Patent Application Titled “Systems, Methods, And Non-Transitory Computer-Readable Media For Secure Biometrically-Enhanced Data Exchanges And Data Storage” Published Online (USPTO 20210327547): Patent Application
2021 NOV 08 (NewsRx) -- By a
No assignee for this patent application has been made.
Reporters obtained the following quote from the background information supplied by the inventors: “A digital identification and personal data exchange improve privacy and security of individual’s data which is accesses, shared, and exchanged between various individuals and entities. In particular, a digital identification and personal data exchange will help prevent unauthorized actors from assuming identities or gaining access to personal data of individuals. Use of digital identity service and data exchange service will also help facilitate new, innovative approaches to digital payments, commerce and financial inclusion.
“The digital verification and identification as described herein is referred to as “Inclusive Verification of Identity.” The following are aspects of a successful implementation of Inclusive Verification of Identity and Personal Data Exchange.”
In addition to obtaining background information on this patent application, NewsRx editors also obtained the inventors’ summary information for this patent application: “A partner-specific identification Digital identification and personal data exchange will help in addressing the aftermath of the COVID-19 pandemic. In particular, a digital identification and personal data exchange will help prevent or counter nefarious actors from assuming identities or gaining access to personal data of victims of the COVID-19 pandemic. Use of digital identity service and data exchange service will also help facilitate new, innovative approaches to digital payments, commerce and financial inclusion.
“One embodiment of the present disclosure includes a system for securely identifying and verifying an individual in a biometrically-enhanced data exchange, the system comprising a local partner device and a local identity server. The local partner device including a first electronic processor, a first communication interface, and a first memory, the first electronic processor is configured to receive biometrics and registration information of an individual, generate, with a tokenization algorithm, a first biometric token based on the biometrics that are received, and output the registration information and the first biometric token that is generated. The local identity server including a second electronic processor, a second communication interface, and a second memory, the second electronic processor is configured to receive the registration information and the first biometric token that are output, create a data account associated with the individual in the second memory, the data account including the registration information and the first biometric token that are received, receive a request from the individual or an entity, receive a second set of the biometrics of the individual, generate, with the tokenization algorithm, a second biometric token from the second set of the biometrics of the individual that is received, identify the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account, and control the second communication interface to output a confirmation of the identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account. The first biometric token is different from a biometric image or a biometric template in that the first biometric token only matches a copy of the first biometric token or the second biometric token that is generated from the second set of the biometrics of the individual with the tokenization algorithm.
“Another embodiment of the present disclosure includes a method for securely identifying and verifying an individual in a biometrically-enhanced data exchange. The method includes receiving, with a local partner device, biometrics and registration information of an individual. The method includes generating, with a tokenization algorithm of the local partner device, a first biometric token based on the biometrics that are received. The method includes outputting, with the local partner device, the registration information and the first biometric token that is generated. The method includes receiving, with a local identity server, the registration information and the first biometric token that are output. The method includes creating, with the local identity server, a data account associated with the individual in a memory, the data account including the registration information and the first biometric token that are received. The method includes receiving, with the local identity server, a request from the individual or an entity. The method includes receiving, with the local identity server, a second set of the biometrics of the individual. The method includes generating, with the local identity server and the tokenization algorithm, a second biometric token from the second set of the biometrics of the individual that is received. The method includes identifying, with the local identity server, the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account. The method also includes outputting, with the local identity server, a confirmation of an identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account. The first biometric token is different from a biometric image or a biometric template in that the first biometric token only matches a copy of the first biometric token or the second biometric token that is generated from the second set of the biometrics of the individual with the tokenization algorithm.
“Yet another embodiment of the present disclosure includes a non-transitory computer-readable medium comprising instructions that, when executed by an electronic processor, causes the electronic processor to perform a set of operations. The set of operations includes receiving registration information and a first biometric token that are output by a local partner device, the registration information associated with an individual and the first biometric token based on a first set of biometrics of the individual. The set of operations includes creating a data account associated with the individual in a memory, the data account including the registration information and the first biometric token that are received. The set of operations includes receiving a request from the individual or an entity. The set of operations includes receiving a second set of the biometrics of the individual. The set of operations includes generating, with a tokenization algorithm, a second biometric token from the second set of the biometrics of the individual that is received. The set of operations includes identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account. The set of operations also includes controlling a communication interface to output a confirmation of the identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account. The first biometric token is different from a biometric image or a biometric template in that the first biometric token only matches a copy of the first biometric token or the second biometric token that is generated from the second set of biometrics of the individual with the tokenization algorithm that was used to generate the first biometric token.”
The claims supplied by the inventors are:
“1. A system for securely identifying and verifying an individual in a biometrically-enhanced data exchange, the system comprising: a local partner device including a first electronic processor, a first communication interface, and a first memory, the first electronic processor is configured to receive biometrics and registration information of an individual, generate, with a tokenization algorithm, a first biometric token based on the biometrics that are received, and output the registration information and the first biometric token that is generated; and a local identity server including a second electronic processor, a second communication interface, and a second memory, the second electronic processor is configured to receive the registration information and the first biometric token that are output, create a data account associated with the individual in the second memory, the data account including the registration information and the first biometric token that are received, receive a request from the individual or an entity, receive a second set of the biometrics of the individual, generate, with the tokenization algorithm, a second biometric token from the second set of the biometrics of the individual that is received, identify the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account, and control the second communication interface to output a confirmation of the identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account, wherein the first biometric token is different from a biometric image or a biometric template in that the first biometric token only matches a copy of the first biometric token or the second biometric token that is generated from the second set of the biometrics of the individual with the tokenization algorithm.
“2. The system of claim 1, wherein the second electronic processor is further configured to control the second communication interface to send a USSD code to the individual via a USSD session, wherein the USSD code is tied to the copy of the first biometric token.
“3. The system of claim 1, wherein the first electronic processor is further configured to control the first communication interface to output the registration information and the biometrics to the local identity server via a data exchange network.
“4. The system of claim 1, further comprising: a plurality of local partner devices, each including a third electronic processor, a third communication interface, and a third memory, wherein the first electronic processor is further configured to control the first communication interface to output the registration information and the biometrics to the plurality of local partner devices and the local identity server, and wherein each of the plurality of local partner devices is configured to create a distributed data account associated with the individual in the third memory, the distributed data account including the registration information and the first biometric token that are output.
“5. The system of claim 4, wherein each of the plurality of local partner devices is configured to receive a second request from the individual, receive the second set of the biometrics of the individual, generate, with the tokenization algorithm, the second biometric token from the second set of the biometrics of the individual that is received, identify the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account, and output a confirmation of the identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account.
“6. The system of claim 5, wherein the registration information is a purchase of a health insurance policy.
“7. The system of claim 1, wherein the entity is a hospital, wherein the registration information includes a medical record, and wherein the second electronic processor is further configured to generate a second medical record by removing some or all personally-identifiable information from the medical record, and output the first biometric token and the second medical record to the hospital.
“8. A method for securely identifying and verifying an individual in a biometrically-enhanced data exchange, the method comprising: receiving, with a local partner device, biometrics and registration information of an individual; generating, with a tokenization algorithm of the local partner device, a first biometric token based on the biometrics that are received; outputting, with the local partner device, the registration information and the first biometric token that is generated; receiving, with a local identity server, the registration information and the first biometric token that are output; creating, with the local identity server, a data account associated with the individual in a memory, the data account including the registration information and the first biometric token that are received; receiving, with the local identity server, a request from the individual or an entity; receiving, with the local identity server, a second set of the biometrics of the individual; generating, with the local identity server and the tokenization algorithm, a second biometric token from the second set of the biometrics of the individual that is received; identifying, with the local identity server, the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account; and outputting, with the local identity server, a confirmation of an identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account, wherein the first biometric token is different from a biometric image or a biometric template in that the first biometric token only matches a copy of the first biometric token or the second biometric token that is generated from the second set of the biometrics of the individual with the tokenization algorithm.
“9. The method of claim 8, further comprising: controlling, with the local identity server, a second communication interface to send a USSD code to the individual via a USSD session, wherein the USSD code is tied to the copy of the first biometric token.
“10. The method of claim 8, further comprising: controlling, with the local partner device, a first communication interface to output the registration information and the biometrics to the local identity server via a data exchange network.
“11. The method of claim 8, further comprising: controlling, with the local partner device, a first communication interface to output the registration information and the biometrics to a plurality of local partner devices and the local identity server; and creating, with each of the plurality of local partner devices, a distributed data account associated with the individual in a third memory, the distributed data account including the registration information and the first biometric token that are output.
“12. The method of claim 11, further comprising: receiving, with one of the plurality of local partner devices, a second request from the individual; receiving, with the one of the plurality of local partner devices, the second set of the biometrics of the individual; generating, with the tokenization algorithm and the one of the plurality of local partner devices, the second biometric token from the second set of the biometrics of the individual that is received; identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account; and outputting confirmation of an identity of the individual and the registration information in response to identifying the individual and the data account by matching the second biometric token that is generated to the first biometric token that is stored in the data account.
“13. The method of claim 12, wherein the registration information is a purchase of a health insurance policy.
“14. The method of claim 8, wherein the entity is a hospital, wherein the registration information includes a medical record, the method further comprising: generating, with the local identity server, a second medical record by removing some or all personally-identifiable information from the medical record, and outputting, with the local identity server, the first biometric token and the second medical record to the hospital.”
There are additional claims. Please visit full patent to read further.
For more information, see this patent application: Narayanswamy, Raman; Praszczalek, Przemek. Systems, Methods, And Non-Transitory Computer-Readable Media For Secure Biometrically-Enhanced Data Exchanges And Data Storage. Filed
(Our reports deliver fact-based news of research and discoveries from around the world.)
Patent Issued for Card-shaped data carrier with natural materials, method and device for the production thereof (USPTO 11148459): Giesecke+devrient Mobile Security GmbH
Berkshire Hathaway Specialty Insurance Names Carlos Beltran Senior Vice President, Global Property Underwriting Officer
Advisor News
Annuity News
Health/Employee Benefits News
Life Insurance News