Blockchain Root System Authentication with Limited Data Sharing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication systems impose time and resource burdens on institutions and users due to repeated authentication requests across multiple computer systems, lack non-repudiable records of authentication interactions, and excessive sharing of personal information.

Innovation Solution

A blockchain-mediated authentication system that maintains a distributed, non-repudiable record of user interactions while limiting personal information sharing, using a root system to store user information in a blockchain and a database, enabling member systems to authenticate users through the root system and retrieve identification data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of time

If a collaborative authentication system is implemented to handle authentication interactions for multiple institutions, then the time and resource burdens on institutions and users are reduced, but the system complexity and trust establishment challenges increase

Engineering Contradiction:
Improveauthentication timeVSAvoidsystem complexity
Core Design Contradiction:
Loss of timeVSDevice complexity

Solution Approach 1:

The patent introduces a root system as an intermediary component that mediates authentication between multiple member systems. The root system stores authentication information in a blockchain and provides identification data to member systems, eliminating the need for users to authenticate separately with each institution while managing system complexity through a centralized coordination layer.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The root system serves multiple functions: it stores authentication information, provides identification data to multiple member systems, and maintains a distributed non-repudiable record of interactions. This multi-functional approach allows a single system to handle authentication across multiple institutions, reducing overall system complexity despite the collaborative nature.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If a distributed non-repudiable record of authentication interactions is maintained, then the reliability and trustworthiness of the system improve, but the device complexity and implementation difficulty increase

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidimplementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The root system acts as an intermediary that implements the blockchain technology for maintaining non-repudiable records. By concentrating the blockchain implementation in a single root system rather than distributing it across all member systems, the patent achieves high reliability through immutable record-keeping while reducing overall implementation complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses blockchain technology to create copies of authentication records that are distributed across the network but originate from a single root system. These copies provide non-repudiable evidence of authentication interactions, enhancing reliability without requiring each member system to independently implement complex blockchain infrastructure.

Inventive Principle:
Principle #26Copying

3Object-affected harmful factors

If personal information sharing between users and institutions is limited, then user privacy and security are improved, but the ability to authenticate users across multiple systems becomes more difficult

Engineering Contradiction:
Improveprivacy riskVSAvoidauthentication ease
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The patent extracts sensitive personal information from the authentication process. Instead of sharing users' personal information across multiple institutions, the system stores only authentication information and identification data in the root system's blockchain. Member systems can authenticate users without accessing or sharing their personal information, thus reducing privacy risks while maintaining authentication functionality.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The root system serves as an intermediary that holds authentication information and provides identification data to member systems without exposing personal information. This intermediary approach enables cross-system authentication while limiting personal information sharing, as the root system translates authentication credentials into identification data that member systems can use without accessing sensitive user details.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS12388809B2Blockchain systems and methods for user authentication
Publication Date: 2025.08.12 CAPITAL ONE SERVICES LLC
  • US12388809B2 patent drawing
  • US12388809B2 patent drawing
  • US12388809B2 patent drawing

AI summary

Computer-implemented methods and systems are provided for blockchain-mediated user authentication. Consistent with disclosed embodiments, authentication may comprise operations including receiving, from a user system, an authentication request for a user. The operations may also include determining a root system for the user using a blockchain, and redirecting the user system to the root system. The operations may include receiving, following redirection, a verification message indicating that the root system successfully authenticated the user, and including an authorization code for receiving, from the root system, a root system secret. The operations may include receiving from a database, identification data using the root system secret. Determining the root system may comprise identifying, using the authentication request and index information stored in the blockchain, a block of the blockchain storing root system information for the user. Receiving the identification data may comprise retrieving identification data from the database.