Connected Vehicle Data Privacy Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing transportation systems lack efficient methods for managing and securing personal data associated with vehicles, particularly in terms of data privacy, security, and consent during data sharing and deletion processes.

Innovation Solution

A method and system that allow vehicles to receive requests for personal data usage within specific areas, enable the specification of deletion times for personal data, and provide acknowledgments for data deletion, ensuring secure and consent-based data sharing.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If personal data is shared and stored for transportation services, then service functionality is improved, but data privacy and security are compromised

Engineering Contradiction:
Improveservice functionalityVSAvoiddata privacy risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary actions by obtaining explicit user consent and specifying deletion times before personal data is shared or stored. The transport receives data usage requests, obtains acknowledgments from users, and establishes deletion schedules in advance, ensuring data is only retained for necessary periods while maintaining service functionality.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements feedback mechanisms by providing acknowledgments to users regarding data deletion status. The transport network sends confirmation when personal data has been deleted according to the specified timeline, creating a closed-loop system that enhances user trust while enabling data sharing for services.

Inventive Principle:
Principle #23Feedback

2Loss of information

If personal data is retained for longer periods, then data utility and service quality are improved, but data security risks and compliance costs increase

Engineering Contradiction:
Improvedata utilityVSAvoiddata security
Core Design Contradiction:
Loss of informationVSReliability

Solution Approach 1:

The system establishes deletion times and schedules in advance before data is actually deleted. By pre-specifying retention periods and deletion timelines in data usage requests, the system ensures data is kept only as long as necessary for service utility while automatically reducing security risks through scheduled deletion.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system dynamically adjusts data retention based on specified deletion times rather than using fixed retention policies. The transport network adapts data storage duration to individual service requirements and user preferences, optimizing both data utility and security by deleting data when no longer needed.

Inventive Principle:
Principle #15Dynamics

3Productivity

If data deletion processes are automated, then operational efficiency is improved, but complexity of data management systems increases

Engineering Contradiction:
Improvedata management efficiencyVSAvoiddata management system complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The system enables self-service automation where the transport network automatically executes data deletion based on pre-specified deletion times without requiring manual intervention. The automated process handles data lifecycle management efficiently while the complexity is managed through standardized protocols and user-consent-based frameworks.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS12317068B2Connected vehicle services privacy and protection
Publication Date: 2025.05.27 TOYOTA MOTOR NORTH AMERICA INC
  • US12317068B2 patent drawing
  • US12317068B2 patent drawing
  • US12317068B2 patent drawing

AI summary

An example operation includes one or more of receiving a request into a transport network comprising at least one transport for a proposed use of personal data associated with the at least one transport prior to the at least one transport entering an area; receiving into the transport network a deletion time of the personal data, prior to the at least one transport entering the area; providing, from the transport network an acknowledgement of the deletion time; and providing, from the transport network, the personal data when the at least one transport is in the area based on the received acknowledgement. This enables an occupant of a transport to share personal data relating to the transport with confidence that the data will be deleted by an agreed time.