IP Library Granted Patent US 12,657,581
Granted Patent B2
US 12,657,581 · App. 17/657,882 · Granted Jun 16, 2026

Systems and methods for multi-merchant tokenization

Inventors: Michelle K. Plomske (Durango, CO); Charles E. Watts (Durango, CO); Matthew D. Ozvat (Durango, CO)
Assignee: Worldpay, LLC
G06Q20/38215
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,657,581
App. No.
17/657,882
Granted
Jun 16, 2026
Kind
B2
Abstract

Systems and methods for multi-merchant tokenization may include receiving a transaction from a point of sale terminal of a merchant, validating the merchant ID against merchant logs, and generating a token for the transaction. The token includes a primary account number, expiration, and a group ID. Additionally, the system provides the primary account number to a payment system and receives a response back. The response is then output back to the merchant along with the token. In subsequent transactions, the system may receive the token from a one point of sale terminal of the merchant. The system validates the merchant ID against merchant logs and ensures the merchant is configured for tokenization. The token is decrypted and the group ID is compared to the merchant ID in the merchant logs. When they match, the primary account number is provided to the payment system for approval.

Claims (66)

1 . A computer-implemented method for multi-merchant tokenization, the method comprising:

receiving, by a multi-merchant tokenization system, an electronic request via an end-to-end encryption from a merchant system, wherein the electronic request is a payment request for a recurring transaction associated with a subscription having a predetermined expiration date, wherein the electronic request comprises an encrypted token, a merchant ID, and a frequency element identifying that the encrypted token is a recurring token enabled for multiple repeated transactions, and wherein the encrypted token comprises, in part, a primary account number (PAN), wherein a reader head of a point of sale (POS) terminal encrypts the primary account number (PAN) upon receiving card information containing the PAN, wherein the multi-merchant tokenization system comprises a tokenizer encryption service and a security module;

requesting, by the merchant tokenization system via the tokenizer encryption service, decryption of the encrypted token from the security module;

decrypting, by the multi-merchant tokenization system via the security module of the multi-merchant tokenization system, the encrypted token, wherein decrypting the encrypted token further comprises generating a decrypted token and retrieving the primary account number (PAN), the merchant ID and the frequency element;

determining, by the multi-merchant tokenization system, a token validity period corresponding to the predetermined expiration date, one or more group IDs, and the primary account number for the decrypted token;

determining, by the multi-merchant tokenization system, that the token validity period has not expired;

determining, by the multi-merchant tokenization system, that the merchant ID matches a group ID of the one or more group IDs;

transmitting, by the multi-merchant tokenization system, the primary account number to a payment system of the multi-merchant tokenization system to complete the electronic request based on determining that the token validity period has not expired and the merchant ID matching the group ID;

receiving, by the multi-merchant tokenization system and from the payment system, an authorization response for the electronic request;

in response to receiving the authorization response, generating, by the multi-merchant tokenization system via the security module, a new token, wherein the new token is generated after a payment request and an authorization response are received regardless of a result of the authorization response to maintain security for a future electronic request; and

transmitting, by the multi-merchant tokenization system, the authorization response and the new token in an encrypted format, via the end-to-end encryption, to a computing system associated with the merchant ID, wherein the computing system is the merchant system.

2 . The method of claim 1 , further comprising:

outputting, by the multi-merchant tokenization system, the authorization response to the point of sale (POS) terminal.

3 . The method of claim 1 , further comprising:

storing, by the multi-merchant tokenization system, a decryption key corresponding to the encrypted token.

4 . The method of claim 1 , wherein each of the one or more group IDs defines a selected group of merchants to redeem the encrypted token.

5 . The method of claim 1 , further comprising:

determining, by the multi-merchant tokenization system, that the token validity period has expired; and

transmitting, by the multi-merchant tokenization system, a denial response to the computing system associated with the merchant ID for the electronic request.

6 . The method of claim 1 , further comprising:

determining, by the multi-merchant tokenization system, that the merchant ID does not match any group ID of the one or more group IDs; and

transmitting, by the multi-merchant tokenization system, a denial response to the computing system associated with the merchant ID for the electronic request.

7 . The method of claim 1 , further comprising:

inserting, by the multi-merchant tokenization system, the encrypted token into a token field of an electronic transaction authorization response; and

transmitting, by the multi-merchant tokenization system, the electronic transaction authorization response to the payment system.

8 . A multi-merchant tokenization system comprising:

one or more processors; and

one or more computer readable media storing instructions which, when executed by the one or more processors, cause the one or more processors to perform operations comprising:

receiving an electronic request via an end-to-end encryption from a merchant system, wherein the electronic request is a payment request for a recurring transaction associated with a subscription having a predetermined expiration date, wherein the electronic request comprises an encrypted token, a merchant ID, and a frequency element identifying that the encrypted token is a recurring token enabled for multiple repeated transactions, and wherein the encrypted token comprises, in part, a primary account number (PAN), wherein a reader head of a point of sale (POS) terminal encrypts the primary account number (PAN) upon receiving card information containing the PAN, wherein the multi-merchant tokenization system further comprises a tokenizer encryption service and a security module;

requesting, via the tokenizer encryption service, decryption of the encrypted token from the security module;

decrypting via the security module of the multi-merchant tokenization system, the encrypted token, wherein decrypting the encrypted token further comprises generating a decrypted token and retrieving the primary account number (PAN), the merchant ID and the frequency element;

determining a token validity period corresponding to the predetermined expiration date, one or more group IDs, and the primary account number for the decrypted token;

determining, that the token validity period has not expired;

determining, by the multi-merchant tokenization system, that the merchant ID matches a group ID of the one or more group IDs;

transmitting the primary account number to a payment system of the multi-merchant tokenization system to complete the electronic request based on determining that the token validity period has not expired and the merchant ID matching the group ID;

receiving, from the payment system, an authorization response for the electronic request;

in response to receiving the authorization response, generating, via the security module, a new token, wherein the new token is generated after a payment request and an authorization response are received regardless of a result of the authorization response to maintain security for a future electronic request; and

transmitting, the authorization response and the updated new token in an encrypted format, via the end-to-end encryption, to a computing system associated with the merchant ID, wherein the computing system is the merchant system.

9 . The multi-merchant tokenization system of claim 8 , the operations further comprising:

outputting the authorization response to the point of sale (POS) terminal.

10 . The multi-merchant tokenization system of claim 8 , the operations further comprising:

storing a decryption key corresponding to the encrypted token.

11 . The multi-merchant tokenization system of claim 8 , wherein each of the one or more group IDs defines a selected group of merchants to redeem the encrypted token.

12 . The multi-merchant tokenization system of claim 8 , the operations further comprising:

determining that the token validity period has expired; and

transmitting a denial response to the computing system associated with the merchant ID for the electronic request.

13 . The multi-merchant tokenization system of claim 8 , the operations further comprising:

determining that the merchant ID does not match any group ID of the one or more group IDs; and

transmitting a denial response to the computing system associated with the merchant ID for the electronic request.

14 . The multi-merchant tokenization system of claim 8 , the operations further comprising:

inserting the encrypted token into a token field of an electronic transaction authorization response; and

transmitting the electronic transaction authorization response to the payment system.

15 . A non-transitory computer readable medium comprising instructions which, when executed by one or more processors of a multi-merchant tokenization system, cause the one or more processors to perform operations comprising:

receiving an electronic request via an end-to-end encryption from a merchant system, wherein the electronic request is a payment request for a recurring transaction associated with a subscription having a predetermined expiration date, wherein the electronic request comprises an encrypted token, a merchant ID, and a frequency element identifying that the encrypted token is a recurring token enabled for multiple repeated transactions, and wherein the encrypted token comprises, in part, a primary account number (PAN), wherein a reader head of a point of sale (POS) terminal encrypts the primary account number (PAN) upon receiving card information containing the PAN, wherein the multi-merchant tokenization system further comprises a tokenizer encryption service and a security module;

requesting, via the tokenizer encryption service, decryption of the encrypted token from the security module;

decrypting via the security module of the multi-merchant tokenization system, the encrypted token, wherein decrypting the encrypted token further comprises generating a decrypted token and retrieving the primary account number (PAN), the merchant ID and the frequency element;

determining a token validity period corresponding to the predetermined expiration date, one or more group IDs, and the primary account number for the decrypted token;

determining that the token validity period has not expired;

determining that the merchant ID matches a group ID of the one or more group IDs;

transmitting the primary account number to a payment system of the multi-merchant tokenization system to complete the electronic request based on determining that the token validity period has not expired and the merchant ID matching the group ID;

receiving from the payment system, an authorization response for the electronic request;

in response to receiving the authorization response, generating, via the security module, a new token, wherein the updated new token is generated after a payment request and an authorization response are received regardless of a result of the authorization response to maintain security for a future electronic request; and

transmitting the authorization response and the new token in an encrypted format, via the end-to-end encryption, to a computing system associated with the merchant ID, wherein the computing system is the merchant system to a computing system associated with the merchant ID.

16 . The non-transitory computer readable medium of claim 15 , further comprising:

determining that the token validity period has expired; and

transmitting a denial response to the computing system associated with the merchant ID for the electronic request.

Assignments (7)
RELEASE OF SECURITY INTERESTS RECORDED AT REEL/FRAMES 066626/0655, 066625/0426, 066625/0347, AND 066625/0276 Recorded Jan 12, 2026
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: WORLDPAY, LLC; WORLDPAY ISO AND ECOMMERCE, LLC; PAYMETRIC, LLC; WORLDPAY US, LLC
Reel/Frame 074314/0622 →
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY RECORDED AT R/F 066624/0719 Recorded Jan 12, 2026
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: WORLDPAY, LLC
Reel/Frame 074315/0412 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 066624/0719 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 066626/0655 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 14, 2022
From: MML 1 LLC
To: VANTIV, LLC
Reel/Frame 059592/0265 →
CHANGE OF NAME Recorded Apr 14, 2022
From: VANTIV, LLC
To: WORLDPAY, LLC
Reel/Frame 059704/0949 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 14, 2022
From: PLOMSKE, MICHELLE K.; WATTS, CHARLES E.; OZVAT, MATTHEW D.
To: MML 1 LLC
Reel/Frame 059592/0260 →
Continuity (4)
Continuation 16887638 · May 29, 2020
Continuation 16412042 · May 14, 2019
Continuation 13563534 · Jul 31, 2012
Related Publication 20220222663A1 · Jul 14, 2022
References Cited (20)
US 7578439B2 · Graves · 2009 [cited by examiner]
US 9123042B2 · von Mueller · 2015 [cited by examiner]
US 9195984B1 · Spector · 2015 [cited by examiner]
US 9652769B1 · Golin · 2017 [cited by examiner]
US 20040139008A1 · Mascavage · 2004 [cited by applicant]
US 20090171759A1 · McGeehan · 2009 [cited by applicant]
US 20090171839A1 · Rosano · 2009 [cited by examiner]
US 20100145860A1 · Pelegero · 2010 [cited by applicant]
US 20100276484A1 · Banerjee et al. · 2010 [cited by applicant]
US 20110119069A1 · Szuppa · 2011 [cited by examiner]
US 20110307714A1 · Comrie et al. · 2011 [cited by applicant]
US 20110320344A1 · Faith et al. · 2011 [cited by applicant]
US 20120041881A1 · Basu · 2012 [cited by examiner]
US 20120066044A1 · Honnef · 2012 [cited by examiner]
US 20120271770A1 · Harris · 2012 [cited by examiner]
US 20120323789A1 · Salonen · 2012 [cited by examiner]
US 20130110658A1 · Lyman et al. · 2013 [cited by applicant]
US 20130282588A1 · Hruska · 2013 [cited by examiner]
US 20160239835A1 · Marsyla · 2016 [cited by applicant]
KIPO, ISA/KR, “International Search Report and Written Opinion” in PCT Application No. PCT/US2013/052795, Dec. 19, 2013 (9 pages). [cited by applicant]