IP Library Granted Patent US 11,899,815
Granted Patent B1
US 11,899,815 · App. 16/209,708 · Granted Feb 13, 2024

Access control interface for managing entities and permissions

Inventors: Lila Fakhraie (Belmont, CA); Brian M. Pearce (Pleasanton, CA); Steven Pulido (San Francisco, CA); Benjamin Soccorsy (Larkspur, CA); James Stahley (San Francisco, CA); Mojdeh Tomsich (San Francisco, CA)
Assignee: Wells Fargo Bank, N.A.
G06F21/6245G06Q40/02H04L63/102G06F3/0482G06F3/0484G06F3/04817G06F21/6263
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,899,815
App. No.
16/209,708
Granted
Feb 13, 2024
Kind
B1
Abstract

Systems, methods, and apparatuses for providing a customer a central location to manage permissions provided to third-parties and devices to access and use customer information maintained by a financial institution are described. The central location serves as a central portal where a customer of the financial institution can manage all access to account information and personal information stored at the financial institution. Accordingly, the customer does not need to log into each individual third-party system or customer device to manage previously provided access to the customer information or to provision new access to the customer information. A user additionally is able to have user data and third-party accounts of the user deleted from devices, applications, and third-party systems via a central portal.

Claims (55)

1. A system comprising:

a network interface configured to communicate via a telecommunications network;

one or more user interfaces for visually presenting graphical elements and for receiving user inputs; and

a processor and a memory having stored thereon instructions which, when executed by the processor, cause the processor to:

receive a listing of one or more devices, each of the one or more devices having a device identifier;

present, via the one or more user interfaces, an interactive graphical interface including the listing that identifies a device of the one or more devices for which at least one access permission controls communications to a service provider computing system via an application programming interface (API) to access user information;

present, via the interactive graphical interface, a first interactive element corresponding to the device for presenting a list of a plurality of types of the user information accessible to the device;

receive, from the one or more user interfaces, a first signal indicating a first user input corresponding to the first interactive element;

responsive to the first signal, present, within the interactive graphical interface, a second listing of the plurality of types of the user information, each type in the second listing presented with a respective status indicator for selecting a respective access permission for the device, the respective status indicator enabling selection between a first setting to permit access to the type of the user information and a second setting to restrict access to the type of the user information;

receive, from the one or more user interfaces, a second signal indicating a second user input corresponding to the respective status indicator of a first type of the user information displayed within the second listing of the plurality of types of the user information; and

use the network interface to transmit to the service provider computing system the device identifier of the device and an indication that the respective access permission for the device has changed to grant the device with access to the first type of the user information.

2. The system of claim 1 , wherein the instructions further cause the processor to present, via the interactive graphical interface, an identification of the user information that is accessible to the device.

3. The system of claim 2 , wherein the user information is a first user information, and wherein the instructions further cause the processor to present, via the interactive graphical interface, a second status indicator for selecting between the first user information and a second user information to be made available to the device.

4. The system of claim 1 , wherein the system is a first computing device, and wherein the device is a second computing device.

5. The system of claim 4 , wherein the interactive graphical interface identifies the second computing device as a smartphone, a tablet computer, or a wearable device.

6. The system of claim 4 , wherein the interactive graphical interface identifies the second computing device as a smart speaker.

7. The system of claim 4 , wherein the interactive graphical interface identifies the second computing device as a vehicle.

8. The system of claim 1 , wherein the processor is further configured to:

receive, from the service provider computing system, an alert indicating that the device accessed the user information on the service provider computing system; and

present, via the interactive graphical interface, the alert indicating that the device accessed the user information on the service provider computing system.

9. The system of claim 8 , wherein the processor is further configured to receive, via the interactive graphical interface, an interaction with the alert indicating that the access to the user information by the device is authorized or unauthorized.

10. The system of claim 1 , wherein the device is a first device and wherein the processor is further configured to:

receive, via the interactive graphical interface, an entry including a second device identifier of a second device; and

use the network interface to transmit, responsive to receiving the entry, to the service provider computing system, the second device identifier of the second device and at least one of an identification of the selected access permission and an indication that the respective access permission for the second device has changed to grant the second device with access to the user information.

11. The system of claim 1 , wherein the processor is further configured to:

receive, from the one or more user interfaces, a third signal indicating a third user input corresponding with toggling of the respective status indicator; and

use the network interface to transmit, responsive to receiving the third signal, to the service provider computing system, the device identifier of the device and a third indication that the respective access permission for the device has changed to revoke the device from accessing the first type of the user information.

12. The system of claim 1 , wherein the processor is further configured to:

receive, from the one or more user interfaces, a third signal indicating a third user input to delete the user information from the device; and

use the network interface to transmit, responsive to receiving the third signal, to the service provider computing system, the device identifier of the device and a third indication to delete the user information from the device.

13. The system of claim 1 , wherein the processor is further configured to:

present, via the one or more user interfaces, a request to select which of the user information is to be deleted;

receive, from the one or more user interfaces, a third signal indicating a third user input corresponding to selections of the user information to delete from the device; and

use the network interface to transmit, responsive to receiving the third signal, to the service provider computing system, the device identifier of the device and a third indication to delete the selected user information from the device.

14. A method for controlling access permissions to user devices, the method comprising:

receiving a listing of one or more devices, each of the one or more devices having a device identifier;

presenting, via one or more user interfaces, an interactive graphical interface including the listing that identifies a device of the one or more devices for which at least one access permission controls communications to a service provider computing system via an application programming interface (API) to access user information, the one or more user interfaces being configured to visually present graphical elements and receive user inputs;

presenting, via the interactive graphical interface, a first interactive element corresponding to the device for presenting a list of a plurality of types of the user information accessible to the device;

receiving, from the one or more user interfaces, a first signal indicating a first user input corresponding to the first interactive element;

responsive to the first signal, presenting, within the interactive graphical interface, a second listing of the plurality of types of the user information, each type in the second listing presented with a respective status indicator for selecting a respective access permission for the device, the respective status indicator enabling selection between a first setting to permit access to the type of the user information and a second setting to restrict access to the type of the user information;

receiving, from the one or more user interfaces, a second signal indicating a second user input corresponding to the respective status indicator of a first type of the user information displayed within the second listing of the plurality of types of the user information; and

using a network interface to transmit to the service provider computing system the device identifier of the device and (iii) an indication that the respective access permission for the device has changed, the network interface being configured to communicate via a telecommunications network to grant the device with access to the first type of the user information.

15. The method of claim 14 , further comprising presenting, via the interactive graphical interface, a second identification of the user information that is accessible to the device.

16. The method of claim 15 , wherein the user information is a first user information, and wherein the method further comprises presenting, via the interactive graphical interface, a second status indicator for selecting between the first user information and a second user information to be made available to the device.

17. The method of claim 14 , wherein the device is a computing device.

18. The method of claim 17 , wherein presenting the interactive graphical interface that identifies the device comprises presenting the interactive graphical interface that identifies the computing device as a smartphone, a tablet computer, a smart speaker, a vehicle, or a wearable device.

19. A non-transitory computer readable medium having machine instructions stored thereon, the machine instructions being executable by a processor of a computing device to cause the processor to perform operations comprising:

receiving a listing of one or more devices, each device having a device identifier, wherein each of the one or more devices is a smartphone, a tablet computer, a smart speaker, a vehicle, a wearable device, or an internet-of-things (IOT) device;

presenting, via one or more user interfaces, an interactive graphical interface including the listing that identifies a device of the one or more devices for which at least one access permission controls communications to a service provider computing system via an application programming interface (API) to access user information, the one or more user interfaces being configured to visually present graphical elements and receive user inputs;

presenting, via the interactive graphical interface, a first interactive element corresponding to the device for presenting a list of a plurality of types of the user information accessible to the device;

receiving, from the one or more user interfaces, a first signal indicating a first user input corresponding to the first interactive element;

responsive to the first signal, presenting, within the interactive graphical interface, a second listing of the plurality of types of the user information, each type in the second listing presented with a respective status indicator for selecting a respective access permission for the device, the respective status indicator enabling selection between a first setting to permit access to the type of the user information and a second setting to restrict access to the type of the user information;

receiving, from the one or more user interfaces, a second signal indicating a second user input corresponding to the respective status indicator of a first type of the user information displayed within the second listing of the plurality of types of the user information; and

using a network interface to transmit to the service provider computing system the device identifier of the device and an indication that the respective access permission for the device has changed to grant the device with access to the first type of the user information, the network interface being configured to communicate via a telecommunications network.

20. The non-transitory computer readable medium of claim 19 , further comprising executable instructions to cause the processor to present, via the interactive graphical interface, a second status indicator for selecting between a first user information and a second user information to be made accessible to the device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 2, 2019
From: FAKHRAIE, LILA; PEARCE, BRIAN M.; PULIDO, STEVEN; SOCCORSY, BENJAMIN; STAHLEY, JAMES; TOMSICH, MOJDEH
To: WELLS FARGO BANK, N.A.
Reel/Frame 049658/0034 →
Continuity (7)
Continuation 16204831 · Nov 29, 2018
Continuation In Part 15723078 · Oct 2, 2017
Continuation In Part 15629423 · Jun 21, 2017
Provisional Application 62766400 · Oct 16, 2018
Provisional Application 62529360 · Jul 6, 2017
Provisional Application 62403396 · Oct 3, 2016
Provisional Application 62357737 · Jul 1, 2016
Cited By (1)
US 12,657,331