XR Authorization Gateway for Anonymous Asset Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing extended reality systems fail to provide adequate user privacy and control over asset access, often requiring users to reveal personal identifying information, which compromises their anonymity and limits asset reuse across different environments.
Innovation Solution
Implementing an authorization gateway that intermediates between users and extended reality servers, using tokens to verify access rights without revealing user identities, and enabling seamless asset access across multiple environments through a token-based system.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users directly access extended reality servers to interact with assets, then asset access control is simplified, but user personal information is exposed and privacy is compromised
Solution Approach 1:
The patent introduces an authorization gateway as an intermediary component between users and extended reality servers. This gateway receives authorization requests from servers, queries the database for user access rights, and returns authorization decisions without exposing user personal information. The gateway acts as a mediator that protects user privacy while enabling proper access control, resolving the contradiction between simplified access and privacy protection.
2Measurement precision
If user identities are revealed for asset access verification, then access control accuracy is improved, but user anonymity is lost
Solution Approach 1:
The patent extracts personal identifying information from the access control process. The system stores user profiles with personal information in a database, but only uses anonymized user identifiers (such as user IDs or tokens) for access verification. The authorization gateway queries the database using these anonymized identifiers to verify asset access rights without requiring servers to handle or store personal information, thus maintaining both accurate access control and user anonymity.
3Adaptability or versatility
If asset access is restricted to single environments, then security is simplified, but asset reuse across platforms is limited
Solution Approach 1:
The patent implements a universal authorization system where a single database stores user asset access rights that are recognized across multiple extended reality platforms and environments. The authorization gateway provides a standardized interface that works with different servers and environments, enabling users to access their purchased assets consistently across various platforms without requiring separate authorization systems for each environment, thus achieving multi-environment asset reuse.
4Reliability
If personal information is collected for user verification, then access authorization reliability is improved, but user privacy control is reduced
Solution Approach 1:
The patent segments the authorization system into distinct functional components: user profile storage (containing personal information), anonymized identifier management, and authorization decision-making. The database stores personal information in isolated user profiles that are only accessed when absolutely necessary, while the authorization gateway operates with anonymized identifiers. This segmentation allows the system to maintain reliable authorization through proper verification while giving users control over when and how their personal information is accessed, improving both authorization reliability and user privacy control.
Data Source
AI summary
Anonymous access may be provided using an authorization gateway. Anonymous access reuses objects in different extended reality environments rather than having each object be restricted to a single environment. Anonymous access increases privacy when using different environments. The user and the extended reality server communicate via an authorization gateway, preventing the extended reality server from directly gathering user information. A token issuing authority may issue tokens in response to payment and forward the payment to an extended reality provider. The user pays the token issuing authority and receives a token that does not identify the user. The token issuing authority forwards the payment to the extended reality provider. The user provides the token to the authorization gateway, which communicates with the extended reality server to provide the extended reality environment to the user. Thus, the user's payment is verified by the authorization gateway without specifically identifying the user.


