IP Library Granted Patent US 11,081,214
Granted Patent B1
US 11,081,214 · App. 15/172,960 · Granted Aug 3, 2021

Systems and methods for secure prescription status updates using a mobile device

Inventors: Lindsey Whitaker (Chicago, IL); Kevin Meyer (Deerfield, IL)
Assignee: WALGREEN CO.
G16H10/60G06F19/3456G06F21/6245H04L63/08H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,081,214
App. No.
15/172,960
Granted
Aug 3, 2021
Kind
B1
Abstract

Systems and methods are disclosed for providing secure electronic access to prescription status information on a mobile device. An example method includes, in response to receiving a status request message determining a user corresponding the mobile device associated with the status request message, and providing a refill status message comprising a short uniform resource locator (URL) to the mobile device associated with the status request message. The short URL is generated based on (i) a web address for a prescription status webpage associated with the user and (ii) an authentication token associated with the user. The example method includes, upon receiving a request to access the short URL, validating, by the at least one processor, the request based on stored authentication data. The example methods includes providing access to the prescription status webpage on the mobile device upon obtaining authorization to electronically access protected health information (PHI) of the user.

Claims (56)

1. A computer-implemented method of providing secure electronic access to prescription status information, the method comprising:

analyzing user profile data in a pharmacy system periodically to identify a status update event,

identifying a user associated with the status update event and a mobile computing device corresponding to the user; and

transmitting, over a communication network, a text message comprising a short uniform resource locator (URL) to the mobile number of the mobile computing device associated with the user, the short URL including (i) an HTTP address for a prescription refill webpage associated with the user and (ii) a secure authentication token associated with the user;

transmitting, in response to receiving a selection of the user to access the short URL via an input device of the mobile computing device, an HTTP request to the pharmacy system, the request including the short URL and the secure authentication token,

validating, in the pharmacy system, the HTTP request by comparing the secure authentication token to stored authentication data,

transmitting, when the secure authentication token is valid, a protected health information (PHI) access webpage to the mobile computing device of the user that prompts the user to provide verification information,

transmitting, in response to verifying user's identity by comparing verification information received in the pharmacy server to information stored in a profile of the user, the prescription refill webpage to the mobile computing device, wherein the prescription refill webpage displays prescription information for at least one drug, medicament, or medical device that is currently-prescribed to the user and a refill now option; and

transmitting, in response to receiving via the input device of the mobile computing device a selection of the user corresponding to the refill now option, a prescription refill order HTTP request to the pharmacy system; and

transmitting, in response to receiving the order refill selection of the user, a refill order confirmation to the mobile device of the user.

2. The computer-implemented method of claim 1 , wherein verifying the user's identity includes requesting entry, from the user, of verifiable identity information.

3. The computer-implemented method of claim 1 , wherein validating the HTTP request includes validating, by the at least one processor, a web cookie received with the HTTP request to the pharmacy system.

4. The computer-implemented method of claim 1 , wherein transmitting, when the secure authentication token is valid, the PHI access webpage to the mobile device of the user includes:

assigning, by the at least one processor, an opt-in status to the user in the user profile data.

5. The computer-implemented method of claim 4 , further comprising

providing, over the communication network, a web cookie to the mobile computing device for storage thereon, the web cookie indicating the opt-in status of the user.

6. The computer-implemented method of claim 1 , further comprising:

in response to identifying more than one potential user in the user profile data, providing, over the communication network, a clarification message comprising temporary identifiers associated with each of the potential users corresponding to the mobile computing device; and

in response to receiving a clarification response from the mobile computing device, selecting the one of the potential users as the user based on the temporary identifier in the clarification response.

7. A non-transitory computer readable storage medium including software instructions which, when executed by at least one processor, cause the at least one processor to:

analyze user profile data in a pharmacy system periodically to identify a status update event,

identify a user associated with the status update event and a mobile computing device corresponding to the user; and

transmit, over a communication network, a text message comprising a short uniform resource locator (URL) to the mobile number of the mobile computing device associated with the user, the short URL including (i) an HTTP address for a prescription refill webpage associated with the user and (ii) a secure authentication token associated with the user;

transmit, in response to receiving a selection of the user to access the short URL via an input device of the mobile computing device, an HTTP request to the pharmacy system, the request including the short URL and the secure authentication token,

validate, in the pharmacy system, the HTTP request by comparing the secure authentication token to stored authentication data,

transmit, when the secure authentication token is valid, a protected health information (PHI) access webpage to the mobile computing device of the user that prompts the user to provide verification information; and

transmit, in response to verifying the user's identity by comparing verification information received in the pharmacy server to information stored in a profile of the user, the prescription refill webpage to the mobile computing device, wherein the prescription refill webpage displays prescription information for at least one drug, medicament, or medical device that is currently-prescribed to the user and a refill now option; and

transmit, in response to receiving via the input device of the mobile computing device a selection of the user corresponding to the refill now option, a refill order confirmation to the mobile device of the user.

8. The non-transitory computer readable storage medium of claim 7 , wherein verifying the user's identity includes requesting entry, from the user, of verifiable identity information.

9. The non-transitory computer readable storage medium of claim 7 , wherein transmitting, when the secure authentication token is valid, the PHI access webpage to the mobile computing device of the user includes validating a web cookie received with the request to access the short URL.

10. The non-transitory computer readable storage medium of claim 7 , wherein transmitting, when the secure authentication token is valid, the PHI access webpage to the mobile device of the user includes:

assigning an opt-in status to the user in the user profile data.

11. The non-transitory computer readable storage medium of claim 10 , wherein the instructions further cause the at least one processor to provide, over the communication network, a web cookie to the mobile computing device for storage thereon, the web cookie indicating the opt-in status of the user.

12. The non-transitory computer readable storage medium of claim 8 , including instructions that further cause the at least one processor to:

in response to identifying more than one potential user in the user profile data, provide, over the communication network, a clarification message comprising temporary identifiers associated with each of the potential users corresponding to the mobile computing device; and

in response to receiving a clarification response from the mobile computing device, select the one of the potential users as the user based on the temporary identifier in the clarification response.

13. A system in network communication with a mobile device of a user, the system comprising:

a refill status module configured to:

analyze user profile data periodically to identify a status update event,

determine an identity of the user associated with the status update event and a mobile computing device corresponding to the user; and

transmit, over a communication network, a text message comprising a short uniform resource locator (URL) to the mobile number of the mobile computing device associated with the user, the short URL including (i) an HTTP address for a prescription refill webpage associated with the user and (ii) secure authentication token associated with the user;

transmit, in response to receiving a selection of the user to access the short URL via an input device of the mobile computing device, an HTTP request to the pharmacy system, the request including the short URL and the secure authentication token,

validate, in the pharmacy system, the HTTP request by comparing the secure authentication token to stored authentication data,

transmit, when the secure authentication token is valid, a protected health information (PHI) access webpage to the mobile computing device of the user that prompts the user to provide verification information; and

transmit, in response to verifying the user's identity by comparing verification information received in the pharmacy server to information stored in a profile of the user, the prescription refill webpage to the mobile computing device, wherein the prescription refill webpage displays prescription information for at least one drug, medicament, or medical device that is currently-prescribed to the user and a refill now option,

transmit, in response to receiving via the input device of the mobile computing device a selection of the user corresponding to the refill now option, a refill order confirmation to the mobile device of the user; and

a memory for storing the refill status module; and a processor in communication with the memory for execution of the refill status module.

14. The system of claim 13 , wherein verifying the user's identity includes requesting entry, from the user, of verifiable identity information.

15. The system of claim 13 , wherein transmitting, when the secure authentication token is valid, the PHI access webpage to the mobile computing device of the user includes validating a web cookie received with the request to access the short URL.

16. The system of claim 13 , wherein transmitting, when the secure authentication token is valid, the PHI access webpage to the mobile device of the user includes:

assigning an opt-in status to the user in the user profile data.

17. The system of claim 16 , wherein the refill status module is further configured to

provide a web cookie to the mobile device for storage thereon, the web cookie indicating the opt-in status of the user.

18. The system of claim 13 , wherein the refill status module is further configured to:

in response to identifying more than one potential user in the user profile data, provide, over the communication network, a clarification message comprising temporary identifiers associated with each of the potential users corresponding to the mobile computing device; and

in response to receiving a clarification response from the mobile computing device, select the one of the potential users as the user based on the temporary identifier in the clarification response.

Assignments (3)
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Aug 28, 2025
From: WALGREEN CO.
To: SIXTH STREET LENDING PARTNERS, AS COLLATERAL AGENT
Reel/Frame 072606/0878 →
SECURITY INTEREST Recorded Aug 28, 2025
From: WALGREEN CO.; DUANE READE; WALGREENS SPECIALTY PHARMACY LLC; WALGREENS BOOTS ALLIANCE, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 072679/0926 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 3, 2019
From: WHITAKER, LINDSEY, MS.; MEYER, KEVIN W., MR.
To: WALGREEN CO.
Reel/Frame 051159/0162 →
Cited By (4)
US 12,423,475 US 12,572,693 US 12,574,732 US 12,688,499