Delegate Account Document Access Control via Entity Identifiers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The ease of creation and sharing of electronic documents increases the need for secure and efficient document management systems that can manage multiple entities' access to these documents, as existing solutions lack robust security and convenient sharing mechanisms.

Innovation Solution

A method and system that utilize a combination of relational and non-relational database storage to store documents and entity identifiers, allowing for granular control of document management functions based on entity types, enabling secure sharing and differentiated access levels among delegates.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If electronic documents are easily duplicated and shared, then document accessibility and convenience are improved, but security control and access management deteriorate

Engineering Contradiction:
Improvedocument sharing convenienceVSAvoidsecurity control
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system segments document access control by creating distinct delegate accounts with specific entity identifiers, each granted targeted subsets of document management functions based on their role and requirements, rather than providing uniform access to all documents

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system implements local quality by associating different delegate accounts with different subsets of document management functions for different document sets, allowing each delegate to have customized access rights tailored to their specific needs and responsibilities

Inventive Principle:
Principle #3Local quality

2Extent of automation

If document management functions are centralized, then system control is improved, but access granularity and entity-specific control deteriorate

Engineering Contradiction:
Improvesystem controlVSAvoidaccess granularity
Core Design Contradiction:
Extent of automationVSAdaptability or versatility

Solution Approach 1:

The system implements dynamic access control by automatically granting specific subsets of document management functions to delegate accounts based on their associated entity identifiers and recorded associations, rather than using static uniform permissions

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system introduces entity identifiers as intermediaries between the centralized document management system and individual delegates, enabling automated determination of appropriate access rights based on the delegate's entity type and associations with specific document sets

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If multiple delegates are granted full access to all documents, then collaboration efficiency is improved, but security risk and access control complexity deteriorate

Engineering Contradiction:
Improvecollaboration efficiencyVSAvoidaccess control complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system creates universal delegate accounts that can be associated with multiple entity identifiers and granted access to multiple different sets of documents with different permission levels, allowing a single delegate account to have versatile access rights across various document collections

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11120056B2Systems and methods for sharing documents
Publication Date: 2021.09.14 FUTUREVAULT INC
  • US11120056B2 patent drawing
  • US11120056B2 patent drawing
  • US11120056B2 patent drawing

AI summary

Methods and systems for sharing electronic documents are described herein. The example method includes storing the electronic documents in a relational database storage; storing entity identifiers in the relational database storage, each entity identifier representing an entity type; recording in a non-relational database storage associations between the electronic documents and at least one entity identifier, each association comprising a relationship between a set of electronic documents and the at least one entity identifier; associating a delegate account with the at least one entity identifier; and based on an association recorded in the non-relational database storage for the at least one entity identifier, granting the delegate account a subset of document management functions available for the set of documents.