IP Library Granted Patent US 12712875
Granted Patent B2
US 12712875 · App. 17/232,983 · Granted Aug 18, 2026

Systems, methods, and non-transitory computer-readable media for secure biometrically-enhanced data exchanges and data storage

Inventors: Przemek Praszczalek (Irvington, NY); Raman Narayanswamy (Nashua, NH)
Assignee: MASTERCARD INTERNATIONAL INCORPORATED
H04L63/0861G06F16/2379G06F21/45G06Q40/08G16H10/60H04L9/3213H04L9/3231
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12712875
App. No.
17/232,983
Granted
Aug 18, 2026
Kind
B2
Abstract

A privacy-enhancing system, method, and non-transitory computer-readable medium for securely identifying or verifying an individual over time without retaining sensitive biometric data (e.g., biometric images or biometric templates) for the purpose of various data-related interactions. The data interactions including but not limited to: accessing, sharing, exchanging, controlling, or processing of personal data or any data related to an individual, entity, or thing.

Claims (76)

1 . A system for securely identifying and verifying an individual in a biometrically-enhanced data exchange network, the system comprising:

a plurality of local partner devices including a first local partner device, the first local partner device including a first electronic processor, a first communication interface, and a first memory, the first electronic processor is configured to

receive biometrics and registration information of an individual,

generate, with a tokenization algorithm, a first biometric token based on the biometrics that are received, wherein the first biometric token indicates a relationship between an entity and the individual, and

output the registration information and the first biometric token that is generated; and

a local identity server including a second electronic processor, a second communication interface, and a second memory, the second electronic processor is configured to

receive the registration information and the first biometric token from the first local partner device,

create a data account associated with the individual in the second memory, the data account including the registration information and the first biometric token that are received,

synchronize the first biometric token with one or more local partner devices of the plurality of local partner devices, the one or more local partner devices including a second local partner device, and the one or more local partner devices are separate and distinct from the first local partner device,

wherein the second local partner device of the plurality of local partner devices includes a third electronic processor, a third communication interface, biometric capture circuitry, and a third memory, the third electronic processor is configured to

control the third communication interface to receive the first biometric token via the synchronization with the local identity server,

store the first biometric token in a local biometric storage of the third memory,

receive a request,

responsive to receiving the request, control the biometric capture circuitry to capture second biometrics of the individual,

responsive to capturing the second biometrics, generate, with the tokenization algorithm, a second biometric token based on the second biometrics that are captured,

responsive to generating the second biometric token, match the second biometric token to tokens stored in the local biometric storage,

responsive to matching the second biometric token to the first biometric token, output an authentication of the relationship between the entity and the individual to a user of the second local partner device, and

responsive to generating the second biometric token, synchronize the second biometric token with a second one or more local partner devices of the plurality of local partner devices, the second one or more local partner devices including the first local partner device, and the second one or more local partner devices are separate and distinct from the second local partner device,

wherein the biometrically-enhanced data exchange network is established from the synchronization of biometric tokens between the local identity server and the plurality of local partner devices, the biometric tokens including the first biometric token and the second biometric token.

2 . The system of claim 1 , wherein the second electronic processor is further configured to control the second communication interface to send an Unstructured Supplementary Service Data (USSD) code to the individual via a USSD session, wherein the USSD code is tied to the first biometric token.

3 . The system of claim 1 , wherein a third local partner device of the plurality of local partner devices includes a fourth electronic processor, a fourth communication interface, and a fourth memory, the fourth electronic processor is configured to

control the fourth communication interface to receive the first biometric token via the synchronization with the local identity server,

store the first biometric token in a local biometric storage of the fourth memory,

receive a second request from the individual,

receive third biometrics of the individual,

responsive to receiving the second request and the third biometrics, generate, with the tokenization algorithm, a third biometric token from the third biometrics,

responsive to generating the third biometric token, match the third biometric token to tokens stored in the local biometric storage of the fourth memory,

responsive to matching the third biometric token to the first biometric token, output a second authentication of the relationship between the entity and the individual to a user of the third local partner device, and

synchronize the third biometric token with the local identity server and a third one or more local partner devices of the plurality of local partner devices, the third one or more local partner devices including the first local partner device, the second local partner device, or both, and the third one or more local partner devices are separate and distinct from the third local partner device.

4 . The system of claim 3 , wherein the registration information is a purchase of a health insurance policy, and wherein the relationship is a relationship between an health insurance provider and a policy holder.

5 . The system of claim 1 , wherein the entity is a hospital, wherein the registration information includes a medical record, and wherein the second electronic processor is further configured to

generate a second medical record by removing some or all personally-identifiable information from the medical record, and

synchronize the first biometric token and the second medical record that is linked to the first biometric token with the one or more local partner devices of the plurality of local partner devices.

6 . A method for securely identifying and verifying an individual in a biometrically-enhanced data exchange network, the method comprising:

receiving, with a first local partner device of a plurality of local partner devices, biometrics and registration information of an individual;

generating, with a tokenization algorithm of the first local partner device, a first biometric token based on the biometrics that are received, wherein the first biometric token indicates a relationship between an entity and the individual;

outputting, with the first local partner device, the registration information and the first biometric token that is generated;

receiving, with a local identity server, the registration information and the first biometric token from the first local partner device;

creating, with the local identity server, a data account associated with the individual in a first memory, the data account including the registration information and the first biometric token that are received;

synchronizing, with the local identity server, the first biometric token with one or more local partner devices of the plurality of local partner devices, the one or more local partner devices including a second local partner device, and the one or more local partner devices are separate and distinct from the first local partner device;

receiving, with a second local partner device of the plurality of local partner devices, the first biometric token via the synchronization with the local identity server;

storing, with the second local partner device, the first biometric token in a local biometric storage of a second memory,

receiving, with the second local partner device, a request;

responsive to receiving the request, capturing, with a biometric capture circuitry of the second local partner device, second biometrics of the individual,

responsive to capturing the second biometrics, generating, with the second local partner device and the tokenization algorithm, a second biometric token from the second biometrics of the individual that is captured;

responsive to generating the second biometric token, matching, with the second local partner device, the second biometric token to tokens stored in the local biometric storage;

responsive to matching the second biometric token to the first biometric token in the local biometric storage, outputting, with the second local partner device, an authentication of the relationship between the entity and the individual to a user of the second local partner device; and

responsive to generating the second biometric token, synchronizing, with the second local partner device, the second biometric token with the local identity server and a second one or more local partner devices of the plurality of local partner devices, the second one or more local partner devices including the first local partner device, and the second one or more local partner devices are separate and distinct from the second local partner device,

wherein the biometrically-enhanced data exchange network is established from the synchronization of biometric tokens between the local identity server and the plurality of local partner devices, the biometric tokens including the first biometric token and the second biometric token.

7 . The method of claim 6 , further comprising:

controlling, with the local identity server, a second communication interface to send an Unstructured Supplementary Service Data (USSD) code to the individual via a USSD session, wherein the USSD code is tied to the first biometric token.

8 . The method of claim 6 , further comprising:

receiving with a third local partner device of the plurality of local partner devices, the first biometric token via the synchronization with the local identity server;

storing, with the third local partner device, the first biometric token in a local biometric storage of a fourth memory;

receiving, with the third local partner device, a second request from the individual;

receiving, with the third local partner device, third biometrics of the individual;

responsive to receiving the second request and the third biometrics, generating, with the tokenization algorithm and the third local partner device, a third biometric token from the second biometrics;

responsive to generating the third biometric token, matching, with the third local partner device, the third biometric token to tokens stored in the local biometric storage of the fourth memory;

responsive to matching the third biometric token to the first biometric token, outputting a second authentication of the relationship between the entity and the individual to a user of the third local partner device; and

synchronizing, with the third local partner device, the third biometric token with the local identity server and a third one or more local partner devices of the plurality of local partner devices, the third one or more local partner devices including the first local partner device, the second local partner device, or both, and the third one or more local partner devices are separate and distinct from the third local partner device.

9 . The method of claim 8 , wherein the registration information is a purchase of a health insurance policy, and wherein the relationship is a relationship between an health insurance provider and a policy holder.

10 . The method of claim 6 , wherein the entity is a hospital, wherein the registration information includes a medical record, the method further comprising:

generating, with the local identity server, a second medical record by removing some or all personally-identifiable information from the medical record, and

synchronizing, with the local identity server, the first biometric token and the second medical record that is linked to the first biometric token with the one or more local partner devices of the plurality of local partner devices.

11 . A non-transitory computer-readable medium comprising instructions that, when executed by an electronic processor, cause the electronic processor to perform a set of operations comprising:

receiving registration information and a first biometric token that are output by a first local partner device of a plurality of local partner devices, the registration information associated with an individual and the first biometric token based on first biometrics of the individual, wherein the first biometric token indicates a relationship between an entity and the individual;

creating a data account associated with the individual in a memory of a local identity server, the data account including the registration information and the first biometric token that are received;

synchronizing the first biometric token with one or more local partner devices of the plurality of local partner devices, the one or more local partner devices including a second local partner device, and the one or more local partner devices are separate and distinct from the first local partner device,

receiving a second biometric token that is output by the second local partner device of the plurality of local partner devices, the second biometric token based on second biometrics of the individual, wherein the second biometric token indicates a second relationship between a second entity and the individual;

synchronizing the second biometric token with a second one or more local partner devices of the plurality of local partner devices, the second one or more local partner devices including the first local partner device, and the second one or more local partner devices are separate and distinct from the second local partner device, and

wherein a biometrically-enhanced data exchange network is established from the synchronization of biometric tokens between the local identity server and the plurality of local partner devices, the biometric tokens including the first biometric token and the second biometric token.

12 . The non-transitory computer-readable medium of claim 11 , wherein the set of operations further includes controlling a communication interface to send an Unstructured Supplementary Service Data (USSD) code to the individual via a USSD session, wherein the USSD code is tied to the first biometric token.

13 . The non-transitory computer-readable medium of claim 11 , wherein the entity is a hospital, wherein the registration information includes a medical record, and wherein the set of operations further includes

generating a second medical record by removing some or all personally-identifiable information from the medical record, and

synchronizing the first biometric token and the second medical record that is linked to the first biometric token with the one or more local partner devices of the plurality of local partner devices.

14 . The system of claim 1 , wherein the plurality of local partner devices is a plurality of computing devices.