Digital Identity Address Management for Privacy Proxy Segmentation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current digital identity management systems are inadequate in preventing tracking and profiling, as primary indexing keys like email addresses and phone numbers are difficult to change without disrupting numerous accounts, and existing sub-addressing methods can be easily decoded by nefarious websites, leading to continued tracking and spam issues.
Innovation Solution
A Digital Identity Address Management (DIAM) system that generates unique, machine-generated email addresses for each role within a digital identity, making it difficult for websites to map these addresses back to the main identity and allowing for easy deletion or deactivation of compromised email addresses, thereby segmenting online activities and reducing tracking.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a single primary indexing key (email address or phone number) is used for digital identity, then it is easy to manage and remember, but it becomes difficult to change without disrupting numerous accounts and vulnerable to tracking and spam
Solution Approach 1:
The patent segments the single primary indexing key into multiple role-specific email addresses. Each email address is associated with a specific role (e.g., work, personal, medical), allowing the user to compartmentalize online activities. This segmentation prevents tracking across different roles while maintaining ease of management through centralized control via the digital identity management system.
2Object-affected harmful factors
If multiple email addresses are created to segment online activities and block correlation, then tracking is disrupted, but it becomes cumbersome to manage and remember numerous email addresses
Solution Approach 1:
The patent introduces a digital identity management system as an intermediary between the user and multiple email addresses. This intermediary automatically manages the creation, storage, and deployment of role-specific email addresses. The user interacts with a single interface to manage all email addresses, eliminating the need to manually remember or coordinate multiple addresses while maintaining tracking disruption benefits.
Solution Approach 2:
The system enables self-service automation where the digital identity management system automatically generates, stores, and rotates email addresses based on user-defined roles. The system handles email address management tasks autonomously, including generating new addresses when needed and managing their lifecycle, thereby reducing user burden while maintaining security and tracking prevention.
3Ease of operation
If RFC 5233 sub-addressing method is used to create role-based email addresses, then email sorting is simplified, but nefarious websites can easily decode the sub-addresses and continue tracking
Solution Approach 1:
The patent changes the parameters of email address generation by using machine-generated random strings instead of predictable sub-addressing formats. Each role-specific email address uses a unique, unpredictable identifier that cannot be easily decoded or patterned by tracking systems. This parameter change maintains email sorting capabilities through the underlying digital identity linkage while eliminating the vulnerability to decoding attacks present in RFC 5233 methods.
Data Source
AI summary
An apparatus has a processor and a memory connected to the processor. The memory stores instructions executed by the processor to store identity attributes including real identity attributes for a real individual and at least two sets of digital identity attributes each operative as a personal privacy proxy with compartmental identity attributes. The at least two sets of digital identity attributes include a first machine generated digital identity email address associated with a first role and a second machine generated digital identity email address associated with a second role.


