Geo-aware Authentication via URL and OTP for Secure Data Transmission
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems face challenges in securely transmitting sensitive user data over unsecure or unrecognized channels, particularly when users are uncomfortable sharing information via telephonic systems with unfamiliar administrators.
Innovation Solution
A system that provides 2-factor authentication using a URL link and one-time password (OTP) transmitted to users, allowing secure user information submission while restricting administrator access and utilizing geo-aware components to enhance location-based service execution.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users provide sensitive data over telephonic systems to administrators, then service can be initiated, but security and user comfort are compromised
Solution Approach 1:
The patent introduces a secure data collection mechanism that acts as an intermediary between the user and administrator. Instead of direct communication over insecure channels, the system uses a dedicated secure interface (web form or mobile app) that encrypts and protects sensitive data transmission, eliminating the need for users to verbally share sensitive information with unrecognized administrators
Solution Approach 2:
The patent replaces the traditional telephonic (acoustic) communication channel with a digital electronic system. Sensitive data is transmitted through encrypted digital channels via web forms or mobile applications, substituting the insecure voice-based mechanical system with a secure electronic data transmission system that provides authentication and encryption
2Productivity
If administrators have full access to user information, then service delivery is efficient, but information security is compromised
Solution Approach 1:
The patent implements role-based access control where different administrators have different levels of access to user information. The system encrypts sensitive data and selectively decrypts only the portions needed for specific service tasks, ensuring that administrators access only the minimum necessary information for their specific function while maintaining overall service efficiency
Solution Approach 2:
The patent segments user information into different categories and access levels. Sensitive data is encrypted and divided into segments that are only accessible to authorized personnel who need specific portions for service delivery. This segmentation allows efficient service delivery while maintaining security through controlled access to different information segments
3Reliability
If traditional authentication methods are used, then system simplicity is maintained, but security against unauthorized access is insufficient
Solution Approach 1:
The patent implements preliminary authentication actions before data collection or service initiation. The system pre-establishes secure sessions, pre-authenticates users through multiple factors, and pre-encrypts data channels before any sensitive information is exchanged. This preliminary security setup prevents unauthorized access while maintaining a simple user experience during the actual service interaction
Data Source
AI summary
Systems and methods for authenticating and executing a user request with increased security and efficiency are provided. A method may include receiving a selection from a user to restrict informational access of a selected administrator who is logged in to a system network, and locking access of the administrator to secure user information. The method may also include receiving, from the user, limited identifying information, and transmitting to the user, based on the limited identifying information, a uniform resource locator (URL) link and a one-time password (OTP). The method may also include achieving 2-factor authentication when the user accesses the URL link and submits the OTP, and receiving from the user the secure user information and a service request. In response to receiving the secure user information and the service request, the method may include executing a response to the service request via the system network.


