IP Library Granted Patent US 12,314,425
Granted Patent B2
US 12,314,425 · App. 17/525,548 · Granted May 27, 2025

Privacy data management in distributed computing systems

Inventor: Michael Emanuel Mainer (Woodinville, WA)
Assignee: Microsoft Technology Licensing, LLC
G06F21/6245G06Q30/018
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,314,425
App. No.
17/525,548
Granted
May 27, 2025
Kind
B2
Abstract

Computing systems, devices, and associated methods of privacy data management in a distributed computing system are disclosed herein. In one example, a method includes receiving a request from a data consumer for privacy information of data stored as digital objects. The digital objects are logically structured according to a data schema defining a property containing a property value representing user information and an annotation to the property containing a privacy classification of the property value of the property. The method also includes inspecting the data schema of the digital objects to identify the privacy classification of the property and transmitting the identified privacy classification to the data consumer to allow the data consumer to configure an application to process the property value of the property in the digital objects according to an organizational, legal, or regulatory processing requirement in one or more jurisdictions.

Claims (94)

1. A method for privacy data management in a distributed computing system configured to provide computing resources as computing services via a computer network, the method comprising:

receiving, via the computer network, a request from a data consumer for privacy information of data stored as digital objects in the distributed computing system, each of the digital objects being logically structured according to a data schema defining:

a property that is configured to contain a property value representing user information; and

an annotation to the property, the annotation being configured to contain data representing a privacy classification of the property value contained in the property;

in response to receiving the request for the privacy information;

inspecting the data schema of the digital objects to identify the privacy classification of the property; and

transmitting, via the computer network, the identified privacy classification of the property to the data consumer; and

upon receiving, at the data consumer, the identified privacy classification of the property in the digital objects;

configuring an application to process the property values of the property in the digital objects according to a corresponding organizational, legal, or regulatory processing requirement in one or more jurisdictions; and

executing the configured application to generate output data from the data in compliance to the corresponding organizational, legal, or regulatory processing requirement in one or more jurisdictions.

2. The method of claim 1 wherein:

the data schema further includes another annotation containing data representing one or more privacy data categories included in the digital objects; and

the method further includes, in response to receiving the request for the privacy information;

inspecting the data schema of the digital objects to identify the data representing the one or more privacy data categories included in the digital objects; and

transmitting, via the computer network, the identified data representing the one or more privacy data categories included in the digital objects to the data consumer along with the identified privacy classification of the property value contained in the property of the digital objects.

3. The method of claim 1 , further comprising storing the generated output data along with the received privacy classification of the property in the digital objects.

4. The method of claim 1 , further comprising:

storing the generated output data along with the received privacy classification of the property in the digital objects; and

processing, with another application in the distributed computing system, the stored output data according to the privacy classification of the property stored along with the output data from the application.

5. The method of claim 1 wherein:

storing the generated output data along with the received privacy classification of the property in the digital objects;

querying the output data for a set of one or more property values according to a preset value of the privacy classification; and

processing the queried one or more property values according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

6. The method of claim 1 , further comprising:

receiving a user input to modify the data representing the privacy classification contained in the annotation; and

in response to receiving the user input, modifying the data schema according to the received user input to modify the data representing the privacy classification contained in the annotation without modifying the user object.

7. A method for privacy data management in a distributed computing system configured to provide computing resources as computing services via a computer network, the method comprising:

receiving, via the computer network, a request from a data consumer for privacy information of data stored as digital objects in the distributed computing system, the individual digital objects being logically structured according to a data schema defining:

a property that is configured to contain a property value representing user information; and

an annotation to the property, the annotation being configured to contain data representing a privacy classification of the property value contained in the property, the privacy classification having a corresponding organizational, legal, or regulatory processing requirement in one or more jurisdictions; and

in response to receiving the request for the privacy information;

inspecting the data schema of the digital objects to identify the privacy classification of the property value contained in the property of the digital objects; and

transmitting, via the computer network, the identified privacy classification of the property value contained in the property of the digital objects to the data consumer, thereby enabling the data consumer to configure an application to process the property value of the property in the digital objects according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

8. The method of claim 7 wherein:

the data schema further includes another annotation to the digital objects containing data representing one or more privacy data categories included in the digital objects; and

the method further includes, in response to receiving the request for the privacy information;

inspecting the data schema of the digital objects to identify the data representing the one or more privacy data categories included in the digital objects; and

transmitting, via the computer network, the identified data representing the one or more privacy data categories included in the digital objects to the data consumer along with the identified privacy classification of the property value contained in the property of the digital objects.

9. The method of claim 7 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the property value contained in the property of the digital objects.

10. The method of claim 7 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the property value contained in the property of the digital objects; and

the method further includes processing, with another application in the distributed computing system, the stored output data according to the privacy classification of the property value contained in the property of the digital objects stored along with the output data from the application.

11. The method of claim 7 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the property value contained in the property of the digital objects; and

the method further includes:

processing, with another application in the distributed computing system, the stored output data to generate another output data according to the privacy classification of the property value contained in the property of the digital objects stored along with the output data; and

storing the generated another output data along with the privacy classification of the property value contained in the property of the digital objects.

12. The method of claim 7 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the property value contained in the property of the digital objects; and

the method further includes, with another application in the distributed computing system;

querying the output data for a set of one or more property values according to a preset value of the privacy classification; and

processing the queried one or more property values according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

13. The method of claim 7 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the property value contained in the property of the digital objects; and

the method further includes, with another application in the distributed computing system;

querying the data and the output data for a set of one or more property values according to a preset value of the privacy classification; and

processing the queried one or more property values in the data and the output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

14. The method of claim 7 wherein the privacy classification of the property value contained in the property includes multiple levels of privacy classes each having a corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

15. The method of claim 7 , further comprising:

receiving a user input to modify the data representing the privacy classification contained in the annotation; and

in response to receiving the user input, modifying the data schema according to the received user input to modify the data representing the privacy classification contained in the annotation without modifying the user object.

16. A computing device in a distributed computing system configured to provide computing resources of the distributed computing system as computing services to users via a computer network, the computing device comprising:

a processor; and

a memory operatively coupled to the processor, the memory containing instructions executable by the processor to cause the computing device to:

receive, via the computer network, a request from a data consumer for privacy information of data stored as digital objects in the distributed computing system, the digital objects being logically structured according to a data schema defining:

multiple properties individually configured to contain a property value representing user information; and

multiple annotations individually corresponding to one of the multiple properties, the multiple annotations individually containing data representing a privacy classification of the one of the multiple properties; and

in response to receiving the request for the privacy information;

inspect the data schema of the digital objects to identify the privacy classification of the multiple properties of the digital objects; and

transmit, via the computer network, the identified privacy classification of the multiple properties of the digital objects to the data consumer, thereby enabling the data consumer to configure an application to process values of the multiple properties in the digital objects according to a corresponding organizational, legal, or regulatory processing requirement in one or more jurisdictions.

17. The computing device of claim 16 wherein:

the data schema further includes another annotation to the digital objects containing data representing one or more privacy data categories included in the digital object; and

the memory includes additional instructions executable by the processor to cause the computing device to, in response to receiving the request for the privacy information;

inspect the data schema of the digital object to identify the data representing the one or more privacy data categories included in the digital objects; and

transmit, via the computer network, the identified data representing the one or more privacy data categories included in the digital objects to the data consumer along with the identified privacy classification of the multiple properties of the digital objects.

18. The computing device of claim 16 wherein:

the application is configured by the data consumer to:

process the property value of the property in the digital objects to generate output data according to the corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions; and

store the output data along with the received privacy classification of the multiple properties of the digital objects.

19. The computing device of claim 16 wherein the privacy classification of the multiple properties includes multiple levels of privacy classes each having a corresponding organizational, legal, or regulatory processing requirement in the one or more jurisdictions.

20. The computing device of claim 16 wherein the memory includes additional instructions executable by the processor to cause the computing device to:

receive a user input to modify the data representing the privacy classification contained in the annotation; and

in response to receiving the user input, modify the data schema according to the received user input to modify the data representing the privacy classification contained in the annotation without modifying the user object.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 12, 2021
From: MAINER, MICHAEL EMANUEL
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 058101/0499 →
Continuity (1)
Related Publication 20230153457A1 · May 18, 2023
References Cited (196)
US 7263696B1 · Gruttadauria · 2007 [cited by applicant]
US 8117640B1 · Moriconi · 2012 [cited by examiner]
US 8302169B1 · Presotto et al. · 2012 [cited by applicant]
US 9372687B1 · Pai · 2016 [cited by applicant]
US 10170203B1 · Blechman · 2019 [cited by examiner]
US 10404757B1 · Horton · 2019 [cited by applicant]
US 10541938B1 · Timmerman · 2020 [cited by examiner]
US 10594730B1 · Summers et al. · 2020 [cited by applicant]
US 10635837B1 · Jun · 2020 [cited by applicant]
US 10642847B1 · Nerurkar · 2020 [cited by applicant]
US 10671752B1 · Misra · 2020 [cited by examiner]
US 10872029B1 · Bawcom · 2020 [cited by examiner]
US 10891380B1 · Deshpande · 2021 [cited by examiner]
US 10965547B1 · Esposito · 2021 [cited by examiner]
US 10990370B1 · Bawcom · 2021 [cited by examiner]
US 10992458B2 · Natanzon · 2021 [cited by examiner]
US 11024299B1 · Drake et al. · 2021 [cited by applicant]
US 11081219B1 · Dods · 2021 [cited by examiner]
US 11126745B1 · Sankuratripati · 2021 [cited by examiner]
US 11416874B1 · Scotney · 2022 [cited by examiner]
US 11563778B1 · VanLoo · 2023 [cited by examiner]
US 11567650B1 · Crowley · 2023 [cited by applicant]
US 11567975B1 · Day, Jr. · 2023 [cited by examiner]
US 11599667B1 · Tutuianu · 2023 [cited by applicant]
US 11625752B2 · Sabeg · 2023 [cited by examiner]
US 11663204B1 · Moore · 2023 [cited by applicant]
US 11777932B1 · Kempf · 2023 [cited by examiner]
US 11861036B1 · Pflug · 2024 [cited by examiner]
US 11874937B2 · Gentleman · 2024 [cited by examiner]
US 11909769B2 · Das · 2024 [cited by examiner]
US 20030188177A1 · Hoke, Jr. · 2003 [cited by examiner]
US 20050033481A1 · Budhraja · 2005 [cited by applicant]
US 20050044409A1 · Betz · 2005 [cited by examiner]
US 20050278333A1 · Daniels · 2005 [cited by applicant]
US 20060294095A1 · Berk · 2006 [cited by applicant]
US 20070239471A1 · Patton · 2007 [cited by examiner]
US 20070258638A1 · Howerton, Jr. · 2007 [cited by examiner]
US 20080141366A1 · Cross et al. · 2008 [cited by applicant]
US 20080168527A1 · Koved · 2008 [cited by applicant]
US 20090055431A1 · Brodie · 2009 [cited by examiner]
US 20090055887A1 · Brodie · 2009 [cited by applicant]
US 20100077484A1 · Paretti et al. · 2010 [cited by applicant]
US 20100132044A1 · Kogan · 2010 [cited by examiner]
US 20100269122A1 · Malinowski · 2010 [cited by examiner]
US 20110064221A1 · McSherry · 2011 [cited by examiner]
US 20110087576A1 · Song · 2011 [cited by examiner]
US 20120102089A1 · Haines · 2012 [cited by applicant]
US 20120173439A1 · Levy · 2012 [cited by applicant]
US 20120222083A1 · Vaehae et al. · 2012 [cited by applicant]
US 20120278325A1 · Jenkins · 2012 [cited by applicant]
US 20120278900A1 · Sebald · 2012 [cited by examiner]
US 20120311131A1 · Arrasvuori · 2012 [cited by applicant]
US 20130290200A1 · Singhal · 2013 [cited by examiner]
US 20130298247A1 · Laurila · 2013 [cited by examiner]
US 20130347057A1 · Hurwitz · 2013 [cited by examiner]
US 20140026131A1 · Ravi · 2014 [cited by examiner]
US 20140041047A1 · Jaye · 2014 [cited by examiner]
US 20140089189A1 · Vasireddy · 2014 [cited by examiner]
US 20140090090A1 · Vasireddy · 2014 [cited by examiner]
US 20140156547A1 · Winston · 2014 [cited by examiner]
US 20140201045A1 · Pai · 2014 [cited by applicant]
US 20140214637A1 · Pai · 2014 [cited by examiner]
US 20140325035A1 · Ding · 2014 [cited by examiner]
US 20140373182A1 · Peri · 2014 [cited by applicant]
US 20150065087A1 · Cudak · 2015 [cited by examiner]
US 20150067883A1 · Shen · 2015 [cited by examiner]
US 20150096043A1 · Smith · 2015 [cited by examiner]
US 20150127793A1 · Pohlmann · 2015 [cited by examiner]
US 20150142682A1 · Ghaisas · 2015 [cited by examiner]
US 20150254456A1 · Jacquin · 2015 [cited by applicant]
US 20150254659A1 · Kulkarni · 2015 [cited by examiner]
US 20150350211A1 · Burgess · 2015 [cited by examiner]
US 20150379301A1 · Lesavich · 2015 [cited by applicant]
US 20150381571A1 · Plasse · 2015 [cited by examiner]
US 20160044039A1 · Montanari et al. · 2016 [cited by applicant]
US 20160080929A1 · Reshef · 2016 [cited by applicant]
US 20160100299A1 · Nawrocki · 2016 [cited by examiner]
US 20160188801A1 · Tse · 2016 [cited by examiner]
US 20160188883A1 · Wang · 2016 [cited by examiner]
US 20160210575A1 · Vu · 2016 [cited by examiner]
US 20160246966A1 · Batrouni · 2016 [cited by examiner]
US 20160246991A1 · Bell · 2016 [cited by examiner]
US 20160292236A1 · Joshi · 2016 [cited by applicant]
US 20160294781A1 · Ninan · 2016 [cited by applicant]
US 20160306989A1 · Embleton · 2016 [cited by applicant]
US 20160335324A1 · Caulfield · 2016 [cited by applicant]
US 20160373289A1 · Hernandez · 2016 [cited by examiner]
US 20170032613A1 · Ovalle et al. · 2017 [cited by applicant]
US 20170039387A1 · Leonardi · 2017 [cited by applicant]
US 20170048245A1 · Owen et al. · 2017 [cited by applicant]
US 20170070539A1 · Sachs · 2017 [cited by examiner]
US 20170109142A1 · Kaushal · 2017 [cited by applicant]
US 20170109541A1 · Ionescu · 2017 [cited by examiner]
US 20170154189A1 · Betzler · 2017 [cited by examiner]
US 20170193239A1 · Chari · 2017 [cited by examiner]
US 20170270318A1 · Ritchie · 2017 [cited by examiner]
US 20170286700A1 · Sartor · 2017 [cited by examiner]
US 20170329991A1 · Van Dyne · 2017 [cited by applicant]
US 20170353444A1 · Karangutkar · 2017 [cited by applicant]
US 20180096165A1 · Warshavsky · 2018 [cited by applicant]
US 20180113996A1 · Cai · 2018 [cited by examiner]
US 20180121261A1 · Nadig et al. · 2018 [cited by applicant]
US 20180131751A1 · Jones · 2018 [cited by examiner]
US 20180167462A1 · Blair · 2018 [cited by applicant]
US 20180189661A1 · Tatourian et al. · 2018 [cited by applicant]
US 20180276401A1 · Allen · 2018 [cited by examiner]
US 20180341782A1 · Barday · 2018 [cited by examiner]
US 20190026163A1 · Subbiah · 2019 [cited by examiner]
US 20190080334A1 · Copeland · 2019 [cited by examiner]
US 20190139367A1 · Isaac · 2019 [cited by examiner]
US 20190156053A1 · Vogel · 2019 [cited by examiner]
US 20190158506A1 · Brouillette · 2019 [cited by examiner]
US 20190272387A1 · Gkoulalas-Divanis · 2019 [cited by examiner]
US 20190310929A1 · Wright · 2019 [cited by examiner]
US 20190318121A1 · Hockenbrocht et al. · 2019 [cited by applicant]
US 20190347428A1 · Youssefi · 2019 [cited by examiner]
US 20190354964A1 · Snow · 2019 [cited by examiner]
US 20190377853A1 · Obaidi · 2019 [cited by applicant]
US 20190378166A1 · Eich · 2019 [cited by examiner]
US 20190379695A1 · Angara · 2019 [cited by examiner]
US 20200019713A1 · Varga · 2020 [cited by examiner]
US 20200043066A1 · Obaidi · 2020 [cited by applicant]
US 20200050787A1 · Mahalle · 2020 [cited by examiner]
US 20200082096A1 · Pistoia · 2020 [cited by examiner]
US 20200090795A1 · Chang · 2020 [cited by examiner]
US 20200099690A1 · Mohandoss · 2020 [cited by applicant]
US 20200118010A1 · Lee · 2020 [cited by examiner]
US 20200118068A1 · Turetsky · 2020 [cited by examiner]
US 20200133640A1 · Thiru · 2020 [cited by applicant]
US 20200134750A1 · Wolf · 2020 [cited by applicant]
US 20200143037A1 · Sunkavally · 2020 [cited by examiner]
US 20200169881A1 · Linton · 2020 [cited by examiner]
US 20200184556A1 · Cella · 2020 [cited by examiner]
US 20200273046A1 · Biswas · 2020 [cited by examiner]
US 20200341876A1 · Gandhi · 2020 [cited by applicant]
US 20200357000A1 · Levine · 2020 [cited by examiner]
US 20200394733A1 · Lewis · 2020 [cited by examiner]
US 20200401963A1 · Matuchniak · 2020 [cited by examiner]
US 20210073357A1 · Desai · 2021 [cited by applicant]
US 20210081561A1 · Blandin · 2021 [cited by examiner]
US 20210141913A1 · Mosconi · 2021 [cited by examiner]
US 20210192651A1 · Groth · 2021 [cited by examiner]
US 20210192867A1 · Fang · 2021 [cited by applicant]
US 20210248247A1 · Poothokaran · 2021 [cited by examiner]
US 20210250369A1 · Åvist · 2021 [cited by applicant]
US 20210297487A1 · Hegde · 2021 [cited by examiner]
US 20210306418A1 · Lamba · 2021 [cited by examiner]
US 20210312077A1 · Jain · 2021 [cited by examiner]
US 20210312469A1 · Natali, Jr. · 2021 [cited by examiner]
US 20210327548A1 · Sparks · 2021 [cited by examiner]
US 20210342822A1 · Lau · 2021 [cited by examiner]
US 20210390190A1 · Walker · 2021 [cited by examiner]
US 20220019671A1 · Boone · 2022 [cited by examiner]
US 20220019682A1 · Sislow · 2022 [cited by applicant]
US 20220036373A1 · O'Brien · 2022 [cited by examiner]
US 20220067207A1 · Lindsay · 2022 [cited by examiner]
US 20220086163A1 · Pandey · 2022 [cited by applicant]
US 20220100893A1 · Kussmaul · 2022 [cited by examiner]
US 20220108274A1 · Krishnamoorthy · 2022 [cited by examiner]
US 20220164472A1 · Cannon · 2022 [cited by examiner]
US 20220171873A1 · Lundbæk · 2022 [cited by applicant]
US 20220172222A1 · Chin · 2022 [cited by applicant]
US 20220179978A1 · Stroila · 2022 [cited by examiner]
US 20220182397A1 · Romero Zambrano · 2022 [cited by examiner]
US 20220182817A1 · Karpoor · 2022 [cited by examiner]
US 20220188452A1 · Song · 2022 [cited by applicant]
US 20220198034A1 · Rodriguez · 2022 [cited by examiner]
US 20220198044A1 · Madhavan · 2022 [cited by applicant]
US 20220207163A1 · Gentleman · 2022 [cited by examiner]
US 20220237565A1 · Dzierzanowski · 2022 [cited by examiner]
US 20220245282A1 · Achan · 2022 [cited by examiner]
US 20220283930A1 · Figueredo de Santana · 2022 [cited by examiner]
US 20220286438A1 · Burke, Jr. · 2022 [cited by examiner]
US 20220309170A1 · Iyer · 2022 [cited by applicant]
US 20220318426A1 · Solheim et al. · 2022 [cited by applicant]
US 20220343016A1 · Horesh · 2022 [cited by examiner]
US 20220351139A1 · Mowatt · 2022 [cited by examiner]
US 20220360621A1 · Tripathy · 2022 [cited by examiner]
US 20220407889A1 · Narigapalli · 2022 [cited by examiner]
US 20230005391A1 · Sharma · 2023 [cited by examiner]
US 20230020523A1 · Kulkarni · 2023 [cited by examiner]
US 20230045034A1 · Shaik · 2023 [cited by examiner]
US 20230066295A1 · Cheng · 2023 [cited by applicant]
US 20230095080A1 · Yang · 2023 [cited by applicant]
US 20230095576A1 · Ureche et al. · 2023 [cited by applicant]
US 20230105207A1 · Srivastava · 2023 [cited by examiner]
US 20230105432A1 · Lauer · 2023 [cited by examiner]
US 20230137378A1 · LaTerza · 2023 [cited by examiner]
US 20230153450A1 · Mainer · 2023 [cited by applicant]
US 20230153457A1 · Mainer · 2023 [cited by examiner]
US 20230208740A1 · Langer · 2023 [cited by examiner]
“International Search Report and Written Opinion Issued in PCT Application No. PCT/US22/041606”, Mailed Date: Nov. 15, 2022, 11 Pages. [cited by applicant]
“International Search Report and Written Opinion Issued in PCT Application No. PCT/US22/041788”, Mailed Date: Nov. 24, 2022, 10 Pages. [cited by applicant]
U.S. Appl. No. 17/542,017, filed Dec. 3, 2021. [cited by applicant]
Non-Final Office Action mailed on Mar. 25, 2024, in U.S. Appl. No. 17/542,017, 24 pages. [cited by applicant]
Final Office Action mailed on Oct. 1, 2024, in U.S. Appl. No. 17/542,017, 12 pages. [cited by applicant]