Consent-Based Identity Attribute Sharing for Trusted Login Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current online authentication methods lack security, consistency, and ease of use, with companies struggling to verify user identities effectively due to disparate systems and password-based verification methods.
Innovation Solution
A system that leverages trusted identity providers, such as banks and/or other financial institutions, to authenticate users using identity providers, such as banks, and/or other financial institutions, to provide secure techniques for a relying party, such as insurance companies, retailers, and/or other financial institutions, to authenticate users.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If each company handles authentication piecemeal with their own systems, then companies can maintain control over their authentication processes, but security and consistency are compromised due to lack of verification by a trusted source
Solution Approach 1:
The patent introduces a trusted identity provider as an intermediary between users and relying parties. This mediator verifies user identities using government-issued credentials and provides verified identity information to relying parties, thereby improving authentication security without requiring each company to build complex verification systems from scratch.
Solution Approach 2:
The patent creates a universal authentication system where a single identity provider can serve multiple relying parties across different industries. This multi-functional approach allows one trusted source to provide authentication services to various companies, improving consistency and security while reducing overall system complexity.
2Ease of operation
If current password-based verification methods are used, then companies can implement authentication, but ease of use is reduced due to security concerns and inconsistent verification processes
Solution Approach 1:
The patent implements preliminary verification where the identity provider validates government-issued credentials and establishes verified identity information before the user interacts with relying parties. This pre-verification process ensures reliability while making subsequent authentication convenient for users, as their identity is already confirmed.
Solution Approach 2:
The patent creates verified copies of government-issued identity information that can be securely shared with multiple relying parties. Instead of users repeatedly providing original documents or passwords, a verified digital copy is generated and shared, improving both ease of use and verification reliability.
3Reliability
If companies use disparate authentication systems, then each company can customize their approach, but consistency and coverage of identity verification are reduced
Solution Approach 1:
The patent establishes a universal identity verification system that maintains consistent standards across all relying parties while allowing each company to choose which verified identity attributes they need. This approach ensures consistency in verification reliability while preserving adaptability to different business requirements.
4Adaptability or versatility
If current online identity verification methods are used, then authentication can be performed, but coverage, validity, and usability are considerably reduced
Solution Approach 1:
The patent introduces a trusted identity provider as an intermediary that handles the complex verification process, improving usability for end users. The mediator accepts various government-issued credentials (expanding coverage) and manages the verification complexity, allowing users to authenticate easily across different platforms.
Data Source
AI summary
A method for sharing digital identity data, the method comprising, using an identity network, receiving a sign-up request for a user from a relying party, providing, for display to a user interface of a user device, a list of identity providers, in response to receiving a selection of the identity provider from the list of identity providers, causing the user interface to display a login page associated with the selected identity provider, receiving, from the selected identity provider, a plurality of identity attributes associated with the user, providing, for display to the user interface, the plurality of identity attributes associated with the user, receiving consent from the user to share the plurality of identity attributes associated with the user with the relying party, and redirecting the user interface to a page associated with the relying party.


