IP Library Granted Patent US 12,206,672
Granted Patent B2
US 12,206,672 · App. 17/790,431 · Granted Jan 21, 2025

Techniques for controlling access to segmented data

Inventors: Rhose Ejobe (Thonon-les-Bains, FR); Frederic Thabaret-Diebold (Thonon-les-Bains, FR); Cristian Ruiz (Bussigny, CH); Romain Aviolat (Bioley-Magnoux, CH); Riccardo Succa (Ecublens, CH)
Assignee: NAGRAVISION SÀRL
H04L63/101
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,206,672
App. No.
17/790,431
Granted
Jan 21, 2025
Kind
B2
Abstract

Techniques for controlling access to segmented data of a plurality of users that is requested by at least one data consumer device. In response to conditions specified in communications between at least one data aggregator system and the at least one data consumer device, information of a number of users meeting specified search criteria are shared (e.g., for a limited time). Use of the data in violation of the specified conditions may trigger penalties under a smart contract on a distributed ledger or blockchain.

Claims (56)

1. An access control system comprising:

one or more processors; and

a computer memory, coupled to the one or more processors, for storing computer instructions, which, upon execution by the one or more processors, control the one or more processors to perform operations comprising:

obtaining a first set of data from a first user device, wherein the first set of data includes a first data value and a corresponding first tag indicating a data type of the first data value;

transferring the first data type of the first data value of the first set of data to a data consumer device;

obtaining, from the data consumer device, a first request for a second set of data from the first user device;

obtaining the second set of data, wherein the second set of data includes a second data value and a corresponding second tag indicating a data type of the second data value;

transferring the first set of data and the second set of data to the data consumer device for use under a first specified set of conditions, the first specified set of conditions including a penalty for violating the first specified set of conditions; and

in response to determining the data consumer device has violated the first specified set of conditions, applying the penalty to the data consumer device.

2. The system as claimed in claim 1 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform:

receiving a third set of data from the first user device, wherein the third set of data includes a third data value and a corresponding third tag indicating a data type of the third data value; and

storing the third set of data from the first user device with the first set of data and the second set sets of data.

3. The system as claimed in claim 2 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform the steps of:

encrypting the first set of data of the first user device using a first key specific to the first user device; and

encrypting the third set of data of the first user device using a second key specific to the first user device, wherein the first and second keys are different.

4. The system as claimed in claim 2 , wherein the first set of data and the third set of data correspond to different fields of information.

5. The system as claimed in claim 4 , wherein each of the first set of data and the third set of data correspond to a respective different field of information selected from the group of: personally identifiable information, financial information, medical information, travel information, purchasing information, residential information, and demographic information.

6. The system as claimed in claim 1 , wherein the storing of the first set of data from the first user device comprises storing the first set of data from the first user device in a database.

7. The system as claimed in claim 1 , wherein transferring the first set of data and the second set of data to the data consumer device for use under the first specified set of conditions comprises storing the first set of data and the second set of data of on a distributed ledger.

8. The system as claimed in claim 1 , wherein transferring the first set of data and the second set of data to the data consumer device for use under the first specified set of conditions comprises storing on a distributed ledger a result of a cryptographic function performed on the first set of data and the second set of data.

9. The system as claimed in claim 1 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform:

sending to the first user device, in response to the obtaining from the data consumer device the first request for the second set of data, an electronic request for the second set of data.

10. The system as claimed in claim 9 , wherein the electronic request comprises a smart contract for controlling use of the first set of data and the second set of data by the data consumer device, and

wherein the computer memory further comprises instructions which control the one or more computer processors to perform receiving an executed smart contract from the first user device in response to the smart contract sent in the electronic request.

11. The system as claimed in claim 1 , wherein the obtaining the second set of data from the first user device comprises receiving a smart contract for the use of the first set of data and the second set of data.

12. The system as claimed in claim 9 , wherein the electronic request comprises at least one of an email, a web-based notification and an app-based notification.

13. The system as claimed in claim 1 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform:

providing to the first user device an incentive for the use of the first set of data and the second set of data under the first specified set of conditions, the incentive comprising at least one of: monetary currency, cryptocurrency, award travel points, and store credit.

14. The system as claimed in claim 1 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform:

receiving a notification of an alleged breach of use of the first set of data and the second set of data under the first specified set of condition;

correlating the alleged breach of use of the first set of data and the second set of data under the first specified set of conditions with other reported alleged breaches of other sets of data of users other than the first user device; and

determining, in response to the correlating, that the data consumer device is a participant in at least one of a threshold number and a threshold percentage of devices for which there is an alleged breach of use under the first specified set of conditions.

15. The system as claimed in claim 1 , wherein transferring the first set of data and the second set of data to the data consumer device for use under a specified set of conditions comprises executing a smart contract between the first user device and the data consumer device utilizing the specified set of conditions.

16. The system as claimed in claim 1 , wherein transferring the first set of data and the second set of data to the data consumer device for use under the first specified set of conditions comprises temporarily decrypting the first set of data and the second set of data internal to a server; and

transferring the first set of data and the second set of data to the data consumer device over an encrypted communications channel.

17. The system as claimed in claim 1 , wherein transferring the first set of data and the second set of data to the data consumer device for use under a specified set of conditions comprises performing a cryptographic function on the first set of data and the second set of data; and

storing on a distributed ledger a result of the cryptographic function.

18. The system as claimed in claim 1 , wherein the computer memory further comprises instructions which control the one or more computer processors to perform:

obtaining a third set of data from a second user, wherein the third set of data includes a third data value and a corresponding third tag indicating a data type of the third data value;

obtaining, from the data consumer device, a first request for a fourth set of data from the second user;

obtaining the fourth set of data; and

transferring the third set of data and the fourth sets set of data to the data consumer device for use under a second specified set of conditions.

19. An access control method comprising:

obtaining a first set of data from a first user device, wherein the first set of data includes a first data value and a first tag indicating a data type of the first data value;

transferring the first data type of the first data value of the first set of data to a data consumer device;

obtaining, from the data consumer device, a first request for a second set of data from the first user device;

obtaining the second set of data, wherein the second set of data includes a second data value and a corresponding second tag indicating a data type of the second data value; and

transferring the first set of data and the second set of data to the data consumer device for use under a first specified set of conditions, the first specified set of conditions including a penalty for violating the first specified set of conditions; and

in response to determining the data consumer device has violated the first specified set of conditions, applying the penalty to the data consumer device.

20. A non-transitory computer readable medium storing computer instructions, which, upon execution by one or more processors, control the one or more processors to perform a method comprising:

obtaining a first set of data from a first user device, wherein the first set of data includes a first data value and a corresponding first tag indicating a data type of the first data value;

transferring the first data type of the first data value of the first set of data to a data consumer device;

obtaining, from the data consumer device, a first request for a second set of data from the first user device;

obtaining the second set of data, wherein the second set of data includes a second data value and a corresponding second tag indicating a data type of the second data value; and

transferring the first set of data and the second set of data to the data consumer device for use under a first specified set of conditions, the first specified set of conditions including a penalty for violating the first specified set of conditions; and

in response to determining the data consumer device has violated the first specified set of conditions, applying the penalty to the data consumer device.

Assignments (2)
CHANGE OF NAME Recorded May 8, 2023
From: NAGRAVISION SA
To: NAGRAVISION SÀRL
Reel/Frame 063566/0842 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 10, 2022
From: EJOBE, RHOSE; THABARET-DIEBOLD, FREDERIC; RUIZ, CRISTIAN; AVIOLAT, ROMAIN; SUCCA, RICCARDO
To: NAGRAVISION S.A.
Reel/Frame 061366/0869 →
Continuity (2)
Provisional Application 62955815 · Dec 31, 2019
Related Publication 20230088566A1 · Mar 23, 2023
References Cited (8)
US 20050044426A1 · Vogel et al. · 2005 [cited by applicant]
US 20070174362A1 · Pham · 2007 [cited by examiner]
US 20210182423A1 · Padmanabhan · 2021 [cited by examiner]
US 20220050921A1 · LaFever · 2022 [cited by examiner]
WO WO2005017723A1 · 2005 [cited by applicant]
WO WO2010057173A2 · 2010 [cited by applicant]
International Search Report and Written Opinion issued Apr. 6, 2021 in PCT/IB2020/001076 filed Nov. 30, 2020, 12 pages. [cited by applicant]
Indian Office Action issued Feb. 19, 2024, in Indian Patent Application No. 202217041274 (with English Translation), 6 pages. [cited by applicant]