Secure Content Sharing via Encrypted Access Links

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for sharing electronic information lack control over access and convenience for recipients to provide changes or annotations, often requiring manual reconciliation of revisions and management of user accounts.

Innovation Solution

A computing device encodes a link with encrypted access information, including a password and access rights, allowing secure access to restricted content without creating or modifying user accounts, by matching the encrypted password with a provided password and limiting access to a specified time window.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If copies of electronic information are shared via email or message forms, then sharing convenience is improved, but access control is worsened

Engineering Contradiction:
Improvesharing convenienceVSAvoidaccess control
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces an intermediary system (content sharing system) that mediates between the sender and recipient. The system generates time-limited access links with embedded credentials that enable convenient sharing while maintaining centralized access control. The intermediary manages authentication and authorization without requiring direct account management between parties.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates access credentials (links with embedded passwords and tokens) that replicate authorization without copying the actual content. These credential copies can be distributed freely via email or messaging while the system maintains control over the original content and can revoke access centrally.

Inventive Principle:
Principle #26Copying

2Reliability

If user accounts are created and managed for content sharing, then access control is improved, but device complexity is worsened

Engineering Contradiction:
Improveaccess controlVSAvoidaccount management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication credentials (passwords, tokens, expiration data) from the user account system and embeds them directly in time-limited links. This separates the access control mechanism from account management, allowing temporary access without creating permanent user accounts or modifying existing account structures.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent creates disposable, time-limited access links that expire automatically after use or a set time period. These single-use credentials replace complex account management for temporary access scenarios, eliminating the need to create, maintain, and secure permanent user accounts for one-time sharing.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

3Adaptability or versatility

If revisions are shared through separate email attachments, then sharing flexibility is improved, but time efficiency is worsened

Engineering Contradiction:
Improvesharing flexibilityVSAvoidmanual reconciliation time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent merges multiple versions and revisions of content under a single centralized storage location. All parties access the same content through time-limited links, ensuring that revisions are automatically synchronized without manual merging. The system handles version control centrally while maintaining the flexibility of electronic sharing.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS9258297B2Methods, devices, and mediums for securely sharing restricted content
Publication Date: 2016.02.09 AGFA HEALTHCARE NV
  • US9258297B2 patent drawing
  • US9258297B2 patent drawing
  • US9258297B2 patent drawing

AI summary

A computing device is disclosed for securely sharing restricted content. The computing device includes a memory storing computer readable instructions, and one or more processors configured to execute the computer readable instructions. The computer readable instructions configure the one or more processors to, collectively, receive a share request to share the restricted content; in response to the share request, encode a link with encrypted access information, the access information including a first password and identifying the restricted content; receive an access request for access to the restricted content from a client device executing the link, the access request including the encrypted access information; receive a second password from the client device in association with the access request; and grant the client device access to the restricted content in response to determining the first password matches the second password. A method and a computer readable medium are also disclosed.