Tokenized Document Generation for Secure Vendor Collaboration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Organizations face risks of data theft and misuse when sharing confidential information with vendors for document generation, leading to potential liability and revenue loss under regulations like GDPR.
Innovation Solution
A system that generates documents with tokens representing confidential information, allowing only high-trust networks to access and replace these tokens with actual data, thereby keeping sensitive information secure within a high-trust network while enabling vendors to create documents without direct access to the confidential information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of manufacture
If confidential information is provided to vendors for document generation, then documents can be generated with accurate confidential information, but the organization is exposed to risks of data theft and misuse
Solution Approach 1:
The patent introduces a token as an intermediary element that represents confidential information without exposing the actual data to vendors. The token serves as a mediator between the organization's confidential information and the vendor's document generation capability, allowing document creation while maintaining security through the high-trust network.
Solution Approach 2:
The system segments the document generation process into two distinct phases: (1) token generation and insertion by the organization in a high-trust network, and (2) document completion by the vendor using the token as a placeholder. This segmentation allows the vendor to work with sanitized data while the actual confidential information remains isolated in the high-trust network.
2Reliability
If confidential information is kept within a high-trust network, then data security is maintained, but vendors cannot directly access or process the confidential information
Solution Approach 1:
The system creates a copy of the confidential information in the form of a token that can be shared with vendors. This token copy contains sufficient information for the vendor to generate documents accurately without revealing the actual confidential data, thus maintaining security while enabling vendor functionality.
Solution Approach 2:
The token acts as an intermediary that bridges the gap between restricted confidential information and vendor processing capabilities. It allows vendors to adapt their document generation processes to work with the tokenized data while the actual sensitive information remains protected within the high-trust network.
3Reliability
If tokens are used to represent confidential information, then data security is protected, but the system complexity increases
Solution Approach 1:
The patent extracts the confidential information from the document generation process and replaces it with tokens. This extraction isolates the sensitive data from the vendor's environment and simplifies the overall system architecture by separating security concerns from functionality, allowing each component to operate independently with clear defined interfaces.
Data Source
AI summary
Mechanisms for generating documents with confidential information are provided, the systems comprising: a memory; and a first collection of at least of one hardware processor coupled to the memory and configured to: receive from a user device a request for a first document with confidential information; generate a second document, that corresponds to the first document, with at least one token corresponding to the confidential information; transmit the second document to a second collection of at least one hardware processor in a high-trust network that is entitled to access the confidential information; receive from the second collection of at least one hardware processor in the high-trust network a uniform resource locator (URL) corresponding to the first document; and transmit the URL to the user device. In some of these mechanisms, the user device is in the high trust network.


