IP Library Granted Patent US 10,853,818
Granted Patent B2
US 10,853,818 · App. 16/123,995 · Granted Dec 1, 2020

Securing private user information in multi-party-hosted computing device transactions

Inventor: Patrick G. Hodo (Boerne, TX)
Assignee: Red Maple Press, Inc.
G06Q20/425G06Q20/08G06Q20/204G06Q20/3821G06Q20/40G06Q20/409
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,853,818
App. No.
16/123,995
Granted
Dec 1, 2020
Kind
B2
Abstract

Disclosed herein are representative embodiments of methods, apparatus, and systems for maintaining the security of certain sensitive user information during computer network transactions between the user and multiple third-party hosts. Some example embodiments disclosed herein comprise a computer-implemented method, comprising, at a server separate from a merchant server and separate from a payment processor server: receiving data indicative of a transaction initiated by a customer from the merchant server; generating a unique identification value for the transaction; transmitting, to a customer's computing device, identifying information for a Uniform Resource Locator (URL) that is unique to the transaction; receiving a request to view a web page at the URL that is unique to the transaction; and generating data for a hosted-pay web page unique to the transaction, the hosted-pay web page including an embedded portion that facilitates payment directly with a payment processor server and not with a merchant server.

Claims (52)

1. A computer-implemented method, comprising:

at a server separate from a merchant server and separate from a payment processor server:

receiving data indicative of a transaction initiated by a customer from the merchant server;

generating a unique identification value for the transaction;

transmitting, to a customer's computing device, identifying information for a Uniform Resource Locator (URL) that is unique to the transaction;

receiving a request to view a web page at the URL that is unique to the transaction; and

generating data for a hosted-pay web page unique to the transaction, the hosted-pay web page including an embedded portion that facilitates payment directly with a payment processor server and not with a merchant server.

2. The computer-implemented method of claim 1 , wherein the hosted-pay web page further includes one or more visual look-and-feel elements corresponding to the merchant server, thereby creating a hosted-pay web page that appears to be provided by the merchant server but is instead provided by the server that is separate from the merchant server and separate from the payment processor server.

3. The computer-implemented method of claim 1 , wherein the data indicative of the transaction comprises an originating ID that identifies an identity of the merchant operating the merchant server, and wherein the method further comprises, upon receiving the request to view the web page at the URL that is unique to the transaction:

identifying the originating ID associated with the transaction; and

retrieving data for performing the hosted pay web page for the merchant operating the merchant server, including data identifying a payment processor used by the merchant.

4. The computer-implemented method of claim 1 , wherein the method further comprises:

generating a transaction ID value for the transaction;

generating a reference ID values for the transaction; and

embedding the reference ID value for the transaction into the URL that is unique to the transaction.

5. The computer-implemented method of claim 1 , further comprising:

receiving a digital token from the payment processor server, the digital token being unique to the transaction; and

transmitting to the merchant server data indicating that the transaction is authorized and ready to be completed.

6. The computer-implemented method of claim 5 , further comprising transmitting the digital token to the merchant server.

7. A computer-implemented method, comprising:

at a server separate from a merchant server and separate from a payment processor server:

receiving, from the merchant server and for a transaction with a merchant operating the merchant server, a first portion of a customer's credit card number, the first portion including one or more numbers of the customer's credit card number but not all of the numbers of the customer's credit card number;

transmitting data to a computing device operated by the customer for rendering a web page that requests a second portion of the customer's credit card number, the second portion corresponding to the remaining one or more numbers of the customer's credit card number not specified by the first portion;

receiving, from the computing device operated by the customer, the second portion of the customer's credit card number;

transmitting, to a payment processor server, a complete version of the customer's credit card number assembled from at least the first portion and the second portion;

receiving, from the payment processor server, a digital token from the payment processor server, the digital token being unique to the transaction; and

transmitting to the merchant server data indicating that the transaction is authorized and ready to be completed.

8. The computer-implemented method of claim 7 , wherein the first portion of the customer's credit card number is input by a representative, and wherein the representative is never exposed to the complete customer's credit card number.

9. A computer-implemented method, comprising:

at a server separate from a merchant system/server and separate from a payment processor server:

receiving data indicative of a transaction to be closed for a customer from the merchant server;

generating a unique identification value for the transaction;

transmitting, to the merchant system/server, identifying information for a Uniform Resource Locator (URL) that is unique to the transaction;

receiving a request to view a web page at the URL that is unique to the transaction; and

generating data for a hosted-pay web page unique to the transaction, the hosted-pay web page including an embedded portion that facilitates payment directly with a payment processor server and not with the merchant system/server.

10. The computer-implemented method of claim 9 , wherein the identifying information is encoded in a printable or displayable code that can be optically scanned to decode the identifying information, including the URL that is unique to the transaction.

11. The computer-implemented method of claim 10 , further comprising, by the merchant system/server, displaying the code on a merchant-operated display device.

12. The computer-implemented method of claim 10 , wherein the code is scanned by a computing device operated by a customer, thereby generating a link to the URL that is unique to the transaction.

13. The computer-implemented method of claim 9 , wherein the URL is transmitted to the merchant system/server, and wherein the merchant system/server encodes the identifying information, including that URL that is unique to the transaction, in a printable or displayable code.

14. The computer-implemented method of claim 13 , wherein the code is scanned by a computing device operated by a customer, thereby generating a link to the URL that is unique to the transaction.

15. The computer-implemented method of claim 9 , wherein the hosted-pay web page further includes one or more visual look-and-feel elements corresponding to the merchant server, thereby creating a hosted-pay web page that appears to be provided by the merchant server but is instead provided by the server that is separate from the merchant server and separate from the payment processor server.

16. The computer-implemented method of claim 9 , wherein the data indicative of the transaction comprises an originating ID that identifies an identity of the merchant operating the merchant server, and wherein the method further comprises, upon receiving the request to view the web page at the URL that is unique to the transaction:

identifying the originating ID associated with the transaction; and

retrieving data for performing the hosted pay web page for the merchant operating the merchant server, including data identifying a payment processor used by the merchant.

17. The computer-implemented method of claim 9 , wherein the method further comprises:

generating a transaction ID value for the transaction;

generating a reference ID values for the transaction; and

embedding the reference ID value for the transaction into the URL that is unique to the transaction.

18. The computer-implemented method of claim 9 , further comprising:

receiving a digital token from the payment processor server, the digital token being unique to the transaction; and

transmitting to the merchant server data indicating that the transaction is authorized and ready to be completed.

19. The computer-implemented method of claim 9 , further comprising transmitting the digital token to the merchant server.

Assignments (4)
SECURITY INTEREST Recorded Mar 11, 2025
From: RED MAPLE HOLDINGS, LLC
To: ARES CAPITAL CORPORATION, AS AGENT
Reel/Frame 070466/0248 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Mar 11, 2025
From: RED MAPLE HOLDINGS, LLC
To: ICG DEBT ADMINISTRATION LLC, AS AGENT
Reel/Frame 070481/0079 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 11, 2023
From: RED MAPLE CONSULTING, INC.; RED MAPLE PRESS, INC.; RED MAPLE TECHNOLOGIES, INC.
To: RED MAPLE HOLDINGS, LLC
Reel/Frame 064208/0364 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 15, 2019
From: HODO, PATRICK G.
To: RED MAPLE PRESS, INC.
Reel/Frame 048343/0212 →
Continuity (4)
Provisional Application 62554995 · Sep 6, 2017
Provisional Application 62570651 · Oct 10, 2017
Provisional Application 62617099 · Jan 12, 2018
Related Publication 20190147453A1 · May 16, 2019