Server Intermediary for Secure Sensitive Information Association

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing transaction systems face challenges in securely and efficiently managing the transfer of sensitive information across multiple entities within a networked system, particularly in reducing the number of communications containing sensitive information and enhancing security.

Innovation Solution

A computer-implemented method and server computer configuration that utilize two distinct communication channels to securely transfer sensitive information. The method involves a user device receiving a session identifier from a second server, obtaining a Web token and accessing a data entry page from a first server, and then providing second sensitive information via the data entry page and the session identifier to the first server, which associates the information and communicates via separate channels.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If sensitive information is transferred through multiple communication channels in existing transaction systems, then information can be exchanged between entities, but the security is compromised due to increased data exposure and the number of communications increases

Engineering Contradiction:
ImprovesecurityVSAvoidnumber of communications
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The patent introduces a server as an intermediary that receives sensitive information from multiple entities (user device, second server) through different communication channels and consolidates it into a single association. This intermediary approach reduces the number of direct communications between entities while maintaining security, as the server acts as a trusted mediator that handles the sensitive data associations centrally rather than requiring multiple direct exchanges between participating entities

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If multiple communication channels are used to transfer sensitive information between entities, then information exchange is enabled, but system complexity increases

Engineering Contradiction:
Improveinformation exchange capabilityVSAvoidcommunication channel management
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges multiple communication channels into a centralized association process at the server. Instead of managing separate communications between each entity pair, the server consolidates sensitive information from different channels (user device to server, second server to server) and creates a unified association. This combining approach maintains the adaptability to receive information from multiple sources while reducing the complexity of managing multiple communication pathways

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If direct communication between entities is maintained for account updates, then transaction processing is straightforward, but security is reduced due to increased data exposure

Engineering Contradiction:
Improvetransaction processing efficiencyVSAvoiddata exposure
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The server acts as an intermediary that enables transaction processing while reducing data exposure. Instead of direct communication between user device and second server for sensitive information exchange, the server mediates by receiving sensitive information from both parties through secure channels and creating associations centrally. This maintains productivity by enabling necessary information exchange for account updates while reducing harmful data exposure through centralized, controlled communication

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20250080505A1Managing communication of sensitive information
Publication Date: 2025.03.06 VISA EUROPE
  • US20250080505A1 patent drawing
  • US20250080505A1 patent drawing
  • US20250080505A1 patent drawing

AI summary

Disclosed is a method of managing sensitive information. The method includes receiving, from a second server, a session identifier, after the second server provides to a first server, first sensitive information relating to a user having an account with the second server. The method also includes receiving, from the first server, a Web token and a data entry page, and receiving second sensitive information via the data entry page. The second sensitive information is different than the first sensitive information. The method further comprises providing, to the first server, the second sensitive information via the data entry page, and the session identifier. The first server is programmed to associate the first sensitive information with the second sensitive information. The first server and the second server communicate via a first communication channel and the first server and the user device communicate via a second, different communication channel.