Decentralized Cryptography Access Control Protocol

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The decentralized web lacks a vital component, a blockchain-based access-control list (ACL) mechanism for private data and access control, hindering the development of consumer-ready applications and secure access to digital and real-world experiences.

Innovation Solution

A decentralized access control protocol that uses encryption to store and manage permissions on public networks, allowing access to resources based on on-chain conditions, enabling the creation of locked NFTs and dynamic content accessible only to token holders, and providing network signatures for authorization.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If encryption is implemented on the decentralized web, then privacy and security are improved, but system complexity increases due to the need for key management and decryption infrastructure

Engineering Contradiction:
Improveprivacy and securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a decentralized network of full nodes as intermediaries that hold encryption keys and perform decryption operations. These nodes act as mediators between encrypted content and users, managing the complexity of key storage and decryption while maintaining security. The nodes verify on-chain conditions and selectively decrypt content for authorized users without requiring users to directly manage encryption keys.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If a decentralized access control mechanism is implemented, then data sovereignty and user control are improved, but ease of operation deteriorates due to the need for on-chain conditions and verification processes

Engineering Contradiction:
Improvedata sovereigntyVSAvoidease of operation
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The system enables content owners to self-serve by encoding access control conditions directly into the encryption metadata. Owners can specify on-chain conditions (such as NFT ownership or wallet balances) that automatically control decryption access without requiring manual intervention from network nodes. The blockchain itself serves the verification function, eliminating the need for centralized access control lists and reducing operational complexity for the network.

Inventive Principle:
Principle #25Self-service

3Reliability

If encryption keys are distributed across the network, then security and decentralization are improved, but loss of information increases due to the risk of key loss or inaccessibility

Engineering Contradiction:
Improvesecurity and decentralizationVSAvoidkey loss risk
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent implements a distributed key architecture where different full nodes hold different portions or aspects of encryption keys locally. Each node maintains its own key materials in its wallet, and keys are not centralized in a single location. This local distribution of key quality across multiple independent nodes enhances security through decentralization while ensuring that key inaccessibility at one node does not result in total information loss, as other nodes retain their key portions.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS20230275751A1Decentralized Cryptography
Publication Date: 2023.08.31 WORKGRAPH INC
  • US20230275751A1 patent drawing
  • US20230275751A1 patent drawing
  • US20230275751A1 patent drawing

AI summary

The present invention relates to a method and system for decentralized cryptography and encryption on a network of decentralized nodes. The invention further relates to creation of private network key shares by multiple nodes on the network and receiving requests from the network to use the private network key shares. The invention further relates to performing operations with the private network key shares, wherein the operation produces a result that is provided to the network.