Mobile App Access Control via Controlled Shell Categorization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
There is a need to protect children from accessing inappropriate applications on mobile devices, as they often contain mature content that can be harmful to their development and safety.
Innovation Solution
A system and method for controlling access to applications on mobile devices by categorizing them based on usage policies, where a controlled shell collects information about applications, determines their category designation, and blocks or permits access according to predefined rules, including restrictions on time, location, and resource usage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Object-affected harmful factors
If parental control technologies are implemented to block inappropriate applications, then child safety is improved, but device functionality and user freedom deteriorate
Solution Approach 1:
The system changes the parameter of application categorization by analyzing multiple attributes (metadata, hash sums, content analysis) to assign age-appropriate category designations. This allows differential access control based on application characteristics rather than uniform blocking, resolving the contradiction between safety and functionality.
Solution Approach 2:
The controlled shell applies different access control rules to different applications based on their category designations. Instead of uniform blocking, each application receives localized quality control appropriate to its content rating, allowing children to access age-appropriate applications while blocking inappropriate ones.
2Measurement precision
If comprehensive application analysis is performed to determine category designation, then categorization accuracy is improved, but processing time and system complexity worsen
Solution Approach 1:
The controlled shell performs preliminary analysis of application attributes (metadata, hash sums, content) during installation or first launch to determine category designation. This preliminary action stores the categorization result for future use, avoiding repeated analysis and reducing launch delays while maintaining accurate categorization.
Solution Approach 2:
The analysis process is segmented into multiple stages: collecting application attributes, determining category designation, and storing results. This segmentation allows the system to perform comprehensive analysis only when necessary (installation/first launch) rather than continuously, reducing processing time for subsequent application launches.
3Reliability
If usage policy rules are strictly enforced to block prohibited applications, then child protection is improved, but user flexibility and adaptability deteriorate
Solution Approach 1:
The usage policy rules are implemented dynamically, allowing parents to configure which category designations are permitted or prohibited. The controlled shell adapts its blocking behavior based on these configurable policies, providing consistent enforcement of selected rules while allowing flexibility in policy selection. Parents can adjust policies as children grow, maintaining reliability while enabling adaptability.
Data Source
AI summary
Disclosed are systems and methods for controlling access to applications of a mobile device. An example method includes collecting, by a controlled shell of an OS of the mobile device, information about an application of the user device; determining a category designation of the application based on the collected information; determining, by the controlled shell, whether the category designation of the application complies with one or more rules of a usage policy of the mobile device; blocking user access to the application if it is determined that a rule exists prohibiting use of applications in the designated category or if no rule exists permitting use of the applications in the designated category; and permitting user access to the application if it is determined that a rule exists allowing use of applications in the designated category or if no rule exists prohibiting use of the applications in the designated category.


