Managing security credentials
US-9767262-B1 · Sep 19, 2017 · US
US12488335B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12488335-B2 |
| Application number | US-202418632614-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 11, 2024 |
| Priority date | Dec 15, 2017 |
| Publication date | Dec 2, 2025 |
| Grant date | Dec 2, 2025 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method for managing secure processing of electronic payment transactions includes receiving a request submitted by a merchant computing system for a security verifier. The security verifier is to be displayed on an electronic display associated with the merchant computing system. A set of security credentials received from a security service provider is measured against a security threshold. When the set of security credentials meets the security threshold, a uniform resource locator (“URL”) is transmitted to the merchant computing system. The URL identifies the security verifier to be retrieved and displayed at the electronic display associated with the merchant computing system.
Opening claim text (preview).
What is claimed is: 1 . A method for managing secure processing of electronic transactions, comprising: receiving, by a server, a request for a security verifier to be displayed on an electronic display of a third-party computing system; transmitting, by the server, a request for security credentials associated with the third-party computing system to one or more security service providers; receiving, by the server, a plurality of security credentials from a subset of security service providers among the one or more security service providers; determining, by the server, that at least one subset of security credentials among the plurality of security credentials meets a network security threshold; generating and transmitting a plurality of uniform resource locators (“URL”) unique to each of the one or more security service providers associated with the at least one subset of security credentials; monitoring, by the server, whether the subset of security credentials continues to meet the network security threshold; and transmitting, by the server, a notification to the one or more security service providers based on the determination of whether the subset of security credentials meets the network security threshold. 2 . The method of claim 1 , wherein the server is a security badge arbitrator. 3 . The method of claim 1 , wherein the monitoring of the plurality of security credentials occurs dynamically and in real-time. 4 . The method of claim 1 , wherein the network security threshold includes global security standards established by at least one of EMVco, W3C, and OWASP. 5 . The method of claim 1 , wherein the one or more security service providers provide the subset of security credentials to the server via a web service application programming interface (“API”). 6 . The method of claim 1 , further comprising: transmitting, by the server, a renewed request for the subset of security credentials from at least one security service provider among the subset of security service providers to measure against the network security threshold; and receiving, in response to the renewed request, the subset of security credentials from the at least one security service provider among the subset of security service providers, wherein the renewed request for the subset of security credentials from the at least one security service provider among the subset of security service providers to measure against the network security threshold is transmitted at periodic intervals. 7 . The method of claim 1 , further comprising: transmitting at periodic intervals, by the server, a validation request to the third-party computing system; receiving, in response to the validation request, from the third-party computing system, a security policy as installed on the third-party computing system; determining, by the server, whether the security policy matches a security solution provided by the one or more security service providers; and proceeding, by the server and based on the security policy not matching the security solution provided by the security service provider, to i) revoke access to the generated URL and ii) deny display of the security verifier on the electronic display of the third-party computing system. 8 . A non-transitory computer readable medium storing a program causing a computer to execute a method for managing secure processing of electronic payment transactions, the method comprising: receiving, by a server, a request for a security verifier to be displayed on an electronic display of a third-party computing system; transmitting, by the server, a request for security credentials associated with the third-party computing system to one or more security service providers; receiving, by the server, a plurality of security credentials from a subset of security service providers among the one or more security service providers; determining, by the server, that at least one subset of security credentials among the plurality of security credentials meets a network security threshold; generating and transmitting a plurality of uniform resource locators (“URL”) unique to each of the one or more security service providers associated with the at least one subset of security credentials; monitoring, by the server, whether the subset of security credentials continues to meet the network security threshold; and transmitting, by the server, a notification to the one or more security service providers based on the determination of whether the subset of security credentials meets the network security threshold. 9 . The non-transitory computer readable medium of claim 8 , wherein the server is a security badge arbitrator. 10 . The non-transitory computer readable medium of claim 8 , wherein the monitoring of the plurality of security credentials occurs dynamically and in real-time. 11 . The non-transitory computer readable medium of claim 8 , wherein the network security threshold includes global security standards established by at least one of EMVco, W3C, and OWASP. 12 . The non-transitory computer readable medium of claim 8 , wherein the one or more security service providers provide the subset of security credentials to the server via a web service application programming interface (“API”). 13 . The non-transitory computer readable medium of claim 8 , the method further comprising: transmitting, by the server, a renewed request for the subset of security credentials from at least one security service provider among the subset of security service providers to measure against the network security threshold; and receiving, in response to the renewed request, the subset of security credentials from the at least one security service provider among the subset of security service providers, wherein the renewed request for the subset of security credentials from the at least one security service provider among the subset of security service providers to measure against the network security threshold is transmitted at periodic intervals. 14 . The non-transitory computer readable medium of claim 8 , the method further comprising: transmitting at periodic intervals, by the server, a validation request to the third-party computing system; in response to the validation request, receiving from the third-party computing system, a security policy as installed on the third-party computing system; determining, by the server, whether the security policy matches a security solution provided by the one or more security service providers; and based on the security policy not matching the security solution provided by the security service provider, proceeding, by the server, to i) revoke access to the generated URL and ii) deny display of the security verifier on the electronic display of the third-party computing system. 15 . A computing system for managing secure processing of electronic payment transactions, the computing system comprising: a memory having processor-readable instructions stored therein; and a processor configured to access the memory and execute the processor-readable instructions, which when executed by a processor cause the processor to perform a plurality of functions, including functions to: receive, by a server, a request for a security verifier to be displayed on an electronic display of a third-party computing system; transmit, by the server, a request for security credentials associated with the third-party computing system to one or more security service providers; receive, by the server, a plurality of security credentials from a subset of security service provide
Identity check for transactions · CPC title
specially adapted for electronic shopping systems · CPC title
Protecting data · CPC title
during program execution, e.g. stack integrity {; Preventing unwanted data erasure; Buffer overflow} · CPC title
Electronic credentials · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.