School Connection Application for Secure Student Data Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Educational institutions face challenges in providing secure and centralized access to student information for parents and guardians, often requiring them to create new accounts and navigate complex authentication processes, which can be inefficient and insecure.

Innovation Solution

A school connection application that utilizes existing authentication information from trusted accounts (e.g., Microsoft accounts) to enable secure access to student information, bridging the gap between school and consumer clouds, allowing parents and guardians to access information without creating new accounts and leveraging stronger authentication processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication processes are used for accessing student information, then security is improved, but ease of operation deteriorates due to complex authentication requirements and new account creation

Engineering Contradiction:
ImprovesecurityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a school connection application as an intermediary layer between the student information system and parents/guardians. This intermediary leverages existing trusted authentication accounts (like Microsoft accounts) to bridge the gap between school systems and consumer cloud services, eliminating the need for new account creation while maintaining security through established authentication mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The solution enables existing trusted accounts to serve multiple functions - both as general-purpose consumer accounts and as authentication credentials for accessing school information systems. This multi-functionality allows parents and guardians to use their existing accounts across different platforms without needing separate authentication systems for each.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If new accounts are created for accessing student information, then security is improved, but loss of time increases due to account creation and setup processes

Engineering Contradiction:
ImprovesecurityVSAvoidloss of time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent leverages authentication accounts that have already been created and verified through existing trusted services. By using pre-established accounts with proven security measures already in place, the system eliminates the time-consuming account creation and setup processes that would otherwise be required before accessing student information.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If complex authentication processes are implemented, then security is improved, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The school connection application serves as a simplifying intermediary that handles the complexity of authentication behind the scenes. It translates between existing trusted account credentials and school information system requirements, shielding users from complex authentication protocols while maintaining strong security through established authentication mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20240048545A1Authentication of trusted users
Publication Date: 2024.02.08 MICROSOFT TECHNOLOGY LICENSING LLC
  • US20240048545A1 patent drawing
  • US20240048545A1 patent drawing
  • US20240048545A1 patent drawing

AI summary

According to examples, an apparatus includes a processor that is to cause an application to be provided through which information pertaining to a first user is to be displayed, receive authentication information of a second user, in which the authentication information includes an identifier of the second user and information that the second user uses for authentication to access a web-based application, determine whether the identifier of the second user is linked to an identifier of the first user, determine whether the authentication information authenticates the second user to access the web-based application, and based on a determination that the identifier of the second user is linked to the identifier of the first user and the authentication information authenticates the second user to access the web-based application, perm it the second user to access the information pertaining to the first user through the application.