NFC Two-Factor Parental Control for Account Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for controlling access to portable devices, such as shared accounts, are vulnerable to unauthorized use, particularly by children who can obtain PINs without parental knowledge, leading to unintended purchases or access.
Innovation Solution
A two-factor authentication process using near-field communication (NFC) between a master and subordinate device, where the master device must be in close proximity to verify and authorize access, ensuring only authorized access to accounts and applications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a shared secure account with PIN control is used on a portable device, then account security is improved, but unauthorized access by children who obtain the PIN without parental knowledge can still occur
Solution Approach 1:
The patent introduces a parental control device as an intermediary between the child's portable device and the secured account. This intermediary device receives authentication requests, verifies the child's identity, and only grants access when the parent authorizes it. The intermediary layer adds an extra security checkpoint that prevents unauthorized access even if the child obtains the PIN, as the parental control device independently verifies and controls access permissions.
2Reliability
If a PIN is kept secret to prevent unauthorized purchases, then purchase security is improved, but children may still obtain the PIN without parental knowledge
Solution Approach 1:
The parental control device serves as an intermediary that manages authentication credentials separately from the purchase protection mechanism. Instead of relying solely on PIN secrecy, the system uses the intermediary device to verify and control access permissions. The parental control device can independently authenticate the child and grant or deny access without exposing the PIN, thereby maintaining purchase security while allowing controlled access.
Solution Approach 2:
The patent segments the authentication process into separate components: the parental control device handles identity verification and authorization, while the portable device handles the actual purchase transaction. This segmentation allows the PIN to be protected on the portable device while the parental control device manages access permissions through a separate authentication channel, reducing reliance on PIN secrecy alone.
3Reliability
If parental controls are implemented to prevent unauthorized use, then access control is improved, but the system complexity increases with additional authentication requirements
Solution Approach 1:
The parental control device operates autonomously to manage authentication requests. When a child attempts to access a secured account or make a purchase, the parental control device automatically receives the authentication request, verifies the child's identity, and grants or denies access based on pre-configured parental permissions. This self-service capability eliminates the need for parents to manually intervene in each authentication event, reducing the perceived complexity for users while maintaining robust access control.
Applied Scientific Principles
This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.
Function Achieved in This Case
This method provides enhanced security by preventing unauthorized access and allowing parents to monitor and control access to online accounts and software, reducing liability for unintended purchases while allowing temporary access for legitimate purposes.
Implementation Method 1
An indication that a master device is within close proximity to the subordinate device may be obtained via a radio frequency transceiver
Implementation Method 2
The master device may retrieve information from the subordinate device using a radio frequency reader on the master device
Data Source
AI summary
Disclosed is a two-factor method for protecting access to content, device functionality accounts and the like through portable devices. A master device may facilitate a subordinate device's access to the on-line account by situating the master device in close proximity to the unauthorized user's portable device. Once within close proximity of one another, the devices may exchange information that may eventually allow the subordinate device to access an account, an application or the like.


