User Identity Graph for Decentralized Consent Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems lack a centralized method for managing user consent and data control, resulting in users having limited transparency and control over their data transmission to third parties, with connections managed expensively on a per-user level in Customer Data Platforms.

Innovation Solution

A computer-implemented method and system that creates a user identity graph on a device, allowing users to manage their identities and consent for data access, enabling them to create or deny connections between applications and third-party identities, ensuring complete control over their data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a centralized Customer Data Platform is used to manage user consents and data connections, then data control and transparency are improved, but system cost and complexity increase significantly

Engineering Contradiction:
Improvedata controlVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the centralized data management functionality from expensive Customer Data Platforms and implements it locally on user devices through a lightweight identity graph system. This allows users to maintain control over their data connections without requiring complex centralized infrastructure, thereby reducing system complexity while preserving data control capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The identity graph acts as an intermediary layer between applications and user data, enabling decentralized consent management. Instead of requiring a centralized CDP to mediate all data connections, the identity graph locally manages relationships between user identities, applications, and consents, reducing the need for complex centralized systems while maintaining reliable data control.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Device complexity

If applications manage their own backend systems for user consent, then system simplicity is maintained, but user transparency and control over data transmission are reduced

Engineering Contradiction:
Improvesystem simplicityVSAvoiduser transparency
Core Design Contradiction:
Device complexityVSLoss of information

Solution Approach 1:

The patent merges the functions of multiple individual application consent systems into a unified identity graph that consolidates user identities, applications, and consent relationships in a single decentralized structure. This allows users to see and control all their data connections across different applications through one interface, maintaining system simplicity while significantly improving user transparency.

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If per-user level connection management is implemented in Customer Data Platforms, then user data control is improved, but processing cost and time increase

Engineering Contradiction:
Improveuser data controlVSAvoidprocessing efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The identity graph enables users to self-manage their own data connections and consents locally on their devices without requiring expensive centralized processing. Users can directly control which applications access their data through the identity graph interface, eliminating the need for costly per-user connection management in centralized CDPs while maintaining full user data control.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20240330515A1Managing access to user identities
Publication Date: 2024.10.03 THE WEATHER CO LLC
  • US20240330515A1 patent drawing
  • US20240330515A1 patent drawing
  • US20240330515A1 patent drawing

AI summary

A system, method, and computer-implemented method of managing user identities for data control is disclosed. The computer-implemented method is executed in a data processing system comprising a processing device and a memory comprising instructions which are executed by the processing device. The method includes creating a user identity graph, the user identity graph containing entries associated with user identities on a device, with the user identities relating to a user of the device. The method includes detecting an installation of an application on the device. The method includes generating an entry in a user identity graph relating to the application. The method includes receiving a consent instruction from the user relating to the application. The method includes updating the user identity graph based on the consent instruction.