IP Library Granted Patent US 12705385
Granted Patent B1
US 12705385 · App. 17/710,659 · Granted Aug 11, 2026

Systems and methods for sharing user data

Inventors: Oscar Guerra (San Antonio, TX); Megan Sarah Jennings (San Antonio, TX); Dustin Bowen Bitter (Lehi, UT); Pooja Krishnaswamy (McKinney, TX); Donald Nathaniel Holloway, III (San Antonio, TX); Nikhil Dama (Apex, NC)
Assignee: UIPCO, LLC
G06F21/6245G06F2221/2115
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12705385
App. No.
17/710,659
Granted
Aug 11, 2026
Kind
B1
Abstract

A data sharing system may facilitate sharing of data with third party systems. In one example, a data sharing request from a third party system is accepted or denied based on previously shared user data with the third party system. The data sharing request can be identified as being a potential privacy risk based on an overlap between the previously shared user data and the user data in the request.

Claims (34)

1 . A data sharing system, the system comprising:

a memory storing executable instructions; and

a processor configured to execute the instructions to:

store user data of a plurality of users in the memory;

receive a request for the user data from a third party system;

access previously shared user data shared with the third party system;

identify a privacy risk based on a combination of the requested user data and the previously shared user data;

determine that a first data field in the previously shared user data and a second data field in the requested user data comprise a partial overlap of user data indicative of the privacy risk, wherein, both, the first data field and the second data field cannot be shared with the third party system;

transmit a notification to the third party system of the identified privacy risk, wherein the notification to the third party system of the identified privacy risk comprises an indication to delete the first data field from the previously shared user data;

transmit a notification to the third party system to modify the request for the user data to reduce the privacy risk; and

receive, from the third party system, an indication of a risk-mediation action for the previously shared user data.

2 . The system of claim 1 , wherein the notification comprises one or more data fields to remove from the request.

3 . The system of claim 1 , wherein the instructions comprise instructions to:

receive a modified request for the user data; and

share the user data in the modified request with the third party system.

4 . The system of claim 3 , wherein the previously shared user data comprises one or more unique markers.

5 . The system of claim 1 , wherein the instructions comprise instructions to identify high risk data fields in the requested user data.

6 . The system of claim 5 , wherein an identified high risk data field comprises a user name field, wherein the user name field has a global risk score for all user names and wherein each individual record in the user name field has an individual risk score based on a uniqueness metric of a first name and/or last name in the record.

7 . The system of claim 6 , wherein the individual risk score is based on census records.

8 . The system of claim 1 , wherein the risk-mediation action comprises deleting or purging at least some of the previously shared user data.

9 . A data sharing system, the system comprising:

a memory storing executable instructions; and

a processor configured to execute the instructions to:

receive a request for user data stored in the memory from a third party system;

access previously shared user data shared with the third party system;

determine an initial risk of the third party system based on the previously shared user data shared with the third party system;

determine that the initial risk of the third party system is lower than a threshold risk score amount, wherein the initial risk of the third party system being lower than the threshold risk score is indicative of the third party system being eligible to receive additional shared user data;

identify a privacy risk based on a combination of the requested user data and the previously shared user data responsive to determining that the initial risk is lower than the threshold risk score;

determine that a first data field in the previously shared user data and a second data field in the requested user data comprise a partial overlap of user data indicative of the privacy risk, wherein, both, the first data field and the second data field cannot be shared to the third party system; and

transmit an instruction to the third party system to purge the previously shared user data;

receive confirmation that the third party system has purged the previously shared user data; and

share the user data with the third party system responsive to receiving the confirmation.

10 . The system of claim 9 , wherein the partial overlap comprises unique userIDs or user names, and wherein the user data in the request adds additional data fields to records for the unique userIDs or the user names in the combination.

11 . The system of claim 1 , wherein the notification to the third party system to modify the request for user data to reduce the privacy risk comprises an indication to remove the second data field from the request for the user data.