IP Library Granted Patent US 12,549,537
Granted Patent B2
US 12,549,537 · App. 18/071,502 · Granted Feb 10, 2026

Systems and methods for providing digital identity records to verify identities of users

Inventor: Ashfaq Kamal (Stamford, CT)
Assignee: MASTERCARD INTERNATIONAL INCORPORATED
H04L63/0823G06F21/33G06F21/35G06F21/64G06Q10/10G06Q20/02G06Q20/38215G06Q20/4014G06Q40/02G06Q50/265H04L9/3247H04L63/06G06Q2220/00
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,549,537
App. No.
18/071,502
Granted
Feb 10, 2026
Kind
B2
Abstract

Systems and methods are provided for verifying identities of users. One example computer-implemented method includes requesting a unique ID for a user, from a software development kit (SDK) in a mobile device, and issuing the unique ID for the user. The method also includes generating, by the SDK, a public/private key pair specific to the unique ID, prompting the user to capture an image of a government issued document, and capturing the image of the document. The method further includes validating, by the mobile device, the identity of the user based on the image of the document and, based on the validation, (i) converting the image via a one-way hash function, (ii) signing the hashed image with the private key of the public/private key pair, and (iii) transmitting the signed hashed image, the unique ID, and the public key of the public/private key pair to an identification provider.

Claims (71)

1 . A computer-implemented method for use in verifying an identity of a user, the method comprising:

requesting, by an application in a mobile device of a user, a unique ID for the user, from a software development kit (SDK), which is included in the application;

issuing, by the SDK in the mobile device, the unique ID for the user;

generating, by the SDK in the mobile device, a public/private key pair specific to the unique ID, the public/private key pair including a public key and a private key;

prompting, by the application in the mobile device, the user to capture a first image of a government issued document and a second image of a face of the user;

capturing, by the mobile device, the first image of the government issued document, the government issued document including a biometric reference of the user and indicating an identity of the user, the first image including at least the biometric reference of the user from the government issued document;

capturing, by the mobile device, the second image of the face of the user;

validating, by the mobile device, the identity of the user based on a comparison of the second image of the face of the user and the first image of the government issued document; and

based on the validation of the identity of the user:

converting, by the SDK in the mobile device, the first image via a one-way hash function;

signing, by the mobile device, the hashed first image with the private key of the public/private key pair; and

transmitting, by the SDK in the mobile device, the signed hashed first image, the unique ID, and the public key of the public/private key pair to an identification provider, whereby a digital identity record including the signed hashed first image for the user is stored in a ledger data structure.

2 . The computer-implemented method of claim 1 , wherein generating the public/private key pair includes generating the public/private key pair based on the unique ID.

3 . The computer-implemented method of claim 1 , wherein the application includes a banking institution application associated with a banking institution, which is distinct from a requestor.

4 . The computer-implemented method of claim 1 , wherein prompting, by the application in the mobile device, the user to capture the first image of the government issued document and the second image of the face of the user includes prompting the user to capture the first image and the second image, via a camera input device of the mobile device.

5 . The computer-implemented method of claim 1 , wherein transmitting the signed hashed first image, the unique ID, and the public key of the public/private key pair to the identification provider includes transmitting, via an application programming interface (API) associated with the identification provider, the signed hashed first image, the unique ID, and the public key of the public/private key pair to the identification provider.

6 . The computer-implemented method of claim 1 , wherein validating the identity of the user includes:

soliciting, by the mobile device, from a data aggregator, validation of the identity of the user, based on the first image of the government issued document; and

receiving the validation of the identity of the user, from the data aggregator, based on content received from at least one trusted source.

7 . The computer-implemented method of claim 6 , further comprising receiving consent from the user; and

wherein soliciting the validation of the identity of the user from the data aggregator includes soliciting the validation of the identity of the user from the data aggregator only after receiving the consent from the user.

8 . The computer-implemented method of claim 6 , wherein the content from at least one trusted source includes social network data associated with the user.

9 . The computer-implemented method of claim 1 , wherein signing the hashed first image includes signing the hashed first image with the private key of the public/private key pair, only after the identity of the user is validated.

10 . The computer-implemented method of claim 1 , further comprising:

writing, by the identification provider, the signed hashed first image to a location in the ledger data structure, the location associated with a pointer;

correlating, by the identification provider, the signed hashed first image to the unique ID for the user, whereby the signed hashed first image is recallable based on the unique ID; and

transmitting, by the identification provider, the pointer to the mobile device.

11 . The computer-implemented method of claim 1 , further comprising:

receiving, by the mobile device, from the identification provider, at least one pointer to the ledger data structure, the at least one pointer unique to a location of the digital identity record; and

transmitting, by the application in the mobile device, the at least one pointer and the unique ID to a requestor, in response to a request to verify the identity of the user; and

wherein the at least one pointer includes a first pointer to the location of the digital identity record and a second pointer to a location of a certification of the digital identity record by the identification provider.

12 . A system for verifying identities of users, the system comprising:

a mobile device specific to a user and configured, by an application and a software development kit (SDK) integrated into the application, to:

in response to a request for a unique identifier (ID) for the user, issue the unique ID for the user;

generate a public/private key pair specific to the unique ID, the public/private key pair including a public key and a private key;

prompt the user to capture a first image of a government issued document and a second image of a face of the user;

capture the first image of the government issued document, the government issued document including a biometric reference of the user and indicating an identity of the user, the first image including at least the biometric reference of the user from the government issued document;

capture the second image of the face of the user;

validate the identity of the user based on a comparison of the second image of the face of the user and the first image of the government issued document; and

based on the validation of the identity of the user:

convert the first image via a one-way hash function;

sign the hashed first image with the private key of the public/private key pair; and

transmit the signed hashed first image, the unique ID, and the public key of the public/private key pair to an identification provider, whereby a digital identity record including the signed hashed first image for the user is stored in a ledger data structure.

13 . The system of claim 12 , wherein the mobile device is configured, in order to validate the identity of the user, to:

solicit, from a data aggregator, validation of the identity of the user, based on the first image of the government issued document; and

receive the validation of the identity of the user, from the data aggregator, based on content received from at least one trusted source.

14 . The system of claim 13 , wherein the mobile device is configured to receive consent from the user;

wherein the mobile device is configured, in order to solicit the validation, to solicit the validation of the identity of the user from the data aggregator only after receiving the consent from the user; and

wherein the content from the at least one trusted source includes social network data associated with the user.

15 . The system of claim 12 , further comprising the identification provider, which is configured to:

write the signed hashed first image to a location in the ledger data structure, as part of the digital identity record, the location associated with a pointer;

correlate the signed hashed first image to the unique ID for the user, whereby the signed hashed first image is recallable based on the unique ID; and

transmit the pointer to the mobile device.

16 . The system of claim 15 , wherein the mobile device is configured to:

receive a request to verify the identity of the user from a requestor associated with a digital service; and

in response to the request from the requestor, provide the unique ID and the pointer to the requestor, whereby the requestor validates data against the digital identity record.

17 . The system of claim 12 , wherein the government issued document includes a government issued passport or an identification card.

18 . A non-transitory computer-readable storage medium including executable instructions for use in verifying an identity of a user, the executable instructions defining an application and a software development kit (SDK) integrated therein, which, when executed by a processor, cause the processor to:

in response to a request for a unique identifier (ID) for the user, issue the unique ID for the user;

generate a public/private key pair specific to the unique ID, the public/private key pair including a public key and a private key;

prompt the user to capture a first image of a government issued document and a second image of a face of the user;

capture the first image of the government issued document, the government issued document including a biometric reference of the user and indicating an identity of the user, the first image including at least the biometric reference of the user from the government issued document;

capture the second image of the face of the user;

validate the identity of the user based on a comparison of the second image of the face of the user and the first image of the government issued document; and

based on the validation of the identity of the user:

convert the first image via a one-way hash function;

sign the hashed first image with the private key of the public/private key pair; and

transmit the signed hashed first image, the unique ID, and the public key of the public/private key pair to an identification provider, whereby a digital identity record including the signed hashed first image for the user is stored in a ledger data structure.

19 . The non-transitory computer-readable storage medium of claim 18 , wherein the executable instructions, when executed by the processor, further cause the processor to:

receive and store a pointer for the digital identity record, the pointer indicative of a location of the digital identity record in the ledger data structure; and

provide the pointer to a requestor, in response to a request to verify the identity of the user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 30, 2022
From: KAMAL, ASHFAQ
To: MASTERCARD INTERNATIONAL INCORPORATED
Reel/Frame 061916/0849 →
Continuity (3)
Continuation 16679115 · Nov 8, 2019
Continuation 15476526 · Mar 31, 2017
Related Publication 20230086806A1 · Mar 23, 2023
References Cited (123)
US 7680819B1 · Mellmer et al. · 2010 [cited by applicant]
US 9124433B2 · Marien et al. · 2015 [cited by applicant]
US 9137228B1 · Newstadt · 2015 [cited by applicant]
US 9519901B1 · Dorogusker · 2016 [cited by applicant]
US 9635000B1 · Muftic · 2017 [cited by applicant]
US 9992022B1 · Chapman et al. · 2018 [cited by applicant]
US 10454677B1 · Nagelberg et al. · 2019 [cited by applicant]
US 10476862B2 · Kamal · 2019 [cited by applicant]
US 11528139B2 · Smets et al. · 2022 [cited by applicant]
US 11663595B1 · Houseworth et al. · 2023 [cited by applicant]
US 20020100803A1 · Sehr · 2002 [cited by applicant]
US 20030163708A1 · Tang · 2003 [cited by applicant]
US 20060000892A1 · Bonelle et al. · 2006 [cited by applicant]
US 20060157559A1 · Levy et al. · 2006 [cited by applicant]
US 20060229979A1 · Sato et al. · 2006 [cited by applicant]
US 20070208869A1 · Adelman et al. · 2007 [cited by applicant]
US 20070214093A1 · Colella · 2007 [cited by applicant]
US 20070250704A1 · Hallam-Baker · 2007 [cited by applicant]
US 20080256594A1 · Satish et al. · 2008 [cited by applicant]
US 20090164526A1 · Hayashi · 2009 [cited by applicant]
US 20090327144A1 · Hatter et al. · 2009 [cited by applicant]
US 20100067691A1 · Lin et al. · 2010 [cited by applicant]
US 20110191829A1 · Fischer et al. · 2011 [cited by applicant]
US 20110289318A1 · Zhang et al. · 2011 [cited by applicant]
US 20130226813A1 · Voltz · 2013 [cited by applicant]
US 20140068722A1 · Hayat · 2014 [cited by applicant]
US 20140101453A1 · Senthurpandi · 2014 [cited by applicant]
US 20140189808A1 · Mahaffey et al. · 2014 [cited by applicant]
US 20140279516A1 · Rellas et al. · 2014 [cited by applicant]
US 20140279519A1 · Mattes et al. · 2014 [cited by applicant]
US 20140282884A1 · Bao et al. · 2014 [cited by applicant]
US 20150038118A1 · Berteau et al. · 2015 [cited by applicant]
US 20150059003A1 · Bouse · 2015 [cited by applicant]
US 20150095999A1 · Toth · 2015 [cited by applicant]
US 20150295906A1 · Ufford et al. · 2015 [cited by applicant]
US 20150319170A1 · Grossemy · 2015 [cited by applicant]
US 20150356523A1 · Madden · 2015 [cited by applicant]
US 20160210621A1 · Khan · 2016 [cited by applicant]
US 20160239653A1 · Loughlin-Mchugh · 2016 [cited by examiner]
US 20160300236A1 · Wiley et al. · 2016 [cited by applicant]
US 20160328713A1 · Ebrahimi · 2016 [cited by examiner]
US 20160330027A1 · Ebrahimi · 2016 [cited by applicant]
US 20160330035A1 · Ebrahimi et al. · 2016 [cited by applicant]
US 20160364703A1 · Bhatt et al. · 2016 [cited by applicant]
US 20160364730A1 · Rans et al. · 2016 [cited by applicant]
US 20170022814A1 · Ervin · 2017 [cited by applicant]
US 20170111175A1 · Oberhauser et al. · 2017 [cited by applicant]
US 20170201498A1 · Baig et al. · 2017 [cited by applicant]
US 20170213211A1 · Sibert et al. · 2017 [cited by applicant]
US 20170222814A1 · Oberhauser et al. · 2017 [cited by applicant]
US 20170250972A1 · Ronda et al. · 2017 [cited by applicant]
US 20170257358A1 · Ebrahimi et al. · 2017 [cited by applicant]
US 20170316409A1 · Smith et al. · 2017 [cited by applicant]
US 20180048864A1 · Taylor et al. · 2018 [cited by applicant]
US 20180068173A1 · Kolleri · 2018 [cited by examiner]
US 20180137512A1 · Georgiadis et al. · 2018 [cited by applicant]
US 20180165781A1 · Rodriguez et al. · 2018 [cited by applicant]
US 20180173871A1 · Toth · 2018 [cited by applicant]
US 20180181964A1 · Zagarese et al. · 2018 [cited by applicant]
US 20180204191A1 · Wilson et al. · 2018 [cited by applicant]
US 20180288033A1 · Kamal · 2018 [cited by applicant]
US 20180351747A1 · Spangemacher et al. · 2018 [cited by applicant]
US 20190087825A1 · Bhatt et al. · 2019 [cited by applicant]
US 20190089702A1 · Bhatt et al. · 2019 [cited by applicant]
US 20190166118A1 · Lee et al. · 2019 [cited by applicant]
US 20190190724A1 · Sundaresan et al. · 2019 [cited by applicant]
US 20190230496A1 · Wane · 2019 [cited by applicant]
US 20190245693A1 · Iyer et al. · 2019 [cited by applicant]
US 20190333054A1 · Cona et al. · 2019 [cited by applicant]
US 20200007322A1 · Weldemariam et al. · 2020 [cited by applicant]
US 20200076795A1 · Kamal · 2020 [cited by applicant]
US 20200322152A1 · Smets et al. · 2020 [cited by applicant]
US 20200374129A1 · Dilles et al. · 2020 [cited by applicant]
US 20210042600A1 · Jang · 2021 [cited by applicant]
US 20210319192A1 · Rodriguez et al. · 2021 [cited by applicant]
US 20210327547A1 · Praszczalek et al. · 2021 [cited by applicant]
US 20210383388A1 · Iyer et al. · 2021 [cited by applicant]
US 20210409397A1 · Bhatt et al. · 2021 [cited by applicant]
CA 2886548A1 · 2015 [cited by applicant]
EP 3073670A1 · 2016 [cited by applicant]
WO WO2008061344 · 2008 [cited by applicant]
WO WO2015002608 · 2015 [cited by applicant]
WO WO2018022850 · 2018 [cited by applicant]
U.S. Appl. No. 15/476,526, filed Mar. 31, 2017. [cited by applicant]
U.S. Appl. No. 16/679,115, filed Nov. 8, 2019. [cited by applicant]
U.S. Appl. No. 15/476,526: (a) Office Action dated Aug. 31, 2018; (b) Office Action dated Feb. 11, 2019; and (c) Notice of Allowance dated Jul. 17, 2019. The instant application claims priority to U.S. Appl. No. 15/476,… [cited by applicant]
U.S. Appl. No. 16/679,115: (a) Office Action dated Sep. 14, 2021; (b) Office Action dated Mar. 3, 2022; and (c) Notice of Allowance dated Jun. 29, 2022. The instant application is a continuation of U.S. Appl. No. 16/679… [cited by applicant]
PCT/US2018/019881: PCT International Search Report and Written Opinion dated May 7, 2018. PCT Patent Application No. PCT/US2018/019881 has the same priority claim as the instant application and the same Applicant, Maste… [cited by applicant]
EP 18710966.5: (a) Examination Report issued in EP18710966.5 dated Feb. 16, 2021; and (b) Summons to Attend Oral Proceedings dated Jul. 18, 2022. EP18710966.5 has the same priority claim as the instant application. [cited by applicant]
CN201880020952.6: Office Action dated Sep. 1, 2022. CN 201880020952.6 has the same priority claim as the instant application. [cited by applicant]
U.S. Appl. No. 15/891,062: (a) Office Action dated Oct. 17, 2019; (b) Office Action Feb. 20, 2020; (c) Office Action dated Aug. 14, 2020; and (d) Notice of Allowance dated Jun. 1, 2021. U.S. Appl. No. 15/891,062 has com… [cited by applicant]
PCT/US2019/013567: PCT International Search Report and Written Opinion dated Apr. 25, 2019. PCT/US2019/013567 has common subject matter as the instant application and the same Applicant, Mastercard International Incorpo… [cited by applicant]
BR112020016003-2: Notice of Allowance dated Mar. 3, 2022. BR112020016003-2 has common subject matter as the instant application and the same Applicant, Mastercard International Incorporated. [cited by applicant]
EP19750802.1: Extended European Search Report dated Oct. 6, 2021. EP19750802.1 has common subject matter as the instant application and the same Applicant, Mastercard International Incorporated. [cited by applicant]
U.S. Appl. No. 16/134,348: (a) Office Action dated Jun. 25, 2020; (b) Office Action dated Dec. 2, 2020: and (c) Notice of Allowance dated May 26, 2021. U.S. Appl. No. 16/134,348 has common subject matter as the instant … [cited by applicant]
PCT/US2018/051468: PCT International Search Report and Written Opinion dated Jan. 10, 2019. PCT/US2018/051468 has common subject matter as the instant application and the same Applicant, Mastercard International Incorpo… [cited by applicant]
EP18789521.4: Intention to Grant dated Dec. 1, 2020; EP18789521.4 as common subject matter as the instant application and the same Applicant, Mastercard International Incorporated. [cited by applicant]
IN 202017006933: Examination Report dated Mar. 28, 2022. IN202017006933 has common subject matter as the instant application and the same Applicant, Mastercard International Incorporated. [cited by applicant]
AU2018333068: Examination Report dated Oct. 17, 2022. AU2018333068 has common subject matter as the instant application and the same Applicant, Mastercard International Incorporated. [cited by applicant]
U.S. Appl. No. 16/134,371: (a) Office Action dated Feb. 24, 2020; (b) Office Action dated Sep. 4, 2020; (c) Office Action dated Sep. 3, 2021; (d) Office Action dated Mar. 31, 2022; and (e) Office Action dated Jul. 21, 2… [cited by applicant]
PCT/US2018/051474: PCT International Search Report and Written Opinion (10 pages) dated Jan. 8, 2019. PCT/US2018/051474 has common subject matter as the instant application and the same Applicant, Mastercard Internation… [cited by applicant]
U.S. Appl. No. 16/838,666: (a) Office Action dated Dec. 8, 2021; (b) Office Action dated Apr. 21, 2022; and (c) Notice of Allowance dated Aug. 11, 2022. U.S. Appl. No. 16/838,666 has common subject matter as the instant… [cited by applicant]
EP19167933.1: Extended European Search Report dated Jul. 23, 2019; and (b) Examination Report dated Feb. 25, 2022. EP19167933.1 has common subject matter as the instant application and the same Applicant, Mastercard Int… [cited by applicant]
PCT/US2020/023072: International Search Report and Written Opinion (9 pages) dated Jun. 18, 2020. PCT/US2020/023072 has common subject matter as the instant application and the same Applicant, Mastercard International I… [cited by applicant]
U.S. Appl. No. 16/679,115, filed Nov. 8, 2019, Ashfaq Kamal. [cited by applicant]
U.S. Appl. No. 15/476,526, filed Mar. 31, 2017, Ashfaq Kamal. [cited by applicant]
U.S. Appl. No. 16/134,371, filed Sep. 18, 2018, Bhatt et al. [cited by applicant]
U.S. Appl. No. 16/134,348, filed Sep. 18, 2018, Bhatt et al. [cited by applicant]
U.S. Appl. No. 17/473,630, filed Sep. 13, 2021, Bhatt et al. [cited by applicant]
U.S. Appl. No. 15/891,062, filed Feb. 7, 2018, Iyer et al. [cited by applicant]
U.S. Appl. No. 17/409,530, filed Aug. 23, 2021, Iyer et al. [cited by applicant]
U.S. Appl. No. 16/838,666, filed Apr. 2, 2020, Smets et al. [cited by applicant]
F. No. K-11020/217/2018-UISAI (Auth-I), Government of India; https://uidai.gov.in/images/resource/UIDAI_Circular_11012018.pdf; Jan. 10, 2018; 5 pgs. [cited by applicant]
Times of India; Use 16-digit virtual No. for KYC; https://timesofindia.indiatimes.com/business/india-business/use-16-digit-virtual-no-for-kyc-fromtoday/articleshow/64810724.cms; web accessed Oct. 2, 2018; 56 pgs. [cited by applicant]
Economic Times; UIDAI introduces new two-layer security system to improve Aadhaar privacy; https://economictimes.indiatimes.com/news/economy/policy/uidai-introduces-new- two-layersecurity-system-to-improve-aadhaar-priva… [cited by applicant]
“Moving Beyond Social Security Numbers”; Blake Hall; https://medium.com/@blake_hall/moving-beyond-social-security-numbers-part-3-283bbf28ce74; Oct. 11, 2017; 5 pgs. [cited by applicant]
“Are you overlooking toeknization as a data security measure?”; Linda Musthaler; https://www.networkworld.com/article/3002307/security/are-you-overlooking-tokenization- as-adata-security-measure.html; Nov. 6, 2015; 5 pg… [cited by applicant]
“Digital Identity—Why Now?”; David G. W. Birch; https://www.paymentsnz.co.nz/ . . . /Digital_Identity_Seminar_Presentation_Final.pdf; Jan. 8, 2017; 79 pgs. [cited by applicant]
“Your guide to UPI—the world's most advanced payments system”; Sasi Desai et al.; https://medium.com/wharton-fintech/your-quide-to-upi-the-worlds-most-advanced-payments-system-b4e0b372bf0b: May 11, 2017; 20 pgs. [cited by applicant]
“Lessons from the World's Largest e-Identity Program”; procivis; https://procivis.ch/2018/02/13/lessons-from-the-worlds-largest-e-identity-program-indias-aadhaar/; Feb. 13, 2018; 6 pgs. [cited by applicant]
Times of India; “Treat virtual ID, UID token as Aadhaar number”; https://timesofindia.indiatimes.com/business/india-business/treat-virtual-id-uid-token-as-aadhaar-number-uidai-to-agencies/articleshow/65038574.cms: Jul. … [cited by applicant]
Neustar; “Neustar Selected as Digital Identity Solution Partner for Visa's ID Intelligence Ecosystem”; https://www.home.neustar/about-us/news-room/press-releases/2017/VisaIDIntelligence: Oct. 24, 2017; 1 pg. [cited by applicant]
Crush Crypto; Selfkey ICO Review—Digital Identity Management System; https://crushcrypto.com/analysis-of-selfkey/; Dec. 5, 2017; 6 pgs. [cited by applicant]
Cited By (1)
US 12,609,927