Scan-to-Login Authentication via Optical Credential Transfer

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems fail to seamlessly transfer user profile information from messaging applications on mobile devices to third-party applications on other devices, such as gaming consoles, requiring users to navigate multiple screens and input credentials, which compromises security and increases complexity.

Innovation Solution

A scan-to-login system that uses a graphic representation of a unique registration code displayed on a second device, allowing the messaging application on a mobile device to authorize access to user profile information without requiring users to input credentials, by capturing an image of the code and using a URL associated with it to authenticate the third-party application.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users manually input credentials to transfer profile information between applications, then authentication can be completed, but security is compromised and user complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoiduser complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a camera as an intermediary device to transfer authentication credentials. Instead of manually typing credentials, the user captures an image of the credential code displayed on the server using the camera, which then automatically processes the authentication. This intermediary mechanism eliminates direct credential exposure while maintaining secure authentication.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses optical copying through camera imaging to transfer the credential code from the server display to the mobile device. The credential is captured as an image, automatically extracted and processed, eliminating the need for manual transcription or direct credential handling, thereby enhancing security while simplifying user interaction.

Inventive Principle:
Principle #26Copying

2Adaptability or versatility

If users navigate multiple screens to transfer profile information, then information can be accessed, but time consumption and operational complexity increase

Engineering Contradiction:
Improveinformation accessibilityVSAvoidtime consumption
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The server pre-displays the credential code on its screen before the user arrives. This preliminary preparation eliminates the need for the user to navigate through multiple authentication screens or request codes during the interaction, allowing immediate capture and authentication upon arrival at the kiosk.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent replaces the mechanical interaction of navigating multiple screens and manually inputting data with an optical system. The camera captures the credential image, and automated image processing extracts and validates the information, substituting manual navigation with automated optical recognition and processing.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If traditional authentication methods are used, then security can be maintained, but device resource usage and operational complexity increase

Engineering Contradiction:
Improveauthentication securityVSAvoiddevice resource usage
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The mobile device's camera and image processing capabilities are utilized to automatically capture and extract the credential information. The system performs self-service authentication by using the device's existing hardware resources (camera, processor) to handle the credential verification without requiring additional authentication apps or complex software implementations.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS11233799B1Scan to login
Publication Date: 2022.01.25 SNAP INC
  • US11233799B1 patent drawing
  • US11233799B1 patent drawing
  • US11233799B1 patent drawing

AI summary

Systems and methods are provided for performing operations including receiving, by a messaging application server from a third-party application implemented on a first device, a request to generate a registration code to enable the third-party application to access user profile information stored on the messaging application server; generating, by the messaging application server, the registration code; causing, by one or more processors, the first device to display a representation of the registration code; receiving, by the messaging application server from a messaging application implemented on a second device, a request to authorize access to the user profile based on the representation that is displayed on the first device; and authorizing, by the messaging application server, the third-party application implemented on the first device to access the user profile information maintained by, the messaging application server in response to receiving the request from the messaging application.