IP Library Patent Application 17746803
Patent Application
App. No. 17/746,803

SYSTEMS AND METHODS FOR SECURE ONLINE TRANSACTION

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
17/746,803
Abstract

Systems and methods are disclosed for secure online transaction. The method includes receiving a plurality of transaction data associated with an authenticated registered user from a point of sale (POS) terminal. The plurality of transaction data is processed to identify sensitive information. The sensitive information is substituted with cryptographically generated tokens at a reader head of the POS terminal, wherein the tokens are randomly generated numbers, randomly generated character sequences, pseudorandom numbers, or a combination thereof. The cryptographically generated tokens are encrypted, via an encryption protocol, to generate encrypted tokens at the reader head of the POS terminal. The encrypted tokens are transmitted to one or more processing servers for data aggregation and payment settlement.

Claims (73)

1 . A computer-implemented method for secure online transactions, comprising:

receiving a plurality of transaction data associated with an authenticated registered user from a point of sale (POS) terminal;

processing the plurality of transaction data to identify sensitive information and substituting the sensitive information with cryptographically generated tokens at a reader head of the POS terminal, wherein the tokens are randomly generated numbers, randomly generated character sequences, pseudorandom numbers, or a combination thereof;

encrypting, via an encryption protocol, the cryptographically generated tokens to generate encrypted tokens at the reader head of the POS terminal; and

transmitting the encrypted tokens to one or more processing servers for data aggregation and payment settlement.

2 . The method of claim 1 , further comprising:

decrypting, by the one or more processing servers, the encrypted token;

detokenizing, by the one or more processing servers, the cryptographically generated tokens;

processing the plurality of transaction data to aggregate an outstanding amount based, at least in part, on a first preset time period;

transmitting payments for the aggregated outstanding amount from a settlement account to an account associated with a merchant to the plurality of transaction data based, at least in part, on the first preset time period, a pre-determined total outstanding amount threshold, or a combination thereof;

aggregating the transmitted payments based, at least in part, on a second preset time period; and

transmitting an amount that equals the aggregated transmitted payments from an account associated with a registered user to the settlement account based, at least in part, on the second preset time period.

3 . The method of claim 2 , further comprising:

generating a user interface element in a user interface of a device associated with the registered user, the merchant, or a combination thereof,

wherein the user interface element includes a notification on crediting of the aggregated outstanding amount to the account associated with the merchant, debiting of the aggregated transmitted payments from the account associated with the registered user, or a combination thereof.

4 . The method of claim 2 , wherein the settlement account, the account associated with the registered user, and the account associated with the merchant are associated with a same financial institution.

5 . The method of claim 1 , wherein the encryption includes an end-to-end (E2E) encryption, a symmetric encryption, or an asymmetric encryption.

6 . The method of claim 1 , wherein the tokens include a single use-token, a multi-use token, a reversible token, an irreversible token, or a combination thereof.

7 . The method of claim 1 , wherein authenticating the registered user, further comprising:

capturing, via one or more image sensors, a plurality of images of the registered user;

processing, in real-time, the plurality of images to assign a usability score, wherein an image with a clearer target area of the registered user is assigned a higher usability score;

generating a biometric pattern corresponding to the target area of an image with the higher usability score, wherein the biometric pattern is generated using a facial recognition algorithm, a fingerprint recognition algorithm, or a combination thereof; and

comparing the generated biometric pattern with a trusted biometric pattern stored in a database.

8 . The method of claim 7 , wherein the target area of the registered user includes face, eyes, finger, thumb, or a combination thereof of the registered user, and wherein one or more stored comparisons of biometric patterns trains an artificial neural network to generate the trusted biometric pattern.

9 . The method of claim 1 , wherein authenticating the registered user, further comprising:

receiving, via one or more sensors, device movement pattern from the registered user, wherein the device movement pattern includes a collection of one or more motion signals captured by the one or more sensors over a duration of a signature move; and

determining whether the device movement pattern matches a device movement-based signature associated with the registered user.

10 . The method of claim 9 , further comprising:

associating the determined device movement pattern to one or more rules, wherein the one or more rules include a requirement for a minimum number of device movements, a minimum number of different types of device movements, a minimum duration of device movement, or a combination thereof.

11 . An apparatus for secure online transactions comprising:

at least one processor; and

at least one memory including computer program code for one or more programs, the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to perform operations comprising:

receive a plurality of transaction data associated with an authenticated registered user from a point of sale (POS) terminal;

process the plurality of transaction data to identify sensitive information and substituting the sensitive information with cryptographically generated tokens at a reader head of the POS terminal, wherein the tokens are randomly generated numbers, randomly generated character sequences, pseudorandom numbers, or a combination thereof;

encrypt, via an encryption protocol, the cryptographically generated tokens to generate encrypted tokens at the reader head of the POS terminal, wherein the encryption includes an end-to-end (E2E) encryption, a symmetric encryption, or an asymmetric encryption; and

transmit the encrypted tokens to one or more processing servers for data aggregation and payment settlement.

12 . The apparatus of claim 11 , further comprising:

decrypt, by the one or more processing servers, the encrypted token;

detokenize, by the one or more processing servers, the cryptographically generated tokens;

process the plurality of transaction data to aggregate an outstanding amount based, at least in part, on a first preset time period;

transmit payments for the aggregated outstanding amount from a settlement account to an account associated with a merchant to the plurality of transaction data based, at least in part, on the first preset time period, a pre-determined total outstanding amount threshold, or a combination thereof;

aggregate the transmitted payments based, at least in part, on a second preset time period; and

transmit an amount that equals the aggregated transmitted payments from an account associated with a registered user to the settlement account based, at least in part, on the second preset time period,

wherein the settlement account, the account associated with the registered user, and the account associated with the merchant are associated with a same financial institution.

13 . The apparatus of claim 12 , further comprising:

generate a user interface element in a user interface of a device associated with the registered user, the merchant, or a combination thereof,

wherein the user interface element includes a notification on crediting of the aggregated outstanding amount to the account associated with the merchant, debiting of the aggregated transmitted payments from the account associated with the registered user, or a combination thereof.

14 . The apparatus of claim 11 , wherein authenticating the registered user, further comprising:

capture, via one or more image sensors, a plurality of images of the registered user;

process, in real-time, the plurality of images to assign a usability score, wherein an image with a clearer target area of the registered user is assigned a higher usability score;

generate a biometric pattern corresponding to the target area of an image with the higher usability score, wherein the biometric pattern is generated using a facial recognition algorithm, a fingerprint recognition algorithm, or a combination thereof; and

compare the generated biometric pattern with a trusted biometric pattern stored in a database.

15 . The apparatus of claim 14 , wherein the target area of the registered user includes face, eyes, finger, thumb, or a combination thereof of the registered user, and wherein one or more stored comparisons of biometric patterns trains an artificial neural network to generate the trusted biometric pattern.

16 . The apparatus of claim 11 , wherein authenticating the registered user, further comprising:

receive, via one or more sensors, device movement pattern from the registered user, wherein the device movement pattern includes a collection of one or more motion signals captured by the one or more sensors over a duration of a signature move; and

determine whether the device movement pattern matches a device movement-based signature associated with the registered user.

17 . The apparatus of claim 16 , further comprising:

associate the determined device movement pattern to one or more rules, wherein the one or more rules include a requirement for a minimum number of device movements, a minimum number of different types of device movements, a minimum duration of device movement, or a combination thereof.

18 . A non-transitory computer-readable storage medium carrying one or more sequences of one or more instructions for secure online transactions which, when executed by one or more processors, cause an apparatus to perform operations comprising:

receiving a plurality of transaction data associated with an authenticated registered user from a point of sale (POS) terminal;

processing the plurality of transaction data to identify sensitive information and substituting the sensitive information with cryptographically generated tokens at a reader head of the POS terminal, wherein the tokens are randomly generated numbers, randomly generated character sequences, pseudorandom numbers, or a combination thereof;

encrypting, via an encryption protocol, the cryptographically generated tokens to generate encrypted tokens at the reader head of the POS terminal; and

transmitting the encrypted tokens to one or more processing servers for data aggregation and payment settlement.

19 . The non-transitory computer-readable storage medium of claim 18 , further comprising:

decrypting, by the one or more processing servers, the encrypted token;

detokenizing, by the one or more processing servers, the cryptographically generated tokens;

processing the plurality of transaction data to aggregate an outstanding amount based, at least in part, on a first preset time period;

transmitting payments for the aggregated outstanding amount from a settlement account to an account associated with a merchant to the plurality of transaction data based, at least in part, on the first preset time period, a pre-determined total outstanding amount threshold, or a combination thereof;

aggregating the transmitted payments based, at least in part, on a second preset time period; and

transmitting an amount that equals the aggregated transmitted payments from an account associated with a registered user to the settlement account based, at least in part, on the second preset time period.

20 . The non-transitory computer-readable storage medium of claim 19 , further comprising:

generating a user interface element in a user interface of a device associated with the registered user, the merchant, or a combination thereof,

wherein the user interface element includes a notification on crediting of the aggregated outstanding amount to the account associated with the merchant, debiting of the aggregated transmitted payments from the account associated with the registered user, or a combination thereof.

Assignments (5)
RELEASE OF SECURITY INTERESTS RECORDED AT REEL/FRAMES 066626/0655, 066625/0426, 066625/0347, AND 066625/0276 Recorded Jan 12, 2026
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: WORLDPAY, LLC; WORLDPAY ISO AND ECOMMERCE, LLC; PAYMETRIC, LLC; WORLDPAY US, LLC
Reel/Frame 074314/0622 →
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY RECORDED AT R/F 066624/0719 Recorded Jan 12, 2026
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: WORLDPAY, LLC
Reel/Frame 074315/0412 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 066624/0719 →
SECURITY INTEREST Recorded Feb 19, 2024
From: WORLDPAY, LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 066626/0655 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 18, 2022
From: RICHTER, BERND; BURGESS, MICHAEL; HEWITT, ANDREW
To: WORLDPAY, LLC
Reel/Frame 059940/0576 →