Digital Identity Log Entry Appending via Nested Data Structures
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional digital identities do not include dynamic information such as travel history or medical records, making it difficult for users to provide proof of these aspects to relying parties, and the information available is not verified or associated with an identity provider.
Innovation Solution
The system and method involve appending log entries, including location data, to data structures associated with digital identities, allowing users to expand their digital identity content with verified information such as travel history, medical records, and other desired aspects.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If conventional digital identities are used, then simplicity and ease of operation are maintained, but the ability to include and verify dynamic information such as travel history and medical records is lost
Solution Approach 1:
The patent implements a nested data structure where log entries are appended within the existing digital identity framework. Each log entry contains nested information (location data, timestamps, verifying party details) within a hierarchical structure that integrates with the parent digital identity data structure, allowing dynamic information storage without completely redesigning the identity system
Solution Approach 2:
The patent segments dynamic information into discrete log entries that can be independently appended to the digital identity. Each log entry represents a separate event or piece of information (e.g., individual travel events, medical records) that can be added, removed, or verified independently, maintaining modularity while expanding functionality
2Reliability
If verified information is appended to digital identities, then reliability and trustworthiness improve, but the complexity of verification processes and data management increases
Solution Approach 1:
The patent incorporates verification information directly into the log entry at the time of creation. The verifying party's identification and verification status are recorded preliminarily within each log entry, eliminating the need for complex real-time verification processes during information retrieval and reducing operational complexity
Solution Approach 2:
The patent introduces an intermediary verification mechanism where third-party verifying parties (such as governments, institutions, or authorized entities) provide their identification within the log entry. This intermediary approach distributes verification responsibility and simplifies the overall system by relying on trusted external entities rather than requiring complex internal verification infrastructure
3Adaptability or versatility
If users can present verified travel history and medical records, then adaptability and versatility of digital identities improve, but the security risks and potential misuse of sensitive information increase
Solution Approach 1:
The patent applies local quality by allowing selective disclosure of information. Users can choose which specific log entries (travel history, medical records, or other verified information) to present to relying parties based on the specific interaction context. This selective disclosure mechanism maintains versatility while reducing security risks by minimizing exposure of sensitive information to only those who need it
Data Source
AI summary
Systems and methods are provided for use in appending log entries to a data structure. One exemplary method includes receiving, at a communication device, a log entry from a terminal and signing the log entry with a private key of a key pair specific to the communication device. The method also includes transmitting the signed log entry to an identity provider (IDP) and receiving, by the communication device, from the IDP, a signed, encrypted log entry. The method further includes verifying, by the communication device, a signature of the signed, encrypted log entry based on a public key associated with a key pair specific to the IDP and then appending the encrypted log entry to a digital identity included in the communication device.


