Jurisdictional Data Tokenization for Cross-Border Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional systems fail to allow data management across jurisdictional boundaries while maintaining complete control over sensitive data usage by the originating jurisdiction, leading to either inadequate security or reduced flexibility.

Innovation Solution

A data management system that tokenizes sensitive data before transfer across jurisdictions, allowing the originating jurisdiction to control access and usage through a centralized detokenization process, ensuring compliance and auditability.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If sensitive data is stored outside the originating jurisdiction, then data management flexibility is improved, but data security and control are worsened

Engineering Contradiction:
Improvedata management flexibilityVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The data is segmented into two components: the original sensitive data remains in the originating jurisdiction, while only tokenized representations (non-sensitive substitutes) are transferred to external storage locations. This segmentation allows external data management flexibility while maintaining security through jurisdictional boundaries, as the tokenized form cannot be used for unauthorized purposes without the original data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A tokenization intermediary process is introduced between the sensitive data and its external storage. The tokenization system acts as a mediator that transforms sensitive data into non-sensitive tokens before external transfer, and can restore the original data only when authorized by the originating jurisdiction. This intermediary mechanism enables external data usage while maintaining security control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If sensitive data is kept within the originating jurisdiction, then data security is improved, but data management flexibility is worsened

Engineering Contradiction:
Improvedata securityVSAvoiddata management flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

Instead of transferring the original sensitive data, the system creates and transfers a copy in the form of a tokenized representation. This tokenized copy contains all necessary information for external data management operations but lacks the sensitivity of the original data. The originating jurisdiction maintains the only copy of the actual sensitive data, ensuring security while enabling flexible external usage through the tokenized copy.

Inventive Principle:
Principle #26Copying

3Productivity

If data is transferred across jurisdictional boundaries, then global data usage is improved, but compliance with regional regulations is worsened

Engineering Contradiction:
Improveglobal data usageVSAvoidregulatory compliance
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The data undergoes a parameter change through tokenization, transforming from sensitive personal data to non-sensitive tokenized data. This parameter transformation allows the data to be transferred across jurisdictional boundaries for global usage while meeting regulatory requirements, as the tokenized form no longer constitutes protected personal data under most privacy regulations. The originating jurisdiction can control compliance by managing the tokenization process and authorization for data restoration.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20250363233A1Data management platform
Publication Date: 2025.11.27 CITIBANK N A
  • US20250363233A1 patent drawing
  • US20250363233A1 patent drawing
  • US20250363233A1 patent drawing

AI summary

A network system to allow global usage of data while allowing regional jurisdictions control over sensitive data. Different jurisdictions may declare different types of data as sensitive data that is not to be discoverable by a third party. The system allows the data to be shared across jurisdiction boundaries with complete auditability, traceability, and compliance. The system allows a first jurisdiction computing device to control the usage of the data that is stored outside of the jurisdiction. The technology allows the first jurisdiction to propagate rules, tokenization protocols, and updates to the system to manage the sensitive data. The system detokenizes the data when the data is to be used for an approved purpose by an approved party. If the original jurisdiction has a change in permissions for sensitive data, the jurisdiction can propagate a tokenization to all data stored in the data management system outside of the jurisdiction.