Co-Signer Permission Aggregation for Secure PII Transfer

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in balancing data privacy with the need to streamline processes by sharing personal identifiable information (PII) across platforms, often resulting in repetitive data entry and errors due to inadequate control over data access and usage.

Innovation Solution

A computer-implemented method that securely transfers PII by encrypting and managing user permissions, allowing controlled access and reuse of data across platforms, reducing errors and enhancing security through secure storage and authentication processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If users share their data across multiple platforms to reduce repetitive data entry, then productivity and ease of operation improve, but data security and privacy protection deteriorate

Engineering Contradiction:
Improvedata exchange efficiencyVSAvoiddata security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent segments data access permissions by creating distinct permission records for different third-party systems. Each permission is granted independently with specific scopes, allowing users to control which platforms access which data elements. This segmentation enables selective data sharing that improves productivity while maintaining security through granular access control.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a permission management system that acts as an intermediary between users and third-party systems. This intermediary layer processes authorization requests, manages consent, and controls data flow without requiring direct user-platform connections. The intermediary enables efficient data exchange while maintaining security through centralized permission oversight.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If users minimize the number of entities with access to their data to maintain security, then data protection improves, but ease of operation and productivity deteriorate due to repetitive data entry

Engineering Contradiction:
Improvedata protectionVSAvoiddata entry convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements preliminary action by obtaining user permissions and authorizations in advance before data access is required. The system stores these pre-granted permissions and automatically retrieves them when third-party systems need data, eliminating the need for repeated user actions. This preliminary authorization improves ease of operation while maintaining data protection through pre-established security boundaries.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent enables self-service by allowing users to manage their own data permissions through intuitive interfaces. Users can review, modify, and revoke permissions without technical assistance, making data protection management easy and empowering users to control their data sharing preferences. This self-service capability improves ease of operation while maintaining strong data protection through user autonomy.

Inventive Principle:
Principle #25Self-service

3Productivity

If platforms store and process user data directly to enable quick access and reuse, then productivity improves, but device complexity and security management burden increase

Engineering Contradiction:
Improvedata access speedVSAvoidprocessing burden
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent extracts the permission management functionality from individual platforms and consolidates it into a centralized system. Platforms no longer need to implement their own complex authorization logic; instead, they query the centralized system for pre-established permissions. This extraction reduces device complexity while maintaining fast data access through efficient permission lookup mechanisms.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS12192187B2Aggregating permissions across multiple platforms with co-signers
Publication Date: 2025.01.07 CAPITAL ONE SERVICES LLC
  • US12192187B2 patent drawing
  • US12192187B2 patent drawing
  • US12192187B2 patent drawing

AI summary

A system, process, and computer-readable medium for securely transferring user personal identification information (PII) across platforms, based on specific permissions, are described. One or more aspects provide greater control, to a user, of when that user's PII may be released from a secure storage in a first platform and securely provided to a second platform. The timing of those releases of the PII may be controlled by specific authorizations from the user via one or more processes. Also, in addition to improving the security associated with the PII transferred between platforms, one or more aspects improve users' experiences by permitting controlled reuse of users' PII to simplify how users provide their PII to separate processes being performed on separate platforms.