In-App Identity Verification Using Biometric Intermediaries
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current user verification processes in mobile applications are cumbersome and insecure, requiring users to leave the application to provide verification credentials, especially when managing secondary accounts, particularly for minors, leading to security concerns and user inconvenience.
Innovation Solution
A method for in-application user identity verification that receives a request for identity verification for a secondary account, identifies payment registration characteristics, and uses biometric challenges or verification questions to authenticate the primary account user, generating a payment verification token for authorization, allowing actions to proceed without leaving the application.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users are required to leave the application to provide verification credentials, then identity verification security is improved, but user convenience and ease of operation deteriorate
Solution Approach 1:
The patent introduces a biometric authentication intermediary that bridges security verification and user convenience. The biometric data (fingerprint, facial recognition, etc.) serves as a mediator that can be verified within the application without requiring users to leave, thereby maintaining security while improving ease of operation. The biometric authentication system acts as an intermediary layer that validates identity credentials locally within the app environment.
Solution Approach 2:
The patent replaces the mechanical system of manually navigating to external verification applications with an automated biometric authentication system. Instead of requiring users to physically switch between applications and manually input credentials, the system substitutes this mechanical process with automated biometric scanning and verification, significantly improving user convenience while maintaining verification security.
2Reliability
If multiple verification steps are implemented for secondary accounts, then security against unauthorized access is improved, but verification time and process complexity increase
Solution Approach 1:
The patent implements preliminary action by requiring primary account holders to pre-register biometric authentication data and approve secondary account creations in advance. This preliminary setup ensures that when secondary accounts need to perform actions, the verification process is already prepared and can proceed quickly using the pre-registered biometric data, thus maintaining high security while reducing actual verification time during operations.
Solution Approach 2:
The patent applies partial action by implementing different levels of verification based on the specific context and risk assessment. Not all secondary account actions require the full multi-step verification process; instead, the system selectively applies verification steps based on the nature of the action being performed, reducing unnecessary verification time while maintaining appropriate security levels for each specific case.
3Ease of operation
If biometric authentication is integrated within the application, then ease of operation is improved, but device complexity and implementation difficulty increase
Solution Approach 1:
The patent leverages the universality of modern mobile devices by utilizing built-in biometric authentication capabilities (fingerprint sensors, facial recognition systems) that are already present in most contemporary smartphones. By relying on these universal, pre-existing hardware features rather than implementing custom biometric systems, the patent achieves in-application verification ease while minimizing the increase in device complexity. The solution works across multiple device platforms without requiring proprietary hardware modifications.
Data Source
AI summary
Representative embodiments set forth techniques for verifying an identity of a primary user of a primary account on a client device. A method may include receiving, for the primary account, a request for identity verification responsive to an action of a secondary account associated with the primary account and identifying a payment registration characteristic of a payment registration associated with the primary account. The method also includes retrieving identity information associated with the primary account based on the payment registration characteristic and, in response to a determination that the identity information corresponds to a verification indicator, verifying an identity of a user of the primary account. The method also includes, in response to verifying the identity of the user of the primary account, generating a payment verification token and associating the payment verification token with an authorization indication for the action of the secondary account.


