IP Library Granted Patent US 11,704,440
Granted Patent B2
US 11,704,440 · App. 17/872,084 · Granted Jul 18, 2023

Data processing systems and methods for preventing execution of an action documenting a consent rejection

Inventors: Jonathan Blake Brannon (Smyrna, GA); Patrick Whitney (Atlanta, GA); Sharath Chandra Chavva (Atlanta, GA)
Assignee: OneTrust, LLC
G06F21/6263G06F3/0483G06F9/547
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,704,440
App. No.
17/872,084
Granted
Jul 18, 2023
Kind
B2
Abstract

Various aspects involve forgoing updates to consent data for at least one consent rejection generated by an automated consent rejection tool. For instance, a consent management system can be communicatively coupled to a user device. The user device can detect invocations of a consent rejection function, such as when browser states of a browser application indicate requests for web pages or other online content. The consent management system can document a consent rejection for one or more of the invocations. The consent management system can also prevent documentation of consent being rejected for at least one invocation initiated by an automated consent rejection tool.

Claims (55)

1. A system comprising:

a consent management computing system; and

a user computing device communicatively coupled to the consent management computing system, wherein the user computing device is configured for:

detecting browser states of a browser application executed on the user computing device, wherein the browser states comprise requests for online content, and

detecting invocations of a consent rejection function accessible to the user computing device, wherein the consent rejection function is invoked responsive to the browser states indicating an online content request,

wherein the consent management computing system is configured for:

executing, for at least one of the invocations, an action documenting a consent rejection via the at least one of the invocations,

determining that an additional one of the invocations was initiated by an automated consent rejection tool, and

preventing, based on determining that the additional one of the invocations was initiated by the automated consent rejection tool, an execution of the action documenting the consent rejection via the additional one of the invocations.

2. The system of claim 1 , wherein:

detecting the additional one of the invocations comprises incrementing a function call counter associated with the consent rejection function; and

determining that the additional one of the invocations was initiated by the automated consent rejection tool comprises determining that the function call counter exceeds a threshold.

3. The system of claim 2 , wherein the threshold is a number of function calls or a rate of function calls.

4. The system of claim 1 , wherein determining that the additional one of the invocations was initiated by the automated consent rejection tool comprises determining that the additional one of the invocations before the browser application presents a consent request interface on the user computing device.

5. The system of claim 1 , wherein determining that the additional one of the invocations was initiated by the automated consent rejection tool comprises determining that data associated with the additional one of the invocations does not comprise a valid token.

6. The system of claim 1 , wherein the consent management computing system is further configured for:

determining that the at least one of the invocations was not initiated by the automated consent rejection tool; and

in response to determining that the at least one of the invocations was not initiated by the automated consent rejection tool, executing the action associated with the consent rejection function.

7. The system of claim 6 , wherein determining that the at least one of the invocations was not initiated by the automated consent rejection tool comprises detecting the at least one of the invocations after the browser application presents a consent request interface on the user computing device.

8. A method comprising:

detecting, by computing hardware, a browser state of a browser application executed on a user device, wherein the browser state comprises a request for a webpage;

generating, by the computing hardware and based on the browser state, a consent request interface associated with the webpage by configuring, on the consent request interface, a first control element configured to invoke a consent rejection function and a second control element configured to invoke a consent acceptance function;

transmitting, by the computing hardware, an instruction to the browser application instructing the browser application to present the consent request interface on the user device;

detecting, by the computing hardware, an invocation of the consent rejection function;

detecting, by the computing hardware, an additional invocation of the consent rejection function;

determining, by the computing hardware, that the additional invocation was initiated by an automated consent rejection tool;

executing, by the computing hardware, an action at a consent management system documenting a consent rejection via the invocation of the consent rejection function; and

preventing, by the computing hardware, an execution of the action at the consent management system documenting the consent rejection via the additional invocation by the automated consent rejection tool.

9. The method of claim 8 , wherein:

detecting the additional invocation comprises incrementing a function call counter associated with the consent rejection function; and

determining that the additional invocation was initiated by the automated consent rejection tool comprises determining that the function call counter exceeds a threshold, wherein the threshold is a number of function calls or a rate of function calls.

10. The method of claim 8 , wherein determining that the additional invocation was initiated by the automated consent rejection tool comprises detecting a characteristic of a rendering process used by the user device to render the consent request interface, wherein a presence of the characteristic indicates a use of the automated consent rejection tool.

11. The method of claim 10 , wherein detecting the characteristic comprises detecting the additional invocation before the browser application presents the consent request interface on the user device.

12. The method of claim 8 , wherein determining that the additional invocation was initiated by the automated consent rejection tool comprises determining that data associated with the additional invocation does not comprise a valid token.

13. The method of claim 8 , further comprising:

detecting at least one invocation of the consent rejection function;

determining that the invocation was not initiated by the automated consent rejection tool; and

in response to determining that the invocation was not initiated by the automated consent rejection tool, executing the action associated with the consent rejection function.

14. The method of claim 13 , wherein determining that the invocation was not initiated by the automated consent rejection tool comprises detecting the at least one invocation after the browser application presents the consent request interface on the user device.

15. A non-transitory computer-readable medium storing program code that, when executed by processing hardware, configures the processing hardware to perform operations comprising:

generating, based on a browser application accessing online content, a consent request interface associated with a webpage by configuring, on the consent request interface, a first control element configured to invoke a consent rejection function and a second control element configured to invoke a consent acceptance function;

transmitting an instruction to the browser application instructing the browser application to present the consent request interface on the user device;

detecting invocations of the consent rejection function;

executing an action at a consent management system documenting a consent rejection via at least one of the invocations of the consent rejection function; and

preventing an execution of the action at the consent management system documenting the consent rejection via an additional one of the invocations, wherein the additional one of the invocations occurs via an automated consent rejection tool.

16. The non-transitory computer-readable medium of claim 15 , wherein the operations further comprise:

incrementing a function call counter associated with the consent rejection function; and

determining, based on the function call counter exceeding a threshold number, the additional one of the invocations occurred via the automated consent rejection tool.

17. The non-transitory computer-readable medium of claim 15 , wherein the operations further comprise:

determining a frequency with which a function call counter associated with the consent rejection function is updated; and

determining, based on the frequency, that the additional one of the invocations occurred via the automated consent rejection tool.

18. The non-transitory computer-readable medium of claim 15 , wherein the operations further comprise:

detecting a characteristic of a rendering process used by the user device to render the consent request interface; and

determining, based on a presence of the characteristic, that the additional one of the invocations was initiated by the automated consent rejection tool.

19. The non-transitory computer-readable medium of claim 18 , wherein detecting the characteristic comprises determining that the consent request interface was not visible to a user of the user device when the additional one of the invocations occurred.

Assignments (2)
SUPPLEMENT TO INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jun 3, 2026
From: ONETRUST LLC
To: KEYBANK NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
Reel/Frame 075801/0754 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 25, 2022
From: BRANNON, JONATHAN BLAKE; WHITNEY, PATRICK; CHAVVA, SHARATH CHANDRA
To: ONETRUST, LLC
Reel/Frame 060602/0485 →
Continuity (3)
Continuation 17476209 · Sep 15, 2021
Provisional Application 63078560 · Sep 15, 2020
Related Publication 20220358250A1 · Nov 10, 2022