IP Library Granted Patent US 11,637,802
Granted Patent B2
US 11,637,802 · App. 17/483,683 · Granted Apr 25, 2023

Private data sharing system

Inventor: Brian Lee Moffat (Portland, CA)
H04L51/52G06F21/6245H04L9/0822H04L9/0825H04L9/0891H04L9/0894H04L51/066H04L51/212H04L63/0421H04L63/0428H04L63/0435H04L63/06H04L63/065H04L63/08H04L67/303H04L67/306G06Q50/01H04L2209/16H04L2209/60
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,637,802
App. No.
17/483,683
Granted
Apr 25, 2023
Kind
B2
Abstract

A novel architecture for a data sharing system (DSS) is disclosed and seeks to ensure the privacy and security of users' personal information. In this type of network, a user's personally identifiable information is stored and transmitted in an encrypted form, with few exceptions. The only key with which that encrypted data can be decrypted, and thus viewed, remains in the sole possession of the user and the user's friends/contacts within the system. This arrangement ensures that a user's personally identifiable information cannot be examined by anyone other than the user or his friends/contacts. This arrangement also makes it more difficult for the web site or service hosting the DSS to exploit its users' personally identifiable information. Such a system facilitates the encryption, storage, exchange and decryption of personal, confidential and/or proprietary data.

Claims (19)

1. A method for data exchange between a plurality of personal computing devices in which a third party receives, stores, and transmits data between each of said personal computing devices, comprising:

providing a third party data sharing server in network communication with the personal computing devices;

establishing an encryption/decryption module on each personal computing device;

creating an original data file on one of said personal computing devices;

generating a file encryption key and a file decryption key associated with the original data file using the encryption/decryption module;

encrypting the original data file with the file encryption key to generate an encrypted original data file;

encrypting the file decryption key with a first unique encryption key associated with a first recipient to produce a first encrypted file decryption key;

encrypting the file decryption key with a second unique encryption key associated with a second recipient to produce a second encrypted file decryption key;

transmitting the encrypted original data file, the first encrypted file decryption key, and the second encrypted file decryption key to the third party data sharing server for storage;

forwarding the encrypted original data file and the first encrypted file decryption key from the third party server to the first recipient's personal computing device;

forwarding the encrypted data file and the second encrypted file decryption key from the third party server to the second recipient's personal computing device;

decrypting the file decryption key using the encryption/decryption module of the first recipient's personal computing device to reconstitute the file decryption key from the first encrypted file decryption key and a first recipient decryption key, the first recipient decryption key being usable for reconstituting the original data file; and

decrypting the file decryption key using the encryption/decryption module of the second recipient's personal computing device to reconstitute the file decryption key from the second encrypted file decryption key and a second recipient decryption key, the second recipient decryption key usable for reconstituting the original data file;

whereby the third party data sharing server does not store or receive the original data file or a key to decrypt a file to create the original data file.

2. The method of claim 1 , wherein the encryption/decryption module of the first personal computing device generates the file encryption key through systematic modification of a base primary key provided by the user.

3. The method of claim 1 , wherein a user can disable the first recipient decryption key from the first recipient's personal computing device to prevent future decryption.

4. The method of claim 1 , wherein a user can extract the first recipient decryption key from the first recipient's personal computing device to prevent future decryption.

5. The method of claim 1 , wherein the file encryption key and a file decryption key are generated from a user provided key phrase.

6. The method of claim 1 , wherein the file encryption key and a file decryption key are generated randomly.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 4, 2025
From: MOFFAT, BRIAN LEE
To: BRIAN MOFFAT PRIVATE DATA LLC
Reel/Frame 070400/0420 →
Continuity (9)
Continuation 16784122 · Feb 6, 2020
Continuation 16214640 · Dec 10, 2018
Continuation 15192584 · Jun 24, 2016
Division 14638294 · Mar 4, 2015
Continuation 13878345
Continuation In Part 13270118 · Oct 10, 2011
Continuation In Part PCTUS2011055417 · Oct 7, 2011
Provisional Application 61404794 · Oct 8, 2010
Related Publication 20220021637A1 · Jan 20, 2022