IP Library Granted Patent US 11,847,233
Granted Patent B2
US 11,847,233 · App. 17/198,113 · Granted Dec 19, 2023

Token state synchronization

Inventors: Ramesh Shankar (San Mateo, CA); Brian Sullivan (Buckinghamshire, GB); Sayeed Mohammed (Foster City, CA); Gavin Shenker (Los Angeles, CA); Richard Nassar (San Mateo, CA); Clyde Valdez (Santa Clara, CA); Jonathan Hill (London, GB)
Assignee: Visa International Service Association
G06F21/602G06F21/335G06F21/44G06F21/629H04L9/3213
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,847,233
App. No.
17/198,113
Granted
Dec 19, 2023
Kind
B2
Abstract

Techniques for managing an application token may include providing, by a first service provider application on a communication device to a first service provider computer, a first request for a first application token, receiving, by an account management application on the communication device from a token service computer in communication with the first service provider computer, the first application token, and storing the first application token in a token container in the account management application.

Claims (34)

1. A method comprising:

receiving, at a token service computer, a provisioning request to provision an application token to a token container on an account management application on a communication device, the communication device also comprising a service provider application associated with a service provider computer; and

transmitting, to the account management application on the communication device from the token service computer, the application token in an encrypted form to the token container in the account management application on the communication device, the token container associated with a container identifier and a token state associated with the encrypted application token, the container identifier and the token state maintained by the token service computer, the token state including at least one of a newly generated token, a redeemed token, or a value added token.

2. The method of claim 1 , wherein the token service computer transmits the token container with the application token.

3. The method of claim 1 , wherein the token service computer receives the provisioning request from the account management application in an encrypted form and decrypts the application token before transmitting the application token.

4. The method of claim 1 , wherein the token service computer transmitted the token container prior to receiving the provisioning request.

5. The method of claim 1 , wherein the token service computer receives the provisioning request from the service provider computer.

6. A token service computer comprising:

a processor;

a non-transitory computer-readable medium comprising instructions, which, when executed by the processor, perform the steps of:

receiving a provisioning request to provision an application token to a token container on an account management application on a communication device, the communication device also comprising a service provider application associated with a service provider computer; and

transmitting, to the account management application on the communication device from the token service computer, the application token in an encrypted form to the token container in the account management application on the communication device, the token container associated with a container identifier and a token state associated with the encrypted application token, the container identifier and the token state maintained by the token service computer, the token state including at least one of a newly generated token, a redeemed token, or a value added token.

7. The token service computer of claim 6 , wherein the token container is transmitted to the account management application with the application token.

8. The token service computer of claim 6 , wherein the provisioning request is received from the account management application in an encrypted form and the token service computer decrypts the application token before transmitting the application token.

9. The token service computer of claim 6 , wherein the token service computer transmitted the token container prior to receiving the provisioning request.

10. The token service computer of claim 6 , wherein the token service computer receives the provisioning request from the service provider computer.

11. A method for managing application tokens comprising:

providing, by a first service provider application of a plurality of service provider applications on a communication device to a first service provider computer, a first request for a first application token;

receiving, by the first service provider application on the communication device from the first service provider computer, an encrypted application token corresponding to the first application token;

receiving, by an account management application on the communication device from the first service provider application on the communication device, the encrypted application token;

transmitting, by the account management application on the communication device to a token service computer in communication with the first service provider computer, a token provisioning request with the encrypted application token;

receiving, by the account management application on the communication device from the token service computer, the first application token with a token container, the token container associated with a container identifier and a token state associated with the first application token, the container identifier and the token state maintained by the token service computer, the token state including at least one of a newly generated token, a redeemed token, or a value added token; and

storing the first application token in the token container in the account management application.

12. The method of claim 11 , wherein the token service computer and the first service provider computer have respective cryptographic keys of a cryptographic key pair.

13. The method of claim 12 , wherein the cryptographic key pair is a symmetric key pair.

14. The method of claim 11 , further comprising:

providing, by a second service provider application on the communication device to a second service provider computer, a second request for a second application token;

receiving, by the account management application on the communication device from the token service computer in communication with the second service provider computer, the second application token; and

storing the second application token in the token container in the account management application.

15. The method of claim 11 , further comprising:

receiving, by the first service provider application, a user request from a user for the first application token, wherein the first service provider application provides the first request for the first application token responsive to the user request.

16. The method of claim 11 , wherein the first request for the first application token comprises payment information for purchasing the first application token and details pertaining to the first application token.

17. The method of claim 11 , further comprising:

after receiving the encrypted application token from the first service provider computer, transmitting, by the first service provider application on the communication device to the account management application on the communication device, an encrypted payload comprising the encrypted application token.

Continuity (4)
Continuation 16534916 · Aug 7, 2019
Continuation PCTUS2019040506 · Jul 3, 2019
Provisional Application 62693631 · Jul 3, 2018
Related Publication 20210192060A1 · Jun 24, 2021
Cited By (2)
US 12,204,658 US 12,613,952