Call center web-based authentication using a contactless card

US12206786B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-12206786-B2
Application numberUS-202418583178-A
CountryUS
Kind codeB2
Filing dateFeb 21, 2024
Priority dateOct 30, 2020
Publication dateJan 21, 2025
Grant dateJan 21, 2025

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems, methods, articles of manufacture, and computer-readable media. A server may receive a phone call and generate a uniform resource locator (URL) comprising a session identifier for an account. The server may transmit the URL to a client device. The server may receive, from a web browser, a request comprising the URL. The server may determine that the session identifier in the URL of the request matches the session identifier for the account, and transmit, to the web browser, a web page at the URL. The server may receive, from the web browser, a cryptogram read by the web page via a card reader of the client device and decrypt the cryptogram. The server may authenticate the identity of the caller for the call based on decrypting the cryptogram and the session identifier of the URL matching the session identifier of the account.

First claim

Opening claim text (preview).

What is claimed is: 1. A method, comprising: receiving, by a server from a web browser of a client device, a request comprising a cookie; verifying, by the server, the cookie; decrypting, by the server, encrypted data received from the web browser; generating, by the server, a session identifier associated with an account; transmitting, by the server, an authenticated phone number comprising the session identifier to the client device; receiving, by the server, a phone call specifying the authenticated phone number; receiving, by the server during the phone call, input specifying the session identifier; determining, by the server, that the session identifier received as input matches the session identifier associated with the account; and providing, by the server based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, an attribute of the account to a graphical user interface displayed on an agent system associated with the phone call. 2. The method of claim 1 , wherein the authenticated phone number comprises a pre-authenticated phone number. 3. The method of claim 1 , further comprising: determining, by the server, that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed a time threshold. 4. The method of claim 3 , wherein the attribute is provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold. 5. The method of claim 1 , further comprising: authenticating the account by the server based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the attribute is further provided based on the authentication of the account. 6. The method of claim 1 , further comprising: automatically connecting, by the server, the phone call to an agent associated with the agent system based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account. 7. The method of claim 1 , wherein the request comprises a hypertext transfer protocol (HTTP) request. 8. A non-transitory computer-readable storage medium, the computer-readable storage medium including instructions that when executed by a processor, cause the processor to: receive, from a web browser of a client device, a request comprising a cookie; verify the cookie; decrypt encrypted data received from the web browser; generate a session identifier associated with an account; transmit an authenticated phone number comprising the session identifier to the client device; receive a phone call specifying the authenticated phone number; receive, during the phone call, input specifying the session identifier; determine that the session identifier received as input matches the session identifier associated with the account; and provide, based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, an attribute of the account to a graphical user interface displayed on an agent system associated with the phone call. 9. The computer-readable storage medium of claim 8 , wherein the authenticated phone number comprises a pre-authenticated phone number. 10. The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to: determine that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed a time threshold. 11. The computer-readable storage medium of claim 10 , wherein the attribute is provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold. 12. The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to: authenticate the account based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the attribute is further provided based on the authentication of the account. 13. The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to: automatically connect the phone call to an agent associated with the agent system based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account. 14. The computer-readable storage medium of claim 8 , wherein the request comprises a hypertext transfer protocol (HTTP) request. 15. A computing apparatus comprising: a processor; and a memory storing instructions that, when executed by the processor, cause the processor to: receive, from a web browser of a client device, a request comprising a cookie; verify the cookie; decrypt encrypted data received from the web browser; generate a session identifier associated with an account; transmit an authenticated phone number comprising the session identifier to the client device; receive a phone call specifying the authenticated phone number; receive, during the phone call, input specifying the session identifier; determine that the session identifier received as input matches the session identifier associated with the account; and provide, based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, an attribute of the account to a graphical user interface displayed on an agent system associated with the phone call. 16. The computing apparatus of claim 15 , wherein the authenticated phone number comprises a pre-authenticated phone number. 17. The computing apparatus of claim 15 , wherein the instructions further cause the processor to: determine that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed a time threshold. 18. The computing apparatus of claim 17 , wherein the attribute is provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold. 19. The computing apparatus of claim 15 , wherein the instructions further cause the processor to: authenticate the account based on the verification of the cookie, the decryption of the encrypted data, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the attribute is further provided based on the authentication of the account. 20. The computing apparatus of claim 15 , wherein the instructions further cause the processor to: automatically connect the phone call to an agent associated with the agent system based on the

Assignees

Inventors

Classifications

  • User interfaces specially adapted for cordless or mobile telephones · CPC title

  • arrangements for handling protocols designed for non-contact record carriers such as RFIDs NFCs, e.g. ISO/IEC 14443 and 18092 (cryptographic protocols H04L9/00; network security protocols H04L63/00; real-time communication protocols in data switching networks H04L65/00; network protocols for data switching network services H04L67/00) · CPC title

  • based on web technology, e.g. hypertext transfer protocol [HTTP] · CPC title

  • Notifying the called party of information on the calling party (details within substation equipment H04M1/57, signalling details H04Q3/72) · CPC title

  • using additional device, e.g. trusted platform module [TPM], smartcard, USB or hardware security module [HSM] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US12206786B2 cover?
Systems, methods, articles of manufacture, and computer-readable media. A server may receive a phone call and generate a uniform resource locator (URL) comprising a session identifier for an account. The server may transmit the URL to a client device. The server may receive, from a web browser, a request comprising the URL. The server may determine that the session identifier in the URL of the …
Who is the assignee on this patent?
Capital One Services Llc
What technology area does this patent fall under?
Primary CPC classification H04L9/3234. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jan 21 2025 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).