IP Library Granted Patent US 12,299,660
Granted Patent B2
US 12,299,660 · App. 17/736,364 · Granted May 13, 2025

Systems and methods for linking high-value tokens using a low-value token

Inventor: Brant Peterson (Denver, CO)
Assignee: Worldpay, LLC
G06Q20/206H04L63/0421H04L63/0428
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,299,660
App. No.
17/736,364
Granted
May 13, 2025
Kind
B2
Abstract

Embodiments include methods and systems for linking high-value tokens using a low-value token, comprising receiving, from an electronic data server, a first high-value token and a request for a low-value token, the first high-value token being associated with sensitive data associated with a user, and the low-value token being associated with a subset of the sensitive data associated with the user. The methods and systems further comprise providing the low-value token to the electronic data server, and receiving, from a second electronic data server, the low-value token and a request for a second high-value token, the low-value token having been provided to the second electronic data server by the electronic data server. The methods and systems further comprise generating a second high-value token associated with the sensitive data associated with the user, and providing the second high-value token to the second electronic data server.

Claims (46)

1. A method for performing secure electronic transactions utilizing tokens, the method comprising:

receiving, by a transaction processor server from a merchant system, a request for a low-value token, the request comprising a high-value token, wherein the high-value token is associated with sensitive data and the low-value token is associated with a subset of sensitive data of the sensitive data associated with the high-value token;

providing, by the transaction processor server, the low-value token to the merchant system;

receiving, by the transaction processor server, the low-value token from a third-party service, wherein the third-party service is prohibited from providing sensitive data to the merchant;

validating, by the transaction processor server, the third-party service based on one or more attributes of the low-value token;

in response to validating the third-party service, de-tokenizing, by the transaction processor server, the low-value token to obtain the subset of sensitive data;

providing, by the transaction processor server, the subset of sensitive data associated with the low-value token to the third-party service;

receiving, by the transaction processor server, the low-value token, a request to authorize a transaction, and third-party service data from the merchant system; and

providing, by the transaction processor server, the high-value token and an authorization response to the merchant system.

2. The method of claim 1 , wherein the high-value token specifies the sensitive data to which the low-value token will correspond.

3. The method of claim 1 , wherein the receiving the low-value token from the third-party service comprises receiving the low-value token from the third-party service based on the merchant system providing the low-value token to the third-party service.

4. The method of claim 1 , wherein the third-party service data is generated by the third-party service based on the sensitive data, and is provided to the merchant system from the third-party service.

5. The method of claim 1 , further comprising:

receiving, by the transaction processor server, a fraud check score obtained by the third-party service using the sensitive data.

6. The method of claim 1 , wherein the third-party service data is 3-D Secure Data.

7. A transaction processor server for performing secure electronic transactions utilizing tokens, the transaction processor server comprising:

a data storage device storing instructions; and

one or more processors configured to execute the instructions to perform a method comprising:

receiving a request for a low-value token from a merchant system, the request comprising a high-value token, wherein the high-value token is associated with sensitive data and the low-value token is associated with a subset sensitive data of the sensitive data associated with the high-value token;

providing the low-value token to the merchant system;

receiving the low-value token from a third-party service, wherein the third-party service and the merchant system are prohibited from direct communication;

validating, the third-party service based on one or more attributes of the low-value token;

in response to validating the third-party service, de-tokenizing, the low-value token to obtain the subset of sensitive data;

providing the subset of sensitive data associated with the low-value token to the third-party service;

receiving the low-value token, a request to authorize a transaction, and third-party service data from the merchant system; and

providing the high-value token and an authorization response to the merchant system.

8. The transaction processor server of claim 7 , wherein the high-value token specifies the sensitive data to which the low-value token will correspond.

9. The transaction processor server of claim 7 , wherein the receiving the low-value token from the third-party service comprises receiving the low-value token from the third-party service based on the merchant system providing the low-value token to the third-party service.

10. The transaction processor server of claim 7 , wherein the third-party service data is generated by the third-party service based on the sensitive data, and is provided to the merchant system from the third-party service.

11. The transaction processor server of claim 7 , wherein the method further comprises:

receiving, by the transaction processor server, a fraud check score obtained by the third-party service using the sensitive data.

12. The transaction processor server of claim 7 , wherein the third-party service data is 3-D Secure Data.

13. A non-transitory computer-readable medium storing instructions that, when executed by a transaction processor server, cause the transaction processor server to perform a method for performing secure electronic transactions utilizing tokens, the method comprising:

receiving a request for a low-value token from a merchant system, the request comprising a high-value token, wherein the high-value token is associated with sensitive data and the low-value token is associated with a subset sensitive data of the sensitive data associated with the high-value token;

providing the low-value token to the merchant system;

receiving the low-value token from a third-party service, wherein the third-party service and the merchant system are prohibited from direct communication;

validating, the third-party service based on one or more attributes of the low-value token;

in response to validating the third-party service, de-tokenizing, the low-value token to obtain the subset of sensitive data;

providing the subset of sensitive data associated with the low-value token to the third-party service;

receiving the low-value token, a request to authorize a transaction, and third-party party service data from the merchant system; and

providing the high-value token and an authorization response to the merchant system.

14. The non-transitory computer-readable medium of claim 13 , wherein the high-value token specifies the sensitive data to which the low-value token will correspond.

15. The non-transitory computer-readable medium of claim 13 , wherein the receiving the low-value token from the third-party service comprises receiving the low-value token from the third-party service based on the merchant system providing the low-value token to the third-party service.

16. The non-transitory computer-readable medium of claim 13 , wherein the third-party service data is generated by the third-party service based on the sensitive data, and is provided to the merchant system from the third-party service.

17. The non-transitory computer-readable medium of claim 13 , wherein the method further comprises:

receiving, by the transaction processor server, a fraud check score obtained by the third-party service using the sensitive data.

Assignments (6)
RELEASE OF SECURITY INTERESTS RECORDED AT REEL/FRAMES 066626/0655, 066625/0426, 066625/0347, AND 066625/0276 Recorded Jan 12, 2026
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: WORLDPAY, LLC; WORLDPAY ISO AND ECOMMERCE, LLC; PAYMETRIC, LLC; WORLDPAY US, LLC
Reel/Frame 074314/0622 →
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY RECORDED AT R/F 066624/0719 Recorded Jan 12, 2026
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: WORLDPAY, LLC
Reel/Frame 074315/0412 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 066624/0719 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 066626/0655 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 3, 2022
From: PETERSON, BRANT
To: VANTIV, LLC
Reel/Frame 060102/0577 →
CHANGE OF NAME Recorded Jun 3, 2022
From: VANTIV, LLC
To: WORLDPAY, LLC
Reel/Frame 060272/0493 →
Continuity (4)
Continuation 16911547 · Jun 25, 2020
Continuation 16515784 · Jul 18, 2019
Continuation 15368241 · Dec 2, 2016
Related Publication 20220261782A1 · Aug 18, 2022
References Cited (33)
US 6868495B1 · Glover · 2005 [cited by applicant]
US 8135648B2 · Oram et al. · 2012 [cited by applicant]
US 8424750B2 · Grovit · 2013 [cited by applicant]
US 8473334B2 · Gibbs et al. · 2013 [cited by applicant]
US 8752146B1 · Dijk et al. · 2014 [cited by applicant]
US 8787570B2 · Braness et al. · 2014 [cited by applicant]
US 8918908B2 · Ziskind et al. · 2014 [cited by applicant]
US 8930702B2 · Marien · 2015 [cited by applicant]
US 9098691B2 · Hoornaert et al. · 2015 [cited by applicant]
US 9246881B2 · Prot · 2016 [cited by applicant]
US 9280765B2 · Hammad · 2016 [cited by applicant]
US 9306939B2 · Chan et al. · 2016 [cited by applicant]
US 9311299B1 · Petrov et al. · 2016 [cited by applicant]
US 9336519B2 · Young et al. · 2016 [cited by applicant]
US 9349063B2 · Smith et al. · 2016 [cited by applicant]
US 9460440B2 · Antao et al. · 2016 [cited by applicant]
US 9516059B1 · Dotan et al. · 2016 [cited by applicant]
US 9684543B1 · Bequet et al. · 2017 [cited by applicant]
US 9819665B1 · Machani · 2017 [cited by applicant]
US 9838387B2 · Zaheer et al. · 2017 [cited by applicant]
US 9882790B2 · Ollikainen et al. · 2018 [cited by applicant]
US 10108946B2 · Perkins et al. · 2018 [cited by applicant]
US 10134031B2 · Laracey · 2018 [cited by applicant]
US 10154306B2 · Dua · 2018 [cited by applicant]
US 10402808B1 · Peterson · 2019 [cited by applicant]
US 11100486B2 · Peterson · 2021 [cited by applicant]
US 11223524B2 · Liff · 2022 [cited by applicant]
US 11252569B2 · Hoyer · 2022 [cited by applicant]
US 20070150942A1 · Cartmell · 2007 [cited by applicant]
US 20080256617A1 · Cartwell · 2008 [cited by applicant]
US 20150127547A1 · Powell · 2015 [cited by examiner]
US 20170124558A1 · Molnar et al. · 2017 [cited by applicant]
“MasterCard SecureCode Merchant Implementation Guide”, Jul. 2014, https://www.mastercard.us/content/dam/mccom/en-us/documents/SMI_Manual.pdf (Year: 2014). [cited by examiner]