Secure Sensitive Content Sharing via Device Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods for sharing sensitive content, such as medical records or legal documents, face security challenges, including the risk of unintended recipients accessing the information due to forwarding or incorrect email addresses, and require cumbersome account registration processes that may deter recipients from accessing important information.
Innovation Solution
A method and system that securely share sensitive content by sending a link to a recipient's communication device associated with a phone number, where authentication verifies the device's ownership without requiring an account with the communication service provider, allowing access to the content only through the intended device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If sensitive content is shared via email attachment, then content can be sent to recipient, but security is compromised due to forwarding risk and wrong address delivery
Solution Approach 1:
The patent introduces an intermediary authentication system between the sender and recipient. Instead of direct email attachment sharing, the system uses authenticated communication devices as mediators. The sender's device authenticates the recipient's device through a verification process, and only then is content delivery authorized. This intermediary layer prevents unauthorized forwarding and ensures delivery only to intended recipients, resolving the security concern while maintaining ease of operation.
2Reliability
If recipient must log onto website to access content, then security is improved, but ease of operation deteriorates due to registration and password requirements
Solution Approach 1:
The patent implements self-service authentication where the recipient's communication device automatically performs verification by presenting its own authentication credentials (such as device identifiers or cryptographic proofs) without requiring manual account creation or password entry. The system autonomously verifies the device's legitimacy and grants access, eliminating the cumbersome registration process while maintaining strong security through device-based authentication.
3Extent of automation
If website registration is required for content access, then authentication can be performed, but user verification reliability decreases due to stolen credentials
Solution Approach 1:
The patent replaces the mechanical system of username/password authentication with a cryptographic or device-based authentication mechanism. Instead of relying on secret strings that can be stolen, the system uses device-specific credentials, digital signatures, or hardware-based authentication tokens that are inherently tied to the physical communication device. This substitution makes credential theft ineffective while maintaining automated authentication, thereby improving verification reliability.
Data Source
AI summary
Sensitive content is securely shared. A request is received from a first communication device to share sensitive content. The first communication device is associated with an account for a communication service provided by a network provider. A message including a link to the sensitive content is sent to a second communication device associated with a phone number. That message is addressed to the second communication device. An authentication message is received, indicating that the second communication device is associated with the phone number. Responsive to receipt of the authentication message, the sensitive content is made accessible via the second communication device without requiring that the second communication device be associated with an account for the communication service provided by the network provider.


