Attested Personal Data Verification via Digital Wallet Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional data security and transaction systems fail to effectively protect sensitive personal information from breaches by revealing unnecessary details, which can lead to data exposure and security risks.

Innovation Solution

Implementing a method that uses a digital wallet to store attested data from trusted entities, allowing verification of personal attributes without sharing the actual sensitive information, thus reducing the risk of data breaches by only transmitting verification responses and attested data to verifying entities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If personal data is shared with verifying entities to confirm authorization, then verification accuracy is improved, but data security deteriorates due to exposure to breaches

Engineering Contradiction:
Improveverification accuracyVSAvoiddata security
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The patent extracts only the essential verification attributes from personal data and transmits them to verifying entities, while retaining the actual sensitive personal data locally on the user's device. This allows verification to occur without exposing the complete personal data set, thereby maintaining verification accuracy while improving data security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary verification mechanism where a verifying entity confirms authorization based on transmitted attributes without directly accessing or storing the user's actual personal data. This intermediary process enables accurate verification while preventing direct exposure of sensitive information to potential breaches.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If actual personal information is revealed to confirm authorization, then verification reliability is improved, but risk of data breach increases

Engineering Contradiction:
Improveverification reliabilityVSAvoidrisk of data breach
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The patent segments personal data into transmitted verification attributes and retained sensitive data. Only the segmented verification attributes are shared with verifying entities, while the sensitive portions remain securely stored locally. This segmentation maintains verification reliability while minimizing the attack surface for potential data breaches.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent performs preliminary verification using transmitted attributes before any sensitive personal data would be exposed. This preliminary action allows the system to confirm authorization reliability without subsequently revealing actual personal information that could be compromised in a breach.

Inventive Principle:
Principle #10Preliminary action

3Object-affected harmful factors

If minimal data is transmitted for verification, then data security is improved, but verification capability may be insufficient

Engineering Contradiction:
Improvedata securityVSAvoidverification capability
Core Design Contradiction:
Object-affected harmful factorsVSAdaptability or versatility

Solution Approach 1:

The patent designs the transmitted verification attributes to serve multiple verification purposes across different contexts. The same set of verified attributes can satisfy various authorization requirements, ensuring that minimal data transmission does not compromise verification capability across diverse应用场景.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent dynamically adjusts which verification attributes are transmitted based on the specific verification context and requirements. By changing the parameters of what data is shared according to the situation, the system maintains adequate verification capability while minimizing unnecessary data exposure for each specific case.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20240380602A1Systems and methods for providing attested verification of personal data
Publication Date: 2024.11.14 TYCO FIRE & SECURITY GMBH
  • US20240380602A1 patent drawing
  • US20240380602A1 patent drawing
  • US20240380602A1 patent drawing

AI summary

Example implementations include a method, apparatus and computer-readable medium for attested verification of personal data, comprising transmitting an access request to a verifying entity, wherein the access request is for a service, product, or information accessible solely to an authorized user. The implementations include receiving, from the verifying entity, a verification request that indicates at least one attribute of personal data that classifies a user as the authorized user. The implementations include generating a verification response indicating possession of the at least one attribute. The implementations include identifying, in a digital wallet, attested data issued by a trusted entity that confirms possession of the at least one attribute of the personal data. The implementations include transmitting, to the verifying entity, the verification response and the attested data without including the personal data. The implementations include receiving a grant or denial of the access request from the verifying entity.