IP Library Granted Patent US 11,818,130
Granted Patent B2
US 11,818,130 · App. 17/749,329 · Granted Nov 14, 2023

Supplanting access credentials for shared data visualizations

Inventors: Gregory G. Owen (San Mateo, CA); Donald Huang (San Francisco, CA); Stipo Josipovic (San Francisco, CA); Kenneth Truong (Temple City, CA); Nipurn Doshi (Redwood City, CA)
Assignee: SIGMA COMPUTING, INC.
H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,818,130
App. No.
17/749,329
Granted
Nov 14, 2023
Kind
B2
Abstract

Supplanting access credentials for shared data visualizations including receiving, from a first identity provider (IDP) account, a request to generate a data visualization utilizing restricted data from a cloud-based data warehouse, wherein the data visualization is generated by accessing the restricted data using the first IDP account; in response to receiving a request to share the data visualization with a receiving entity without access to the restricted data, associating, by a data visualizer, the data visualization with a service account with access to the restricted data, wherein the service account is not authenticated as a user of the first IDP account; and providing, by the data visualizer to the receiving entity, access to the data visualization including generating the data visualization by accessing, using the service account, the restricted data from the cloud-based data warehouse.

Claims (29)

1. A method of supplanting access credentials for shared data visualizations, the method comprising:

receiving, from an identity provider (IDP) account, a request to generate a data visualization utilizing restricted data from a cloud-based data warehouse, wherein the data visualization is generated by accessing the restricted data using the IDP account;

in response to receiving a request to share the data visualization with a receiving entity without access to the restricted data, associating, by a data visualizer, the data visualization with a service account with access to the restricted data, wherein the service account is not authenticated as a user of the IDP account; and

providing, by the data visualizer to the receiving entity, access to the data visualization including generating the data visualization by accessing, using the service account, the restricted data from the cloud-based data warehouse.

2. The method of claim 1 , wherein the request to share the data visualization comprises a request to autogenerate a static version of the data visualization based on a schedule, and wherein providing, to the receiving entity, access to the data visualization comprises sending the data visualization to an external destination.

3. The method of claim 1 , further comprising providing to the receiving entity, access to an updated data visualization including generating the updated data visualization by accessing, using the service account, updated restricted data from the cloud-based data warehouse, wherein the updated restricted data is stored on the cloud-based data warehouse after receiving the request to share the data visualization.

4. The method of claim 1 , wherein the IDP account is authorized to access the cloud-based data warehouse and the data visualizer, and wherein the IDP account is mapped to permissions within the data visualizer.

5. The method of claim 1 , wherein the service account accesses the restricted data on the cloud-based data warehouse using a token.

6. The method of claim 1 , wherein the service account accesses the restricted data on the cloud-based data warehouse without using a token.

7. The method of claim 1 , wherein the data visualization is an abstraction of a worksheet comprising the restricted data from the cloud-based data warehouse.

8. The method of claim 1 , wherein the service account is under the control of the data visualizer and is not authenticated for any particular user.

9. An apparatus for supplanting access credentials for shared data visualizations, the apparatus comprising a computer processor, a computer memory operatively coupled to the computer processor, the computer memory having disposed within it computer program instructions that, when executed by the computer processor, cause the apparatus to carry out the steps of:

receiving, from an identity provider (IDP) account, a request to generate a data visualization utilizing restricted data from a cloud-based data warehouse, wherein the data visualization is generated by accessing the restricted data using the IDP account;

in response to receiving a request to share the data visualization with a receiving entity without access to the restricted data, associating, by a data visualizer, the data visualization with a service account with access to the restricted data, wherein the service account is not authenticated as a user of the IDP account; and

providing, by the data visualizer to the receiving entity, access to the data visualization including generating the data visualization by accessing, using the service account, the restricted data from the cloud-based data warehouse.

10. The apparatus of claim 9 , wherein the request to share the data visualization comprises a request to autogenerate a static version of the data visualization based on a schedule, and wherein providing, to the receiving entity, access to the data visualization comprises sending the data visualization to an external destination.

11. The apparatus of claim 9 , wherein the computer program instructions further cause the apparatus to carry out the step of providing to the receiving entity, access to an updated data visualization including generating the updated data visualization by accessing, using the service account, updated restricted data from the cloud-based data warehouse, wherein the updated restricted data is stored on the cloud-based data warehouse after receiving the request to share the data visualization.

12. The apparatus of claim 9 , wherein the IDP account is authorized to access the cloud-based data warehouse and the data visualizer, and wherein the IDP account is mapped to permissions within the data visualizer.

13. The apparatus of claim 9 , wherein the service account accesses the restricted data on the cloud-based data warehouse using a token.

14. The apparatus of claim 9 , wherein the service account accesses the restricted data on the cloud-based data warehouse without using a token.

15. The apparatus of claim 9 , wherein the data visualization is an abstraction of a worksheet comprising the restricted data from the cloud-based data warehouse.

16. The apparatus of claim 9 , wherein the service account is under the control of the data visualizer and is not authenticated for any particular user.

17. A computer program product for supplanting access credentials for shared data visualizations, the computer program product disposed upon a computer readable storage medium, the computer program product comprising computer program instructions that, when executed, cause a computer to carry out the steps of:

receiving, from a first identity provider (IDP) account, a request to generate a data visualization utilizing restricted data from a cloud-based data warehouse, wherein the data visualization is generated by accessing the restricted data using the IDP account;

in response to receiving a request to share the data visualization with a receiving entity without access to the restricted data, associating, by a data visualizer, the data visualization with a service account with access to the restricted data, wherein the service account is not authenticated as a user of the IDP account; and

providing, by the data visualizer to the receiving entity, access to the data visualization including generating the data visualization by accessing, using the service account, the restricted data from the cloud-based data warehouse.

18. The computer program product of claim 17 , wherein the request to share the data visualization comprises a request to autogenerate a static version of the data visualization based on a schedule, and wherein providing, to the receiving entity, access to the data visualization comprises sending the data visualization to an external destination.

19. The computer program product of claim 17 , wherein the computer program instructions further cause the computer to carry out the step of providing to the receiving entity, access to an updated data visualization including generating the updated data visualization by accessing, using the service account, updated restricted data from the cloud-based data warehouse, wherein the updated restricted data is stored on the cloud-based data warehouse after receiving the request to share the data visualization.

20. The computer program product of claim 17 , wherein the IDP account is authorized to access the cloud-based data warehouse and the data visualizer, and wherein the IDP account is mapped to permissions within the data visualizer.

Assignments (2)
SECURITY INTEREST Recorded Aug 1, 2025
From: SIGMA COMPUTING, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 072316/0724 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 20, 2022
From: OWEN, GREGORY G.; HUANG, DONALD; JOSIPOVIC, STIPO; TRUONG, KENNETH; DOSHI, NIPURN
To: SIGMA COMPUTING, INC.
Reel/Frame 059968/0607 →
Continuity (2)
Continuation 17015579 · Sep 9, 2020
Related Publication 20220278987A1 · Sep 1, 2022