Single-Auth Transaction Authorization System
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users are inconvenienced by the need to repeatedly authenticate and provide payment information for multiple online transactions, which can lead to exposure of payment information to fraud when authorizing transactions on behalf of others.
Innovation Solution
A system and method for authorizing multiple transactions using a single authentication process, where a user's credentials are verified once, and authorized devices are permitted to access and use stored payment information with restrictions, ensuring secure and convenient transactions across various platforms.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users authenticate separately for each transaction, then fraud prevention is improved, but user convenience deteriorates
Solution Approach 1:
The patent segments the authentication process from the transaction process. Authentication is performed once to establish a trusted session, while subsequent transactions within that session do not require repeated authentication. This separates the security verification (done once) from the transaction execution (done multiple times), resolving the contradiction between fraud prevention and user convenience.
Solution Approach 2:
The system performs preliminary authentication before the actual transactions occur. Once a user successfully authenticates, the system pre-authorizes a session that allows multiple transactions without requiring re-authentication. This preliminary action establishes trust upfront, enabling convenient subsequent transactions while maintaining security.
2Adaptability or versatility
If payment information is shared with friends or family members, then transaction authorization capability is improved, but security risk increases
Solution Approach 1:
The patent introduces an intermediary authorization mechanism between the user and third parties. Instead of directly sharing payment information, the system acts as an intermediary that verifies the user's identity and controls what transactions can be authorized. This intermediary layer enables friends or family to initiate transactions on the user's behalf while maintaining security through the authorization verification process.
Solution Approach 2:
The system provides self-service authorization capabilities where users can independently configure who can transact on their behalf and under what conditions. Users maintain control over their payment information while enabling authorized users to conduct transactions. This self-service approach eliminates the need to share sensitive payment information while still providing transaction authorization capability.
3Reliability
If authentication is required for every transaction, then security is improved, but transaction efficiency deteriorates
Solution Approach 1:
The patent implements periodic authentication where users authenticate at the beginning of a session rather than for every single transaction. The authentication is renewed periodically or after a certain number of transactions, rather than continuously for each transaction. This periodic approach maintains security while significantly improving transaction efficiency during the authorized session.
Solution Approach 2:
Once authentication is complete, the system maintains continuous authorization for multiple transactions without interruption. The useful action of transacting continues smoothly without repeated authentication interruptions. This continuity enables efficient batch processing of transactions while the initial authentication provides the necessary security foundation.
Data Source
AI summary
A method for authorization of multiple transactions using a single authentication process is described. The method includes determining that a user is an authorized user based on user credentials associated with the user; authorizing a transaction device identified by the authorized user for future electronic transactions with one or more restrictions; and providing previously stored payment card information associated with a user account of the authorized user for electronic transactions initiated at the authorized transaction device in accordance with the one or more restrictions.


