Immutable Ledger Consent Management for Centralized Permission Tracking

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in managing and tracking their data consent across multiple platforms, leading to inefficiencies, redundancy, and increased computational and security risks due to the lack of a centralized and secure system for consent management.

Innovation Solution

A centralized consent database using an immutable ledger to store and manage user data consent, allowing users to track and revoke permissions easily, while providing standardized consent formats for requesters and providers, thereby reducing computational resources and enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If each individual data holder stores and keeps track of permissions granted by each user, then users can grant permissions to individual websites, but this leads to increased computational resources, redundancy, and security risks

Engineering Contradiction:
Improvepermission managementVSAvoidcomputational resources
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent consolidates permission tracking across multiple data holders into a single centralized permission database. Instead of each data holder maintaining separate permission records, all permissions are stored and managed in one centralized location, eliminating redundancy and reducing computational resources required across the system.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The centralized permission database serves as a universal system that handles permission management for multiple data holders and users simultaneously. This single system performs the function that previously required multiple separate tracking systems, improving efficiency and reducing overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of operation

If each individual data holder stores and keeps track of permissions granted by each user, then users can grant permissions to individual websites, but this leads to increased security risks

Engineering Contradiction:
Improvepermission managementVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

By merging permission storage into a single centralized database with immutable ledger technology, the system eliminates multiple points of vulnerability that existed when each data holder maintained separate permission records. The centralized approach with cryptographic verification provides stronger security guarantees.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent introduces a centralized permission database as an intermediary between users and data holders. This mediator verifies and enforces permission rules centrally, preventing security issues that arise when individual data holders independently manage permissions without standardized verification.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of operation

If users grant permissions to individual websites with little ability to verify how their data is being used, then users can easily grant consent, but users cannot track or revoke permissions easily

Engineering Contradiction:
Improveconsent grantingVSAvoidpermission tracking
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The centralized permission database provides real-time feedback to users about their granted permissions through a user interface. Users can view, track, and revoke permissions at any time, with the system immediately updating the permission status and notifying relevant data holders. This feedback loop solves the problem of users being unable to monitor their data usage.

Inventive Principle:
Principle #23Feedback

4Adaptability or versatility

If no centralized system is used for consent management, then each data holder operates independently, but this leads to lack of uniformity and traceability of data use

Engineering Contradiction:
Improvesystem independenceVSAvoiduniformity
Core Design Contradiction:
Adaptability or versatilityVSManufacturing precision

Solution Approach 1:

The centralized permission database implements universal permission management rules that apply across all data holders uniformly. The immutable ledger ensures consistent tracking and verification of permissions throughout the system, eliminating variations in how different data holders manage consent while maintaining standardized processes.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS12353596B2System, method, and computer program product for consent management
Publication Date: 2025.07.08 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US12353596B2 patent drawing
  • US12353596B2 patent drawing
  • US12353596B2 patent drawing

AI summary

A system, method, and computer program product are provided for consent management. A method may include receiving a first data request for user data associated with a user, the user data stored in a user data database; communicating a consent request to the requester system; receiving a consent response from the requester system; storing consent data associated with the consent response for the user data requested in the first data request in an immutable ledger; receiving a consent verification request from the user data database, the consent verification request based on a second data request for the user data from the requester system to the user data database; verifying the consent verification request based on the consent data; and communicating a consent verification response to the user data database, the consent verification response indicating consent from the user to share the user data with the requester system.