Proxy Identifier Discovery for Secure Short-Range Payments
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic payment transaction platforms face challenges in conducting transient-type transactions among proximally located computing devices while minimizing the exchange of personally identifiable or persistent data.
Innovation Solution
A short-range transfer system using a transaction coordinator system to generate and map proxy user discovery identifiers for associating with user transaction identifiers on a session-by-session or time-limited basis, reducing the need for sharing personally identifiable information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If user transaction identifiers are shared directly among proximally located devices for electronic payment transactions, then transaction efficiency and device discovery speed are improved, but user privacy and security are compromised due to exchange of personally identifiable information
Solution Approach 1:
The patent introduces a transaction coordinator system as an intermediary that mediates between proximal devices. Instead of devices directly sharing user transaction identifiers, they communicate through the coordinator which generates and manages proxy identifiers. This intermediary layer enables transactions to proceed efficiently while preventing direct exposure of personally identifiable information between devices.
Solution Approach 2:
The patent creates proxy user discovery identifiers that are copies or representations of the actual user transaction identifiers. These proxy identifiers functionally replace the real identifiers in the discovery and initial transaction process, allowing devices to identify and transact with each other without handling or storing the actual personally identifiable user identifiers, thus maintaining privacy while enabling functionality.
2Object-affected harmful factors
If proxy user discovery identifiers are generated on a session-by-session basis, then user privacy is protected by reducing persistent data sharing, but system complexity increases due to session management requirements
Solution Approach 1:
The transaction coordinator system serves as a centralized intermediary that manages the creation, distribution, and revocation of session-specific proxy identifiers. By centralizing this management function, the complexity of tracking and managing multiple sessions across multiple devices is consolidated in one system rather than distributed across all participating devices, making the overall system more manageable despite the increased sophistication required.
3Reliability
If time-limited proxy identifiers are used for device discovery, then security is enhanced by limiting the validity period of identifiers, but transaction reliability may be reduced due to identifier expiration during prolonged transactions
Solution Approach 1:
The patent implements dynamic proxy identifiers whose validity periods and renewal characteristics are adjusted based on transaction context. The system can extend identifier validity, allow renewal, or adjust expiration timing based on whether the transaction is completing successfully or encountering delays. This dynamic approach maintains security through time-limited identifiers while preventing premature expiration from compromising ongoing legitimate transactions.
Data Source
AI summary
A device comprising a communication circuit, a processor, and a memory coupled to the processor. The memory stores processor-executable instructions that configure the processor to: receive an invocation of a short-range data process; transmit, to an account server, a request for a transaction coordinator authentication token; receive, from the account server, a signed transaction coordinator authentication token including a user transaction identifier associated with a user account at the account server; transmit, to a transaction coordinator system, the signed transaction coordinator authentication token; receive verification of the signed transaction coordinator token, the received verification comprising initialization data including a proxy user discovery identifier associated with the user transaction identifier and an alias identifier; and communicate a discovery packet via a short-range network, the discovery packet including the proxy user discovery identifier and a data flag indicating that the discovery packet includes discovery data for the downstream short-range transfer.


