Assertions Model Manager for Secure Digital Identity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data security systems face challenges in managing user and account information securely, particularly in interactions between users and resource providers, where tokens can be intercepted and misused, leading to potential unauthorized access and misuse.

Innovation Solution

An assertions model manager processes requests from resource providers for digital identity-related assertions, including account assertions, to facilitate secure interactions while keeping sensitive account data protected by using tokens and maintaining them out of vulnerable entities' possession, enabling secure value interactions across multiple account systems.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If tokens are used to represent account information, then data security is improved, but the risk of token interception and misuse by attackers increases

Engineering Contradiction:
Improvedata securityVSAvoidtoken interception risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an assertions model manager as an intermediary between users and resource providers. This manager handles token validation, generates assertions about user accounts, and coordinates value interactions without exposing tokens to end entities. The intermediary architecture ensures tokens remain secured while enabling secure interactions.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If tokens are kept out of vulnerable entities' possession, then security is improved, but the complexity of managing token distribution and validation increases

Engineering Contradiction:
ImprovesecurityVSAvoidtoken management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The assertions model manager performs self-service by automatically validating tokens, generating appropriate assertions, and initiating value interactions without requiring manual intervention. The system autonomously manages the complex tasks of token validation and coordination, reducing operational complexity despite the sophisticated security architecture.

Inventive Principle:
Principle #25Self-service

3Reliability

If account information is encrypted and hidden, then data protection is improved, but the ability to verify account validity and initiate value interactions becomes more difficult

Engineering Contradiction:
Improvedata protectionVSAvoidaccount verification difficulty
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

Instead of exposing actual account information, the system creates assertions that are verified copies or representations of account validity. These assertions contain sufficient information to verify account status and initiate interactions without revealing sensitive account data. The assertions serve as secure, verifiable copies that enable validation while maintaining protection.

Inventive Principle:
Principle #26Copying

Data Source

PatentUS11757638B2Account assertion
Publication Date: 2023.09.12 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US11757638B2 patent drawing
  • US11757638B2 patent drawing
  • US11757638B2 patent drawing

AI summary

Methods and systems for processing interactions with account assertions are disclosed. A method includes receiving, by an assertions model manager, a first request from a resource provider computer for a set of assertions including an account assertion, related to a digital identity of a user. The method then includes responding, by the assertions model manager, to the first request with a response message, comprising a set of assertions, wherein one of the plurality of assertions is an account assertion. Then the method includes receiving, by the assertions model manager, a second request from the resource provider for a value interaction from the user and initiating, by the assertions model manager, the value interaction.