Identity Network for Cross-Platform Digital Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for user authentication online lack security, consistency, and ease of use, with disparate systems among companies and inadequate verification by trusted sources.

Innovation Solution

A system utilizing an identity network that validates a digital identity of a user by receiving a device identifier and identity attributes, identifying an associated identity provider, and generating a confidence score through comparisons and external verifications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Device complexity

If current piecemeal authentication methods are used by each company, then device complexity is reduced, but security and consistency deteriorate

Engineering Contradiction:
Improveauthentication system complexityVSAvoidsecurity
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The patent introduces a centralized identity network as an intermediary between users and multiple companies. This network issues digital identity credentials that are recognized across different platforms, replacing the need for each company to implement separate authentication systems. The identity network acts as a trusted mediator that ensures security and consistency while allowing individual companies to use simpler authentication mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The digital identity credential issued by the identity network serves multiple functions across different companies and platforms. A single digital identity can be used for authentication, authorization, and verification across numerous services, eliminating the need for separate authentication systems at each company while maintaining high security standards through the centralized identity network.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of operation

If traditional authentication methods are used, then ease of operation is improved, but security deteriorates

Engineering Contradiction:
Improveuser convenienceVSAvoidverification security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system enables users to self-manage their digital identities through the identity network. Users can store, protect, and present their own identity credentials without requiring manual verification by each company. The self-contained digital identity includes all necessary verification information, allowing users to authenticate themselves securely across multiple platforms while maintaining full control over their personal data.

Inventive Principle:
Principle #25Self-service

3Adaptability or versatility

If multiple separate authentication systems are implemented, then adaptability is improved, but device complexity worsens

Engineering Contradiction:
Improvecross-platform compatibilityVSAvoidauthentication infrastructure
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The authentication system is segmented into two distinct components: a centralized identity network that issues and manages digital credentials, and simple authentication clients at each company that verify these credentials. This segmentation allows the complex identity management functionality to be concentrated in the identity network, while individual companies can implement lightweight verification systems, achieving cross-platform compatibility without proportional increases in overall system complexity.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS20250150454A1Digital identity step-up
Publication Date: 2025.05.08 EARLY WARNING SERVICES LLC
  • US20250150454A1 patent drawing
  • US20250150454A1 patent drawing
  • US20250150454A1 patent drawing

AI summary

Described herein is an identity network for validating the digital identity of a user. The identity network may receive, from a relying party, an identity validation request to validate a digital identity of the user. The identity network may provide, to the relying party, a link associated with an identity provider application based on the identity validation request. The identity network may receive, from an identity provider associated with the identity provider application, a confirmation that the user has successfully accessed the identity provider application via the link. After receiving the confirmation, the identity network may receive from the identity provider, an attribute validation request to validate identity attributes of the user, where the attribute validation request includes a plurality of identity attributes of the user. The identity network may validate the digital identity of the user based on the plurality of identity attributes.