Assertions Model Manager for Secure Digital Identity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing data security systems face challenges in managing user and account information securely, particularly in interactions between users and resource providers, where tokens can be intercepted and misused, leading to potential unauthorized access and misuse.
Innovation Solution
An assertions model manager processes requests from resource providers for digital identity-related assertions, including account assertions, to facilitate secure interactions while keeping sensitive account data protected by using tokens and maintaining them out of vulnerable entities' possession, enabling secure value interactions across multiple account systems.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If tokens are used to represent account information, then data security is improved, but the risk of token interception and misuse by attackers increases
Solution Approach 1:
The patent introduces an assertions model manager as an intermediary between users and resource providers. This manager handles token validation, generates assertions about user accounts, and coordinates value interactions without exposing tokens to end entities. The intermediary architecture ensures tokens remain secured while enabling secure interactions.
2Reliability
If tokens are kept out of vulnerable entities' possession, then security is improved, but the complexity of managing token distribution and validation increases
Solution Approach 1:
The assertions model manager performs self-service by automatically validating tokens, generating appropriate assertions, and initiating value interactions without requiring manual intervention. The system autonomously manages the complex tasks of token validation and coordination, reducing operational complexity despite the sophisticated security architecture.
3Reliability
If account information is encrypted and hidden, then data protection is improved, but the ability to verify account validity and initiate value interactions becomes more difficult
Solution Approach 1:
Instead of exposing actual account information, the system creates assertions that are verified copies or representations of account validity. These assertions contain sufficient information to verify account status and initiate interactions without revealing sensitive account data. The assertions serve as secure, verifiable copies that enable validation while maintaining protection.
Data Source
AI summary
Methods and systems for processing interactions with account assertions are disclosed. A method includes receiving, by an assertions model manager, a first request from a resource provider computer for a set of assertions including an account assertion, related to a digital identity of a user. The method then includes responding, by the assertions model manager, to the first request with a response message, comprising a set of assertions, wherein one of the plurality of assertions is an account assertion. Then the method includes receiving, by the assertions model manager, a second request from the resource provider for a value interaction from the user and initiating, by the assertions model manager, the value interaction.


