Encrypted Manifests for Privacy-Preserving Targeted Asset Delivery

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Providers of targeted media content face challenges in protecting individuals' privacy while delivering targeted assets, as regulations restrict access to personally identifiable information (PII) and behavioral data, and consumers increasingly demand privacy protection.

Innovation Solution

A system where a client generates a profile based on a template framework for user characteristics, encrypts a manifest identifying targeted assets, and decrypts it to request relevant assets without sharing PII or behavioral data, ensuring privacy and compliance with regulations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If providers access PII and behavioral data to deliver targeted assets, then targeting effectiveness is improved, but privacy protection deteriorates

Engineering Contradiction:
Improvetargeting effectivenessVSAvoidprivacy violation
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The patent introduces encrypted manifests as an intermediary mechanism that enables targeted asset delivery without direct access to PII. The manifest contains encrypted identifiers that match against encrypted user profiles, allowing the system to determine targeting eligibility without exposing actual personal information. This intermediary layer resolves the contradiction by enabling precise targeting through cryptographic matching while maintaining privacy through encryption.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent transforms the targeting mechanism from direct PII comparison to encrypted parameter matching. User profiles and manifests are converted to encrypted representations where matching occurs on cryptographic parameters rather than raw personal data. This parameter transformation allows the system to maintain targeting precision while changing the state of data from plaintext PII to encrypted identifiers, thus protecting privacy.

Inventive Principle:
Principle #35Parameter changes

2Object-affected harmful factors

If regulations restrict access to PII, then privacy protection is improved, but ability to reach target audience deteriorates

Engineering Contradiction:
Improveprivacy protectionVSAvoidtargeted asset delivery effectiveness
Core Design Contradiction:
Object-affected harmful factorsVSProductivity

Solution Approach 1:

The patent creates encrypted copies of user profile data that can be used for targeting decisions without accessing original PII. Instead of restricting all data access, the system generates cryptographic representations (encrypted manifests and profile data) that replicate the necessary information for targeting while maintaining privacy through encryption. This copying approach allows regulated systems to maintain productivity by working with encrypted data copies rather than blocked plaintext data.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

Encrypted manifests serve as an intermediary that bridges regulatory restrictions and targeting needs. The manifest contains encrypted asset identifiers and matching criteria that enable the system to deliver targeted assets compliance with privacy regulations. This intermediary mechanism resolves the contradiction by allowing effective targeted delivery through encrypted matching while adhering to access restrictions on actual PII.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Object-affected harmful factors

If consumers demand more privacy regulation, then privacy protection is improved, but business compliance complexity deteriorates

Engineering Contradiction:
Improveprivacy protectionVSAvoidcompliance system complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent implements self-service privacy protection where the encryption and decryption capabilities are built into the client device itself. User profiles are encrypted locally, and the device autonomously performs matching operations using encrypted manifests without requiring complex external compliance verification. This self-service approach reduces compliance complexity by embedding privacy protection directly in the execution environment rather than requiring external regulatory oversight mechanisms.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The encrypted manifest acts as a compliance intermediary that simplifies regulatory adherence. Rather than requiring complex verification systems to ensure privacy compliance, the patent uses cryptographic primitives (encrypted manifests and profile matching) that inherently protect privacy. The encryption itself serves as the compliance mechanism, reducing system complexity compared to traditional approaches that would require multiple verification layers and administrative controls.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10366411B2Protecting privacy of personally identifying information when delivering targeted assets
Publication Date: 2019.07.30 MICROSOFT TECHNOLOGY LICENSING LLC
  • US10366411B2 patent drawing
  • US10366411B2 patent drawing
  • US10366411B2 patent drawing

AI summary

Techniques are disclosed herein for protecting personally identifying information (PII) and behavioral data while delivering targeted assets. In one aspect, a profile is created based on a template and desired characteristics of users to receive one or more targeted assets. The template provides a framework for the user characteristics. One or more clients are provided the template. A manifest that identifies the targeted assets is encrypted based on the profile. The encrypted manifest is sent to the one or more clients. A user profile is generated at a client based on a template. The client attempts to decrypt the encrypted manifest based on the profile created at the client. The client sends a request for any targeted assets that were identified through the attempt to decrypt the encrypted manifest.