Digital Credential Verification Using Live Face Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing digital credential systems lack robust mechanisms to ensure that only the legitimate owner can access and control the credentials, leading to potential theft, sharing, or impersonation, and rely on insecure password-based authentication.

Innovation Solution

Integrate biometric data, specifically face biometrics, with digital credentials, encrypting it with a private key, and requiring live face authentication to decrypt and access the credentials, ensuring only the legitimate owner can use them.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If password-based authentication is used for digital credentials, then ease of operation is improved, but reliability deteriorates due to potential theft, sharing, or impersonation

Engineering Contradiction:
Improveease of operationVSAvoidreliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent replaces the mechanical/password-based authentication system with a biometric authentication system. Specifically, it substitutes knowledge-based authentication (passwords) with physiological-based authentication (face biometrics), thereby eliminating the security vulnerabilities of password theft and sharing while maintaining ease of operation through natural facial recognition.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent changes the authentication parameter from something you know (password) to something you are (biometric features). By encrypting biometric data with private keys and requiring live face authentication, it transforms the authentication mechanism to provide both improved reliability and maintained ease of operation.

Inventive Principle:
Principle #35Parameter changes

2Reliability

If biometric data is integrated with digital credentials, then reliability is improved, but device complexity increases

Engineering Contradiction:
ImprovereliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary encryption layer using public-private key pairs. The biometric data is encrypted with the user's private key and stored in the credential. During verification, the encrypted biometric data is decrypted using the corresponding public key, and the decrypted data is compared with live biometric input. This intermediary cryptographic mechanism enables reliable biometric authentication without requiring complex centralized storage or processing systems.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If live face authentication is required to decrypt credentials, then security is improved, but ease of operation deteriorates

Engineering Contradiction:
ImprovereliabilityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent enables the user's own face to serve as the authentication key. The live face authentication process is self-contained and automatic - the system captures the user's face, extracts biometric features, decrypts the credential using the matched biometric data, and completes authentication without requiring manual intervention or additional security devices. This makes the enhanced security transparent and easy to use.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS12506613B2Methods and systems for generating and validating uses of digital credentials and other documents
Publication Date: 2025.12.23 WAUGH DONALD CRAIG
  • US12506613B2 patent drawing
  • US12506613B2 patent drawing
  • US12506613B2 patent drawing

AI summary

In one aspect, there is provided a processor-implemented method conducted by an issuer system for issuing a new verifiable document. In another aspect, there is provided a processor-implemented method conducted by a user terminal for obtaining a new verifiable document. In another aspect, there is provided a processor-implemented method conducted by a verifier system for verifying valid use of a verifiable document. In another aspect, there is provided a processor-implemented method conducted by a user terminal for obtaining verification of valid use of a verifiable document.