Workflow Token Mediator for Secure Data Exchange
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users face challenges in securely and efficiently sharing personal contact information with third-party entities for electronic activities, leading to potential data compromise and cumbersome processes.
Innovation Solution
A computer-based method and system that utilize a device-specific workflow token to execute secure workflows without accessing user data directly, enabling secure and direct communication between users and third-party entities while maintaining user data confidentiality.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If users provide personal contact information to third-party entities for electronic activities, then communication processes can be performed, but user data security deteriorates and data compromise risk increases
Solution Approach 1:
The patent introduces a workflow service as an intermediary between the user and the third-party entity. The workflow service receives requests from third-party entities, executes workflows using user data stored in a secure database, and returns results without exposing the user data to the third-party entities. This mediator architecture enables communication functionality while maintaining data security through the secure workflow service layer.
2Ease of operation
If users share contact information with third-party entities, then direct contact can be established, but user control over personal information deteriorates
Solution Approach 1:
The workflow service acts as an intermediary that enables direct contact capability without transferring user data control to third-party entities. The service executes workflows that can communicate with users while all data processing occurs within the secure workflow service boundaries, maintaining user control over their personal information.
Solution Approach 2:
The patent segments the system into distinct components: a secure workflow service that handles data processing, a user interface for user interactions, and third-party entity interfaces. This segmentation allows direct contact functionality to be implemented through workflow execution while keeping user data isolated in the secure service layer, preventing data loss to third-party entities.
3Productivity
If user data is stored with third-party entities for processing, then electronic activities can be performed, but data compromise opportunities increase
Solution Approach 1:
The workflow service serves as a secure intermediary that processes electronic activities without requiring third-party entities to store or access user data. The service executes workflows that perform necessary processing operations while maintaining data isolation, thereby enabling productivity while eliminating data compromise opportunities at third-party locations.
4Adaptability or versatility
If multiple entities access user data for various activities, then service functionality is enhanced, but data management complexity increases
Solution Approach 1:
The workflow service provides universal functionality to handle various electronic activities and third-party requests through a single unified system. The service can execute different workflows for different purposes (communication, data processing, verification) while maintaining a consistent secure data management approach, thereby enhancing service versatility without increasing data management complexity through multiple separate systems.
Data Source
AI summary
The present disclosure includes systems and methods enabling secure workflows by using a processor to receive an activity verification request from an initiator device associated with an entity in response to a user interaction by a user, where the activity verification request includes an identifier in an auxiliary data field of a messaging standard. Using the identifier from the auxiliary data field, the processor determines a secure workflow and generates a workflow token for validation with a workflow service. The processor transmits the workflow token to the initiator device and receives from the initiator device a workflow request including the workflow token. The processor executes, within the workflow service, an instance of the secure workflow according to the workflow request and confidential user data of the user inaccessible to the entity. The processor generates a notification according to the execution of the instance of the secure workflow.


