Context Discovery Engine for Secure Browser Payment Tokenization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current payment systems face challenges in securely and efficiently processing digital transactions on mobile devices, particularly in protecting user data and automating payment processes within browser sessions, due to vulnerabilities in data interception and authentication.

Innovation Solution

A system comprising a client device with a context discovery engine, a communications unit, and a tokenization system that intercepts contextual data during browser sessions, generates digital tokens, and automatically populates payment information on checkout pages, using secure programmatic interfaces and tokenization services to facilitate secure and automated transactions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual payment information input is used in browser sessions, then user control and visibility are maintained, but transaction security is compromised and user experience deteriorates due to data interception vulnerabilities

Engineering Contradiction:
Improvetransaction securityVSAvoidmanual input requirement
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a context discovery engine and tokenization service as intermediaries between the user and the payment system. The context discovery engine intercepts browser session data to identify payment opportunities, while the tokenization service replaces sensitive payment information with secure tokens. This intermediary layer automates the payment process while maintaining security, eliminating the need for manual input and protecting against data interception vulnerabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary actions by pre-generating digital tokens and storing them securely before the actual transaction occurs. The context discovery engine proactively monitors browser sessions to identify when a payment is needed, and the tokenization service prepares secure tokens in advance. This preliminary preparation automates the payment flow and ensures security measures are already in place before sensitive data is exposed.

Inventive Principle:
Principle #10Preliminary action

2Productivity

If sensitive payment data is transmitted during browser sessions, then payment processing is enabled, but data security is compromised due to interception vulnerabilities

Engineering Contradiction:
Improvepayment processing efficiencyVSAvoiddata interception risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent creates secure copies of payment information in the form of digital tokens. Instead of transmitting actual sensitive payment data through the browser session, the system generates token copies that represent the payment information. These tokens can be safely transmitted and processed without exposing the original sensitive data, thereby enabling payment processing while eliminating interception risks.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The tokenization service acts as an intermediary that transforms sensitive payment data into secure tokens. This intermediary layer processes the payment information without exposing it to potential interceptors in the browser session. The tokens serve as safe proxies that enable payment processing efficiency while protecting against data security threats.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If digital tokens are generated and provisioned dynamically, then transaction security and automation are improved, but system complexity increases

Engineering Contradiction:
Improvetransaction securityVSAvoidsystem architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the payment system into distinct functional modules: a context discovery engine for monitoring browser sessions, a tokenization service for generating and managing digital tokens, and a provisioning system for delivering tokens to clients. This segmentation allows each component to specialize in its function, improving security and automation while making the overall system complexity manageable through clear separation of concerns.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS12039535B2Generation and provisioning of digital tokens based on dynamically obtained contextual data
Publication Date: 2024.07.16 THE TORONTO DOMINION BANK
  • US12039535B2 patent drawing
  • US12039535B2 patent drawing
  • US12039535B2 patent drawing

AI summary

The disclosed exemplary embodiments include computer-implemented systems, apparatuses, and processes that, among other things, generate and provision digital tokens based on dynamically obtained contextual data. For example, an apparatus may receive first information that characterizes an exchange of data initiated by a first application program executed by the apparatus, and may generate and transmit a signal to a computing system through a programmatic interface associated with a second application program executed by the apparatus. In some instances, the first signal may include the first information and data that instructs the computing system to obtain a digital token representative of a data type available for use in the data exchange. The apparatus may also receive a second signal that includes the digital token and based on the digital token, perform operations that present second information characterizing the available data type on an interface.