Web Page Control Tag Blocking Unauthorized Third-Party Data Requests

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Online publishers face issues with unauthorized third-party data collection requests on their web pages, leading to devalued advertising inventory, increased web page load times, and compromised user privacy, as third-party HTML and JavaScript code can make unauthorized calls to unauthorized parties, sharing user data without consent.

Innovation Solution

A data countermeasures platform that includes a control tag embedded in web pages to intercept and block unauthorized third-party requests by modifying content before it is written to the page, using a JavaScript or other code that inspects and filters out disallowed requests based on a publisher-configured list of blocked domains and companies, thereby preventing unauthorized data transfers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If third party HTML and JavaScript code is embedded on publisher's web pages to provide services like analytics and advertising, then functionality and service capabilities are improved, but unauthorized data collection requests are generated that compromise user privacy and devalue advertising inventory

Engineering Contradiction:
Improveservice functionalityVSAvoidunauthorized data collection
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary mechanism (control tag and filtering system) positioned between the embedded third-party code and the user's browser. This intermediary intercepts HTTP requests generated by third-party scripts, filters out unauthorized data collection requests based on publisher-defined policies, and allows only authorized requests to proceed. This resolves the contradiction by enabling service functionality while blocking harmful unauthorized data collection.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If third party services are embedded on publisher's web pages, then service capabilities are enhanced, but web page load time increases due to additional HTTP traffic

Engineering Contradiction:
Improveservice capabilitiesVSAvoidweb page load time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent extracts and removes harmful elements (unauthorized data collection requests) from the mixture of HTTP traffic generated by embedded third-party services. By filtering out unnecessary and unauthorized requests before they are sent to external servers, the system reduces the total volume of HTTP traffic, thereby decreasing web page load time while preserving essential service functionality.

Inventive Principle:
Principle #2Taking out (Extraction)

3Adaptability or versatility

If publisher allows third party code to execute on their web pages, then service functionality is provided, but user data is shared with unauthorized companies compromising privacy

Engineering Contradiction:
Improveservice functionalityVSAvoiduser data privacy
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The patent applies preliminary anti-action by establishing a filtering system that proactively identifies and blocks unauthorized data collection requests before user data can be transmitted to unauthorized third parties. The system uses pre-configured allowlists and blocklists to prevent harmful data sharing in advance, while still permitting authorized services to function normally.

Inventive Principle:
Principle #9Preliminary anti-action

4Object-affected harmful factors

If publisher blocks all third party requests to prevent unauthorized data collection, then user privacy is protected, but legitimate service functionality is also disrupted

Engineering Contradiction:
Improveuser privacy protectionVSAvoidservice functionality
Core Design Contradiction:
Object-affected harmful factorsVSAdaptability or versatility

Solution Approach 1:

The patent applies local quality by implementing differentiated access control policies for different third-party services. Instead of a blanket block or allow all approach, the system evaluates each request individually against publisher-defined policies, allowing legitimate services (analytics, advertising) to function while blocking unauthorized data collection. This enables selective permission granting based on the specific service and request characteristics.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10958655B2Systems, methods, and apparatuses for implementing data counter measures for online publishers with third party content
Publication Date: 2021.03.23 SALESFORCE INC
  • US10958655B2 patent drawing
  • US10958655B2 patent drawing
  • US10958655B2 patent drawing

AI summary

Techniques to block unwanted third party calls are disclosed. In various embodiments, an indication is received that third party code included on a web page is attempting to write to the web page content associated with an unauthorized third party call. The unauthorized third party call is blocked. In some embodiments, the unauthorized third party call is blocked by blocking the web page content associated with the unauthorized third party call from being written to the web page.