Shared Mobile Device User Data Partitioning and Access Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Mobile computing devices storing personal information pose a challenge when shared among users, as existing technologies fail to effectively restrict access to private and confidential data while ensuring fast login and personalized experiences for multiple users.
Innovation Solution
A shared mobile computing device employs a combination of sensors and software architecture to detect user intentions and authenticate users, caching user-specific information in partitioned and encrypted local data stores to provide personalized experiences while restricting access to other users' data.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If a mobile device stores personal information for multiple users, then the device can be shared among users, but access control to personal data becomes difficult
Solution Approach 1:
The patent segments user data into separate partitions with unique identifiers, creating isolated storage spaces for each user's personal information. This segmentation enables the device to serve multiple users while maintaining strict access control boundaries, as each user can only access their own partitioned data.
Solution Approach 2:
The patent implements local quality by associating specific data partitions with specific user profiles, where each partition has customized access permissions and encryption keys tied to its owner. This allows the system to provide differentiated access control tailored to each user's personal data requirements.
2Reliability
If the device requires authentication for each user, then data security is improved, but login time increases
Solution Approach 1:
The patent performs preliminary authentication by detecting user identity through sensors (accelerometer, gyroscope, proximity sensor) before formal login, and pre-loads authenticated user profiles into memory. This preliminary action reduces the time required for complete authentication while maintaining security, as the system is already prepared with candidate user profiles when the actual login occurs.
3Productivity
If the device caches user information for fast login, then login speed is improved, but access to other users' data becomes a risk
Solution Approach 1:
The patent segments cached user information into partitioned structures with embedded access control lists and encryption keys. Each cached profile contains only the specific user's data with restricted access permissions, allowing fast retrieval while preventing unauthorized access to other users' cached or non-cached data through the segmented architecture.
4Ease of operation
If the device personalizes experience for each user, then user satisfaction is improved, but system complexity increases
Solution Approach 1:
The patent implements a universal user profile structure that can accommodate multiple users with identical functionality and data types. Each user profile follows the same standardized format with partitioned data storage, authentication mechanisms, and customization options, allowing the system to provide personalized experiences for multiple users through a single unified software architecture rather than separate systems for each user.
Data Source
AI summary
In particular embodiments, two or more users are provided with personalized experiences while using a shared mobile computing device. A login interface is presented for a plurality of users of the shared mobile computing device. When an indication of a login action by a first user of the plurality of users is detected, access to restricted information associated with any other user of the plurality of users is disabled. Cached information associated with the first user is retrieved from a local data store. A personalized user interface is then presented, based on the cached information. Updates to information and/or content may be cached and/or stored remotely. When an indication of a logout action by a first user of the plurality of users is detected, particular information and/or content is flushed from the local data store.


