IP Library Granted Patent US 12676864
Granted Patent B2
US 12676864 · App. 18/929,356 · Granted Jul 7, 2026

Systems and methods for protecting the identity of users and entities

Inventors: Arushi S. Joshi (San Francisco, CA); Ashmita Regmi (San Francisco, CA); Anthony Stimola (San Francisco, CA); Uma Anupindi (San Francisco, CA); Ian T. Staley (San Francisco, CA); Anita Sukur (Minneapolis, MN)
Assignee: Wells Fargo Bank, N.A.
H04L63/105H04L9/3218H04L63/102
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12676864
App. No.
18/929,356
Filed
Oct 28, 2024
Granted
Jul 7, 2026
Kind
B2
Art Unit
2436
USPC
726/1
Abstract

Methods, systems, and computer-readable medium for protecting the identity of users and entities. One method includes receiving an entity profile request, receiving a plurality of attributes associated with one or more members of the entity, and receiving/identifying a plurality of access credentials of the one or more members of the entity. The method includes generating an entity profile including a plurality of member identity passes, generating a GUI including a representation of the entity profile, and receiving a request and at least one of the plurality of access credentials. The request is for an exchange or providing at least one of the plurality of attributes. The method includes verifying that access credentials correspond to an access level to perform the request, accessing a data storage, transmitting or permitting access to information to satisfy the request, and updating a usage log.

Claims (82)

1 . A system, comprising:

a first computing system comprising at least one processor and at least one memory coupled to the at least one processor, wherein the at least one processor is configured to:

receive an entity profile request for an entity;

receive a plurality of attributes associated with one or more members of the entity;

receive or identify a plurality of access credentials of the one or more members of the entity, wherein at least one first access credential of the plurality of access credentials corresponds to a first access level to perform a first set of exchanges or requests, and wherein at least one second access credential of the plurality of access credentials corresponds to a second access level to perform a second set of exchanges or requests;

generate an entity profile comprising a plurality of member identity passes, at least one first member identity pass of the plurality of member identity passes corresponds to a first member of the one or more members of the entity and at least one second member identity pass of the plurality of member identity passes corresponds to a second member of the one or more members of the entity, wherein the at least one first member identity pass of the plurality of member identity passes comprises a first set of identity tokens corresponding with the at least one first access credential of the first member, and wherein the at least one second member identity pass of the plurality of member identity passes comprises a second set of identity tokens corresponding with the at least one first access credential of the second member, and wherein the at least one first member identity pass and the at least one second member identity pass comprise the plurality of attributes of the one or more members of the entity;

generate a graphical user interface (GUI) comprising a representation of the entity profile, the entity profile comprising one or more interactive elements, wherein selection of the one or more interactive elements comprises updating the representation corresponding with the entity profile based at least on a corresponding access credential of the plurality of access credentials of the one or more members;

receive a request and at least one of the plurality of access credentials corresponding with at least one first identity token of the first set of identity tokens or at least one second identity token of the second set of identity tokens, wherein the request is for an exchange using an exchange instrument, by the one or more members of the entity, or providing at least one of the plurality of attributes of the one or more members of the entity;

verify the at least one of the plurality of access credentials corresponds to an access level to perform the request;

responsive to verifying that the least one of the plurality of access credentials corresponds to the access level to perform the request, access a data storage storing the entity profile, wherein accessing comprises querying for information of the entity corresponding with the at least one first identity token of the first set of identity tokens or the at least one second identity token of the second set of identity tokens, and wherein the query returns the information to satisfy the exchange or permit access to at least one of the plurality of attributes;

transmit, to a second computing system, the information to satisfy the exchange or permit access to at least one of the plurality of attributes by the second computing system; and

update a usage log of the entity profile corresponding with the request.

2 . The system of claim 1 , wherein:

the first member is associated with a first set of attributes and a first set of access credentials based at least on the first set of attributes;

the second member is associated with a second set of attributes and a second set of access credentials based at least on the second set of attributes; and

the first set of access credentials is different from the second set of access credentials.

3 . The system of claim 1 , wherein the entity profile is stored on a distributed ledger and the distributed ledger is a semi-private distributed ledger allowing selective access to the distributed ledger.

4 . The system of claim 1 , wherein the at least one processor is further configured to:

transmit an authentication request for at least one verifiable credential of the one or more members of the entity; and

verify the at least one verifiable credential based at least on verifying a public key, an issuer, or a status associated with the at least one verifiable credential of the one or more members of the entity.

5 . The system of claim 1 , wherein the first access level permits access to information associated with the entity and the second access level cannot access the information associated with the entity.

6 . The system of claim 1 , wherein the at least one processor is further configured to:

receive a request for supplementary information associated with the one or more members of the entity;

receive the supplementary information;

generate a new identity token comprising the supplementary information; and

update the entity profile based at least on the new identity token.

7 . The system of claim 1 , wherein the at least one processor is further configured to:

verify, using at least one authentication protocol, the request; and

transmit, to the second computing system, the at least one first identity token of the first set of identity tokens or the at least one second identity token of the second set of identity tokens.

8 . A method, comprising:

receiving an entity profile request for an entity;

receiving a plurality of attributes associated with one or more members of the entity;

receiving or identifying a plurality of access credentials of the one or more members of the entity, wherein at least one first access credential of the plurality of access credentials corresponds to a first access level to perform a first set of exchanges or requests, and wherein at least one second access credential of the plurality of access credentials corresponds to a second access level to perform a second set of exchanges or requests;

generating an entity profile comprising a plurality of member identity passes, at least one first member identity pass of the plurality of member identity passes corresponds to a first member of the one or more members of the entity and at least one second member identity pass of the plurality of member identity passes corresponds to a second member of the one or more members of the entity, wherein the at least one first member identity pass of the plurality of member identity passes comprises a first set of identity tokens corresponding with the at least one first access credential of the first member, and wherein the at least one second member identity pass of the plurality of member identity passes comprises a second set of identity tokens corresponding with the at least one first access credential of the second member, and wherein the at least one first member identity pass and the at least one second member identity pass comprise the plurality of attributes of the one or more members of the entity;

generating a graphical user interface (GUI) comprising a representation of the entity profile, the entity profile comprising one or more interactive elements, wherein selection of the one or more interactive elements comprises updating the representation corresponding with the entity profile based at least on a corresponding access credential of the plurality of access credentials of the one or more members;

receiving a request and at least one of the plurality of access credentials corresponding with at least one first identity token of the first set of identity tokens or at least one second identity token of the second set of identity tokens, wherein the request is for an exchange using an exchange instrument, by the one or more members of the entity, or providing at least one of the plurality of attributes of the one or more members of the entity;

verifying the at least one of the plurality of access credentials corresponds to an access level to perform the request;

responsive to verifying that the least one of the plurality of access credentials corresponds to the access level to perform the request, accessing a data storage storing the entity profile, wherein accessing comprises querying for information of the entity corresponding with the at least one first identity token of the first set of identity tokens or the at least one second identity token of the second set of identity tokens, and wherein the query returns the information to satisfy the exchange or permit access to at least one of the plurality of attributes;

transmitting, to a computing system, the information to satisfy the exchange or permit access to at least one of the plurality of attributes by the computing system; and

updating a usage log of the entity profile corresponding with the request.

9 . The method of claim 8 , wherein:

the first member is associated with a first set of attributes and a first set of access credentials based at least on the first set of attributes;

the second member is associated with a second set of attributes and a second set of access credentials based at least on the second set of attributes; and

the first set of access credentials is different from the second set of access credentials.

10 . The method of claim 8 , further comprising:

receiving a request for supplementary information associated with the one or more members of the entity;

receiving the supplementary information;

generating a new identity token comprising the supplementary information; and

updating the entity profile based at least on the new identity token.

11 . The method of claim 10 , wherein the supplementary information is a tax history or credit score.

12 . The method of claim 10 , wherein the first access level permits access to information associated with the entity and the second access level cannot access the information associated with the entity.

13 . The method of claim 8 , wherein the entity profile is stored on a distributed ledger and the distributed ledger is a semi-private distributed ledger allowing selective access to the distributed ledger.

14 . The method of claim 8 , further comprising:

transmitting an authentication request for at least one verifiable credential of the one or more members of the entity; and

verifying the at least one verifiable credential based at least on verifying a public key, an issuer, or a status associated with the at least one verifiable credential of the one or more members of the entity.

15 . At least one non-transitory processor-readable medium comprising processor-readable instructions such that, when executed by at least one processor, causes the at least one processor to:

receive an entity profile request for an entity;

receive a plurality of attributes associated with one or more members of the entity;

receive or identify a plurality of access credentials of the one or more members of the entity, wherein at least one first access credential of the plurality of access credentials corresponds to a first access level to perform a first set of exchanges or requests, and wherein at least one second access credential of the plurality of access credentials corresponds to a second access level to perform a second set of exchanges or requests;

generate an entity profile comprising a plurality of member identity passes, at least one first member identity pass of the plurality of member identity passes corresponds to a first member of the one or more members of the entity and at least one second member identity pass of the plurality of member identity passes corresponds to a second member of the one or more members of the entity, wherein the at least one first member identity pass of the plurality of member identity passes comprises a first set of identity tokens corresponding with the at least one first access credential of the first member, and wherein the at least one second member identity pass of the plurality of member identity passes comprises a second set of identity tokens corresponding with the at least one first access credential of the second member, and wherein the at least one first member identity pass and the at least one second member identity pass comprise the plurality of attributes of the one or more members of the entity;

generate a graphical user interface (GUI) comprising a representation of the entity profile, the entity profile comprising one or more interactive elements, wherein selection of the one or more interactive elements comprises updating the representation corresponding with the entity profile based at least on a corresponding access credential of the plurality of access credentials of the one or more members;

receive a request and at least one of the plurality of access credentials corresponding with at least one first identity token of the first set of identity tokens or at least one second identity token of the second set of identity tokens, wherein the request is for an exchange using an exchange instrument, by the one or more members of the entity, or providing at least one of the plurality of attributes of the one or more members of the entity;

verify the at least one of the plurality of access credentials corresponds to an access level to perform the request;

responsive to verifying that the least one of the plurality of access credentials corresponds to the access level to perform the request, access a data storage storing the entity profile, wherein accessing comprises querying for information of the entity corresponding with the at least one first identity token of the first set of identity tokens or the at least one second identity token of the second set of identity tokens, and wherein the query returns the information to satisfy the exchange or permit access to at least one of the plurality of attributes;

transmit, to a computing system, the information to satisfy the exchange or permit access to at least one of the plurality of attributes by the computing system; and

update a usage log of the entity profile corresponding with the request.

16 . The at least one non-transitory processor-readable medium of claim 15 , wherein the at least one processor is further configured to:

receive a request for supplementary information associated with the one or more members of the entity;

receive the supplementary information;

generate a new identity token comprising the supplementary information; and

update the entity profile based at least on the new identity token.

17 . The at least one non-transitory processor-readable medium of claim 15 , wherein the first access level permits access to information associated with the entity and the second access level cannot access the information associated with the entity.

18 . The at least one non-transitory processor-readable medium of claim 15 , wherein the at least one processor is further configured to:

transmit an authentication request for at least one verifiable credential of the one or more members of the entity; and

verify the at least one verifiable credential based at least on verifying a public key, an issuer, or a status associated with the at least one verifiable credential of the one or more members of the entity.

19 . The at least one non-transitory processor-readable medium of claim 15 , wherein the at least one processor is further configured to:

verify, using at least one authentication protocol, the request; and

transmit, to the computing system, the at least one first identity token of the first set of identity tokens or the at least one second identity token of the second set of identity tokens.

20 . The at least one non-transitory processor-readable medium of claim 15 , wherein:

the first member is associated with a first set of attributes and a first set of access credentials based at least on the first set of attributes;

the second member is associated with a second set of attributes and a second set of access credentials based at least on the second set of attributes; and

the first set of access credentials is different from the second set of access credentials.