IP Library › Granted Patent US 12,530,665
Granted Patent B1
US 12,530,665 · App. 17/751,281 · Granted Jan 20, 2026

Systems and methods for smart card online purchase authentication

Inventor: Brian M. Pearce (Pleasanton, CA)
Assignee: Wells Fargo Bank, N.A.
G06Q20/105G06Q20/12G06Q20/341G06Q20/352G06Q20/38215G06Q20/409G06Q2220/00
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,530,665
App. No.
17/751,281
Granted
Jan 20, 2026
Kind
B1
Abstract

A method of authenticating a transaction includes receiving, by a computing system, an authentication request regarding the transaction. The authentication request can include a code from a user device of a user and payment information. The code can include a cryptogram provided to the user device from a smart card via a first communication. The payment information can be provided to the user device via a second communication. The method further includes authenticating the transaction by decoding the code to reveal user information and the cryptogram; validating the cryptogram; and verifying that the payment information at least partially matches information regarding the user stored in a database. The method still further includes transmitting, based on authenticating the transaction, an authentication approval for the transaction.

Claims (55)

1 . A method of authenticating a transaction, the method comprising:

receiving, by an authentication logic of a computing system from a third-party computing system, an authentication request regarding the transaction, wherein the authentication request comprises:

an authentication code from a user device of a user, the authentication code including a cryptogram generated by a smart card and provided to the user device by the smart card via a first short-range wireless communication between the user device and the smart card, the smart card storing card information; and

payment information regarding a payment card, wherein the user device receives the payment information by a user input via a graphical user interface of the user device, and wherein the third-party computing system receives the authentication code via a first communication and the third-party computing system receives the payment information via a second communication;

authenticating, by the authentication logic of the computing system, the transaction by:

decoding the authentication code to reveal information and the cryptogram, the information comprising the card information;

validating the cryptogram by determining that the cryptogram was generated by the smart card; and

verifying that the payment card is the smart card by determining that the payment information at least partially matches the card information associated with the smart card; and

transmitting, based on authenticating the transaction, an authentication approval for the transaction, wherein the transaction is an online transaction with a third-party associated with the third-party computing system.

2 . The method of claim 1 , wherein the authentication request is received as a transaction authorization request entailing a charge of less than one dollar from a financial account associated with the user, and wherein the authentication request is processed as the transaction authorization request.

3 . The method of claim 2 , further comprising:

recognizing, based on a requested transaction amount of the less than one dollar, that the transaction authorization request includes the authentication request; and

applying, based on the transaction authorization request including the authentication request, a set of authentication rules to authenticate the authentication request.

4 . The method of claim 1 , wherein the first short-range wireless communication is a short-range wireless communication between a contactless chip of the smart card and the user device.

5 . The method of claim 1 , wherein the information revealed from the authentication code includes at least one of personal information or financial information relating to the user, the method further comprising:

comparing the at least one of the personal information or the financial information relating to the user with user information stored in a database.

6 . The method of claim 1 , the method further comprising:

verifying, based on a presence of the authentication code, that the smart card is present at a time of the transaction.

7 . A computing system for authenticating a transaction, the computing system comprising:

a database maintaining personal information and financial information for a plurality of users;

an issuer network logic structured to cause an issuing of a smart card to a user from the plurality of users, the smart card storing card information and configured to generate a cryptogram and provide the cryptogram to a user device of the user via a first short-range wireless communication between the user device and the smart card; and

an authentication logic structured to:

receive an authentication request regarding the transaction from a third-party computing system via a network, wherein the authentication request comprises:

an authentication code from the user device, the authentication code including the cryptogram; and

payment information regarding a payment card, wherein the user device receives the payment information by a user input via a graphical user interface of the user device, and wherein the third-party computing system receives the authentication code via a first communication and the third-party computing system receives the payment information via a second communication;

authenticate the transaction by:

decoding the authentication code to reveal information and the cryptogram, the information comprising the card information;

validating the cryptogram by determining that the cryptogram was generated by the smart card; and

verifying that the payment card is the smart card by determining that the payment information at least partially matches the card information associated with the smart card; and

transmit, based on authenticating the transaction, an authentication approval for the transaction, wherein the transaction is an online transaction with a third-party associated with the third-party computing system.

8 . The computing system of claim 7 , wherein the authentication request is received as a transaction authorization request entailing a charge of less than one dollar from an account associated with the user, and wherein the authentication request is processed as the transaction authorization request.

9 . The computing system of claim 8 , wherein the authentication logic is further structured to:

recognize, based on a requested transaction amount of the less than one dollar, that the transaction authorization request includes the authentication request; and

apply, based on the transaction authorization request, a set of authentication rules for authentication requests.

10 . The computing system of claim 7 , wherein the first short-range wireless communication is a short-range wireless communication between a contactless chip of the smart card and the user device.

11 . The computing system of claim 7 , wherein the information revealed from the authentication code includes at least one of personal information or financial information relating to the user, wherein the authentication logic is structured to compare the information with at least one of the personal information or the financial information stored in the database.

12 . The computing system of claim 7 , wherein the authentication logic is further structured to:

verify, based on the authentication code, that the smart card is present at a time of the transaction.

13 . A non-transitory computer readable media having computer-executable instructions stored therein that, when executed by a card issuer computing system, causes the card issuer computing system to perform operations to authenticate a transaction, the operations comprising:

receiving, by an authentication logic from a third-party computing system, an authentication request regarding the transaction, wherein the authentication request comprises:

an authentication code from a user device of a user, the authentication code including a cryptogram generated by a smart card and provided to the user device by the smart card via a first short-range wireless communication between the user device and the smart card, the smart card storing card information; and

payment information regarding a payment card, wherein the user device receives the payment information by a user input via a graphical user interface of the user device, and wherein the third-party computing system receives the authentication code via a first communication and the third-party computing system receives the payment information via a second communication;

authenticating the transaction by:

decoding the authentication code to reveal information and the cryptogram, the information comprising the card information;

validating the cryptogram by determining that the cryptogram was generated by the smart card; and

verifying that the payment card is the smart card by determining that the payment information matches the card information associated with the smart card; and

transmitting, based on authenticating the transaction, an authentication approval for the transaction, wherein the transaction is an online transaction with a third-party associated with the third-party computing system.

14 . The non-transitory computer readable media of claim 13 , wherein the authentication request is received as a transaction authorization request entailing a charge of less than one dollar from a financial account associated with the user, and wherein the authentication request is processed as the transaction authorization request.

15 . The non-transitory computer readable media of claim 14 , the operations further comprising:

recognizing, based on a requested transaction amount of the less than one dollar, that the transaction authorization request includes the authentication request; and

applying, based on the transaction authorization request including the authentication request, a set of authentication rules for the authentication request.

16 . The non-transitory computer readable media of claim 13 , wherein the information revealed from the authentication code includes at least one of personal information or financial information relating to the user, the operations further comprising:

comparing the at least one of the personal information or the financial information with stored information in a database.

17 . The non-transitory computer readable media of claim 13 , wherein the operations further comprise:

verifying, based on the authentication code, that the smart card is present at a time of the transaction.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 24, 2025
From: PEARCE, BRIAN M.
To: WELLS FARGO BANK, N.A.
Reel/Frame 074058/0996 →
Continuity (2)
Continuation 15061617 · Mar 4, 2016
Provisional Application 62136202 · Mar 20, 2015
References Cited (11)
US 10475024B1 · Behren · 2019 [cited by examiner]
US 11037139B1 · Ho · 2021 [cited by examiner]
US 20020133467A1 · Hobson · 2002 [cited by examiner]
US 20080255981A1 · Shiu · 2008 [cited by applicant]
US 20110041170A1 · Wankmueller · 2011 [cited by applicant]
US 20130119130A1 · Braams · 2013 [cited by examiner]
US 20140108263A1 · Ortiz et al. · 2014 [cited by applicant]
US 20160063480A1 · Ballesteros · 2016 [cited by examiner]
US 20160092872A1 · Prakash · 2016 [cited by examiner]
US 20160148201A1 · Kadaster · 2016 [cited by examiner]
US 20180150840A1 · Joung · 2018 [cited by applicant]