System, method and architecture for secure sharing of customer intelligence

US2023057802A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2023057802-A1
Application numberUS-202217980781-A
CountryUS
Kind codeA1
Filing dateNov 4, 2022
Priority dateOct 7, 2018
Publication dateFeb 23, 2023
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A key master service capable of operating on a service provider in a network enables is disclosed. The key master enables authorized parties to securely exchange client information without compromising client security. One feature of the key master service is the generation of a unique key for each client. All parties in an authorized universe access, exchange and modify client information by referencing the universal key, rather than using known client identifiers. Client information is further secured by advantageously applying an obfuscation function to the data. Obfuscated client information is stored together with the universal key as keyed client data at the client and/or server, where it may be directly accessed by the service provider or third parties. Because client information is stored and exchanged without the ability to discern either the client identity or the nature of the information, such information is secured against malicious third-party interception.

First claim

Opening claim text (preview).

What is claimed is: 1 . A computer-implemented method, comprising: authorizing, using at least one processor, at least one party for access to a client intelligence data, the client intelligence data being indicative of at least one internet activity by a client and being associated with at least one client identifier; receiving, using the at least one processor, a request, from the at least one authorized party, to access the client intelligence data, the request including at least one key, the at least one key is generated for providing access to the client intelligence data and provided to the at least one authorized party; generating, using the at least one processor, a decoding associated with the client intelligence data, and transmitting the decoding to the at least one authorized party; and providing, using the at least one processor, access to the client intelligence data to the at least one authorized party based on the decoding, wherein the provided client intelligence data has the at least one client identifier removed. 2 . The method according to claim 1 , wherein the at least one key is a deidentified key having the at least one client identifier removed from the at least one key. 3 . The method according to claim 1 , wherein the at least one key is generated using at least one of the following: random number generator, a hash function, and any combination thereof. 4 . The method according to claim 1 , wherein the client intelligence data is uninterpretable to one or more parties not authorized for access to the client intelligence data. 5 . The method according to claim 4 , wherein the at least one authorized party, based on the authorizing, is configured to interpret, using the decoding, the client intelligence data. 6 . The method according to claim 1 , wherein the at least one key, the client intelligence data and a mapping between the least one key and the client intelligence data are stored in at least one key table. 7 . The method according to claim 1 , wherein the at least one internet activity includes at least one website visited by the client. 8 . The method according to claim 1 , wherein the providing including pushing the provided client intelligence data to the at least one authorized party. 9 . The method according to claim 1 , wherein the at least one key is generated by transforming, using the at least one processor, the at least one client identifier. 10 . The method according to claim 9 , wherein the provided client intelligence data includes an obfuscated client intelligence data having at least one obfuscated portion. 11 . The method according to claim 10 , wherein the obfuscated client intelligence data is combined with the at least one key and provided to the at least one authorized party. 12 . The method according to claim 11 , wherein the providing includes generating, using the at least one processor, a cookie including a combination of the at least one key and the obfuscated client intelligence data; and providing, using the at least one processor, the cookie to the at least one authorized party. 13 . A system, comprising: at least one processor; and at least one non-transitory storage media storing instructions, that when executed by the at least one processor, cause the at least one processor to perform operations including authorizing at least one party for access to a client intelligence data, the client intelligence data being indicative of at least one internet activity by a client and being associated with at least one client identifier; receiving a request, from the at least one authorized party, to access the client intelligence data, the request including at least one key, the at least one key is generated by transforming the at least one client identifier and generated for providing access to the client intelligence data and provided to the at least one authorized party; generating a decoding associated with the client intelligence data, and transmitting the decoding to the at least one authorized party; and pushing the client intelligence data to the at least one authorized party, wherein the at least one authorized party is configured to use the decoding to access the pushed client intelligence data, wherein the pushed client intelligence data has the at least one client identifier removed. 14 . The system according to claim 13 , wherein the at least one key is a deidentified key having the at least one client identifier removed from the at least one key; the at least one key is generated using at least one of the following: random number generator, a hash function, and any combination thereof. 15 . The system according to claim 13 , wherein the client intelligence data is uninterpretable to one or more parties not authorized for access to the client intelligence data. 16 . The system according to claim 13 , wherein the at least one authorized party, based on the authorizing, is configured to interpret, using the decoding, the client intelligence data. 17 . The system according to claim 13 , wherein the at least one key, the client intelligence data and a mapping between the least one key and the client intelligence data are stored in at least one key table. 18 . The system according to claim 13 , wherein the at least one internet activity includes at least one website visited by the client. 19 . The system according to claim 13 , wherein the pushed client intelligence data includes an obfuscated client intelligence data having at least one obfuscated portion, the obfuscated client intelligence data is combined with the at least one key and pushed to the at least one authorized party. 20 . A computer program product comprising a non-transitory machine-readable medium storing instructions that, when executed by at least one programmable processor, cause the at least one programmable processor to perform operations comprising: authorizing at least one party for access to a client intelligence data, the client intelligence data being indicative of at least one internet activity by a client and being associated with at least one client identifier; receiving a request, from the at least one authorized party, to access the client intelligence data, the request including at least one key, the at least one key is generated for providing access to the client intelligence data and provided to the at least one authorized party; generating a decoding associated with the client intelligence data, and transmitting the decoding to the at least one authorized party; and providing access to the client intelligence data to the at least one authorized party based on the decoding, wherein the provided client intelligence data has the at least one client identifier removed, wherein the providing includes generating a cookie including a combination of the at least one key and an obfuscated client intelligence data and providing the cookie to the at least one authorized party.

Assignees

Inventors

Classifications

  • involving user or device identifiers, e.g. serial number, physical or biometrical information, DNA, hand-signature or measurable physical characteristics · CPC title

  • H04L9/083Primary

    involving central third party, e.g. key distribution center [KDC] or trusted third party [TTP] · CPC title

  • using third party service providers · CPC title

  • Querying (for retrieval from the web G06F16/953) · CPC title

  • during transmission, i.e. party's identity is protected against eavesdropping, e.g. by using temporary identifiers, but is known to the other party or parties involved in the communication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2023057802A1 cover?
A key master service capable of operating on a service provider in a network enables is disclosed. The key master enables authorized parties to securely exchange client information without compromising client security. One feature of the key master service is the generation of a unique key for each client. All parties in an authorized universe access, exchange and modify client information by r…
Who is the assignee on this patent?
Capital One Services Llc
What technology area does this patent fall under?
Primary CPC classification H04L9/083. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Feb 23 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 3 related publications on this page (citations in our corpus or others sharing the same primary CPC).