Restricted access to sensitive content

US2021194888A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2021194888-A1
Application numberUS-201916725295-A
CountryUS
Kind codeA1
Filing dateDec 23, 2019
Priority dateDec 23, 2019
Publication dateJun 24, 2021
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

In one aspect, the present disclosure relates to a method including: receiving, by a client device, a request to access content stored on a remote server; determining, by the client device, that the requested content includes sensitive information based on a user profile associated with the client device; modifying, by the client device, the requested content in response to the determination that the content includes sensitive information; and providing, by client device, access to the modified content in place of the requested content that includes the sensitive information.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method comprising: detecting, by a client device, a request to access content located on a remote server; determining, by the client device, that the requested content includes sensitive information based on a profile associated with the client device and a context in which the content is being accessed; modifying, by the client device, the requested content in response to the determination that the content includes sensitive information; and providing, by client device, access to the modified content in place of the requested content that includes the sensitive information. 2 . The method of claim 1 , wherein the determination that the requested content includes sensitive information is further based on metadata associated with the content. 3 . The method of claim 1 , wherein the determination that the requested content includes sensitive information further includes analysis of the requested content using one or more models selected based on the user profile. 4 . The method of claim 3 , further including selecting the one or more models based on attributes of an organization with which the requested content is associated. 5 . The method of claim 1 , wherein the determination that the requested content includes sensitive information comprises: extracting text from the requested content; generating one or more feature vectors based on the extracted text; and using the one or more feature vectors and one or more trained models to detect the sensitive information of the requested content. 6 . The method of claim 5 , wherein the extraction of the text from the requested content includes using Optical Character Recognition (OCR) to extract the text. 7 . The method of claim 1 , wherein the detection of the access to the requested content located on the remote server and the determination the requested content includes sensitive information is performed by a browser application of the client device. 8 . The method of claim 7 , wherein the requested content is located within a Software-as-a-Service (SaaS) application. 9 . The method of claim 1 , wherein the modification of the requested content includes a change to a document using an application programming interface (API), and the API being selected based on a file type of the content. 10 . The method of claim 1 , wherein the request to access the content includes a request to upload, download, share, copy, or paste the content. 11 . A device comprising: a memory; and a processor coupled to the memory and configured to: access content of an application, the content including sensitive information, and the application being executable on a remote computing device; detect the sensitive information of the content based on at least one of a user profile and a context in which the content is being accessed; and modify the content in response to detection of the sensitive information, the modification enabling the computing device to replicate security controls applicable to local users of the application. 12 . The device of claim 11 , wherein the processor is configured to detect the sensitive information of the content further based on metadata associated with the content. 13 . The device of claim 11 , wherein the processor is configured to detect the sensitive information of the content by analyzing the content using one or more models selected based on at least one of the user profile and the context in which the content is being accessed. 14 . The device of claim 13 , wherein the processor is configured to select the one or more models based on attributes of an organization with which the content is associated. 15 . The device of claim 11 , wherein the processor is configured to: extract text from the content; generate one or more feature vectors based on the extracted text; and use the one or more feature vectors and one or more trained models to detect the sensitive information of the content. 16 . The device of claim 15 , wherein the processor is configured to use Optical Character Recognition (OCR) to extract the text. 17 . The device of claim 11 , further including a browser application that, when executed by the processor, is operable to detect the sensitive information of the content and to modify the content in response to detection of the sensitive information. 18 . The device of claim 17 wherein the application is a Software-as-a-Service (SaaS) application. 19 . A method comprising: detecting, by a gateway device, a request to access content stored on a remote server, the request being associated with a client device; determining, by the gateway device, that the requested content includes sensitive information based on a user profile associated with the client device; modifying, by the gateway device, the requested content in response to the determination that the content includes sensitive information; and providing, by gateway device, access to the modified content in place of the requested content that includes the sensitive information. 20 . The method of claim 19 , wherein the determination that the requested content includes sensitive information further includes analysis of the requested content using one or more models selected based on the user profile associated with the client device.

Assignees

Inventors

Classifications

  • Machine learning · CPC title

  • providing single-sign-on or federations · CPC title

  • Entity profiles · CPC title

  • wherein the identity of one or more communicating identities is hidden (cryptographic mechanisms or cryptographic arrangements for anonymous credentials or for identity based cryptographic systems H04L9/00) · CPC title

  • H04L63/105Primary

    Multiple levels of security · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2021194888A1 cover?
In one aspect, the present disclosure relates to a method including: receiving, by a client device, a request to access content stored on a remote server; determining, by the client device, that the requested content includes sensitive information based on a user profile associated with the client device; modifying, by the client device, the requested content in response to the determination th…
Who is the assignee on this patent?
Citrix Systems Inc
What technology area does this patent fall under?
Primary CPC classification H04L63/105. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Jun 24 2021 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 2 related publications on this page (citations in our corpus or others sharing the same primary CPC).