Trust Card Activation via Server Secrets

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing payment systems are complex, require multiple operators, and lack secure management of payment cards throughout their life cycle, leading to increased risks of misuse and data security breaches.

Innovation Solution

A payment system that utilizes a trust card with a secret key managed by a server system, where the trust card is activated only with a secure secret provided by the server, using cryptography and PIN codes for authentication, and includes a trusted zone for secure data storage and communication, reducing the need for multiple operators and enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a trust card is activated upon delivery and deactivated only upon customer request or credit limit exceeding, then the card remains available for use throughout the customer's needs, but the service provider loses control over the card's usage time and faces increased risk of misuse

Engineering Contradiction:
Improvecard availabilityVSAvoidmisuse risk
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements dynamic card activation and deactivation through time-limited secrets. The server system can dynamically control card usability by providing secrets with expiration times or valid periods, allowing the card to be automatically deactivated after a specified duration without customer intervention, thus resolving the contradiction between continuous availability and misuse prevention

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system establishes feedback loops where the server system continuously monitors card usage and can send deactivation commands based on predetermined conditions (time limits, transaction patterns, or risk assessments). This feedback mechanism enables the service provider to maintain control over card lifecycle while ensuring card availability during authorized usage periods

Inventive Principle:
Principle #23Feedback

2Ease of manufacture

If subscriber-specific information is stored on a SIM card, then the payment system can utilize existing mobile infrastructure, but the system requires teleoperators which increases complexity

Engineering Contradiction:
Improvesystem implementationVSAvoidoperator requirements
Core Design Contradiction:
Ease of manufactureVSDevice complexity

Solution Approach 1:

The patent extracts the teleoperator function from the system by implementing direct server-to-terminal communication. The server system directly provides secrets and manages trust cards without requiring intermediate teleoperators, thereby reducing device complexity while maintaining the ability to store subscriber information on existing mobile infrastructure like SIM cards

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a streamlined server system as the sole intermediary between the payment network and user terminals. This centralized server directly manages secret distribution and card activation/deactivation, eliminating the need for multiple teleoperators and reducing overall system complexity while preserving mobile infrastructure utilization

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If the trust card and sensitive data are stored on the user's terminal, then payment transactions can be performed locally and quickly, but unauthorized users may access the sensitive data on the terminal

Engineering Contradiction:
Improvetransaction speedVSAvoiddata access risk
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent segments sensitive data into multiple components distributed between the terminal and server system. The trust card data is stored on the terminal for quick access, but critical secrets and control mechanisms remain on the secure server. This segmentation allows fast local transactions while preventing unauthorized access to complete sensitive information, as the terminal alone possesses only fragmented data

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system performs preliminary authentication and secret verification on the server before allowing trust card operations. The server validates user credentials and generates time-limited secrets in advance, ensuring that even if terminal storage is compromised, unauthorized transactions cannot be initiated without prior server validation, thus protecting against data access risks while maintaining transaction speed

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS20220366413A1Payment system
Publication Date: 2022.11.17 UNITO OY
  • US20220366413A1 patent drawing
  • US20220366413A1 patent drawing
  • US20220366413A1 patent drawing

AI summary

A method of making a payment in which payment data is received by a user's terminal from a point-of-sale terminal, a secret of a payment application is received by the terminal from the operator's server system, a trust card is activated in the user's terminal by utilizing said secret of the payment application, and data of the trust card is transmitted from the user's terminal to the point-of-sale terminal for making the payment transaction. A trust card is created in the server system, data of the trust card is transmitted to the terminal to be used for making the payment transaction, the secret of the payment application is formed in the server system, and access to the secret of the payment application is provided to the terminal for activating the trust card for making the payment transaction.