Bonding Agreement Authorization System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current authorization techniques do not penalize authorized users for misuse, shifting the responsibility for unauthorized access to the service provider and often requiring sensitive information disclosure.

Innovation Solution

A computer-implemented method and system that involves a bonding service, where users agree to penalty conditions for authorized access, enabling secure access while protecting sensitive information through zero-knowledge protocols and shifting responsibility to the user.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authorization techniques are used, then users can access goods or services, but authorized users may misuse their authorization without penalty and providers must obtain sensitive personally-identifying information

Engineering Contradiction:
Improveauthorization securityVSAvoidmisuse of authorization
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The bonding agreement establishes penalty conditions in advance before authorization is granted. Users commit to penalties for potential misuse beforehand, creating a deterrent effect that prevents unauthorized actions before they occur. This preliminary countermeasure shifts responsibility from the provider to the user.

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The bonding agreement acts as an intermediary mechanism between the user and the authorization system. Instead of the provider directly managing user behavior or collecting sensitive information, the bonding agreement serves as a contractual intermediary that enforces penalties for misuse while protecting user privacy through zero-knowledge protocols.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If providers obtain proper authorization, then they can verify user identity, but users must disclose sensitive or personally-identifying information that requires special legal or regulatory protections

Engineering Contradiction:
Improveuser verificationVSAvoidsensitive information disclosure
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The system extracts only the essential verification information needed for authorization through zero-knowledge protocols. Instead of requiring users to disclose complete personally-identifying information, the system extracts and verifies only the minimal necessary credentials (such as proof of eligibility) while leaving sensitive data private and undisclosed to the provider.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent replaces traditional mechanical information disclosure systems with cryptographic zero-knowledge proof mechanisms. Instead of users directly providing sensitive information that must be stored and protected, the system uses mathematical proofs that verify user eligibility without exposing underlying personal data, substituting cryptographic verification for traditional information collection.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS11575665B2Authorizing uses of goods or services using bonding agreement
Publication Date: 2023.02.07 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11575665B2 patent drawing
  • US11575665B2 patent drawing
  • US11575665B2 patent drawing

AI summary

Aspects described herein include a computer-implemented method (and related system and computer program product) comprising receiving, from a bonding service, an authorization request for a predefined authorized use of a good or service by a user. The authorization request indicates that the user meets one or more predefined criteria for the predefined authorized use. The method further comprises determining one or more penalty conditions of a bonding agreement for the predefined authorized use by the user, and receiving, from the bonding service, a confirmation that the user agrees to meet the one or more penalty conditions of the bonding agreement. The method further comprises receiving, from an owner of the good or service, an authorization of the authorization request, and transmitting, responsive to authorization of the authorization request, a token to the bonding service that enables the user to access the predefined authorized use of the good or service.