Geo-aware Authentication via URL and OTP for Secure Data Transmission

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems face challenges in securely transmitting sensitive user data over unsecure or unrecognized channels, particularly when users are uncomfortable sharing information via telephonic systems with unfamiliar administrators.

Innovation Solution

A system that provides 2-factor authentication using a URL link and one-time password (OTP) transmitted to users, allowing secure user information submission while restricting administrator access and utilizing geo-aware components to enhance location-based service execution.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users provide sensitive data over telephonic systems to administrators, then service can be initiated, but security and user comfort are compromised

Engineering Contradiction:
ImprovesecurityVSAvoiduser comfort
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a secure data collection mechanism that acts as an intermediary between the user and administrator. Instead of direct communication over insecure channels, the system uses a dedicated secure interface (web form or mobile app) that encrypts and protects sensitive data transmission, eliminating the need for users to verbally share sensitive information with unrecognized administrators

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent replaces the traditional telephonic (acoustic) communication channel with a digital electronic system. Sensitive data is transmitted through encrypted digital channels via web forms or mobile applications, substituting the insecure voice-based mechanical system with a secure electronic data transmission system that provides authentication and encryption

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Productivity

If administrators have full access to user information, then service delivery is efficient, but information security is compromised

Engineering Contradiction:
Improveservice efficiencyVSAvoidinformation security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent implements role-based access control where different administrators have different levels of access to user information. The system encrypts sensitive data and selectively decrypts only the portions needed for specific service tasks, ensuring that administrators access only the minimum necessary information for their specific function while maintaining overall service efficiency

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent segments user information into different categories and access levels. Sensitive data is encrypted and divided into segments that are only accessible to authorized personnel who need specific portions for service delivery. This segmentation allows efficient service delivery while maintaining security through controlled access to different information segments

Inventive Principle:
Principle #1Segmentation

3Reliability

If traditional authentication methods are used, then system simplicity is maintained, but security against unauthorized access is insufficient

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements preliminary authentication actions before data collection or service initiation. The system pre-establishes secure sessions, pre-authenticates users through multiple factors, and pre-encrypts data channels before any sensitive information is exchanged. This preliminary security setup prevents unauthorized access while maintaining a simple user experience during the actual service interaction

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11552958B2Geo-aware capture with reduced personal information disclosure
Publication Date: 2023.01.10 BANK OF AMERICA CORP
  • US11552958B2 patent drawing
  • US11552958B2 patent drawing
  • US11552958B2 patent drawing

AI summary

Systems and methods for authenticating and executing a user request with increased security and efficiency are provided. A method may include receiving a selection from a user to restrict informational access of a selected administrator who is logged in to a system network, and locking access of the administrator to secure user information. The method may also include receiving, from the user, limited identifying information, and transmitting to the user, based on the limited identifying information, a uniform resource locator (URL) link and a one-time password (OTP). The method may also include achieving 2-factor authentication when the user accesses the URL link and submits the OTP, and receiving from the user the secure user information and a service request. In response to receiving the secure user information and the service request, the method may include executing a response to the service request via the system network.