IP Library Granted Patent US 12,218,940
Granted Patent B2
US 12,218,940 · App. 18/316,493 · Granted Feb 4, 2025

Systems and methods for online third-party authentication of credentials

Inventors: Blake Hall (Washington, DC); Tanel Suurhans (McLean, VA)
Assignee: ID.me, Inc.
H04L63/0884G06F21/31H04L63/0838
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,218,940
App. No.
18/316,493
Granted
Feb 4, 2025
Kind
B2
Abstract

Systems and methods are disclosed for online authentication of online attributes. One method includes receiving an authentication request from a rely party, the authentication request including identity information to be authenticated and credential information to be authenticated; determining whether a user account is associated with the received identity information by accessing an internal database; accessing user data of the user account determined to be associated with received identity information; determining authentication data to obtained from a user associated with the user account based on the user data of the user account and the credential information to be authenticated; transmitting a request for authentication data; receiving authentication data associated with the user; transmitting authentication data associated with the user; and receiving an authentication result from the verification data source server for the user associated with authentication data.

Claims (52)

1. A computer-implemented method for online authentication of online attributes, the method including:

receiving, at a server over an electronic network, an authentication request from a relying party, the authentication request including identity information to be authenticated and credential information to be authenticated;

receiving, at the server over the electronic network, authentication data associated with a user associated with a user account stored in an internal database;

transmitting, by the server over the electronic network to a verification data source server, the received authentication data associated with the user associated with the user account stored in the internal database;

receiving, at the server over the electronic network, an authentication result from the verification data source server for the received authentication data associated with the user associated with the user account stored in the internal database and based on the transmitted authentication data;

determining, by the server, an updated assurance level associated with the user associated with the user account stored in the internal database, at least based on the received authentication result; and

storing, by the server in the internal database, (i) the updated assurance level as the assurance level associated with the user associated with the user account stored in the internal database, (ii) the verification data source server used, and (iii) a time/date stamp.

2. The method of claim 1 , further comprising:

storing, by the server, the authentication data in the user data of the user account associated with the user.

3. The method of claim 1 , further comprising:

encrypting, by the server, the authentication data in the user data of the user account associated with the user.

4. The method of claim 1 , further comprising:

determining, by the server, a required assurance level associated with the authentication request further based on one or more predetermined policies associated with the relying party.

5. The method of claim 1 , further comprising:

determining, by the server, a required assurance level associated with the authentication request by cross referencing the received authentication request with one or more previous authentication requests from the relying party.

6. The method of claim 1 , wherein the request for authentication level comprises an assurance level request for a one-time-password (“OTP”).

7. The method of claim 6 , wherein the OTP request is conducted by at least one of an interactive voice response (“IVR”) method and a short message service (“SMS”) method.

8. A system for online authentication of online attributes, the system including:

a data storage device that stores instructions system for online authentication of online attributes; and

a processor configured to execute the instructions to perform a method including:

receiving, over an electronic network, an authentication request from a relying party, the authentication request including identity information to be authenticated and credential information to be authenticated;

receiving, over the electronic network, authentication data associated with a user associated with a user account stored in an internal database;

transmitting, over the electronic network to a verification data source server, the received authentication data associated with the user associated with the user account stored in the internal database;

receiving, over the electronic network, an authentication result from the verification data source server for the received authentication data associated with the user associated with the user account stored in the internal database and based on the transmitted authentication data;

determining an updated assurance level associated with the user associated with the user account stored in the internal database, at least based on the received authentication result; and

storing, in the internal database, (i) the updated assurance level as the assurance level associated with the user associated with the user account stored in the internal database, (ii) the verification data source server used, and (iii) a time/date stamp.

9. The system according to claim 8 , wherein the processor is further configured to execute the instructions to perform the method including:

storing the authentication data in the user data of the user account associated with the user.

10. The system according to claim 8 , wherein the processor is further configured to execute the instructions to perform the method including:

encrypting the authentication data in the user data of the user account associated with the user.

11. The system according to claim 8 , wherein the processor is further configured:

determine a required assurance level associated with the authentication request further based on one or more predetermined policies associated with the relying party.

12. The system according to claim 8 , wherein the processor is further configured:

determine a required assurance level associated with the authentication request by cross referencing the received authentication request with one or more previous authentication requests from the relying party.

13. The system according to claim 8 , wherein the request for authentication level comprises an assurance level request for a one-time-password (“OTP”).

14. The system according to claim 13 , wherein the OTP request is conducted by at least one of an interactive voice response (“IVR”) method and a short message service (“SMS”) method.

15. A non-transitory computer-readable medium storing instructions that, when executed by a computer, cause the computer to perform a method for online authentication of online attributes, the method including:

receiving, at a server over an electronic network, an authentication request from a relying party, the authentication request including identity information to be authenticated and credential information to be authenticated;

receiving, at the server over the electronic network, authentication data associated with a user associated with a user account stored in an internal database;

transmitting, by the server over the electronic network to a verification data source server, the received authentication data associated with the user associated with the user account stored in the internal database;

receiving, at the server over the electronic network, an authentication result from the verification data source server for the received authentication data associated with the user associated with the user account stored in the internal database and based on the transmitted authentication data;

determining, by the server, an updated assurance level associated with the user associated with the user account stored in the internal database, at least based on the received authentication result; and

storing, by the server in the internal database, (i) the updated assurance level as the assurance level associated with the user associated with the user account stored in the internal database, (ii) the verification data source server used, and (iii) a time/date stamp.

16. The computer-readable medium according to claim 15 , further comprising:

storing, by the server, the authentication data in the user data of the user account associated with the user.

17. The computer-readable medium according to claim 15 , further comprising:

encrypting, by the server, the authentication data in the user data of the user account associated with the user.

18. The computer-readable medium according to claim 15 , further comprising:

determining, by the server, a required assurance level associated with the authentication request further based on one or more predetermined policies associated with the relying party.

19. The computer-readable medium according to claim 15 , further comprising:

determining, by the server, a required assurance level associated with the authentication request by cross referencing the received authentication request with one or more previous authentication requests from the relying party.

20. The computer-readable medium according to claim 15 , wherein the request for authentication level comprises an assurance level request for a one-time-password (“OTP”).

Assignments (3)
CHANGE OF NAME Recorded May 9, 2025
From: ID.ME, INC.
To: ID.ME, LLC
Reel/Frame 071248/0794 →
PATENT SECURITY AGREEMENT Recorded Jan 22, 2025
From: ID.ME, INC.
To: ARES CAPITAL CORPORATION, AS ADMINISTRATIVE AGENT
Reel/Frame 069989/0493 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 9, 2023
From: HALL, BLAKE; SUURHANS, TANEL
To: ID.ME, INC.
Reel/Frame 063908/0769 →
Continuity (5)
Continuation 17339256 · Jun 4, 2021
Continuation 16197797 · Nov 21, 2018
Continuation 14851235 · Sep 11, 2015
Provisional Application 62049796 · Sep 12, 2014
Related Publication 20230283607A1 · Sep 7, 2023
References Cited (26)
US 7814315B2 · Parkinson · 2010 [cited by applicant]
US 8745718B1 · Dufel et al. · 2014 [cited by applicant]
US 9444824B1 · Balazs et al. · 2016 [cited by applicant]
US 9485237B1 · Johansson · 2016 [cited by examiner]
US 10503888B2 · Spencer, III · 2019 [cited by examiner]
US 10922631B1 · Shahidzadeh · 2021 [cited by examiner]
US 11096059B1 · Shahidzadeh · 2021 [cited by examiner]
US 20030115142A1 · Brickell et al. · 2003 [cited by applicant]
US 20030163686A1 · Ward et al. · 2003 [cited by applicant]
US 20090271621A1 · Mendelovich et al. · 2009 [cited by applicant]
US 20100122333A1 · Noe · 2010 [cited by applicant]
US 20110030043A1 · Jones et al. · 2011 [cited by applicant]
US 20130013553A1 · Stibel et al. · 2013 [cited by applicant]
US 20130036303A1 · Himawan et al. · 2013 [cited by applicant]
US 20130227666A1 · White et al. · 2013 [cited by applicant]
US 20140281525A1 · Acar et al. · 2014 [cited by applicant]
US 20140289833A1 · Briceno et al. · 2014 [cited by applicant]
US 20150237053A1 · Duggana et al. · 2015 [cited by applicant]
US 20150295906A1 · Ufford · 2015 [cited by examiner]
US 20150319156A1 · Guccione et al. · 2015 [cited by applicant]
US 20160050234A1 · Choyi et al. · 2016 [cited by applicant]
US 20160087957A1 · Shah et al. · 2016 [cited by applicant]
US 20160189147A1 · Vanczak · 2016 [cited by applicant]
US 20200053088A1 · Drake, II · 2020 [cited by examiner]
International Preliminary Report on Patentability issued in related PCT/US2015/049592, dated Mar. 14, 2017 (5 pages). [cited by applicant]
International Search Report and Written Opinion issued in corresponding International Application No. PCT/US2015/49592, dated Dec. 14, 2015 (14 pages). [cited by applicant]