Social App Privacy Control via Dynamic Authority Encryption
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing social software lacks effective privacy protection as users can store screen-captured information without the sender's permission, posing a risk to privacy.
Innovation Solution
A security control method that acquires and manages security control authorities between users, allowing only high-authority users to perform copying or screen capturing operations, while forbidding low-authority users, and optionally encrypting and storing these authorities to prevent unauthorized modifications.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If screen capturing function is provided to users, then user convenience and information accessibility are improved, but privacy security deteriorates because users can store exchanged information without permission
Solution Approach 1:
The patent applies local quality by differentiating permission levels for different users. The sending user can set specific authority levels (first authority vs. second authority) for each recipient, allowing selective control over who can perform screen capturing or copying operations. This resolves the contradiction by maintaining ease of operation for authorized users while ensuring privacy security for sensitive information.
Solution Approach 2:
The patent implements dynamic permission management where authority levels are not fixed but can be set and adjusted by the sending user based on the sensitivity of exchanged information. The system dynamically adapts security controls according to the specific communication context, allowing high authority for trusted users and low authority for sensitive communications, thus balancing accessibility and security.
2Reliability
If authority control is implemented to prevent unauthorized storage, then privacy security is improved, but system complexity increases due to authority management and encryption requirements
Solution Approach 1:
The patent applies preliminary action by pre-setting authority levels and encryption parameters before information exchange occurs. The sending user configures permission levels and encryption settings in advance, and the social application device stores these configurations. This eliminates the need for complex real-time authorization decisions during information exchange, reducing system complexity while maintaining security.
Solution Approach 2:
The patent uses copying by creating encrypted copies of the authority configuration and storing them in both the sending and receiving devices. Instead of implementing complex real-time verification systems, the solution copies and stores pre-configured authority levels and encryption parameters, allowing the system to enforce security rules based on stored configurations rather than complex runtime computations.
3Reliability
If encryption and storage of authority information is implemented, then authority integrity is improved, but information processing time increases due to encryption and decryption operations
Solution Approach 1:
The patent applies preliminary action by performing encryption of authority information in advance and storing the encrypted data. When information exchange occurs, the system retrieves pre-encrypted authority configurations rather than encrypting data in real-time. This significantly reduces processing time during actual information exchange while maintaining authority integrity through prior encryption.
4Ease of operation
If feedback mechanism is added to notify users of authority status, then user awareness of privacy control is improved, but communication overhead increases between social applications
Solution Approach 1:
The patent implements feedback by having the receiving social application send feedback information to the sending application, confirming receipt and recognition of the authority level. This feedback mechanism ensures users are aware of the privacy controls in place while maintaining simplicity through direct confirmation messages rather than complex communication protocols.
Data Source
AI summary
A security control method for a social network user, a social application device and a terminal are provided. The method includes: when information is exchanged between users, a local-end social application acquires the security control authority of a local-end user set by an opposite-end user, and the local-end social application controls, according to the security control authority of the local-end user, the copying operation and the screen capturing operation of the local-end user on the information exchanged.

