Digital Identity Address Management for Privacy Proxy Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current digital identity management systems are inadequate in preventing tracking and profiling, as primary indexing keys like email addresses and phone numbers are difficult to change without disrupting numerous accounts, and existing sub-addressing methods can be easily decoded by nefarious websites, leading to continued tracking and spam issues.

Innovation Solution

A Digital Identity Address Management (DIAM) system that generates unique, machine-generated email addresses for each role within a digital identity, making it difficult for websites to map these addresses back to the main identity and allowing for easy deletion or deactivation of compromised email addresses, thereby segmenting online activities and reducing tracking.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a single primary indexing key (email address or phone number) is used for digital identity, then it is easy to manage and remember, but it becomes difficult to change without disrupting numerous accounts and vulnerable to tracking and spam

Engineering Contradiction:
Improveease of managing digital identityVSAvoidtracking and spam exposure
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent segments the single primary indexing key into multiple role-specific email addresses. Each email address is associated with a specific role (e.g., work, personal, medical), allowing the user to compartmentalize online activities. This segmentation prevents tracking across different roles while maintaining ease of management through centralized control via the digital identity management system.

Inventive Principle:
Principle #1Segmentation

2Object-affected harmful factors

If multiple email addresses are created to segment online activities and block correlation, then tracking is disrupted, but it becomes cumbersome to manage and remember numerous email addresses

Engineering Contradiction:
Improvetracking disruptionVSAvoidemail management complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent introduces a digital identity management system as an intermediary between the user and multiple email addresses. This intermediary automatically manages the creation, storage, and deployment of role-specific email addresses. The user interacts with a single interface to manage all email addresses, eliminating the need to manually remember or coordinate multiple addresses while maintaining tracking disruption benefits.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system enables self-service automation where the digital identity management system automatically generates, stores, and rotates email addresses based on user-defined roles. The system handles email address management tasks autonomously, including generating new addresses when needed and managing their lifecycle, thereby reducing user burden while maintaining security and tracking prevention.

Inventive Principle:
Principle #25Self-service

3Ease of operation

If RFC 5233 sub-addressing method is used to create role-based email addresses, then email sorting is simplified, but nefarious websites can easily decode the sub-addresses and continue tracking

Engineering Contradiction:
Improveemail sorting convenienceVSAvoidtracking vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent changes the parameters of email address generation by using machine-generated random strings instead of predictable sub-addressing formats. Each role-specific email address uses a unique, unpredictable identifier that cannot be easily decoded or patterned by tracking systems. This parameter change maintains email sorting capabilities through the underlying digital identity linkage while eliminating the vulnerability to decoding attacks present in RFC 5233 methods.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10511493B1Apparatus and method for managing digital identities
Publication Date: 2019.12.17 ANONYOME LABS INC
  • US10511493B1 patent drawing
  • US10511493B1 patent drawing
  • US10511493B1 patent drawing

AI summary

An apparatus has a processor and a memory connected to the processor. The memory stores instructions executed by the processor to store identity attributes including real identity attributes for a real individual and at least two sets of digital identity attributes each operative as a personal privacy proxy with compartmental identity attributes. The at least two sets of digital identity attributes include a first machine generated digital identity email address associated with a first role and a second machine generated digital identity email address associated with a second role.