Authentication and personal data sharing for partner services using out-of-band optical mark recognition

US11640602B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11640602-B2
Application numberUS-202117314900-A
CountryUS
Kind codeB2
Filing dateMay 7, 2021
Priority dateSep 30, 2016
Publication dateMay 2, 2023
Grant dateMay 2, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Disclosed are methods and apparatuses for creating a verified mutually authenticated transaction between a service provider and an on-line identity for a physical client person. A dynamic optical mark may be displayed on a device screen where the physical client person is using a web service. The dynamic optical mark may be recognized via scanning the dynamic optical mark by a personal mobile device equipped with a camera. The verified mutually authenticated transaction between the service provider and the on-line identity for the physical client person may be used for sharing personal data of the physical client person by using out-of-band optical mark recognition of the dynamic optical mark. The verified mutually authenticated transaction may be initiated with a time-limited one-time password comprising a sequence of numbers encoded in the dynamic optical mark.

First claim

Opening claim text (preview).

What is claimed is: 1. A method programmed in a non-transitory memory of a mobile device comprising: recognizing an optical mark displayed on a device screen of a device, wherein the optical mark comprises at least two concentric circles, wherein the optical mark is calibrated by comparing at least three different colors within a calibration region within the at least two concentric circles to an encoding palette, wherein a portion of the optical mark within the at least two concentric circles, comprises a plurality of segments wherein each segment of the plurality of segments comprises one color of the at least three different colors; detecting the optical mark using the registration mark and the calibration region by identifying and assigning values to the plurality of segments of the segmented portion and decoding an optical code based on the assigned values; and authenticating an on-line identity for a client based on the optical code of the optical mark and based on the on-line identity of the client. 2. The method of claim 1 wherein the portion of the optical mark is based on the at least three different colors and each color is associated with the optical code comprising a number. 3. The method of claim 1 wherein the optical mark is oriented by positioning a registration mark relative to the portion of the optical mark. 4. The method of claim 1 wherein recognizing the optical mark comprises recognizing the optical mark over an air-gapped channel between the mobile device and the device screen of the device. 5. The method of claim 1 further comprising: storing a first key, wherein authenticating the on-line identity for the client comprises signing a transaction completion request with the first key stored in the mobile device; and verifying the on-line identity for the client by using a corresponding second key stored by a computer of a web service provider. 6. The method of claim 5 wherein verifying the on-line identity for the client comprises evaluating personal biometry. 7. The method of claim 5 further comprising: constructing an authorization assertion; and passing the authorization assertion to the web service provider. 8. The method of claim 7 wherein passing the authorization assertion comprises passing an OAuth2 token, SAML token, or RP token to the web service provider. 9. The method of claim 1 wherein recognizing the optical mark comprises scanning the optical mark by a camera of the mobile device. 10. The method of claim 5 wherein the first key comprises a private key, and wherein the second key comprises a public key. 11. The method of claim 6 wherein evaluating the personal biometry comprises retina scanning or fingerprint scanning. 12. An apparatus comprising: a non-transitory memory configured for storing an application, the application configured for: recognizing an optical mark displayed on a device screen of a device, wherein the optical mark comprises at least two concentric circles, wherein the optical mark is calibrated by comparing at least three different colors within a calibration region within the at least two concentric circles to an encoding palette, wherein a portion of the optical mark within the at least two concentric circles, comprises a plurality of segments wherein each segment of the plurality of segments comprises one color of the at least three different colors; detecting the optical mark using the registration mark and the calibration region by identifying and assigning values to the plurality of segments of the segmented portion and decoding an optical code based on the assigned values; and authenticating an on-line identity for a client based on the optical code of the optical mark and based on the on-line identity of the client; and a processor configured for processing the application. 13. The apparatus of claim 12 wherein the portion of the optical mark is based on the at least three different colors and each color is associated with the optical code comprising a number. 14. The apparatus of claim 12 wherein the optical mark is oriented by positioning a registration mark relative to the portion of the optical mark. 15. The apparatus of claim 12 wherein recognizing the optical mark comprises recognizing the optical mark over an air-gapped channel between the mobile device and the device screen of the device. 16. The apparatus of claim 12 wherein the application is configured for: storing a first key, wherein authenticating the on-line identity for the client comprises signing a transaction completion request with the first key stored in the mobile device; and verifying the on-line identity for the client by using a corresponding second key stored by a computer of a web service provider. 17. The apparatus of claim 16 wherein verifying the on-line identity for the client comprises evaluating personal biometry. 18. The apparatus of claim 16 wherein the application is configured for: constructing an authorization assertion; and passing the authorization assertion to the web service provider. 19. The apparatus of claim 18 wherein passing the authorization assertion comprises passing an OAuth2 token, SAML token, or RP token to the web service provider. 20. The apparatus of claim 12 wherein recognizing the optical mark comprises scanning the optical mark by a camera of the mobile device. 21. The apparatus of claim 16 wherein the first key comprises a private key, and wherein the second key comprises a public key. 22. The apparatus of claim 17 wherein evaluating the personal biometry comprises retina scanning or fingerprint scanning. 23. A method programmed in a non-transitory memory of a mobile device comprising: recognizing an optical mark displayed on a device screen of a device, wherein the optical mark comprises at least two concentric circles, wherein the optical mark is calibrated by comparing at least three different colors within a calibration region within the at least two concentric circles to an encoding palette; detecting the optical mark using the registration mark and the calibration region by decoding an optical code; and authenticating an on-line identity for a client based on the optical code of the optical mark and based on the on-line identity of the client. 24. The method of claim 23 wherein a portion of the optical mark is based on the at least three different colors and each color is associated with the optical code comprising a number. 25. The method of claim 23 wherein the optical mark is oriented by positioning a registration mark relative to a portion of the optical mark. 26. The method of claim 23 wherein recognizing the optical mark comprises recognizing the optical mark over an air-gapped channel between the mobile device and the device screen of the device. 27. The method of claim 23 further comprising: storing a first key, wherein authenticating the on-line identity for the client comprises signing a transaction completion request with the first key stored in the mobile device; and verifying the on-line identity for the client by using a corresponding second key stored by a computer of a web service provider. 28. The method of claim 27 wherein verifying the on-line identity for the client comprises evaluating personal biometry. 29. The method of claim 27 further comprising: constructing an authorization asser

Assignees

Inventors

Classifications

  • Authentication · CPC title

  • using two different networks, one for transaction and one for security confirmation · CPC title

  • Biometric identity checks · CPC title

  • involving key management · CPC title

  • Use of electronic signatures · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11640602B2 cover?
Disclosed are methods and apparatuses for creating a verified mutually authenticated transaction between a service provider and an on-line identity for a physical client person. A dynamic optical mark may be displayed on a device screen where the physical client person is using a web service. The dynamic optical mark may be recognized via scanning the dynamic optical mark by a personal mobile d…
Who is the assignee on this patent?
Winkk Inc
What technology area does this patent fall under?
Primary CPC classification G06Q20/38215. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue May 02 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).