Time-Varying Security Code for Financial Account Authorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional financial cards rely on static security codes that do not ensure the cardholder's possession during remote transactions, lacking effective verification mechanisms.

Innovation Solution

Implementing a portable financial device with a time-varying security code that changes based on algorithms or events, synchronized with an authorization agent, to verify the cardholder's possession through a dynamic security code value.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a static security code is used on financial cards, then the card structure remains simple and easy to manufacture, but the security verification capability is insufficient and cannot ensure cardholder possession during remote transactions

Engineering Contradiction:
Improvesecurity verification capabilityVSAvoidcard structure complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies the dynamics principle by replacing the static security code with a dynamic, time-varying security code that changes automatically based on time or event parameters. The portable device generates a new security code value at predetermined time intervals or in response to specific events, making the code impossible to reuse and ensuring that only the current code holder can authorize transactions. This dynamic mechanism significantly improves security verification capability while maintaining reasonable device complexity through automated generation.

Inventive Principle:
Principle #15Dynamics

2Reliability

If a time-varying security code is implemented, then the security and verification of cardholder possession is improved, but the device complexity and programming requirements increase

Engineering Contradiction:
Improvecardholder possession verificationVSAvoiddevice programming complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies the self-service principle by enabling the portable device to automatically generate and update its own security code values without requiring external intervention. The device uses its internal clock and event detection capabilities to trigger code generation at predetermined intervals or in response to specific events. This self-service mechanism improves cardholder possession verification while managing device complexity through automation, eliminating the need for manual code updates or external synchronization systems.

Inventive Principle:
Principle #25Self-service

3Reliability

If a static security code is used, then the ease of operation remains high, but the ability to prevent unauthorized use in remote transactions is compromised

Engineering Contradiction:
Improveunauthorized use preventionVSAvoidtransaction authorization ease
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies the feedback principle by implementing a system where the portable device continuously updates its security code based on time or event parameters, creating a feedback loop that ensures the code reflects current possession. The authorization agent receives the current security code value from the portable device and verifies it against expected values. This feedback mechanism significantly improves unauthorized use prevention while maintaining ease of operation, as the code changes automatically without requiring user intervention or awareness.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS8820637B1Time-varying security code for enabling authorizations and other uses of financial accounts
Publication Date: 2014.09.02 ROSKIND JAMES A
  • US8820637B1 patent drawing
  • US8820637B1 patent drawing
  • US8820637B1 patent drawing

AI summary

A portable device is provided that carries account data. The account data may include a security code having a value that is time-varying. The value of the security code may be programmatically varied based on at least one of an algorithm or event. Authorization and use of the account may be sought from an authorization agent using the account data provided on the portable device.