Attested Personal Data Verification via Digital Wallet Segmentation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional data security and transaction systems fail to effectively protect sensitive personal information from breaches by revealing unnecessary details, which can lead to data exposure and security risks.
Innovation Solution
Implementing a method that uses a digital wallet to store attested data from trusted entities, allowing verification of personal attributes without sharing the actual sensitive information, thus reducing the risk of data breaches by only transmitting verification responses and attested data to verifying entities.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If personal data is shared with verifying entities to confirm authorization, then verification accuracy is improved, but data security deteriorates due to exposure to breaches
Solution Approach 1:
The patent extracts only the essential verification attributes from personal data and transmits them to verifying entities, while retaining the actual sensitive personal data locally on the user's device. This allows verification to occur without exposing the complete personal data set, thereby maintaining verification accuracy while improving data security.
Solution Approach 2:
The patent introduces an intermediary verification mechanism where a verifying entity confirms authorization based on transmitted attributes without directly accessing or storing the user's actual personal data. This intermediary process enables accurate verification while preventing direct exposure of sensitive information to potential breaches.
2Reliability
If actual personal information is revealed to confirm authorization, then verification reliability is improved, but risk of data breach increases
Solution Approach 1:
The patent segments personal data into transmitted verification attributes and retained sensitive data. Only the segmented verification attributes are shared with verifying entities, while the sensitive portions remain securely stored locally. This segmentation maintains verification reliability while minimizing the attack surface for potential data breaches.
Solution Approach 2:
The patent performs preliminary verification using transmitted attributes before any sensitive personal data would be exposed. This preliminary action allows the system to confirm authorization reliability without subsequently revealing actual personal information that could be compromised in a breach.
3Object-affected harmful factors
If minimal data is transmitted for verification, then data security is improved, but verification capability may be insufficient
Solution Approach 1:
The patent designs the transmitted verification attributes to serve multiple verification purposes across different contexts. The same set of verified attributes can satisfy various authorization requirements, ensuring that minimal data transmission does not compromise verification capability across diverse应用场景.
Solution Approach 2:
The patent dynamically adjusts which verification attributes are transmitted based on the specific verification context and requirements. By changing the parameters of what data is shared according to the situation, the system maintains adequate verification capability while minimizing unnecessary data exposure for each specific case.
Data Source
AI summary
Example implementations include a method, apparatus and computer-readable medium for attested verification of personal data, comprising transmitting an access request to a verifying entity, wherein the access request is for a service, product, or information accessible solely to an authorized user. The implementations include receiving, from the verifying entity, a verification request that indicates at least one attribute of personal data that classifies a user as the authorized user. The implementations include generating a verification response indicating possession of the at least one attribute. The implementations include identifying, in a digital wallet, attested data issued by a trusted entity that confirms possession of the at least one attribute of the personal data. The implementations include transmitting, to the verifying entity, the verification response and the attested data without including the personal data. The implementations include receiving a grant or denial of the access request from the verifying entity.


