Secure in-line payments
US-12106300-B2 · Oct 1, 2024 · US
US9373111B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9373111-B2 |
| Application number | US-201213570185-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 8, 2012 |
| Priority date | Aug 8, 2011 |
| Publication date | Jun 21, 2016 |
| Grant date | Jun 21, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method is disclosed. It includes presenting a payment card to an access device, obtaining additional data, encrypting the additional data, and passing the encrypted additional data to the access device.
Opening claim text (preview).
What is claimed is: 1. A method comprising: receiving, by a server computer, from an access device associated with a merchant during a transaction, an authorization request message comprising an account number and encrypted additional data related to the transaction involving the merchant; requesting, by the server computer, authorization for the transaction by sending a request message to an issuer computer, wherein the request message comprises the account number included in the received authorization request message; decrypting, by the server computer, the encrypted additional data included in the authorization request message associated with the transaction; storing, by the server computer, the decrypted additional data associated with the transaction in a database; receiving, by the server computer, from the issuer computer, an authorization response message that indicates an authorization of the transaction; determining, by the server computer, that the merchant is eligible to receive the decrypted additional data associated with the transaction; based on determining that the merchant is eligible to receive the decrypted additional data associated with the transaction, modifying, by the server computer, the authorization response message by inserting the decrypted additional data into the authorization response message; and transmitting, by the server computer, the modified authorization response message inserted with the decrypted additional data to the access device. 2. The method of claim 1 , further comprising: removing, by the server computer, the encrypted additional data from the authorization request message; generating, by the server computer, the request message based on information in the authorization request message, wherein the request message is different from the authorization request message, and wherein the request message is sent to the issuer computer based upon generating the request message. 3. The method of claim 1 , wherein the encrypted additional data indicates a rating associated with the transaction. 4. The method of claim 1 , wherein the encrypted additional data indicates a geographical location where the transaction is conducted. 5. The method of claim 1 , further comprising: prior to the server computer receiving the authorization request message from the access device: providing, by the access device, to a payment card, unencrypted additional data; encrypting, by the payment card, the unencrypted additional data to form the encrypted additional data that is included in the received authorization request message; receiving, by the access device, from the payment card, the encrypted additional data; generating, by the access device, the authorization request message comprising the account number and the encrypted additional data; and sending, by the access device, the authorization request message to the server computer. 6. The method of claim 5 , further comprising: displaying, by the access device, a prompt for additional data; and receiving, by the access device, the unencrypted additional data based on interaction by a user with the prompt, wherein the unencrypted additional data that is received by the access device is provided to the payment card. 7. The method of claim 6 , further comprising: before the access device displays the prompt, receiving, by the access device, the prompt from the payment card. 8. The method of claim 1 , wherein the authorization request message is sent as the request message to request authorization for the transaction. 9. The method of claim 1 , wherein the encrypted additional data indicates a shopping profile of a user involved in the transaction. 10. A server computer comprising: a processor; and a non-transitory computer readable medium, wherein the non-transitory computer readable medium comprises executable code that, when executed by the processor, causes the processor to perform steps of: receiving, by the server computer, from an access device associated with a merchant during a transaction, an authorization request message comprising an account number and encrypted additional data related to the transaction involving the merchant; requesting, by the server computer, authorization for the transaction by sending a request message to an issuer computer, wherein the request message comprises the account number included in the received authorization request message; decrypting, by the server computer, the encrypted additional data included in the authorization request message associated with the transaction; storing, by the server computer, the decrypted additional data associated with the transaction in a database; receiving, by the server computer, from the issuer computer, an authorization response message that indicates an authorization of the transaction; determining, by the server computer, that the merchant is eligible to receive the decrypted additional data associated with the transaction; based on determining that the merchant is eligible to receive the decrypted additional data associated with the transaction, modifying, by the server computer, the authorization response message by inserting the decrypted additional data into the authorization response message; and transmitting, by the server computer, the modified authorization response message inserted with the decrypted additional data to the access device. 11. The server computer of claim 10 , wherein the steps further comprise: removing, by the server computer, the encrypted additional data from the authorization request message; generating, by the server computer, the request message based on information in the authorization request message, wherein the request message is different from the authorization request message, and wherein the request message is sent to the issuer computer based upon generating the request message. 12. The server computer of claim 10 , wherein the encrypted additional data indicates a rating associated with the transaction. 13. The server computer of claim 10 , wherein the encrypted additional data indicates a geographical location where the transaction is conducted. 14. The server computer of claim 10 , wherein the authorization request message is sent as the request message to request authorization for the transaction. 15. A system comprising: a processor; and a memory coupled to the processor, wherein the memory stores executable instructions that, when executed by the processor, cause the processor to perform steps of: receiving, by the system, from a mobile communication device associated with a merchant during a transaction, an authorization request message comprising an account number and encrypted additional data related to the transaction involving the merchant; requesting, by the system, authorization for the transaction by sending a request message to an issuer computer, wherein the request message comprises the account number included in the received authorization request message; decrypting, by the system, the encrypted additional data included in the authorization request message associated with the transaction; storing, by the system, the decrypted additional data associated with the transaction in a database; receiving, by the system, from the issuer computer, an authorization response message that indicates an authorization of the transaction; determining, by the system, that the merchant is eligible to receive the decrypted additional data associated with the transaction; based on determining that the merchant is eligible to receive the decrypted additional data associated with
using cards, e.g. integrated circuit [IC] cards or magnetic cards · CPC title
insuring higher security of transaction · CPC title
Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists · CPC title
using wireless devices · CPC title
Payment applications installed on the mobile devices · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.