IP Library Granted Patent US 11,804,954
Granted Patent B2
US 11,804,954 · App. 17/128,403 · Granted Oct 31, 2023

Encryption key management for an automated workflow

Inventors: Angela Kirchhof (Denver, CO); Curtis Neil Allen, Jr. (Denver, CO); Dustin James Lindquist (Denver, CO); Samuel Opoku-Agyemang (Denver, CO)
Assignee: Salesforce, Inc.
H04L9/0822G06F21/602H04L9/0894H04L63/0428
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,804,954
App. No.
17/128,403
Granted
Oct 31, 2023
Kind
B2
Abstract

Media, system, and method for providing encryption key management to an automated workflow within a group-based communication system. The automated workflow is encrypted using an organization-specific encryption key and is stored in a data store. Responsive to a triggering event, the encrypted workflow is retrieved from the data store to be decrypted and a corresponding decryption key is retrieved from a key store. The decrypted workflow performs a series of steps responsive to determining that a trigger condition has been met. The steps may be associated with at least one of sending a form and sending a message to a user within the group-based communication system.

Claims (59)

1. One or more non-transitory computer-readable media storing computer-executable instructions that, when executed by a processor, perform a method for providing encryption key management to an automated workflow, wherein the automated workflow is configured to receive group-based communication input and perform an automated series of steps to facilitate completion of one or more tasks, the method comprising the steps of:

receiving group-based communication input configuring a trigger condition associated with the automated workflow;

responsive to determining that the trigger condition associated with the automated workflow has been satisfied, retrieving an organization-specific decryption key from a key server;

retrieving, from a data store, an encrypted workflow associated with the automated workflow;

automatically decrypting the encrypted workflow using the organization-specific decryption key to obtain a decrypted automated workflow;

automatically initiating the decrypted automated workflow to perform at least one interaction with a user;

receiving group-based communication input associated with the automated workflow;

generating a workflow response based on the group-based communication input;

encrypting, using an organization-specific encryption key, the workflow response;

storing the encrypted workflow response in the data store; and

in response to determining that the group-based communication input modified the decrypted automated workflow, re-encrypting the decrypted automated workflow to produce a re-encrypted automated workflow, and storing the re-encrypted automated workflow in the data store.

2. The computer-readable media of claim 1 , wherein the at least one interaction with the user comprises at least one of creating a form to be completed by the user or sending a message to the user.

3. The computer-readable media of claim 1 , wherein the group-based communication input comprises at least one of a form completed by the user or a user response to a message.

4. The computer-readable media of claim 1 , wherein the decrypted automated workflow is modified in response to receiving a modification request group-based communication input from the user.

5. The computer-readable media of claim 4 , wherein the modification request group-based communication input is a request to modify the trigger condition of the automated workflow.

6. The computer-readable media of claim 1 , further comprising the steps of:

periodically rotating the organization-specific decryption key according to an organization-specific encryption policy; and

in response to rotating the organization-specific decryption key, updating the organization-specific decryption key in the key server.

7. The computer-readable media of claim 1 , wherein the workflow response comprises a spreadsheet of user information.

8. A method for providing encryption key management to an automated workflow, wherein the automated workflow is configured to receive group-based communication input and perform an automated series of steps to facilitate completion of one or more tasks, the method comprising the steps of:

receiving group-based communication input configuring a trigger condition associated with the automated workflow;

responsive to determining that the trigger condition associated with the automated workflow has been satisfied, retrieving an organization-specific decryption key from a key server;

retrieving, from a data store, an encrypted workflow associated with the automated workflow;

automatically decrypting the encrypted workflow using the organization-specific decryption key to obtain a decrypted automated workflow;

automatically initiating the decrypted automated workflow to perform at least one interaction with a user;

receiving group-based communication input associated with the automated workflow;

generating a workflow response based on the group-based communication input;

encrypting, using an organization-specific encryption key, the workflow response;

storing the encrypted workflow response in the data store; and

in response to determining that the group-based communication input modified the decrypted automated workflow, re-encrypting the decrypted automated workflow to produce a re-encrypted automated workflow, and storing the re-encrypted automated workflow in the data store if the decrypted automated workflow has been changed.

9. The method of claim 8 , wherein the at least one interaction with the user comprises at least one of creating a form to be completed by the user or sending a message to the user.

10. The method of claim 8 , wherein the group-based communication input comprises at least one of a form completed by the user or a user response to a message.

11. The method of claim 8 , wherein the decrypted automated workflow is modified in response to receiving a modification request group-based communication input from the user.

12. The method of claim 11 , wherein the modification request group-based communication input is a request to modify the trigger condition of the automated workflow.

13. The method of claim 8 , further comprising the steps of:

periodically rotating the organization-specific decryption key according to an organization-specific encryption policy; and

in response to rotating the organization-specific decryption key, updating the organization-specific decryption key in the key server.

14. A system for providing encryption key management to an automated workflow, wherein the automated workflow is configured to receive group-based communication input and perform an automated series of steps to facilitate completion of one or more tasks, the system comprising:

a key server;

a data store; and

a processor programmed to perform a method for providing encryption key management to the automated workflow, the method comprising the steps of:

receiving group-based communication input configuring a trigger condition associated with the automated workflow;

responsive to determining that the trigger condition associated with the automated workflow has been satisfied, retrieving an organization-specific decryption key from a key server;

retrieving, from the data store, an encrypted workflow associated with the automated workflow;

automatically decrypting the encrypted workflow using the organization-specific decryption key to obtain a decrypted automated workflow;

automatically initiating the decrypted automated workflow to perform at least one interaction with a user;

receiving group-based communication input associated with the automated workflow;

generating a workflow response based on the group-based communication input;

encrypting, using an organization-specific encryption key, the workflow response;

storing the encrypted workflow response in the data store; and

in response to determining that the group-based communication input modified the decrypted automated, re-encrypting the decrypted automated workflow to produce a re-encrypted automated workflow, and storing the re-encrypted automated workflow in the data store if the decrypted automated workflow has been changed.

15. The system of claim 14 , wherein the at least one interaction with the user comprises at least one of creating a form to be completed by the user or sending a message to the user.

16. The system of claim 14 , wherein the group-based communication input comprises at least one of a form completed by the user or a user response to a message.

17. The system of claim 14 , wherein the decrypted automated workflow is modified in response to receiving a modification request group-based communication input from the user.

18. The system of claim 17 , wherein the modification request group-based communication input is a request to modify the trigger condition of the automated workflow.

19. The system of claim 14 , wherein the processor is further programmed to perform the steps of:

periodically rotating the organization-specific decryption key according to an organization-specific encryption policy; and

in response to rotating the organization-specific decryption key, updating the organization-specific decryption key in the key server.

20. The system of claim 14 , wherein the workflow response comprises a spreadsheet of user information.

Assignments (4)
MERGER Recorded Nov 21, 2022
From: SLACK TECHNOLOGIES, LLC
To: SALESFORCE.COM, INC.
Reel/Frame 061972/0569 →
CHANGE OF NAME Recorded Nov 21, 2022
From: SALESFORCE.COM, INC.
To: SALESFORCE, INC.
Reel/Frame 061972/0769 →
MERGER AND CHANGE OF NAME Recorded Oct 1, 2021
From: SLACK TECHNOLOGIES, INC.; SLACK TECHNOLOGIES, LLC
To: SLACK TECHNOLOGIES, LLC
Reel/Frame 057683/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 21, 2020
From: KIRCHHOF, ANGELA; ALLEN, CURTIS NEIL, JR.; LINDQUIST, DUSTIN JAMES; OPOKU-AGYEMANG, SAMUEL
To: SLACK TECHNOLOGIES, INC.
Reel/Frame 054706/0397 →