Machine-Readable Code Authentication for Shared Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Frontline workers who share computing devices and lack personal devices or hardware tokens face challenges in secure authentication, relying on usernames and passwords that are difficult to manage and provide inadequate security.

Innovation Solution

The implementation of a system that uses codes embedded in machine-readable items, such as QR codes or barcodes, to authenticate users. These codes are stored on a machine-readable item assigned to the user, and a processor obtains and processes these codes to authenticate the user without requiring manual entry of credentials.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional username and password authentication is used, then users can access the terminal, but security is inadequate and password management is difficult

Engineering Contradiction:
Improveauthentication securityVSAvoidpassword management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent uses machine-readable codes (QR codes, barcodes) as visual copies of authentication credentials. Instead of requiring users to memorize and manually enter passwords, the system creates visual representations of authentication data that can be easily captured and processed, eliminating the need for users to manage complex passwords while maintaining security through code verification

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent replaces the mechanical process of manual password entry with an automated optical recognition system. The terminal's camera or scanner captures machine-readable codes, and the system automatically processes these codes for authentication, eliminating the manual typing process and reducing errors while improving both security and ease of use

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Productivity

If manual credential entry is required, then authentication can be performed, but the process is time-consuming and user-friendly

Engineering Contradiction:
Improveauthentication speedVSAvoiduser interface complexity
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The patent extracts the authentication credentials from the user's memory and manual input process, embedding them in machine-readable visual codes that the user simply displays. This separates the credential storage function (in the code) from the authentication process (at the terminal), eliminating the need for users to recall or type passwords and significantly speeding up authentication

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The system allows users to authenticate themselves by displaying pre-generated machine-readable codes that contain their credentials. The terminal automatically captures and processes these codes without requiring user interaction beyond displaying the code, making the authentication process self-service oriented and highly efficient

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20250190534A1Authentication of users based on codes embedded in machine-readable items
Publication Date: 2025.06.12 MICROSOFT TECHNOLOGY LICENSING LLC
  • US20250190534A1 patent drawing
  • US20250190534A1 patent drawing
  • US20250190534A1 patent drawing

AI summary

According to examples, an apparatus includes a processor that is to obtain a plurality of codes contained in a machine-readable item and send a request for authentication of a user of the machine-readable item to a server. The server is to select a certain code of a plurality of certain codes and return a request for the selected certain code. The processor is to receive the request for the selected certain code from the server and to identify a code in the plurality of codes that corresponds to the selected certain code. The processor is also to send the identified code to the server for the server to authenticate the user based at least on the identified code. In addition, the processor is to receive an indication as to whether the authentication request of the user is successful from the server.