Vending Machine Identity Confidence Authorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current interactive systems face challenges in securely and efficiently managing user authentication and authorization for accessing private information, particularly in transactions involving sensitive user data, as they often require cumbersome username/password inputs and lack seamless integration with user preferences.

Innovation Solution

A progressive authorization determination system that uses user profile information to customize user experiences and streamline transactions by providing portions of user data 'as-needed' based on confidence levels, leveraging cookies, biometric information, and user consent to ensure secure access and reduce complexity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If username/password authentication is used to securely access private information, then security is improved, but user convenience deteriorates due to cumbersome authentication inputs

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments user profile information into multiple portions with different authorization levels (e.g., first name, email, phone number, address). Each portion can be accessed independently based on the confidence level achieved through progressive authentication methods, allowing the system to provide necessary information without requiring full username/password authentication for every interaction.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system performs preliminary actions by pre-collecting and storing various types of user identifying information (cookies, device identifiers, biometric data) before authentication is needed. This allows the system to evaluate confidence levels and provide appropriate information access without requiring users to input credentials at the moment of need.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If stringent authentication is applied to protect sensitive information, then information security is improved, but transaction efficiency deteriorates

Engineering Contradiction:
Improveinformation securityVSAvoidtransaction efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent implements dynamic authorization thresholds that adjust based on the sensitivity of the requested information and the confidence level established through progressive authentication. Less sensitive information (e.g., first name) has lower authorization thresholds that can be met with weaker authentication, while sensitive information (e.g., address, phone number) has higher thresholds requiring stronger authentication, enabling efficient transactions for low-risk operations.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the parameter of authorization threshold based on the type of information requested and the accumulated confidence from progressive authentication steps. By dynamically adjusting these parameters, the system can efficiently serve transactions requiring minimal information while maintaining strict security for sensitive data access.

Inventive Principle:
Principle #35Parameter changes

3Adaptability or versatility

If user profile information is provided to customize user experience, then user experience is improved, but security risk increases due to potential unauthorized access

Engineering Contradiction:
Improveuser experience customizationVSAvoidsecurity risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent applies local quality by providing different levels of user profile information to different systems or contexts based on their authorization levels. Rather than providing all user information universally, the system selectively releases specific portions of profile data (e.g., providing first name to one service but withholding address from another) according to the confidence level and authorization threshold of each requesting system.

Inventive Principle:
Principle #3Local quality

4Measurement precision

If multiple authentication methods are implemented to verify user identity, then confidence in user identity is improved, but system complexity increases

Engineering Contradiction:
Improveconfidence in user identityVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent segments the authentication process into multiple independent methods (cookies, device identifiers, biometric data) that can be evaluated separately. Each method contributes to the overall confidence level in a modular fashion, allowing the system to accumulate confidence incrementally without requiring all methods to be implemented simultaneously or complex integration logic.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10438200B1Vending machine authorization and customization based on confidences of user identities
Publication Date: 2019.10.08 AMAZON TECH INC
  • US10438200B1 patent drawing
  • US10438200B1 patent drawing
  • US10438200B1 patent drawing

AI summary

Systems and techniques are disclosed for vending machine authorization and customization based on confidences of user identities. One of the methods includes receiving identifying information for a user device, the identifying information being received in response to the user device being within a distance of a vending machine. The vending machine can include sensors that trigger the user device to provide identifying information. A portion of profile information is accessed, portion of profile information indicating a unique identifier assigned to the user device. The portion of profile information is provided to one or more servers that communicate with the vending machine over one or more networks. Preference in formation is displayed via a display of the vending machine, the preference information being maintained by servers and being associated with the unique identifier.