Personal Data Access Control Mechanism for Consumer Privacy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Consumers' personal data is often collected and disseminated without their knowledge or consent, leading to strong complaints from advocacy groups and regulatory responses, highlighting the need for consumers to have control over their data and receive benefits in exchange for its use.

Innovation Solution

A method and device using an electronic device, such as an integrated circuit card, to store and manage personal data with a locking and unlocking mechanism, allowing consumers to control access and receive economic benefits, like discounts or loyalty points, when their data is shared with second parties.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If personal data is collected and disseminated without consumer knowledge or permission, then marketing effectiveness is improved, but consumer trust and privacy protection deteriorate

Engineering Contradiction:
Improvemarketing effectivenessVSAvoidconsumer trust and privacy protection
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a data access control mechanism as an intermediary between consumers and marketers. This mechanism includes a locking mechanism that prevents unauthorized access to personal data, and an unlocking mechanism that allows controlled access when consumers provide authorization. The intermediary system enables marketers to access data only with consumer permission, thus maintaining marketing effectiveness while protecting consumer privacy and trust.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements a feedback mechanism where consumers receive information about how their data is being used and can provide ongoing authorization or revocation of access. This feedback loop allows consumers to maintain control over their personal data, ensuring that marketing activities align with their privacy expectations and preferences, thereby preserving trust while enabling effective marketing.

Inventive Principle:
Principle #23Feedback

2Object-affected harmful factors

If consumers are given control mechanisms over their personal data, then privacy protection is improved, but device complexity and operational difficulty increase

Engineering Contradiction:
Improveprivacy protectionVSAvoidcontrol mechanism complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent implements self-service mechanisms where consumers can independently manage their data access rights without requiring technical expertise. The locking and unlocking mechanisms are designed to be easily operated by consumers through simple interactions, such as providing a password or biometric verification. This self-service approach enables consumers to control their privacy without adding significant complexity to their daily lives.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent employs dynamic access control that automatically adjusts data availability based on consumer preferences and authorization states. The system can dynamically lock data when unauthorized access is detected or dynamically unlock data when proper authorization is provided. This dynamic behavior simplifies the user experience by automatically handling complex security protocols while maintaining strong privacy protection.

Inventive Principle:
Principle #15Dynamics

3Productivity

If consumers provide personal data to merchants or marketers, then marketing targeting accuracy is improved, but consumer autonomy and data ownership deteriorate

Engineering Contradiction:
Improvemarketing targeting accuracyVSAvoidconsumer autonomy and data ownership
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The patent segments consumer data into different access levels and authorization scopes. Instead of providing complete data access, the system allows consumers to grant specific, limited-access permissions to marketers for particular purposes. This segmentation maintains marketing targeting accuracy by providing necessary data while preserving consumer autonomy through granular control over data sharing.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements preliminary authorization actions where consumers must explicitly approve data access before marketers can utilize their personal information. This preliminary action ensures that consumers maintain autonomy and ownership of their data, while still allowing accurate marketing targeting when they choose to share their information under controlled conditions.

Inventive Principle:
Principle #10Preliminary action

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

Enables consumers to make informed decisions about data sharing, providing them with control and remuneration, thereby addressing concerns around data privacy and usage while allowing targeted marketing practices that respect consumer consent.

Implementation Method 1

the electronic device includes a transmitter for transmitting the personal data using radio-frequency electromagnetic waves

Methodology Applied
Scientific EffectRadio-frequency electromagnetic waves: Electromagnetic Induction

Data Source

PatentUS8635687B2Method and device for control by consumers over personal data
Publication Date: 2014.01.21 MASTERCARD INT INC
  • US8635687B2 patent drawing
  • US8635687B2 patent drawing
  • US8635687B2 patent drawing

AI summary

There is provided a method and device for providing personal data of first party to a second party. The personal data is stored in an electronic device comprising a mechanism for locking and unlocking access to the personal data and/or condition data stored therein associated with conditions for accessing said personal data. The second party receives the personal data dependent on whether the personal data is in a locked state and/or whether the conditions associated with the condition data are satisfied.