Authentication Circle for Secure Financial Account Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional systems for managing financial accounts of others are cumbersome, vulnerable to fraud, and lack the ability to provide a holistic view of interrelated financial situations among individuals.

Innovation Solution

A service provider computing system that allows a first user to access the account of a second user using separate login credentials, through the formation of an authentication circle, which provides a dashboard for managing and viewing financial accounts, goals, and resources of multiple users in an integrated manner.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a person shares login credentials with another person to manage their financial account, then the second person can access and manage the account, but the first person loses control and cannot prevent actions taken by the second person

Engineering Contradiction:
Improveaccount management accessVSAvoidaccount security and control
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system segments account access rights into distinct roles: account holder (first person) and account manager (second person). The account manager can perform specific management functions without having the account holder's login credentials, allowing limited access while preserving the account holder's ultimate control and ability to revoke access.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The financial institution's system acts as an intermediary between the account holder and account manager. Instead of direct credential sharing, the system mediates access through authenticated sessions where the account manager can manage the account only while logged in through the institution's secure platform, preventing direct credential exposure.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If a person provides authentication credentials to another person, then the second person can access the account, but the first person cannot prevent the second person from changing login credentials and locking them out

Engineering Contradiction:
Improveaccount accessVSAvoidcredential compromise and lockout risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system separates the account management function from the credential possession. The account manager receives no login credentials but can still perform management tasks through the financial institution's authenticated interface, eliminating the risk that credential sharing could lead to lockout.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system provides beforehand protection by establishing secure, time-limited authenticated sessions that automatically expire. This prevents permanent credential compromise and ensures that even if the account manager gains access, they cannot permanently alter credentials or lock out the account holder.

Inventive Principle:
Principle #11Beforehand cushioning (Prior cushioning)

3Productivity

If a person manages another person's financial account electronically, then financial support can be provided, but the account holder must provide account numbers and authentication credentials for each account and financial institution

Engineering Contradiction:
Improvefinancial support speedVSAvoidcredential management complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system provides universal access across multiple financial institutions through a single authenticated session. Once the account manager is authenticated by the financial institution, they can access and manage multiple accounts and institutions without needing to provide separate credentials for each, streamlining the process.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The financial institution's system performs the complex credential verification and authentication automatically. The account manager simply needs to log in through the institution's platform, and the system handles the complexity of accessing multiple accounts and institutions without requiring manual credential entry for each.

Inventive Principle:
Principle #25Self-service

4Ease of operation

If a second person is provided with authentication credentials to manage finances, then they can access account information, but they only have a narrow view of the finances and cannot see the first person's financial context

Engineering Contradiction:
Improveaccount management capabilityVSAvoidfinancial context and holistic view
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The system merges the account manager's view with the account holder's financial context by displaying both perspectives on the same interface. The account manager can see their own account information alongside the account holder's accounts, goals, and financial situation, providing a holistic view that facilitates informed financial management and contribution.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS12333576B2Network security linkage
Publication Date: 2025.06.17 WELLS FARGO BANK NA
  • US12333576B2 patent drawing
  • US12333576B2 patent drawing
  • US12333576B2 patent drawing

AI summary

An approach for establishing and managing network security linkages is disclosed. The linkages may be used to facilitate management of accounts, goals, or resources of one or more entities, or to provide an integrated view of the circumstances of, for example, family members or other interrelated persons. A person receiving assistance with the management of one or more accounts need not disclose authentication credentials to persons helping manage the accounts, enhancing security. Members may view members and access accounts administered by separate computing systems without needing credentials for each member, account, and/or computing system. The multiple accounts (which may be held at multiple institutions) need not be accessed individually by each member of the network security linkage, saving time and computing resources of users.