Virtual Sandbox for Supplemental Content Rule Enforcement
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional approaches to managing supplemental content in electronic environments are inadequate in preventing malicious activities, as they often result in over-inclusive disabling of content or limitations in functionality, failing to provide sufficient control over third-party content that can distribute viruses and malware or perform unauthorized actions.
Innovation Solution
The implementation of rule sets and virtual sandbox environments allows content providers to define allowable and prohibited behaviors for supplemental content, enabling specific actions to be taken when malicious activities are detected, such as notification, prevention, or flagging, thereby maintaining control and flexibility while ensuring user safety.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If conventional approaches disable certain types of content globally, then security against malicious activities is improved, but functionality and user experience deteriorate due to over-inclusive disabling
Solution Approach 1:
The patent segments content control into per-domain rule sets rather than global disabling. Each domain can have its own customized rules allowing specific functions while blocking others, enabling fine-grained security control without unnecessarily disabling legitimate functionality across the entire system.
Solution Approach 2:
The patent applies local quality by implementing domain-specific rule sets that tailor security controls to the particular characteristics and risk profiles of individual content domains. This allows different levels of restriction for different domains based on their inherent security characteristics.
2Reliability
If all calls from third party content are denied, then security against viruses and malware is improved, but adaptability and functionality deteriorate due to necessary legitimate operations being blocked
Solution Approach 1:
The patent segments the blanket denial approach into selective allow/deny decisions at the domain level. By analyzing each third-party domain individually against its rule set, the system can permit legitimate functional calls while blocking malicious ones, maintaining both security and adaptability.
Solution Approach 2:
The system incorporates feedback mechanisms where content providers define acceptable behaviors in advance, and the system monitors actual behavior against these definitions. This feedback loop enables dynamic adjustment of allow/deny decisions based on observed behavior patterns.
3Productivity
If content providers rely on outside providers to monitor advertising content, then productivity and efficiency are improved, but reliability and security control deteriorate due to lack of direct oversight
Solution Approach 1:
The patent introduces an intermediary layer in the form of domain-specific rule sets that act as a mediator between content providers and third-party content. This intermediary enables content providers to maintain security control by defining and enforcing policies without requiring direct monitoring of all content operations.
Data Source
AI summary
A virtual sandbox environment enables a publisher to publish rules for supplemental content, such as third party advertising, displayed on a page or other grouping of content from the publisher. One or more rule sets can be applied or enforced in a number of ways, such as through active script on a page, as part of a browser or other such application or interface, or via a third party such as an anti-virus application or service. A rule set can specify behavior that is allowed or prohibited, in various circumstances, as well as actions to be taken in response to any unapproved or prohibited behavior. Rule sets may be maintained on, and enforced by, or cached on a client device such that any number of pages or other groupings of content can utilize the same rule set without reloading the set.


