server device 10 acquires the employee's name, biometric information, etc., it generates an employee ID for identifying the employee. The server device 10 associates the generated employee ID with the acquired information and stores them in an employee management database. Details of the employee management database will be described later.

[0036] An employee account (employee account) is created by storing the employee ID, name, etc. in the employee management database.

[0037] <Obtaining a digital business card> A user (employee) obtains a digital business card to be stored in a digital wallet from their company. Specifically, the digital wallet application requests the employee's company to issue a digital business card. The issuer (company) of the digital business card issues verifiable credentials (VCs) as digital business cards, the contents of which can be verified online.

[0038] In the following description, VCs will be referred to as "credential certificates," and digital business cards issued as VCs will be referred to as "digital business card VCs."

[0039] Prior to requesting the issuance of a digital business card VCs, the user's terminal 20 generates a pair of a public key and a private key. The terminal 20 also generates a decentralized identifier (DID). The terminal 20 registers the generated DID (user ID; holder ID) and public key in the blockchain (step S01 in FIG. 5).

[0040] Furthermore, the user's terminal 20 presents the user ID and requests the issuer of the digital business card VCs (server device 10) to issue the digital business card VCs. Specifically, the terminal 20 sends a "digital business card issuance request" including information identifying the user (e.g., employee number) and the user ID, etc., to the server device 10 (step S02).

[0041] In this way, in step S02, the terminal 20 transmits the user's personal information (e.g., employee number) to the server device 10 of the company that is the issuer of the digital business card VCs. The terminal 20 may provide the personal information to the server device 10 by registering the personal information in a blockchain, or may provide the personal information to the server device 10 without using a blockchain. In other words, registering personal information in a blockchain is optional.

[0042] The server device 10 generates and stores in advance the DID (issuer ID), private key, and public key of the issuer.

[0043] When a digital business card issuance request is received, the server device 10 determines whether the user requesting the issuance of a digital business card VC is qualified to receive the digital business card VC. Specifically, the server device 10 determines whether the user requesting the issuance of a digital business card VC is an employee of the company.

[0044] If the user is qualified to receive a digital business card VC, the server device 10 generates a digital business card VC including the issuer ID and the user ID.

[0045] Specifically, the server device 10 generates a digital business card VC that includes metadata including the type of credential certificate (digital business card), the issuing organization name, the date and time of issue, etc., a qualification information body, and the issuer's public key information, electronic signature, etc. The qualification information body contains specific information certified by the issuer (for example, company name, employee name, facial image, department, contact information, etc.).

[0046] The server device 10 transmits the generated digital business card VCs to the terminal 20 of the user (the user who will become the owner of the digital business card VCs; the person who requests the issuance of the digital business card VCs) (digital business card issuance; step S03).

[0047] Furthermore, the server device 10 registers the issuer ID and the generated public key in the blockchain (step S04).

[0048] The terminal 20 stores the received digital business card VCs in the digital wallet.

[0049] <Exchanging Digital Business Card VCs> The user installs a business card management application on the terminal 20. The business card management application provides services using digital business card VCs stored in the digital wallet.

[0050] For example, a user (employee) can exchange digital business card VCs stored in a digital wallet with another person (e.g., a business partner). For example, when the terminal 20 (business card management application) detects a predetermined operation by the user (e.g., pressing the business card exchange button), it generates a two-dimensional barcode using the digital business card VCs stored in the digital wallet.

[0051] More specifically, the terminal 20 signs the digital business card VCs using a private key corresponding to the user's DID (user ID). The terminal 20 converts the signed digital business card VCs into a two-dimensional barcode.

[0052] The terminal 20 displays the generated two-dimensional barcode. The other person's terminal 20 acquires the digital business card VCs by reading the displayed two-dimensional barcode. For example, as shown in Fig. 6, the terminals 20 possessed by user A and user B each display a two-dimensional barcode and read the two-dimensional barcode displayed on the other person's terminal 20. The terminal 20 decodes the two-dimensional barcodes and acquires the digital business card VCs.

[0053] The terminal 20 acquires the issuer ID and user ID from the acquired digital business card VCs of the other party. Furthermore, the terminal 20 acquires the public key corresponding to the acquired issuer ID and the public key corresponding to the acquired user ID from the blockchain.

[0054] The terminal 20 verifies the digital business card VCs received from the other party. Specifically, the terminal 20 verifies the signature of the owner and the signature of the issuer attached to the digital business card VCs. By verifying these signatures, the terminal 20 confirms that the digital business card VCs received from the user (the owner of the digital business card VCs; for example, the business partner) have not been tampered with and that the certificate has been issued by a trustworthy issuer.

[0055] If the terminal 20 successfully verifies the acquired digital business card VCs, it displays the contents of the acquired digital business card VCs and stores them internally. At this time, the terminal 20 may store the digital business card VCs in association with the date, time, and place at which the digital business card VCs were acquired.

[0056] The terminal 20 may store information about the circumstances when the digital business card VCs were acquired in association with the acquired digital business card VCs. For example, the terminal 20 may store the digital business card VCs in association with the name of the event when the digital business card VCs were exchanged (e.g., the name of a conference or exhibition attended by the user). Specifically, when the terminal 20 acquires the digital business card VCs, it refers to the user's schedule information. If an event is set for the date and time when the digital business card was acquired, the terminal 20 acquires the name of the event (e.g., the name of the conference or exhibition) and stores the name in association with the acquired digital business card VCs. When the user browses (searches) the digital business card VCs, the terminal 20 displays the event name (e.g., the name of the conference or exhibition) along with the digital business card VCs. The user who sees this display can easily remember the circumstances when the digital business card VCs were acquired.

[0057] <Other Uses of Digital Business Card VCs> The terminal 20 (business card management application) enables the user to view the digital business card VCs of other people stored internally in response to a predetermined operation by the user (for example, pressing the business card display button). For example, the terminal 20 displays a screen such as that shown in FIG. 7.

[0058] Alternatively, the terminal 20 may utilize the acquired digital business card VCs in various applications. For example, the terminal 20 may utilize the acquired digital business card VCs in an application that manages other people's contact information in an address book. For example, information obtained from the digital business card VCs (e.g., name, company, department, telephone number, email address) may be registered in the address book of an email application, a conference setting application, a communication application, or the like.

[0059] Users can use contacts automatically registered from digital business cards VCs in the same way as manually registered contacts in email applications, etc. In other words, users can select from their address book the people they want to send emails to, schedule meetings with, or chat with.

[0060] In addition, when a user exchanges digital business cards with an employee of the company to which the user belongs, the email application or the like may display in an address book that manages the contact information of other employees within the company, employees with whom the user has exchanged digital business cards and employees with whom the user has not exchanged digital business cards in a manner that makes it possible to distinguish between the employees.

[0061] Next, details of each device included in the information processing system according to the first embodiment will be described.

[0062] [Terminal] Examples of the terminal 20 include a mobile terminal device such as a smartphone, a mobile phone, a game console, a tablet, or a computer (personal computer, laptop computer), etc. The terminal 20 can be any equipment or device that can accept user operations and communicate with the server device 10, etc.

[0063] 8 is a diagram illustrating an example of a processing configuration (processing module) of the terminal 20 according to an embodiment of the present disclosure. Referring to FIG. 8, the terminal 20 includes a communication control unit 201, a personal identification unit 202, an acquisition control unit 203, a usage control unit 204, and a storage unit 205.

[0064] The communication control unit 201 is a means for controlling communication with other devices. For example, the communication control unit 201 receives data (packets) from the server device 10. The communication control unit 201 also transmits data to the server device 10. The communication control unit 201 passes data received from other devices to other processing modules. The communication control unit 201 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 201. The communication control unit 201 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.

[0065] The identity verification unit 202 and the acquisition control unit 203 implement a digital wallet application. The usage control unit 204 implements a business card management application. Detailed explanations regarding the installation of the digital wallet application and the business card management application will be omitted, as the installation of the applications is obvious to those skilled in the art.

[0066] The identity verification unit 202 is a means for verifying the identity of the creator of a digital wallet. The identity verification unit 202 verifies the identity of the creator of the digital wallet by using biometric information obtained from the identification card and the biometric information of the creator who opens the digital wallet. More specifically, the identity verification unit 202 verifies that the creator of the digital wallet and the holder (issuer) of the identification card issued by a public institution are the same person.

[0067] 9 is a flowchart showing an example of the operation of the personal identification unit 202. The operation of the personal identification unit 202 will be described with reference to FIG.

[0068] When the digital wallet is opened (first startup), the personal identification unit 202 acquires information about the holder of the identification card from the identification card held by the user. For example, the personal identification unit 202 acquires biometric information of the holder of the identification card from an IC (Integrated Circuit) chip mounted on a My Number card or passport (Step S101).

[0069] For example, when a My Number card is used as an identification card, the personal identification unit 202 acquires a personal identification number for the user authentication electronic certificate using a GUI (Graphical User Interface) or the like. Alternatively, when a passport is used as an identification card, the personal identification unit 202 acquires information written in a Machine Readable Zone (MRZ) on the face of the passport using OCR (Optical Character Recognition) technology.

[0070] The personal identification unit 202 reads information from the IC chip using the acquired PIN (four-digit number) or the information written in the MRZ as a password. The personal identification unit 202 stores the biometric information (face information, face image) of the holder of the identification card (My Number card, passport, etc.) read from the identification card in the storage unit 205 (step S102).

[0071] Furthermore, the identity verification unit 202 acquires biometric information of the user (user of the terminal 20; creator of the digital wallet) (step S103). For example, the identity verification unit 202 prompts the user to take a picture of their own face using a GUI or the like (acquiring a facial image by taking a selfie).

[0072] The personal identification unit 202 acquires biometric information from the identification card and, upon acquiring the biometric information of the user operating the device, executes a matching process using the biometric information acquired from the identification card and the biometric information of the user (step S104). The personal identification unit 202 determines whether the two pieces of biometric information substantially match.

[0073] Specifically, the personal identification unit 202 generates feature quantities from each of the two pieces of biometric information (for example, face images).

[0074] Since existing technology can be used for the process of generating feature amounts, detailed description thereof will be omitted. For example, the personal identification unit 202 extracts the eyes, nose, mouth, etc. from the face image as feature points. Then, the personal identification unit 202 calculates the positions of each feature point and the distances between each feature point as feature amounts (generating a feature vector consisting of multiple feature amounts).

[0075] Next, the identity verification unit 202 performs a matching process (authentication process) using the two generated feature amounts. Specifically, the identity verification unit 202 calculates the similarity between corresponding face images using the two feature amounts. Based on the result of threshold processing on the calculated similarity, the identity verification unit 202 determines whether the two images are face images of the same person. Note that the similarity can be calculated using a chi-squared distance, Euclidean distance, or the like. The greater the distance, the lower the similarity, and the closer the distance, the higher the similarity.

[0076] If the similarity is greater than a predetermined value (if the distance is shorter than a predetermined value), the identity verification unit 202 determines that the matching process has been successful. If the similarity is equal to or less than the predetermined value, the identity verification unit 202 determines that the matching process has failed.

[0077] If the matching process is successful (step S105, Yes branch), the personal identification unit 202 permits the user to use the digital wallet (use permission; step S106). That is, if the authentication process (one-to-one authentication) is successful, the personal identification unit 202 opens the digital wallet.

[0078] If the matching process (authentication process) using biometric information is successful, the identity verification unit 202 treats the person who was issued the identification card as the same person as the user of the terminal 20. When the digital wallet is launched for the first time, it is determined whether the person in the name of the identification card and the user of the terminal 20 are the same person. If the person in the name of the identification card and the person who opened the digital wallet are the same person, the terminal 20 makes the digital wallet application available.

[0079] If the matching process fails (step S105, No branch), the identity verification unit 202 does not permit the user to use the digital wallet (use denial; step S107). In other words, if the authentication process (one-to-one authentication) fails, the user cannot use the digital wallet (cannot open a digital wallet).

[0080] In this way, the identity verification unit 202 determines that identity verification has been successful when the authentication process using the biometric information obtained from the identification card and the biometric information of the creator who opens the digital wallet is successful. If identity verification is successful, the digital wallet is opened.

[0081] The acquisition control unit 203 is a means for controlling the acquisition of credential certificates, including digital business card VCs. For example, the acquisition control unit 203 requests the server device 10 to issue digital business card VCs. The acquisition control unit 203 stores the digital business card VCs acquired from the server device 10 (the user's company) in a digital wallet.

[0082] 10 is a flowchart showing an example of the operation of the acquisition control unit 203. The operation of the acquisition control unit 203 according to the embodiment of the present disclosure will be described with reference to FIG.

[0083] When a user starts the digital wallet application and performs a predetermined operation (for example, pressing the digital business card issue button), the acquisition control unit 203 controls the acquisition of a digital business card VCs.

[0084] First, the acquisition control unit 203 generates a pair of a public key and a private key and a user ID (user DID), which is a distributed identifier. The acquisition control unit 203 registers the generated user ID and public key in the blockchain (registering the public key, etc.; step S201).

[0085] Next, the acquisition control unit 203 acquires information necessary for requesting the issuance of the digital business card VCs using a GUI or the like (acquisition of necessary information; step S202).

[0086] For example, the acquisition control unit 203 acquires information (e.g., company name) of the company authorized to issue the digital business card VCs, or information (e.g., employee number) that the server device 10 uses to identify the user.

[0087] The acquisition control unit 203 notifies the certificate issuer of the acquired necessary information and user ID. Specifically, the acquisition control unit 203 notifies the server device 10 of information for identifying the person to whom the digital business card VCs is to be issued (e.g., employee number) and the user ID. The acquisition control unit 203 transmits a "digital business card issuance request" including the information for identifying the person to whom the digital business card VCs is to be issued, the user ID, etc. to the server device 10 (step S203).

[0088] In this case, the acquisition control unit 203 may refer to table information that stores the company name and the address of the server device 10 in association with each other, and identify the address of the server device 10 to which the digital business card issuance request is to be sent.

[0089] The acquisition control unit 203 may also sign the information included in the digital business card issuance request using a private key corresponding to the public key registered in the blockchain.

[0090] The acquisition control unit 203 receives a response (positive response, negative response) to the digital business card issuance request from the server device 10 (step S204).

[0091] If a negative response is received indicating that the issuance of the digital business card VCs has failed (step S205, No branch), the acquisition control unit 203 notifies the user that the digital business card VCs has not been issued (notification of non-issuance; step S206).

[0092] When an affirmative response indicating that the digital business card VCs have been successfully issued is received (step S205, Yes branch), the acquisition control unit 203 stores the digital business card VCs included in the affirmative response in the digital wallet (step S207). At this time, the acquisition control unit 203 may notify the user that the digital business card VCs have been issued.

[0093] The acquisition control unit 203 may verify the signature attached to the digital business card VCs acquired from the server device 10. In this case, the acquisition control unit 203 acquires from the blockchain a public key corresponding to the issuer ID written on the digital business card VCs. The acquisition control unit 203 may verify the signature attached to the digital business card VCs using the acquired public key, and if the verification is successful, may store the digital business card VCs in the digital wallet.

[0094] In this way, the acquisition control unit 203 operates as a first acquisition unit that acquires digital business card VCs, which are certificates that prove that the first user belongs to a specific organization and whose contents can be verified online. The acquisition control unit 203 also stores the digital business card VCs acquired from the user's company in a digital wallet. In this case, if the acquisition control unit 203 successfully verifies the signature of the acquired digital business card VCs, it may store the acquired digital business card VCs in the digital wallet.

[0095] The usage control unit 204 is a means for controlling the use of digital content (credential certificates) stored in the digital wallet, and in particular, the usage control unit 204 controls the use of digital business cards VCs.

[0096] The usage control unit 204 has a function as a providing unit and a function as a second acquiring unit. As a providing unit, the usage control unit 204 provides the digital business card VCs of the first user stored internally to the outside. As a second acquiring unit, the usage control unit 204 acquires the digital business card VCs of the second user and verifies the acquired digital business card of the second user. If the verification of the digital business card of the second user is successful, the usage control unit 204 stores the acquired digital business card of the second user.

[0097] For example, when a user who has launched the business card management application performs a predetermined operation (for example, pressing the business card exchange button), the usage control unit 204 controls the exchange of digital business card VCs. Specifically, the usage control unit 204 controls the provision of digital business card VCs stored in the digital wallet to the other party, and the acceptance of digital business card VCs provided by the other party.

[0098] When a predetermined operation by a user is detected, the usage control unit 204 generates a two-dimensional barcode based on the digital business card VCs stored in the digital wallet. More specifically, the usage control unit 204 signs the digital business card VCs using a private key corresponding to the user's DID (user ID). The usage control unit 204 converts the signed digital business card VCs into a two-dimensional barcode. The usage control unit 204 displays the two-dimensional barcode generated based on the digital business card VCs.

[0099] The usage control unit 204 signs the digital business card VCs to be provided to the other party using the private key (private key corresponding to the user ID) generated when the issuance of the digital business card VCs is requested.

[0100] The usage control unit 204 controls the camera mounted on the terminal 20 to read the two-dimensional barcode displayed on the other party's terminal 20. The usage control unit 204 decodes the read two-dimensional barcode and acquires the digital business card VCs.

[0101] The usage control unit 204 verifies the acquired digital business card VCs. Specifically, the usage control unit 204 reads the issuer ID and the user ID from the digital business card VCs. The usage control unit 204 obtains the public key corresponding to the read issuer ID from the blockchain. Similarly, the usage control unit 204 obtains the public key corresponding to the read user ID from the blockchain.

[0102] The usage control unit 204 verifies the signature of the holder (the other party exchanging the digital business card VCs) and the signature of the issuer attached to the digital business card VCs.

[0103] If the verification of the other party's digital business card VCs fails, the usage control unit 204 notifies the user of this fact. At this time, the usage control unit 204 may also notify the user that the acquired digital business card VCs may be a counterfeit business card.

[0104] If the verification of the other party's digital business card VC is successful, the usage control unit 204 displays the acquired digital business card VC. Furthermore, the usage control unit 204 stores the acquired digital business card VC in the storage unit 205.

[0105] At this time, the usage control unit 204 may store the acquired digital business card VCs (digital business card VCs of the other party with whom the business card was exchanged) in association with the acquisition date and time and acquisition location of the digital business card VCs.

[0106] The usage control unit 204 receives GPS signals from GPS (Global Positioning System) satellites to perform positioning and calculates location information including the latitude, longitude, and altitude of the terminal 20. The usage control unit 204 identifies the acquisition location where the business card exchange took place from the location information (X, Y, Z coordinates). For example, the usage control unit 204 identifies the acquisition location by referring to table information that associates and stores location information with the names of acquisition locations.

[0107] It goes without saying that the usage control unit 204 may only perform either the control for providing the digital business card VCs to the other party or the control for accepting the digital business card VCs provided by the other party.

[0108] In this way, the usage control unit 204 provides the first user's digital business card VCs to others by displaying the two-dimensional barcode generated based on the digital business card stored in the digital wallet. Furthermore, the usage control unit 204 stores the digital business card VCs acquired from the other party that have been successfully verified, in association with the acquisition date and time and acquisition location of the successfully verified digital business card VCs.

[0109] Here, the usage control unit 204 may control not only the exchange of digital business card VCs but also other uses of the digital business card VCs. For example, in response to a predetermined operation by the user (for example, pressing a business card display button), the usage control unit 204 enables the user to view the digital business card VCs stored in the storage unit 205. For example, the usage control unit 204 displays a screen such as that shown in FIG. 7.

[0110] In this case, when the user touches an area corresponding to a telephone number on the displayed digital business card VCs, the usage control unit 204 may call the contact. Alternatively, when the user touches an area corresponding to an email address, the usage control unit 204 may set the email address as the destination of the email and start an email application.

[0111] Alternatively, the usage control unit 204 may search for digital business card VCs. For example, the usage control unit 204 may extract digital business card VCs that match the acquisition date and time and acquisition location specified by the user, and display the extracted digital business card VCs.

[0112] Alternatively, the usage control unit 204 may control the digital business card VCs that have been accepted as a result of successful verification so that they can be used by an application that uses an address book. In other words, the usage control unit 204 may allow the acquired digital business card VCs to be used by an application other than the business card management application.

[0113] For example, digital business card VCs may be handed over to an email application, a meeting setting application, a communication application, etc. using a data sharing means in a smartphone called DeepLink. The email application, etc. may acquire the name, company name, contact information, etc. of the business card holder from the acquired digital business card VCs, and add the acquired name, etc. to an address book.

[0114] In this case, the email application or the like may perform grouping based on the holders of the digital business card VCs. For example, the email application or the like may generate multiple groups, such as a group of employees working at the same company and a group of employees working at other companies, and manage the digital business card VCs using these groups.

[0115] The storage unit 205 is a means for storing information necessary for the operation of the terminal 20. The storage unit 205 stores the user's biometric information acquired when the digital wallet is opened, and also stores digital business card VCs and the like in the digital wallet.

[0116] 11 is a diagram illustrating an example of a processing configuration (processing module) of the server device 10 according to an embodiment of the present disclosure. Referring to FIG. 11, the server device 10 includes a communication control unit 301, an employee management unit 302, a digital business card control unit 303, and a storage unit 304.

[0117] The communication control unit 301 is a means for controlling communication with other devices. For example, the communication control unit 301 receives data (packets) from the terminal 20. The communication control unit 301 also transmits data to the terminal 20. The communication control unit 301 passes data received from other devices to other processing modules. The communication control unit 301 transmits data acquired from other processing modules to other devices. In this way, other processing modules transmit and receive data to and from other devices via the communication control unit 301. The communication control unit 301 has a function as a receiving unit that receives data from other devices and a function as a transmitting unit that transmits data to other devices.

[0118] The employee management unit 302 is a means for managing employees belonging to one company (enterprise).

[0119] The employee management unit 302 acquires the employee's name, gender, date of birth, address, biometric information (facial image), employee number, department, contact information (telephone number, email address, etc.) from a web page for employee registration, etc.

[0120] Furthermore, the employee management unit 302 generates an employee ID for identifying the employee. The employee ID may be any information that can uniquely identify the employee. For example, the employee management unit 302 may assign a unique value each time an employee is registered as the employee ID.

[0121] The employee management unit 302 stores the generated employee ID, the acquired employee name, biometric information (facial image), etc. in the employee management database (see FIG. 12). Note that the employee management database shown in FIG. 12 is an example and is not intended to limit the items to be stored.

[0122] When an employee resigns, a person in charge of the human resources department or the like inputs this information into the server device 10. The employee management unit 302 deletes the account (entry in the employee management database) of the resigned employee. Furthermore, the employee management unit 302 executes a process to invalidate the digital business card VCs issued to the resigned employee. Specifically, the employee management unit 302 controls the registration of the electronic certificate for verifying the signature issued to the resigned employee in a revocation list.

[0123] The digital business card control unit 303 is a means for executing control related to the digital business card VCs. For example, the digital business card control unit 303 issues digital business card VCs to employees. The digital business card control unit 303 processes a "digital business card issuance request" received from the terminal 20.

[0124] When a digital business card issuance request is received, the digital business card control unit 303 searches the employee management database using information for identifying the person to whom the card is to be issued (for example, an employee number) included in the digital business card issuance request as a key.

[0125] If the search fails (if the corresponding user is not registered in the employee management database), the digital business card control unit 303 sends a negative response to the terminal 20 indicating that the issuance of the digital business card VCs has failed.

[0126] If the search is successful, the digital business card control unit 303 generates a digital business card VC using the information stored in the employee management database. The digital business card control unit 303 generates a digital business card VC that includes the issuer ID and the user ID (the DID of the person to whom the certificate is to be issued; the user ID included in the digital business card issuance request).

[0127] Specifically, the digital business card control unit 303 generates digital business card VCs as credential certificates (VCs) that include metadata including the type of credential certificate, the name of the issuing organization, the date and time of issue, etc., a qualification information body, and the issuer's public key information, electronic signature, etc. The qualification information body includes the company name, the name, facial image, department, contact information, etc. of the person to whom the digital business card VC is issued. The electronic signature attached to the digital business card VCs is issued using a private key corresponding to a pre-generated issuer ID.

[0128] The digital business card control unit 303 transmits the generated digital business card VCs to the terminal 20. Specifically, the digital business card control unit 303 transmits an acknowledgment including the digital business card VCs to the terminal 20. Furthermore, the digital business card control unit 303 registers the issuer ID, public key, etc., generated in advance, in the blockchain.

[0129] The storage unit 304 is a means for storing information necessary for the operation of the server device 10 .

[0130] [System Operation] Next, the operation of the information processing system according to the first embodiment will be described.

[0131] 13 is a sequence diagram illustrating an example of the operation of the information processing system according to the embodiment of the present disclosure. The operation of the information processing system according to the first embodiment regarding the issuance of digital business cards VCs will be described with reference to FIG.

[0132] The terminal 20 generates a public key, a private key, and a user ID, and registers the user ID and public key in the blockchain (step S21).

[0133] The terminal 20 transmits a digital business card issuance request including the user ID to the server device 10 (step S22).

[0134] The server device 10 generates qualification information for the user (the person to whom the digital business card VCs are issued) and generates a digital business card VCs that includes the generated qualification information (step S23). The server device 10 generates a digital business card VCs that includes the user ID and issuer ID and is digitally signed.

[0135] The server device 10 transmits the generated digital business card VCs to the terminal 20 (step S24).

[0136] The terminal 20 stores the digital business card VCs in the digital wallet (step S25).

[0137] Next, a modification of the first embodiment will be described.

[0138] <Modification 1> When providing a digital business card VC to a counterparty, a VP (Verifiable Presentation) may be provided to the counterparty instead of the digital business card VC, which is a credential certificate. That is, a portion of the digital business card VC issued by the user's company may be provided by the user (holder) to the counterparty (e.g., a business partner) as a verifiable presentation.

[0139] In the following description, a digital business card provided as a verifiable presentation (VP) will be referred to as a "digital business card VP."

[0140] For example, a user may decide which items to include in a digital business card VP depending on the person with whom the user is exchanging business cards. For example, if the person is an important business partner, the user may provide the other party with a digital business card VP that includes all of the information included in the digital business card VCs. On the other hand, if there are doubts about the other party's identity, the user may provide the other party with a digital business card VP that includes the company name, name, and email address, but does not include a facial image. In other words, the terminal 20 may realize "selective minimal disclosure" using VP (verifiable presentation).

[0141] To achieve the selective minimal disclosure, the issuer of the digital business card VCs (the employee's company) separates the data to be subject to selective minimal disclosure from the data set and calculates a hash value for the separated data. The server device 10 embeds the hash value of the separated data in the data set. The server device 10 signs the entire data set, including the hash value of the separated data, and generates the digital business card VCs.

[0142] When providing a digital business card to a party, the usage control unit 204 of the terminal 20 displays a GUI that allows the user to select items to provide to the party from among multiple items described in the digital business card VCs. For example, the usage control unit 204 uses a GUI such as that shown in Fig. 14 to acquire items in the digital business card VCs that the user allows to be provided to the party.

[0143] The terminal 20 converts the digital business card VP, which includes the selected items and is signed with the user's private key, into a two-dimensional barcode, and displays the converted two-dimensional barcode.

[0144] The usage control unit 204 of the terminal 20 that has decoded the two-dimensional barcode and obtained the digital business card VP verifies the signature of the digital business card VP in the same way as with digital business card VCs, and if the verification is successful, accepts the digital business card VP.

[0145] In this way, the usage control unit 204 of the terminal 20 generates a verifiable presentation (digital business card VP) that includes items selected by the first user from among multiple items included in the first user's digital business card VCs. The usage control unit 204 provides the generated verifiable presentation to an external party.

[0146] That is, the terminal 20 may create a new digital business card VP from some of the information contained in the digital business card VCs and provide the created digital business card VP to the other party. In this case, the terminal 20 may allow the user to select the information (items) to provide to the other party from the information contained in the digital business card VCs. The user can decide the items to be included in the digital business card VP depending on the other party and the situation.

[0147] <Modification 2> In the above embodiment, the server device 10 issues digital business card VCs containing common items to each employee. However, the digital business card control unit 303 of the server device 10 may issue digital business card VCs containing information specific to the person to whom the card is issued (the employee). For example, the digital business card control unit 303 may generate digital business card VCs that include information on the employee's qualifications, information on training courses taken both inside and outside the company, and information on awards received both inside and outside the company.

[0148] An employee or a person in charge of the human resources department registers the above-mentioned qualification information, training information, and award information in the employee's account. If the above-mentioned qualification information, etc. is registered in the account of the person to whom the business card is to be issued, the digital business card control unit 303 generates a digital business card VC that includes the qualification information, etc.

[0149] <Modification 3> In the above embodiment, the terminal 20 acquires digital business card VCs and stores them in the digital wallet. However, the terminal 20 may acquire other credentials and store them in the digital wallet.

[0150] That is, the information processing system may include a certificate issuer that issues credential certificates different from the digital business cards VCs. Specifically, a certificate issuer is an entity that issues certificates to users. More specifically, a certificate issuer is an organization or the like that has the authority to issue certificates that certify the "qualifications" of users. For example, a certificate issuer issues certificates that certify the identity of users, certificates that certify the affiliation (or past affiliation) of users, certificates that certify the abilities (qualifications) held by users, etc.

[0151] For example, a public institution that issues identification documents such as driver's licenses, passports, and My Number cards corresponds to a certificate issuer. Alternatively, an institution or association that issues certificates certifying qualifications or language proficiency required for a specific job corresponds to a certificate issuer.

[0152] Each certificate issuer has a server with functions equivalent to the company's server device 10. In response to a request from a user, the certificate issuer's server issues a credential certificate that certifies the qualifications, etc., held by the user. The terminal 20 stores the credential certificate obtained from the certificate issuer's server in a digital wallet.

[0153] <Variation 4> If the digital business card to be provided to the other party contains qualification information, etc., and a credential certificate corresponding to the qualification information is stored in the digital wallet, the terminal 20 may also provide the other party with the credential certificate corresponding to the qualification information.

[0154] For example, if the digital business card VC includes an item indicating language ability, the usage control unit 204 obtains a credential certificate certifying the language ability from the digital wallet. The usage control unit 204 generates a two-dimensional barcode to be presented to the other party using the digital business card VC and the credential certificate corresponding to the qualification information included in the digital business card VC. The usage control unit 204 provides the generated two-dimensional barcode to the other party.

[0155] In this way, when information regarding the qualifications held by a first user is included in the first user's digital business card VCs, the usage control unit 204 may provide a credential certificate corresponding to the information regarding the qualifications to the outside together with the first user's digital business card VCs.

[0156] That is, the terminal 20 may provide the other party with a credential certificate that guarantees the authenticity of part of the information described in the digital business card VCs. The other party's terminal 20 may verify the acquired credential certificate (the credential certificate corresponding to the qualification information) and determine whether to accept the digital business card VCs based on the result.

[0157] <Modification 5> A user may use a digital business card VC stored in a digital wallet as a certificate of entry to an area where entry is restricted. For example, when a user enters a VIP (Very Important Person) room or a security room, the digital business card VC may be presented to a device that controls entry to the VIP room or the like.

[0158] 15, a door to an entrance-restricted area is connected to an authentication terminal 30. A user attempting to enter the entrance-restricted area operates the terminal 20 to display a digital business card VC (a two-dimensional barcode generated based on the digital business card VC is displayed). The user presents the two-dimensional barcode displayed on the terminal 20 to the authentication terminal 30.

[0159] The authentication terminal 30 acquires the digital business card VC from the presented two-dimensional barcode. The authentication terminal 30 verifies the acquired digital business card VC. If the verification of the digital business card VC is successful, the authentication terminal 30 determines whether the user who presented the digital business card VC has the authority to enter the restricted entry area.

[0160] For example, the authentication terminal 30 determines whether the user has the authority to enter the restricted entry area based on the business card holder's job title, department, qualification information, etc. obtained from the digital business card VCs.

[0161] If the user has the authority to enter the entry-restricted area, the authentication terminal 30 opens the door. If the user does not have the authority to enter the entry-restricted area, the authentication terminal 30 does not open the door.

[0162] Alternatively, if the digital business card VCs contains qualification information, the terminal 20 may present the digital business card VCs together with a credential certificate corresponding to the qualification information to the authentication terminal 30. The authentication terminal 30 may open the door if the digital business card VCs and the credential certificate are each successfully verified and the user has the authority to enter the restricted entry area.

[0163] <Variation 6> Digital business card VCs acquired by a user from others may be shared within the company. In this case, if the usage control unit 204 of the terminal 20 successfully verifies the digital business card VC acquired from others, it transmits information identifying the user (e.g., employee number) and the acquired digital business card VC to the server device 10.

[0164] The digital business card control unit 303 of the server device 10 identifies the sender of the digital business card VCs based on information identifying the user (employee number). The digital business card control unit 303 may send the acquired digital business card VCs to employees other than the sender (email addresses of employees registered in the employee management database).

[0165] Alternatively, the digital business card control unit 303 may determine the destination of the digital business card VCs in accordance with a predetermined policy, such as "send digital business cards to employees in the same department" or "send digital business cards acquired by a department manager to employees at or above the department manager level."

[0166] Alternatively, the server device 10 may set the disclosure scope of the digital business card VCs when generating the digital business card VCs. For example, the digital business card control unit 303 sets the disclosure scope of the digital business card VCs, such as "sharing prohibited," "sharing permitted only within the same department," or "no sharing restrictions" (describe this in the main body of the qualification information).

[0167] Alternatively, the user (terminal 20) may set the disclosure range for his / her own digital business card VC. In this case, the usage control unit 204 may acquire the disclosure range desired by the user using a GUI.

[0168] The server device 10 that receives digital business card VCs from users may distribute (share within the company) the received digital business card VCs according to the disclosure range set for the digital business card VCs. In the above example, digital business card VCs set as "no sharing" are not sent to anyone. In contrast, digital business card VCs set as "no sharing restrictions" are sent to each employee.

[0169] In this way, the usage control unit 204 of the terminal 20 may transmit the successfully verified digital business card VCs to a server device 10 operated by a predetermined organization, thereby making it possible to share the digital business card VCs of the second user within the predetermined organization. That is, the digital business card VCs acquired by the user may be shared with others. At that time, the digital business card VCs may be shared in accordance with a predetermined policy. Alternatively, a disclosure range may be set for the digital business card VCs. That is, the disclosure range of the digital business card VCs may be managed by the issuer (server device 10) or owner (terminal 20) of the digital business card VCs.

[0170] <Modification 7> In the above embodiment, the case where digital business cards VCs are exchanged using two-dimensional barcodes has been described. However, digital business cards VCs may be exchanged by other means. For example, the terminal 20 may exchange digital business cards VCs using a short-range wireless communication means such as Bluetooth (registered trademark) or NFC (Near Field Communication).

[0171] <Variation 8> When acquiring a digital business card VC from a counterparty, the terminal 20 may perform identity verification of the counterparty. For example, the counterparty's terminal 20 converts the digital business card VC and the user's biometric information acquired when the digital wallet was opened to generate a two-dimensional barcode.

[0172] The terminal 20 acquires the digital business card VCs and the other party's biometric information from the two-dimensional barcode. The usage control unit 204 of the terminal 20 photographs the other party (the person exchanging business cards in front of the other party) before or after verifying the digital business card VCs, and acquires the other party's biometric information. The usage control unit 204 may make successful identity verification using the biometric information acquired by photographing and the biometric information acquired together with the digital business card VCs a requirement for accepting the digital business card VCs.

[0173] As described above, the terminal 20 according to the first embodiment stores digital business card VCs issued as credential certificates in its digital wallet. When users exchange business cards, the terminal 20 provides the digital business card VCs stored in its digital wallet to the other party. The other party's terminal 20 verifies the acquired digital business card VC, and if the verification is successful, accepts the acquired digital business card VC.

[0174] In this way, the terminal 20 provides the digital business card VC acquired from the user's company to the other party. By verifying the signature of the acquired digital business card VC, the other party's terminal 20 can confirm that the digital business card VC has not been tampered with and that the digital business card VC was issued by a legitimate certificate issuer (the user's company). As a result, the user can trust the other party and the contents written in the acquired digital business card VC.

[0175] Next, the hardware of each device constituting the information processing system will be described. Fig. 16 is a diagram showing an example of the hardware configuration of the terminal 20.

[0176] The terminal 20 can be configured by an information processing device (so-called computer), and has the configuration exemplified in Fig. 16. For example, the terminal 20 includes a processor 311, a memory 312, an input / output interface 313, and a communication interface 314. The components such as the processor 311 are connected by an internal bus or the like, and are configured to be able to communicate with each other.

[0177] However, the configuration shown in Fig. 16 is not intended to limit the hardware configuration of the terminal 20. The terminal 20 may include hardware not shown, and may not include the input / output interface 313 as necessary. Furthermore, the number of processors 311 and the like included in the terminal 20 is not intended to be limited to the example shown in Fig. 16, and for example, the terminal 20 may include multiple processors 311.

[0178] The processor 311 is a programmable device such as a central processing unit (CPU), a micro processing unit (MPU), or a digital signal processor (DSP). Alternatively, the processor 311 may be a device such as a field programmable gate array (FPGA) or an application specific integrated circuit (ASIC). The processor 311 executes various programs including an operating system (OS).

[0179] The memory 312 is a random access memory (RAM), a read only memory (ROM), a hard disk drive (HDD), a solid state drive (SSD), etc. The memory 312 stores an OS program, application programs, and various data.

[0180] The input / output interface 313 is an interface for a display device and an input device (not shown). The display device is, for example, a liquid crystal display, etc. The input device is, for example, a device that accepts user operations, such as a keyboard or a mouse.

[0181] The communication interface 314 is a circuit, module, etc. that communicates with other devices. For example, the communication interface 314 includes a network interface card (NIC).

[0182] The functions of the terminal 20 are realized by various processing modules. The processing modules are realized, for example, by the processor 311 executing a program stored in the memory 312. The program can be recorded on a computer-readable storage medium. The storage medium can be a non-transitory medium such as a semiconductor memory, a hard disk, a magnetic recording medium, or an optical recording medium. That is, the present invention can also be embodied as a computer program product. The program can be downloaded via a network or updated using a storage medium storing the program. The processing modules can also be realized by semiconductor chips.

[0183] The server device 10 and the like can also be configured by an information processing device in the same way as the terminal 20, and the basic hardware configuration is no different from that of the terminal 20, so a description thereof will be omitted.

[0184] Terminal 20, which is an information processing device, is equipped with a computer, and functions of terminal 20 can be realized by causing the computer to execute a program. Furthermore, terminal 20 executes a control method for terminal 20 using the program. Similarly, server device 10 is equipped with a computer, and functions of server device 10 can be realized by causing the computer to execute a program. Furthermore, server device 10 executes a control method for server device 10 using the program.

[0185] [Modification] The configuration, operation, etc. of the information processing system described in the above embodiment are merely examples, and are not intended to limit the configuration, etc. of the system.

[0186] In the above embodiment, the terminal 20 provides digital business card VCs to another person in response to a user operation. However, the terminal 20 may also provide digital business card VCs stored in the digital wallet in response to a request from the other person. For example, when the terminal 20 receives a "digital business card provision request" from the other person's terminal 20 via a communication means such as Bluetooth (registered trademark), the terminal 20 may transmit a signed digital business card VC to the other person's terminal 20.

[0187] If the terminal 20 fails to verify the digital business card VCs acquired from the other party, it may discard the digital business card VCs or store them separately from other digital business card VCs that have been successfully verified.

[0188] The terminal 20 may store a history of the verification results of the digital business card VCs. The terminal 20 may store digital business card VCs that have been successfully verified and digital business card VCs that have failed verification, respectively, to enable subsequent verification of the digital business card VCs.

[0189] In the above embodiment, when a request for issuance of a digital business card is made, the terminal 20 transmits an employee number to the server device 10 as information for identifying the user. However, the terminal 20 may transmit biometric information (facial image) of the user to the server device 10 as information for identifying the user. The server device 10 may identify the user who wishes to be issued a digital business card VCs by performing a matching process (authentication process) using the biometric information.

[0190] In the above embodiment, the server device 10 of the certificate issuer issues a credential certificate that does not require a certification authority for certificate verification. However, the server device 10 may also issue a certificate that requires a certification authority (a certificate based on a public key infrastructure).

[0191] In the above embodiment, a case has been described in which identity verification (confirming that the identity card holder and the digital wallet creator match) is performed using biometric information obtained from an identification card. However, identity verification may also be performed using an electronic certificate stored in the identification card. Specifically, the terminal 20 acquires an electronic certificate (an electronic signature certificate and an electronic user certificate) from the My Number card held by the user. The terminal 20 transmits the acquired electronic signature to a certification authority (J-LIS; Japan Agency for Local Authority Information Systems) and requests the certification authority to verify the validity of the electronic certificate. If the electronic certificate is valid, the terminal 20 determines that identity verification has been successful.

[0192] Some functions of the terminal 20 may be implemented in another apparatus, device, etc. More specifically, the above-described "personal identification unit (personal identification means)," "acquisition control unit (acquisition control means)," etc. may be implemented in any of the apparatuses included in the system.

[0193] The form of data transmission between each device (e.g., server device 10, terminal 20) is not particularly limited, but the data transmitted between these devices may be encrypted. Personal information of users and the like is transmitted between these devices, and in order to appropriately protect this information, it is desirable to transmit and receive encrypted data.

[0194] In the flow charts (flowcharts, sequence diagrams) used in the above explanation, multiple steps (processes) are described in order, but the order of execution of the steps executed in the embodiments is not limited to the order described. In the embodiments, the order of the steps shown in the drawings can be changed to the extent that the content is not affected, such as by executing each process in parallel.

[0195] The above-described embodiments have been described in detail to facilitate understanding of the present disclosure, and it is not intended that all of the above-described configurations are required. Furthermore, when multiple embodiments are described, each embodiment may be used alone or in combination. For example, it is possible to replace part of the configuration of one embodiment with the configuration of another embodiment, or to add the configuration of another embodiment to the configuration of one embodiment. Furthermore, it is possible to add, delete, or replace part of the configuration of one embodiment with another configuration.

[0196] The above explanation makes it clear that the present invention has industrial applicability, and the present invention is suitably applicable to information processing systems that utilize digital business cards stored in digital wallets.

[0197] Some or all of the above embodiments can be described as, but are not limited to, the following supplementary notes.

[0198] [Supplementary Note 1] A terminal comprising: a first acquisition means for acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision means for providing the acquired digital business card to an external party.

[0199] [Supplementary Note 2] The terminal according to Supplementary Note 1, wherein the providing means provides the digital business card of the first user to another person by displaying a two-dimensional barcode generated based on the acquired digital business card.

[0200] [Appendix 3] The terminal according to Appendix 2, wherein the providing means, if information regarding the qualifications held by the first user is included in the digital business card of the first user, provides a credential certificate corresponding to the information regarding the qualifications to an external party together with the digital business card of the first user.

[0201] [Appendix 4] The terminal described in any one of Appendices 1 to 3, wherein the providing means generates a verifiable presentation including items selected by the first user from a plurality of items included in the first user's digital business card, and provides the generated verifiable presentation to an external party.

[0202] [Appendix 5] The terminal according to Appendix 1, further comprising a second acquisition means for acquiring the digital business card of a second user, verifying the acquired digital business card of the second user, and storing the acquired digital business card of the second user if the verification of the digital business card of the second user is successful.

[0203] [Supplementary Note 6] The terminal according to Supplementary Note 5, wherein the second acquisition means stores the successfully verified digital business card in association with the acquisition date and time and acquisition location of the successfully verified digital business card.

[0204] [Supplementary Note 7] The terminal according to Supplementary Note 6, wherein the second acquisition means controls the digital business card that has been successfully verified so that it can be used by an application that uses an address book.

[0205] [Appendix 8] The terminal described in Appendix 7, wherein the second acquisition means transmits the successfully verified digital business card to a server device operated by the specified organization, thereby enabling the digital business card of the second user to be shared within the specified organization.

[0206] [Supplementary Note 9] A method for controlling a terminal, comprising: a first acquisition step of acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision step of providing the acquired digital business card to an external party.

[0207] [Supplementary Note 10] The terminal control method according to Supplementary Note 9, wherein the providing step provides the digital business card of the first user to another person by displaying a two-dimensional barcode generated based on the acquired digital business card.

[0208] [Appendix 11] The terminal control method described in Appendix 10, wherein the providing step provides, if information regarding qualifications held by the first user is included in the digital business card of the first user, a credential certificate corresponding to the information regarding the qualifications to an external party together with the digital business card of the first user.

[0209] [Appendix 12] A method for controlling a terminal described in any one of Appendices 9 to 11, wherein the providing step generates a verifiable presentation including items selected by the first user from a plurality of items included in the first user's digital business card, and provides the generated verifiable presentation to an external party.

[0210] [Supplementary Note 13] The terminal control method described in Supplementary Note 9, further comprising a second acquisition step of acquiring the digital business card of a second user, verifying the acquired digital business card of the second user, and storing the acquired digital business card of the second user if the verification of the digital business card of the second user is successful.

[0211] [Supplementary Note 14] The terminal control method according to Supplementary Note 13, wherein the second acquisition step stores the successfully verified digital business card in association with the acquisition date and time and acquisition location of the successfully verified digital business card.

[0212] [Supplementary Note 15] The terminal control method according to Supplementary Note 14, wherein the second acquisition step controls the digital business card that has been successfully verified to be available to an application that uses an address book.

[0213] [Appendix 16] The terminal control method described in Appendix 15, wherein the second acquisition step transmits the successfully verified digital business card to a server device operated by the specified organization, thereby enabling the digital business card of the second user to be shared within the specified organization.

[0214] [Supplementary Note 17] A computer-readable storage medium storing a program for causing a computer installed in a terminal to execute: a first acquisition process for acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision process for providing the acquired digital business card to an external party.

[0215] [Appendix 18] The storage medium according to Appendix 17, wherein the providing process provides the digital business card of the first user to another person by displaying a two-dimensional barcode generated based on the acquired digital business card.

[0216] [Appendix 19] The storage medium described in Appendix 18, wherein the provision process provides, if information regarding the qualifications held by the first user is included in the digital business card of the first user, a credential certificate corresponding to the information regarding the qualifications to an external party together with the digital business card of the first user.

[0217] [Appendix 20] A storage medium described in any one of Appendices 17 to 19, wherein the providing process generates a verifiable presentation including items selected by the first user from a plurality of items included in the first user's digital business card, and provides the generated verifiable presentation to an external party.

[0218] [Appendix 21] The storage medium described in Appendix 17 further executes a second acquisition process, which acquires the digital business card of a second user, verifies the acquired digital business card of the second user, and stores the acquired digital business card of the second user if the verification of the digital business card of the second user is successful.

[0219] [Supplementary Note 22] The storage medium according to Supplementary Note 21, wherein the second acquisition process stores the successfully verified digital business card in association with the acquisition date and time and acquisition location of the successfully verified digital business card.

[0220] [Supplementary Note 23] The storage medium according to Supplementary Note 22, wherein the second acquisition process controls the digital business card that has been successfully verified to be available to an application that uses an address book.

[0221] [Appendix 24] The storage medium described in Appendix 23, wherein the second acquisition process transmits the successfully verified digital business card to a server device operated by the specified organization, thereby enabling the digital business card of the second user to be shared within the specified organization.

[0222] Furthermore, some or all of the configurations described in Supplementary Notes 2 to 8 that are dependent on Supplementary Note 1 above may also be dependent on Supplementary Notes 9 and 17 in the same dependent relationship as Supplementary Notes 2 to 8. Furthermore, not limited to Supplementary Notes 1, 9, and 17, some or all of the configurations described as Supplements may be made dependent on various hardware, software, various recording means for recording software, or systems, within the scope of each of the above-mentioned embodiments.

[0223] The disclosures of the above-cited prior art documents are incorporated herein by reference. Although the embodiments of the present invention have been described above, the present invention is not limited to these embodiments. Those skilled in the art will understand that these embodiments are merely illustrative and that various modifications are possible without departing from the scope and spirit of the present invention. In other words, the present invention naturally includes various modifications and alterations that may be made by those skilled in the art in accordance with the entire disclosure, including the claims, and the technical concepts thereof.

[0224] 10 Server device 20 Terminal 30 Authentication terminal 100 Terminal 101 First acquisition means 102 Provision means 201 Communication control unit 202 Personal identification unit 203 Acquisition control unit 204 Usage control unit 205 Storage unit 301 Communication control unit 302 Employee management unit 303 Digital business card control unit 304 Storage unit 311 Processor 312 Memory 313 Input / output interface 314 Communication interface

Claims

1. A terminal comprising: a first acquisition means for acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision means for providing the acquired digital business card to an external party.

2. The terminal according to claim 1, wherein the providing means provides the digital business card of the first user to another person by displaying a two-dimensional barcode generated based on the acquired digital business card.

3. The terminal according to claim 2, wherein the providing means, when information regarding the qualifications held by the first user is included in the digital business card of the first user, provides a credential certificate corresponding to the information regarding the qualifications to an external party together with the digital business card of the first user.

4. A terminal according to any one of claims 1 to 3, wherein the providing means generates a verifiable presentation including items selected by the first user from among a plurality of items included in the first user's digital business card, and provides the generated verifiable presentation to an external party.

5. The terminal of claim 1, further comprising a second acquisition means for acquiring the digital business card of a second user, verifying the acquired digital business card of the second user, and storing the acquired digital business card of the second user if the verification of the digital business card of the second user is successful.

6. The terminal according to claim 5, wherein said second acquisition means stores the successfully verified digital business card in association with the acquisition date and time and acquisition location of the successfully verified digital business card.

7. The terminal according to claim 6, wherein the second acquisition means controls the digital business card that has been successfully verified so that it can be used by an application that uses an address book.

8. The terminal according to claim 7, wherein the second acquisition means transmits the digital business card that has been successfully verified to a server device operated by the specified organization, thereby enabling the digital business card of the second user to be shared within the specified organization.

9. A method for controlling a terminal, comprising: a first acquisition step of acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision step of providing the acquired digital business card to an external party.

10. A computer-readable storage medium storing a program for causing a computer installed in a terminal to execute the following: a first acquisition process for acquiring a digital business card that is a certificate proving that a first user belongs to a specified organization and whose contents can be verified online; and a provision process for providing the acquired digital business card to an external party.

Citation Information

Patent Citations

  • Electronic calling card device

    JP2002297795A

  • Data reception apparatus, data reception method, and data reception program

    JP2022090150A

  • Electronic business card management method and device

    JP2022502748A

  • Self-sovereign identification via digital credentials for selected identity attributes

    US11432149B1

  • Systems, devices, and methods for access control and identification of user devices

    US20180139210A1