Cardless Authentication via Mobile Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing technologies lack a method for customers to efficiently conduct cardless authentication using devices they possess, especially in situations where they do not have access to banking cards or physical identification.

Innovation Solution

A computer-implemented method and communication network that generate authentication requests with specific properties, enabling an authentication provider module to authenticate an individual's identity independently of a trusted computing system. This involves detecting input events, determining relevant properties such as request identifiers, terminal identifiers, and required attributes, and generating authentication requests that include this data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication methods using banking cards and physical ID are required, then authentication reliability is improved, but customer accessibility and convenience deteriorate when they do not have access to these items

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidcustomer accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a mobile device as an intermediary authentication carrier between the customer and the banking system. The mobile device stores authentication credentials and can present them to the authentication provider without requiring the customer to physically possess traditional banking cards or identification documents, thus maintaining authentication reliability while improving accessibility for customers who lose or do not carry physical ID

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system creates a digital copy of authentication credentials on the customer's mobile device. Instead of requiring the original physical card or ID, the mobile device contains a copy of the authentication information that can be transmitted to the authentication provider, enabling cardless authentication while maintaining security through encrypted credential storage

Inventive Principle:
Principle #26Copying

2Reliability

If physical ID scanning is performed at ITM, then authentication verification is improved, but authentication time and operational complexity increase

Engineering Contradiction:
Improveauthentication verificationVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent replaces the mechanical ID card scanning process with a digital authentication system. Instead of physically scanning and processing ID cards through optical scanners, the system uses digital credentials stored on mobile devices that can be automatically read and verified, eliminating the time-consuming manual scanning process while maintaining verification reliability

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

Authentication credentials are pre-loaded onto the customer's mobile device before the authentication event. This preliminary action eliminates the need for on-site ID scanning, as the authentication information is already available on the mobile device and can be immediately presented to the authentication provider, significantly reducing authentication time

Inventive Principle:
Principle #10Preliminary action

3Adaptability or versatility

If ID scanner hardware is installed at ITM, then authentication capability is improved, but device complexity and hardware requirements increase

Engineering Contradiction:
Improveauthentication capabilityVSAvoidhardware requirements
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication capability from the ITM hardware and relocates it to the customer's mobile device. Instead of requiring the ITM to have ID scanning hardware, the authentication functionality is taken out and implemented on the mobile device, which the customer already possesses, thereby eliminating the need for additional hardware at the ITM

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The system enables self-service authentication where the customer's mobile device performs the authentication function without requiring specialized hardware at the ITM. The mobile device independently handles credential storage, encryption, and transmission, allowing the ITM to provide authentication services using only standard computing components

Inventive Principle:
Principle #25Self-service

4Productivity

If scanned ID images are transmitted, then authentication processing is improved, but privacy concerns and data security risks increase

Engineering Contradiction:
Improveauthentication processingVSAvoidprivacy concerns
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent applies local quality by processing authentication data locally on the customer's mobile device rather than transmitting complete ID images. The mobile device performs local authentication operations using encrypted credentials, and only necessary authentication data is transmitted to the authentication provider, minimizing exposure of sensitive personal information and reducing privacy risks

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS20250112918A1Authentication requests
Publication Date: 2025.04.03 DIGITAL FIRST HOLDINGS LLC
  • US20250112918A1 patent drawing
  • US20250112918A1 patent drawing
  • US20250112918A1 patent drawing

AI summary

A method and a communication network are disclosed. The method comprises detecting, by a computing device of a trusted computing system, an input event indicating that an individual at the computing device wishes to authenticate their identity, responsive to said detecting, determining, by the computing device, at least one property for an authentication request that enables an authentication provider module that is external to the trusted computing system to authenticate the identity of the individual independently of the trusted computing system, and responsive to said determining, generating, by the computing device, the authentication request, wherein the authentication request comprises data indicative of said at least one property.