Data Substitution Service for Third-Party Privacy Compliance

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Third-party network services face challenges in securely and consistently removing sensitive data, such as ePHI or PII, from larger data sets without causing inconsistencies, as simple deletion can disrupt the integrity of the data set.

Innovation Solution

A network computer system implements a data substitution system that selectively replaces sensitive data items with tokens, maintaining data integrity and security by preventing storage of the substituted data, while allowing for reversible or irreversible substitution procedures.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If sensitive data items are deleted from data sets stored by third-party network services, then privacy and confidentiality restrictions are satisfied, but inconsistencies within the larger data sets occur and data integrity is compromised

Engineering Contradiction:
Improveprivacy violationVSAvoiddata integrity
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The patent introduces a data substitution service as an intermediary between the data set and the third-party network service. This service replaces sensitive data items with substitute items (tokens) before storage, preventing direct access to original sensitive data while maintaining data structure integrity. The substitution mechanism acts as a mediator that satisfies privacy requirements without compromising data set consistency.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates substitute items that replicate the format and structural properties of original sensitive data items without containing the actual sensitive information. These copies maintain the necessary data structure and relationships within the data set, allowing the system to preserve data integrity while eliminating privacy risks associated with storing actual sensitive information.

Inventive Principle:
Principle #26Copying

2Reliability

If sensitive data items are retained in data sets, then data integrity and utility are maintained, but privacy and confidentiality restrictions are violated

Engineering Contradiction:
Improvedata integrityVSAvoidprivacy violation
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The data substitution service serves as an intermediary that processes data before it is stored by the third-party network service. It replaces sensitive items with substitute items that maintain structural integrity while preventing privacy violations. This intermediary layer allows the system to retain data utility without directly storing prohibited sensitive information.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent transforms sensitive data items into substitute items by changing their parameter representation. Instead of storing actual sensitive values, the system stores transformed representations (tokens) that maintain the necessary format and relationships for data utility while fundamentally altering the content to eliminate privacy risks.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If substitute items are used to replace sensitive data, then privacy restrictions are satisfied and data integrity is maintained, but additional system complexity is introduced

Engineering Contradiction:
Improvedata integrityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The data substitution service is designed as a universal solution that can handle multiple types of sensitive data items across different data sets through a single standardized mechanism. By creating a multi-functional substitution system that works with various data formats and third-party services, the patent reduces overall system complexity compared to implementing separate solutions for each data type or service.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS20250148129A1Selective replacement of data maintained by third-party network services
Publication Date: 2025.05.08 STRATOKEY PTY LTD
  • US20250148129A1 patent drawing
  • US20250148129A1 patent drawing
  • US20250148129A1 patent drawing

AI summary

A network computer system to selectively anonymize data items of a collection of data structures, where the network computer system is implemented as a backend web service. The network computer system receives a first web service call from a third-party network service, identifies a character string in a data item that has a format that coincides with the particular format, select a token from a token pool, and provides a response to the first web service call that causes the third-party network service to store a modified data item, where the modified data item is generated by replacing the character string in the data item with the token.