Preventing leakage of selected information in public channels
US-2021117567-A1 · Apr 22, 2021 · US
US12361156B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12361156-B2 |
| Application number | US-202418610916-A |
| Country | US |
| Kind code | B2 |
| Filing date | Mar 20, 2024 |
| Priority date | Dec 14, 2021 |
| Publication date | Jul 15, 2025 |
| Grant date | Jul 15, 2025 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Methods, systems, and apparatuses for providing access to records of a database stored on a database server in a cloud database platform are described herein. A data sharing platform may determine a shared view definition for access to the database. The data sharing platform may determine rules that specify criteria that limit access to the records stored by the database. The one or more first rules may be received via a user interface. The data sharing platform may perform, based on the rules, a data access certification process on the records stored by the database to generate a table of certification results. The data sharing platform may generate, based on the table of certification results, and without modifying the records stored by the database, a limited consumer view definition. Based on updates to the records, a new limited consumer view definition may be generated.
Opening claim text (preview).
What is claimed is: 1. A data sharing platform configured to provide access to records of a database stored on a database server, the data sharing platform comprising: one or more processors; and memory storing instructions that, when executed by the one or more processors, cause the data sharing platform to: determine one or more first rules that specify criteria, associated with consumer permissions to access the database via a cloud database platform, that limit consumer access to the records stored by the database; perform, based on the one or more first rules, a data access certification process on the records stored by the database to generate a table of certification results by causing the data sharing platform to: access all the records stored by the database; generate a data certification result for each record based on determining, for each record, whether a given record satisfies the criteria of the one or more first rules based on one or more fields of the given record; and generate, based on the data certification result for each record, the table of certification results that indicates, for each record, whether the record satisfies the criteria of the one or more first rules; and cause, based on a query, based on the table of certification results, and without modifying the records stored by the database, a first virtual warehouse provided by the cloud database platform to provide access to a first portion of the records in compliance with the criteria of the one or more first rules and exclude a second portion of the records not in compliance with the criteria of the one or more first rules. 2. The data sharing platform of claim 1 , wherein the instructions, when executed by the one or more processors, further cause the data sharing platform to: cause output of a result of the query to a consumer authorized to access the database. 3. The data sharing platform of claim 1 , wherein the instructions, when executed by the one or more processors, further cause the data sharing platform to: receive an update to the one or more first rules; perform, based on the update to the one or more first rules, the data access certification process to generate a second table of certification results; and cause, based on the second table of certification results, the first virtual warehouse to provide access to a third portion of the records. 4. The data sharing platform of claim 1 , wherein the instructions, when executed by the one or more processors, cause the data sharing platform to generate the table of certification results by further causing the data sharing platform to: add, to the table of certification results and based on at least one of the one or more first rules, an indication that a first value in a first field should be replaced with a second value. 5. The data sharing platform of claim 1 , wherein at least one of the one or more first rules prevent one or more of: output of invalid values; output of values outside of a predefined range; or output of values that do not match a regular expression pattern. 6. The data sharing platform of claim 1 , wherein at least one rule of the one or more first rules prevent output of data outside a time period specified by the at least one rule. 7. The data sharing platform of claim 1 , wherein at least one of the one or more first rules is configured to cause output of an alert based on a determination that more than a predetermined percentage of the records is not output based on the one or more first rules. 8. A method for providing access to records of a database stored on a database server, the method comprising: determining, by a data sharing platform, one or more first rules that specify criteria, associated with consumer permissions to access the database via a cloud database platform, that limit consumer access to the records stored by the database; performing, based on the one or more first rules, a data access certification process on the records stored by the database to generate a table of certification results by: accessing all the records stored by the database; generating a data certification result for each record based on determining, for each record, whether a given record satisfies the criteria of the one or more first rules based on one or more fields of the given record; and generating, based on the data certification result for each record, the table of certification results that indicates, for each record, whether the record satisfies the criteria of the one or more first rules; and causing, based on a query, based on the table of certification results, and without modifying the records stored by the database, a first virtual warehouse provided by the cloud database platform to provide access to a first portion of the records in compliance with the criteria of the one or more first rules and exclude a second portion of the records not in compliance with the criteria of the one or more first rules. 9. The method of claim 8 , further comprising: causing output of a result of the query to a consumer authorized to access the database. 10. The method of claim 8 , further comprising: receiving an update to the one or more first rules; performing, based on the update to the one or more first rules, the data access certification process to generate a second table of certification results; and causing, based on the second table of certification results, the first virtual warehouse to provide access to a third portion of the records. 11. The method of claim 8 , wherein generating the table of certification results further comprises: adding, to the table of certification results and based on at least one of the one or more first rules, an indication that a first value in a first field should be replaced with a second value. 12. The method of claim 8 , wherein at least one of the one or more first rules prevent one or more of: output of invalid values; output of values outside of a predefined range; or output of values that do not match a regular expression pattern. 13. The method of claim 8 , wherein at least one rule of the one or more first rules prevent output of data outside a time period specified by the at least one rule. 14. The method of claim 8 , wherein at least one of the one or more first rules is configured to cause output of an alert based on a determination that more than a predetermined percentage of the records is not output based on the one or more first rules. 15. One or more non-transitory computer-readable media storing instructions that, when executed by one or more processors of a data sharing platform, cause the data sharing platform to provide access to records of a database stored on a database server by causing the data sharing platform to: determine one or more first rules that specify criteria, associated with consumer permissions to access the database via a cloud database platform, that limit consumer access to the records stored by the database; perform, based on the one or more first rules, a data access certification process on the records stored by the database to generate a table of certification results by causing the data sharing platform to: access all the records stored by the database; generate a data certification result for each record based on determining, for each record, whether a given record satisfies the criteria of the one or more first rules based on one or more fields of the given record; and generate, based on the data certification result for each record, the table of certification results that indicates, for each record, whether the record satisfies the
Data retrieval commands; View definitions · CPC title
in federated or virtual databases · CPC title
using context · CPC title
Access rights, e.g. capability lists, access control lists, access tables, access matrices · CPC title
Ensuring data consistency and integrity · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.