IP Library › Granted Patent US 12,373,534
Granted Patent B2
US 12,373,534 · App. 18/205,278 · Granted Jul 29, 2025

Techniques for generating and using nonlinkable digital credentials

Inventors: Ravi Chotrani (Milpitas, CA); Ahmer A. Khan (San Jose, CA); David W. Silver (Los Altos, CA); Gianpaolo Fasoli (Burlingame, CA); Ka Yang (Palo Alto, CA); Vishnu Janardhanan (Fremont, CA)
Assignee: Apple Inc.
G06F21/33H04L9/0861H04L9/3268H04L63/0823
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,373,534
App. No.
18/205,278
Granted
Jul 29, 2025
Kind
B2
Abstract

A computing device can generate a set of transaction keys, the computing device configured to present a digital credential to a requesting device. The computing device can generate a request bundle. The request bundle can include the set of transaction keys. The computing device can transmit, to a first server, the request bundle. The first server can be configured to verify the request bundle. The first server can be configured to send the request bundle to a second server with a request for a set of credentials. Each credential of the set of credentials can correspond to a transaction key of the set of transaction keys. Each credential can include data elements and a security object. The data elements for each credential can be the same. The security object for each credential can be different. The computing device can receive, from the first server, the set of credentials. The computing device can store the set of credentials. The computing device can be configured to generate a response based on a particular credential of the set of credentials when a requesting device requests the digital credential.

Claims (37)

1. A method comprising:

generating, on a computing device, a set of transaction keys, the computing device configured to present a digital credential to a requesting device;

generating, on the computing device, a request bundle, the request bundle including the set of transaction keys;

transmitting, by the computing device to a first server, the request bundle, wherein the first server is configured to verify the request bundle, wherein the first server is configured to send the request bundle to a second server with a request for a set of credentials, wherein each credential of the set of credentials corresponds to a transaction key of the set of transaction keys, wherein each credential includes data elements and a security object, wherein the data elements for each credential are the same, wherein the security object for each credential is different;

receiving, by the computing device from the first server, the set of credentials; and

storing, by the computing device, the set of credentials, wherein the computing device is configured to generate a response based on a particular credential of the set of credentials when a requesting device requests the digital credential.

2. The method of claim 1 , further comprising signing, on the computing device, each transaction key of the set of transaction keys.

3. The method of claim 1 , further comprising determining, on the computing device, to generate the set of credentials based on a threshold criterion being met regarding a previous set of credentials.

4. The method of claim 1 , wherein the requesting device is associated with a profile, wherein the computing device is configured to determine the computing device has received a previous request associated with the profile for data elements associated with the digital credential, wherein the computing device is configured to generate the response based on a same credential of the set of credentials used to generate a previous response to the previous request.

5. The method of claim 1 , wherein the security object comprises an issuer signature and a hash of at least a subset of data elements.

6. The method of claim 1 , wherein the security object comprises a corresponding transaction key.

7. The method of claim 1 , wherein the security object includes an expiration date.

8. The method of claim 1 , wherein the data elements are associated with a user, wherein the data elements include one or more of: a name, an age, a birthday, a residential address, a picture of the user, a gender, a hair color, an eye color, a height, and a weight.

9. A computing device, comprising:

a memory configured to store computer-executable instructions; and

one or more processors in communication with the memory and configured to access the memory and execute the computer-executable instructions to:

generate a set of transaction keys, the computing device configured to present a digital credential to a requesting device;

generate a request bundle, the request bundle including the set of transaction keys;

transmit, to a first server, the request bundle, wherein the first server is configured to verify the request bundle, wherein the first server is configured to send the request bundle to a second server with a request for a set of credentials, wherein each credential of the set of credentials corresponds to a transaction key of the set of transaction keys, wherein each credential includes data elements and a security object, wherein the data elements for each credential are the same, wherein the security object for each credential is different;

receive, from the first server, the set of credentials; and

store the set of credentials, wherein the computing device is configured to generate a response based on a particular credential of the set of credentials when a requesting device requests the digital credential.

10. The computing device of claim 9 , wherein the one or more processors is further configured to access the memory and execute the computer-executable instructions to determine to generate the set of credentials based on a threshold criterion being met regarding a previous set of credentials.

11. The computing device of claim 9 , wherein the requesting device is associated with a profile, wherein the computing device is configured to determine the computing device has received a previous request associated with the profile for data elements associated with the digital credential, wherein the computing device is configured to generate the response based on a same credential of the set of credentials used to generate a previous response to the previous request.

12. The computing device of claim 9 , wherein the security object comprises an issuer signature and a hash of at least a subset of data elements.

13. The computing device of claim 9 , wherein the security object comprises a corresponding transaction key.

14. The computing device of claim 9 , wherein the security object includes an expiration date.

15. One or more non-transitory computer-readable media comprising computer-executable instructions that, when executed by one or more processors, cause the one or more processors to perform operations comprising:

generating, on a computing device, a set of transaction keys, the computing device configured to present a digital credential to a requesting device;

generating, on the computing device, a request bundle, the request bundle including the set of transaction keys;

transmitting, by the computing device to a first server, the request bundle, wherein the first server is configured to verify the request bundle, wherein the first server is configured to send the request bundle to a second server with a request for a set of credentials, wherein each credential of the set of credentials corresponds to a transaction key of the set of transaction keys, wherein each credential includes data elements and a security object, wherein the data elements for each credential are the same, wherein the security object for each credential is different;

receiving, by the computing device from the first server, the set of credentials; and

storing, by the computing device, the set of credentials, wherein the computing device is configured to generate a response based on a particular credential of the set of credentials when a requesting device requests the digital credential.

16. The one or more non-transitory computer-readable media of claim 15 , wherein the operations further comprise determining, on the computing device, to generate the set of credentials based on a threshold criterion being met regarding a previous set of credentials.

17. The one or more non-transitory computer-readable media of claim 15 , wherein the requesting device is associated with a profile, wherein the computing device is configured to determine the computing device has received a previous request associated with the profile for data elements associated with the digital credential, wherein the computing device is configured to generate the response based on a same credential of the set of credentials used to generate a previous response to the previous request.

18. The one or more non-transitory computer-readable media of claim 15 , wherein the security object comprises an issuer signature and a hash of at least a subset of data elements.

19. The one or more non-transitory computer-readable media of claim 15 , wherein the security object comprises a corresponding transaction key.

20. The one or more non-transitory computer-readable media of claim 15 , wherein the security object includes an expiration date.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 7, 2023
From: CHOTRANI, RAVI; SILVER, DAVID W.; JANARDHANAN, VISHNU; YANG, KA; FASOLI, GIANPAOLO; KHAN, AHMER A.
To: APPLE INC.
Reel/Frame 063880/0446 →
Continuity (1)
Related Publication 20240406010A1 · Dec 5, 2024
References Cited (17)
US 20030126085A1 · Srinivasan · 2003 [cited by applicant]
US 20090300747A1 · Ahn · 2009 [cited by applicant]
US 20160218875A1 · Le Saint · 2016 [cited by examiner]
US 20160323112A1 · Chung · 2016 [cited by examiner]
US 20160358172A1 · Ziat et al. · 2016 [cited by applicant]
US 20170180335A1 · Quinlan et al. · 2017 [cited by applicant]
US 20170187701A1 · Bonnell · 2017 [cited by examiner]
US 20170206374A1 · Bostick et al. · 2017 [cited by applicant]
US 20180091499A1 · Hayes · 2018 [cited by examiner]
US 20200186367A1 · Yang et al. · 2020 [cited by applicant]
US 20220312195A1 · Schnabel et al. · 2022 [cited by applicant]
US 20230337000A1 · Schnabel et al. · 2023 [cited by applicant]
“Iso/iec: ISO/IEC DIS 18013-5”, Available online at: https://mobiledl-e5018.web.app/ISO_18013-5_E_draft.pdf, Apr. 2020, 126 pages. [cited by applicant]
“The Mobile Driver's License (mDL) and Ecosystem”, Secure Technology Alliance; Available online at: https://www.securetechalliance.org/wp-content/uploads/Mobile-Drivers-License-WP-FINAL-Update-March-2020-4.pdf, Mar. 202… [cited by applicant]
International Patent Application No. PCT/US2024/031993 , “International Search Report and Written Opinion”, Sep. 9, 2024, 20 pages. [cited by applicant]
International Patent Application No. PCT/US2024/031993 , “Invitation to Pay Additional Fees and, Where Applicable, Protest Fee”, Jul. 19, 2024, 12 pages. [cited by applicant]
U.S. Appl. No. 18/205,244 , Non-Final Office Action, Mailed On Nov. 21, 2024, 14 pages. [cited by applicant]