Cloaked Identifier for Self-Sovereign Data Validation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current internet transactions face significant security and privacy concerns due to the risk of data hijacking during online data transmission, as traditional validation methods rely on paper work or in-person verification, which are not feasible for online transactions.
Innovation Solution
A self-sovereign information management framework that uses a cloaked identifier system to validate data items securely, allowing record owners to control access and transmission of their data, with a trusted entity generating a cloaked identifier incorporating transaction information and data items, which is sent to the record owner for validation, minimizing data exposure over the network.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If data is transmitted over the Internet for validation, then transaction efficiency is improved, but security and privacy are worsened due to risk of data hijacking
Solution Approach 1:
The patent extracts only the essential validation information needed for the transaction and transmits it over the network, while keeping the full personal data stored locally in the decentralized identity system. This allows transaction efficiency to improve through online validation while security is maintained by not exposing complete data sets during transmission.
Solution Approach 2:
The patent introduces a trusted intermediary (decentralized identity system) that acts as a mediator between the user and the service provider. This intermediary validates the user's identity and provides verification without requiring direct exposure of sensitive personal data, thus enabling secure online transactions.
2Measurement precision
If complete personal data is transmitted for validation, then validation accuracy is improved, but privacy and security are worsened
Solution Approach 1:
The patent applies local quality by differentiating between different types of information and their required levels of exposure. Sensitive personal data remains stored locally in the user's decentralized identity system with restricted access, while only specific validation-relevant information is shared with service providers, achieving both accurate validation and privacy protection.
Solution Approach 2:
The patent segments personal data into different components: identity verification data, transaction data, and sensitive personal information. Each segment is handled differently during validation, with only the necessary segments transmitted over the network while others remain protected locally, ensuring validation accuracy without unnecessary privacy exposure.
3Reliability
If traditional in-person verification is used, then security is improved, but transaction convenience is worsened
Solution Approach 1:
The patent replaces the mechanical in-person verification system with a digital decentralized identity system. Users can present their identity and validate transactions remotely through cryptographic proofs and digital credentials, maintaining the security of verification while dramatically improving convenience by eliminating the need for physical presence.
Solution Approach 2:
The decentralized identity system serves as a trusted intermediary that enables secure remote verification. It provides the same level of security assurance as in-person verification but through digital means, allowing users to conduct transactions conveniently from any location while maintaining high security standards.
Data Source
AI summary
The present teaching relates to method, system, medium, and implementation for secure data management by a trusted entity. A request is first received for validating one or more data items related to a record owner in order to carry out a transaction between the record owner and a service provider. With respect to the one or more data items, at least one access limitation associated therewith is determined. A cloaked identifier is generated for the request with information related to the transaction and the one or more data items incorporated therein and sent to the record owner to proceed with the validation.


