Push Notification Data Access Control System

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in managing and controlling their personal data across multiple accounts, including varying data retention and sharing policies, risk of data breaches, forgotten accounts, and security concerns due to reused passwords, as well as the complexity of organizing and updating information across different entities.

Innovation Solution

A system and method that allows users to control the flow, use, and storage of user information through push notifications, enabling users to grant or deny access, manage encryption, and monitor data breaches, with features like time-based, location-based, or hardware profile-based decryption, and automatic deletion or extension of data access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If users share personal information with multiple entities for various services, then users can access more services and functionality, but the risk of data breaches and loss of user control increases

Engineering Contradiction:
Improveservice accessibilityVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a notification system as an intermediary between data storage entities and users. When an entity requests user data, the system sends a push notification to the user's device for approval. This mediator mechanism allows users to maintain control over their data while enabling service accessibility, as users can selectively approve or deny data access requests without being unable to use services.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If entities retain user data for extended periods or across multiple uses, then service functionality and user convenience improve, but user control and privacy protection deteriorate

Engineering Contradiction:
Improveuser convenienceVSAvoiduser control
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic user control over data access by allowing users to set different permission levels for each entity and each use case. Users can grant access for a single use, multiple uses, or indefinite periods, and can modify or revoke permissions at any time through the notification system. This dynamic approach enables users to balance convenience with control, adjusting data sharing parameters as needed rather than being locked into static permission settings.

Inventive Principle:
Principle #15Dynamics

3Measurement precision

If users manually manage and update information across multiple accounts, then data accuracy can be maintained, but time consumption and operational complexity increase

Engineering Contradiction:
Improvedata accuracyVSAvoidtime for account management
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The patent combines multiple account management functions into a single centralized notification system. Instead of users manually logging into each entity to update information, the system consolidates data access requests, approval mechanisms, and permission management into one interface. Users can manage all their data sharing preferences across multiple entities through a single system, significantly reducing the time and effort required while maintaining data accuracy through centralized control.

Inventive Principle:
Principle #5Merging (Combining)

4Reliability

If entities implement strict data access controls and encryption, then data security improves, but system complexity and operational overhead increase

Engineering Contradiction:
Improvedata securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a self-service notification system where users automatically receive and respond to data access requests through push notifications. The system autonomously manages the approval workflow, sending notifications to users and automatically granting or denying access based on user responses. This self-service mechanism reduces the need for complex manual security protocols and operational overhead, as the system handles security management automatically while maintaining strong encryption and access controls.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11296880B2System, method, and computer-accessible medium for actionable push notifications
Publication Date: 2022.04.05 CAPITAL ONE SERVICES LLC
  • US11296880B2 patent drawing
  • US11296880B2 patent drawing
  • US11296880B2 patent drawing

AI summary

An exemplary system, method, and computer-accessible medium can include, for example, receiving at a first entity from a second entity, a first request for encrypted user information associated with at least one user, wherein the first request includes a user identifier associated with the at least one user, and wherein the first entity is different from the second entity, sending, from the first entity, a second request to a user device associated with the at least one user, wherein the second request includes a notification to the at least one user for an affirmation of the first request or a denial of the first request, receiving at the first entity from the user device, the affirmation or the denial, and sending, from the first entity to the second entity, (i) the encrypted user information if the affirmation is received or (ii) a denied notification if the denial is received.