Data Management Mechanism for On-Demand Services

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional collaboration software applications lack the necessary security measures to control and prevent unauthorized deletion of sensitive data within organizations, posing compliance and security risks.

Innovation Solution

A data management mechanism that detects attempts to delete data via collaboration applications, determines user authorization, and blocks unauthorized deletion attempts, while allowing authorized users to manage data control privileges based on their roles and privileges.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If conventional collaboration applications allow users to freely delete data, then ease of operation is improved, but data security and compliance are worsened

Engineering Contradiction:
Improveuser ability to delete dataVSAvoiddata security and compliance
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary mechanism (data management system) that sits between the user and the data deletion process. This intermediary detects deletion attempts, verifies user authorization, and either permits or blocks the deletion based on compliance rules, thus resolving the contradiction between user convenience and data security

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements feedback by monitoring user deletion attempts in real-time, evaluating authorization status, and providing immediate blocking or permission signals. This feedback loop ensures that data security requirements are enforced while maintaining operational ease for authorized users

Inventive Principle:
Principle #23Feedback

2Ease of operation

If conventional database systems allow any user to access and delete data, then ease of operation is improved, but data integrity and security are worsened

Engineering Contradiction:
Improveuser access to dataVSAvoidunauthorized deletion and data integrity loss
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent applies preliminary anti-action by pre-establishing authorization rules and compliance policies before data deletion occurs. The system proactively identifies and blocks potential unauthorized deletion attempts before they can compromise data integrity, rather than reacting after damage occurs

Inventive Principle:
Principle #9Preliminary anti-action

3Reliability

If data deletion is completely prevented, then data security is improved, but ease of operation and data management flexibility are worsened

Engineering Contradiction:
Improvedata securityVSAvoiddata management flexibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements local quality by applying different authorization levels and deletion policies to different users, data types, and contexts. Rather than a blanket prohibition or permission, the system tailors data management flexibility to specific local conditions while maintaining security requirements, resolving the contradiction between security and operational flexibility

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS9235721B2Mechanism for facilitating management of data in an on-demand services enviroment
Publication Date: 2016.01.12 SALESFORCE INC
  • US9235721B2 patent drawing
  • US9235721B2 patent drawing
  • US9235721B2 patent drawing

AI summary

In accordance with embodiments, there are provided mechanisms and methods for facilitating management of data in an on-demand services environment. In one embodiment and by way of example, a method for facilitating management of data in an on-demand services environment is provided. The method of embodiment includes detecting an attempt by a user to manipulate data via a collaboration application at a computing system, wherein the attempt includes attempted deletion of the data posted for viewing using the collaboration application. The method may further include determining whether the user is authorized to manipulate the data, and blocking the attempt if the user is not authorized to manipulate the data.