Trusted Platform for Secure User Data Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current user data management systems lack user control and security, as users have limited awareness and control over their data once shared with third parties, which can lead to unauthorized use and management by entities receiving the data.

Innovation Solution

A secure communication system with a centralized trusted platform that manages user data access, allowing users to define access permissions and control how their data is shared, using secure storage and execution environments, and auditable records to ensure data security and transparency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If users share user data with service providers to receive desired services, then service quality is improved, but user control and security over their data deteriorates

Engineering Contradiction:
Improveservice qualityVSAvoiduser control and security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a trusted platform as an intermediary between users and service providers. This platform manages user data in a secure environment, controlling access permissions and audit trails. The intermediary prevents direct data exposure to service providers while enabling service delivery, thus maintaining user control and security while preserving service quality.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If third parties receive user data for service delivery, then service functionality is improved, but data usage transparency and user awareness deteriorates

Engineering Contradiction:
Improveservice functionalityVSAvoiddata usage transparency
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The trusted platform implements feedback mechanisms through audit trails that record all data access and usage by third parties. Users can query these trails to understand how their data is being used, providing transparency while maintaining service functionality. The feedback loop enables users to monitor and control data usage without disrupting service delivery.

Inventive Principle:
Principle #23Feedback

3Productivity

If entities manage user data with minimal user control, then data management efficiency is improved, but user autonomy and permission control deteriorates

Engineering Contradiction:
Improvedata management efficiencyVSAvoiduser autonomy and permission control
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The system implements dynamic permission controls where users can define, modify, and revoke access permissions for their data at any time. The trusted platform adapts to user preferences by enforcing these dynamic permissions while maintaining efficient data management operations. This allows users to exercise autonomy without significantly impacting management efficiency.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11151254B2Secure communications gateway for trusted execution and secure communications
Publication Date: 2021.10.19 AMARI AI INC
  • US11151254B2 patent drawing
  • US11151254B2 patent drawing
  • US11151254B2 patent drawing

AI summary

A secure communications system that includes a trusted platform for securing user data and managing manifestation of user data to third parties in response to requests. The trusted platform may include a platform execution environment that coordinates with a trusted execution environment (TEE) for individual secure user profiles to manage requests for access. In some examples, partners may deploy partner programs to the TEE of a secure user profile for execution against secured user data in the secure user profile. All transactions in the trusted platform may be recorded in a ledger to provide an auditable history for all platform activity. All communication within the trusted platform may be by a secure communications protocol with a security gateway.