User-Device Data Management for Privacy-Controlled Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Server-side platforms for user data management compromise consumer privacy and increase operational costs and regulatory burdens for businesses, as users relinquish control over their data and businesses become custodians of sensitive information.
Innovation Solution
Implementing a user-device based authentication and data management system where user data, including credentials and interaction history, is stored on the user's device, allowing users to control what information is shared with online platforms.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If server-side platforms are used for user data management, then businesses can track user interactions and make informed decisions, but consumer privacy is compromised and operational costs increase
Solution Approach 1:
The patent inverts the traditional server-side data management model by placing authentication credentials and interaction history storage on the user's device rather than the business's server. This allows businesses to make informed decisions based on interaction history while users maintain control and privacy of their data, eliminating the need for businesses to be custodians of sensitive user information.
2Reliability
If server-side platforms are used for user data management, then businesses can track user interactions, but regulatory burdens and liability increase
Solution Approach 1:
The patent extracts the data storage and management function from the business's server infrastructure and relocates it to the user's device. This extraction eliminates the regulatory burden and liability associated with businesses storing and managing sensitive user data, while preserving the ability to track and analyze interaction history for business decisions.
3Object-affected harmful factors
If user data is stored on user devices, then user privacy is enhanced, but data security and authentication reliability may be compromised
Solution Approach 1:
The patent introduces an intermediary mechanism where the user's device securely stores authentication credentials and manages their own security. The device acts as a self-contained security enclave that can verify authentication without requiring the business to store or access sensitive credentials, thus maintaining both privacy and authentication reliability.
Data Source
AI summary
The present disclosure generally relates to systems and methods for user authentication and data management. Information involving a user's interactions with an online platform is stored on a user device that is used to access the platform. Such information may include user authentication information, personal information, and an interaction history of events, such as logins, purchases, and checkouts. When providing information to the online platform, the user is given the option of what information to provide and, in some cases, the user may opt to provide tokenized information in lieu of sensitive information that the user would prefer not to share. Also, the user may selectively provide information about his or her interaction history, thereby permitting the online platform to establish a trust level of the user using information from the user device. Thus, information about the user's account with the online platform is safely stored on the user device permitting the user to be the custodian of such data, including deciding what information to share with online platforms.


