Controlled Identity Credential Release via Wireless

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing digital identity credential systems lack secure and controlled methods for users to share their identity credentials with third parties, such as government officials or commercial entities, while maintaining data privacy and security.

Innovation Solution

A system that allows users to securely provision and control the release of digital identity credentials from their electronic devices to wireless terminal devices using methods like NFC, Bluetooth, or Wi-Fi Aware, enabling controlled access and display of credentials even when the device is in a locked state, with options for pre-configured data fields and authentication processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If digital identity credentials are transmitted wirelessly to third parties, then convenience and speed of identity verification are improved, but security and privacy control are worsened

Engineering Contradiction:
Improvespeed of identity verificationVSAvoidsecurity and privacy control
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent segments the identity credential data into multiple components: the credential itself, user profile information, and transaction history. This segmentation allows selective sharing of only necessary portions (e.g., verifying age without revealing full personal details) while maintaining security control over sensitive information.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a digital wallet as an intermediary layer between the user's identity credentials and third parties. The digital wallet manages authentication, authorization, and controlled release of credential data, enabling secure wireless transmission without exposing raw credential information directly to third parties.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If full identity credentials are released to third parties, then verification accuracy is improved, but privacy loss increases

Engineering Contradiction:
Improveverification accuracyVSAvoidprivacy loss
Core Design Contradiction:
Measurement precisionVSLoss of information

Solution Approach 1:

The patent applies local quality by allowing different levels of credential disclosure for different verification scenarios. For example, a simple age verification only releases age information, while a more complex verification might release additional fields. Each credential release is customized to the specific verification needs, providing precise verification accuracy while minimizing privacy loss.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent implements partial action by releasing only the minimum necessary credential information required for each verification transaction. Instead of releasing full credentials, the system releases specific data fields based on verification requirements, achieving sufficient verification accuracy without excessive information disclosure.

Inventive Principle:
Principle #16Partial or excessive action

3Reliability

If device is locked for security, then security is improved, but ease of operation during transactions is worsened

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation during transactions
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies preliminary action by pre-configuring the digital wallet with authorized third parties and credential release parameters before transactions occur. Users can pre-approve which credentials can be shared with which entities under specific conditions, so that during actual transactions, the locked device can still perform verified releases without requiring full authentication, maintaining both security and operational ease.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11836242B2Controlled identity credential release
Publication Date: 2023.12.05 APPLE INC
  • US11836242B2 patent drawing
  • US11836242B2 patent drawing
  • US11836242B2 patent drawing

AI summary

A device for controlled identity credential release may include at least one processor configured to receive a request to release an identity credential of a user, the identity credential being stored on the device. The at least one processor may be further configured to authenticate the user associated with the identity credential. The at least one processor may be further configured to, responsive to the authentication, provide at least a portion of the identity credential, such as for display and/or to a terminal device over a direct wireless connection. The at least one processor may be further configured to cause the electronic device to enter a locked state and/or to remain in a locked state, responsive to providing the at least the portion of the identity credential.