Tokenized Confidential Document Generation Across Trust Boundaries
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems face challenges in securely generating documents containing confidential information without exposing them to low-trust networks, risking theft and misuse, which can lead to liability and revenue loss.
Innovation Solution
A mechanism is provided where confidential information is stored in a high-trust network, with tokens generated and embedded in documents in a low-trust network, allowing the high-trust network to replace tokens with actual information, ensuring secure document generation and presentation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of manufacture
If confidential information is provided to a vendor in a low-trust network for document generation, then the vendor can generate the document, but the confidential information is exposed to theft and misuse risks
Solution Approach 1:
The patent introduces a token as an intermediary element that replaces confidential information in documents sent to vendors. The token serves as a mediator between the high-trust network (where confidential information is stored) and the low-trust network (where document generation occurs). The vendor receives documents with tokens instead of actual confidential information, generating documents without exposing sensitive data. The high-trust network then replaces tokens with actual confidential information before final delivery to the user.
Solution Approach 2:
The patent segments the document generation process into distinct phases: (1) generating a document template with tokens in the low-trust network, (2) replacing tokens with actual confidential information in the high-trust network, and (3) delivering the final document to the user. This segmentation allows the vendor to participate in document generation without accessing the actual confidential information, resolving the contradiction between enabling vendor document generation and preventing information theft.
2Reliability
If confidential information is stored in a high-trust network and tokens are used in low-trust network, then security is improved, but system complexity increases
Solution Approach 1:
The patent uses token copies of confidential information instead of the actual data in documents sent to vendors. These tokens are simplified representations (copies) that maintain the structural and functional needs of the document without containing the sensitive data. This copying approach maintains security while simplifying the vendor's processing requirements, as they only need to handle the token placeholders rather than complex security protocols.
Solution Approach 2:
The token acts as an intermediary that bridges the high-trust and low-trust networks. It provides a standardized interface that allows documents to flow between networks with different security levels without requiring complex authentication or encryption protocols at each step. The token simplifies the interaction between networks while maintaining security boundaries.
Data Source
AI summary
Mechanisms for generating documents with confidential information are provided, the systems comprising: a memory; and a first collection of at least of one hardware processor coupled to the memory and configured to: receive from a user device a request for a first document with confidential information; generate a second document, that corresponds to the first document, with at least one token corresponding to the confidential information; transmit the second document to a second collection of at least one hardware processor in a computer network that is entitled to access the confidential information; receive from the second collection of at least one hardware processor in the computer network a uniform resource locator (URL) corresponding to the first document; and transmit the URL to the user device. In some of these mechanisms, the user device is in the computer network.


