Multi-Party Interchange Management via SDK Hierarchy
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current connected ecosystems, especially those involving client computers and the Internet of Things, face challenges in managing and securing multi-party interchanges, including client integrity verification, downloadable code management, SDK selection, server-initiated connections, controlled access to rich data, and privacy, which are inadequately addressed by existing technologies.
Innovation Solution
A system utilizing a hierarchy of SDK managers to catalog and manage entities, software capabilities, and data exchange processes, ensuring secure and controlled interactions between client application owners, third-party services, and client computers, employing Application Network Access Control (ANAC), well-defined operational primitives, and privacy regulations to facilitate secure data access and collection.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If unmanaged ad hoc multi-party interchanges are used (as in prior browser-based systems), then ease of operation is improved, but security and reliability deteriorate
Solution Approach 1:
The patent introduces an intermediary management system that sits between client applications and third-party services. This intermediary validates client integrity, manages downloadable code, controls SDK selection, and regulates data access. By inserting this mediating layer, the system maintains ease of multi-party interaction while establishing security controls that prevent the chaos and risks of unmanaged interchanges.
2Reliability
If mobile operating systems digitally sign apps and create permissions, then security is improved, but adaptability to multi-party interchanges deteriorates
Solution Approach 1:
The patent implements dynamic permission management that adapts to multi-party interchange requirements. Instead of static app-signed permissions, the system dynamically evaluates client integrity, adjusts SDK selections based on interchange needs, and regulates data access in real-time. This dynamic approach maintains security while enabling the adaptability needed for complex multi-party services involving multiple clients and third parties.
3Adaptability or versatility
If browser downloads code dynamically to client computer, then adaptability is improved, but reliability deteriorates due to unmanaged and risky results
Solution Approach 1:
The patent applies preliminary action by validating client integrity before allowing any code downloads or executions. The management system pre-establishes trust relationships, pre-approves SDK selections, and pre-configures permission structures. This preliminary validation ensures that subsequent dynamic code downloads and multi-party interchanges occur within a trusted framework, maintaining both adaptability and reliability.
4Adaptability or versatility
If additional IoT devices are deployed to extend the ecosystem, then versatility is improved, but device complexity and management difficulty increase
Solution Approach 1:
The patent creates a universal management framework that handles multiple device types (mobile devices, PCs, IoT devices) through a single integrated system. The intermediary management layer provides uniform integrity verification, code management, and permission control across all device categories. This universal approach enables the ecosystem to expand to diverse IoT devices without proportionally increasing management complexity, as the same management principles apply across all device types.
Data Source
AI summary
A system and methods which manage and secure the interaction between (1) the owner of a client application and third-parties, and (2) between the third-parties and the client application while the client application is operating on a user's client computer. The invention enables interactive primitives such as ensuring the integrity of the client environment, reading data from the client, writing data to the client, collecting data from the user, and ensuring privacy. All functionality is done through the client application and under management and control of the owner of the client application.


