Identity Protection System Using QR Code Profiles

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for secure and efficient systems to transfer user information to merchants while maintaining secrecy from external parties, as existing methods often expose personal information during transactions.

Innovation Solution

A system that uses a mobile device to generate and present readable indicia, such as QR codes, which encode user information, allowing merchants to retrieve this information securely through authentication, with the option to select profiles controlling the amount of data shared and enabling updates to user information stored on a central server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If user information is transferred directly during transactions, then transaction efficiency is improved, but user privacy and security are compromised

Engineering Contradiction:
Improvetransaction efficiencyVSAvoidprivacy exposure
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a third-party server as an intermediary between the user's mobile device and the merchant. The server stores user information and provides it to merchants only when authorized through readable indicia (such as QR codes), enabling secure information transfer without direct exposure of personal data during transactions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses readable indicia (visual codes) as a copy or representation of user information. Instead of transferring actual personal data directly, the system transfers encoded indicia that can be read and processed to retrieve information from the server, maintaining security while enabling information exchange.

Inventive Principle:
Principle #26Copying

2Loss of information

If all user information is provided to merchants, then information completeness is improved, but user privacy control is reduced

Engineering Contradiction:
Improveinformation completenessVSAvoidprivacy loss
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The patent segments user information into different categories and allows selective disclosure. Users can choose which types of information to share with merchants based on the transaction context, rather than providing all available data. The system stores multiple data types separately and retrieves only what is necessary.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system provides partial information (only what is needed for the specific transaction) rather than complete information. Users have control over the level of detail shared, allowing them to provide minimal necessary information while maintaining privacy for other data.

Inventive Principle:
Principle #16Partial or excessive action

3Speed

If user information is stored locally on mobile devices, then access speed is improved, but security and centralized management are reduced

Engineering Contradiction:
Improveinformation access speedVSAvoiddata security
Core Design Contradiction:
SpeedVSReliability

Solution Approach 1:

The patent uses a centralized server as an intermediary storage location for user information. The server securely stores data and provides fast access through encoded indicia, combining the security of centralized management with the speed of quick information retrieval during transactions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

User information is pre-stored and organized on the centralized server before transactions occur. This preliminary organization allows for rapid retrieval and delivery of information during actual transactions, eliminating the need for real-time data collection while maintaining security.

Inventive Principle:
Principle #10Preliminary action

4Adaptability or versatility

If multiple profiles are stored for different scenarios, then adaptability is improved, but system complexity increases

Engineering Contradiction:
Improvescenario adaptabilityVSAvoidprofile management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments user information into multiple distinct profiles, each tailored for specific scenarios or transaction types. Users can select which profile to activate based on the situation, allowing the system to adapt to different needs without managing all data simultaneously in a single complex structure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system dynamically switches between different user profiles based on transaction context. Users can select or be assigned different profiles for different scenarios (e.g., retail, service, payment), allowing flexible adaptation while the system manages complexity by loading only the necessary profile data into memory.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9106615B2Identity protection and distribution system
Publication Date: 2015.08.11 BANK OF AMERICA CORP
  • US9106615B2 patent drawing
  • US9106615B2 patent drawing
  • US9106615B2 patent drawing

AI summary

Embodiments of the invention are directed to systems, methods and computer program products for providing user information to a merchant. Embodiments may receive and store user information in a user file, receive a request from a merchant for some or all of the user information stored in the user file in response to the merchant reading a readable indicia presented by a user using a mobile device; and, in response to the request for some or all the user information, retrieve the requested information and transmit the requested information to the merchant. Embodiments may receive and store a plurality of profiles, where each profile is associated with some or all the user information stored in the user file. Some embodiments may receive user input, through the merchant, selecting one of the profiles; where retrieving the requested information comprises retrieving the user information associated with the selected profile.