IP Library Granted Patent US 12,452,643
Granted Patent B2
US 12,452,643 · App. 18/361,706 · Granted Oct 21, 2025

Authenticated health credential access methods and apparatus

Inventors: Denis Mars (San Francisco, CA); Simon Ratner (San Francisco, CA)
Assignee: Ouraring Inc.
H04W8/06G06F1/163H04L9/12H04L9/32H04L9/3234H04L9/3297H04L63/0876H04L63/123H04W12/06H05K1/0271H05K3/284H05K3/36H05K2201/09018H05K2201/10098H05K2201/10106H05K2201/10151
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,452,643
App. No.
18/361,706
Granted
Oct 21, 2025
Kind
B2
Abstract

A method for a system includes receiving with a first transceiver of an identity reader device, an ephemeral ID from a first smart device, outputting with the first transceiver, identity reader data to the first smart device, wherein the identity reader data comprises a first identifier and a challenge, receiving with the first transceiver, responsive data from the first smart device, wherein the responsive data comprises token data and contact tracing status of the first smart device, determining in a processor of the identity reader device, whether the first smart device is authorized in response to the ephemeral ID or the token data, and the contact tracing status, and directing with the processor, a peripheral device coupled to the identity reader device to perform a user-perceptible action in response to the processor determining that the first smart device is authorized.

Claims (69)

1. A method for controlling access to a peripheral device, comprising:

receiving, at an identity reader device communicatively coupled with the peripheral device, an ephemeral identifier (ID) from a smart device, wherein the ephemeral ID is based at least in part on user information associated with a user of the smart device;

receiving biometric data associated with the user from the smart device, a component of the identity reader device, or both;

determining whether or not the user, the smart device, or both, is authorized to access the peripheral device based at least in part on the ephemeral ID;

determining a presence or an absence of a health anomaly associated with the user based at least in part on the biometric data, the ephemeral ID, or both; and

controlling access of the smart device, the user, or both, to the peripheral device based at least in part on whether the user, the smart device, or both, is authorized to access the peripheral device, and based at least in part on the presence or the absence of the health anomaly, wherein controlling access to the peripheral device comprises:

directing the peripheral device to perform a user-perceptible action based at least in part on the user, the smart device, or both, being authorized to access the peripheral device, and based at least in part on determining the absence of the health anomaly; and

preventing the peripheral device from performing the user-perceptible action based at least in part on the user, the smart device, or both, not being authorized to access the peripheral device, based at least in part on determining the presence of the health anomaly, or both.

2. The method of claim 1 , wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device comprises:

transmitting the ephemeral ID to an authentication server; and

receiving, from the authentication server, authorization information indicating whether the user, the smart device, or both, is authorized to access the peripheral device.

3. The method of claim 1 , further comprising:

determining, using one or more processors of the identity reader device, whether the ephemeral ID is cached in a memory of the identity reader device, wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device based at least in part on determining whether the ephemeral ID is cached in the memory.

4. The method of claim 3 , wherein the ephemeral ID is received at a first time, the method further comprising:

authenticating the user, the smart device, or both, at a second time that is previous to the first time;

caching the ephemeral ID in the memory of the identity reader device based at least in part on authenticating the user, the smart device, or both; and

determining that the user, the smart device, or both, is authorized to access the peripheral device at the first time based at least in part on determining that the ephemeral ID is cached in the memory at the first time.

5. The method of claim 4 , wherein the ephemeral ID is associated with a time duration that the ephemeral ID will remain cached in the memory.

6. The method of claim 1 , further comprising:

transmitting a challenge from the identity reader device to the smart device based at least in part on receiving the ephemeral ID; and

receiving a challenge response from the smart device in response to the challenge, wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device is based at least in part on the challenge response.

7. The method of claim 1 , further comprising:

determining one or more actions engaged in by the user based at least in part on the biometric data; and

adjusting one or more biometric thresholds for evaluating the presence or the absence of the health anomaly based at least in part on the one or more actions, wherein determining the presence or the absence of the health anomaly is based at least in part on comparing the biometric data to the one or more adjusted biometric thresholds.

8. The method of claim 1 , further comprising:

determining a distance between the peripheral device and the user, the smart device, or both, based at least in part on receiving the ephemeral ID, wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device is based at least in part on whether the distance satisfies a threshold distance.

9. The method of claim 1 , wherein the ephemeral ID does not include any personal identifiable information associated with the user.

10. The method of claim 1 , wherein the smart device comprises a smart wearable device, a smart phone, or both.

11. The method of claim 1 , wherein the user-perceptible action comprises: opening a gate, opening a door, calling an elevator, capturing an image with a camera, logging into a computer, enabling a service, illuminating a light, playing a sound on a speaker, displaying an image on a display, activating a vehicle, activating a vending machine, authorizing a sale on a point of sale (POS) device, or any combination thereof.

12. The method of claim 1 , wherein the biometric data associated with the user comprises temperature data, heart rate data, blood oxygen saturation data, respiration rate data, movement data, a fingerprint, voice data, retinal scan data, or any combination thereof.

13. An identity reader device, comprising:

a communication component;

a memory; and

one or more processors communicatively coupled with the communication component and the memory, wherein the one or more processors are configured to:

receive, via the communication component, an ephemeral identifier (ID) from a smart device, wherein the ephemeral ID is based at least in part on user information associated with a user of the smart device;

receive, via the communication component, biometric data associated with the user, wherein the biometric data is received from the smart device, a component of the identity reader device, or both;

determine whether or not the user, the smart device, or both, is authorized to access a peripheral device based at least in part on the ephemeral ID;

determine a presence or an absence of a health anomaly associated with the user based at least in part on the biometric data, the ephemeral ID, or both; and

control access of the smart device, the user, or both, to the peripheral device based at least in part on whether the user, the smart device, or both, is authorized to access the peripheral device, and based at least in part on the presence or the absence of the health anomaly, wherein controlling access to the peripheral device comprises:

direct the peripheral device to perform a user-perceptible action based at least in part on the user, the smart device, or both, being authorized to access the peripheral device, and based at least in part on determining the absence of the health anomaly; and

prevent the peripheral device from performing the user-perceptible action based at least in part on the user, the smart device, or both, not being authorized to access the peripheral device, based at least in part on determining the presence of the health anomaly, or both.

14. The identity reader device of claim 13 , wherein to determine whether or not the user, the smart device, or both, is authorized to access the peripheral device, the one or more processors are configured to:

transmit the ephemeral ID to an authentication server; and

receive, from the authentication server, authorization information indicating whether the user, the smart device, or both, is authorized to access the peripheral device.

15. The identity reader device of claim 13 , wherein the one or more processors are further configured to:

determine, using one or more processors of the identity reader device, whether the ephemeral ID is cached in a memory of the identity reader device, wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device based at least in part on determining whether the ephemeral ID is cached in the memory.

16. The identity reader device of claim 15 , wherein the ephemeral ID is received at a first time, wherein the one or more processors are further configured to:

authenticate the user, the smart device, or both, at a second time that is previous to the first time;

cache the ephemeral ID in the memory of the identity reader device based at least in part on authenticating the user, the smart device, or both; and

determine that the user, the smart device, or both, is authorized to access the peripheral device at the first time based at least in part on determining that the ephemeral ID is cached in the memory at the first time.

17. The identity reader device of claim 13 , wherein the one or more processors are further configured to:

transmit a challenge from the identity reader device to the smart device based at least in part on receiving the ephemeral ID; and

receive a challenge response from the smart device in response to the challenge, wherein determining whether or not the user, the smart device, or both, is authorized to access the peripheral device is based at least in part on the challenge response.

18. The identity reader device of claim 13 , wherein the one or more processors are further configured to:

determine one or more actions engaged in by the user based at least in part on the biometric data; and

adjust one or more biometric thresholds for evaluating the presence or the absence of the health anomaly based at least in part on the one or more actions, wherein determining the presence or the absence of the health anomaly is based at least in part on comparing the biometric data to the one or more adjusted biometric thresholds.

19. The identity reader device of claim 13 , wherein the one or more processors are further configured to:

determine one or more actions engaged in by the user based at least in part on the biometric data; and

adjust one or more biometric thresholds for evaluating the presence or the absence of the health anomaly based at least in part on the one or more actions, wherein determining the presence or the absence of the health anomaly is based at least in part on comparing the biometric data to the one or more adjusted biometric thresholds.

20. A system, comprising:

a peripheral device that is accessible to one or more users, wherein the peripheral device is configured to perform a user-perceptible action to provide access to the one or more users; and

an identity reader device that is communicatively coupled with the peripheral device, wherein the identity reader device is configured to:

receive an ephemeral identifier (ID) from a smart device, wherein the ephemeral ID is based at least in part on user information associated with a user of the smart device, and wherein the ephemeral ID does not include any personal identifiable information associated with the user;

receive biometric data associated with the user from the smart device, a component of the identity reader device, or both;

determine whether or not the user, the smart device, or both, is authorized to access the peripheral device based at least in part on the ephemeral ID;

determine a presence or an absence of a health anomaly associated with the user based at least in part on the biometric data, the ephemeral ID, or both; and

control access of the smart device, the user, or both, to the peripheral device based at least in part on whether the user, the smart device, or both, is authorized to access the peripheral device, and based at least in part on the presence or the absence of the health anomaly, wherein controlling access to the peripheral device comprises:

direct the peripheral device to perform a user-perceptible action based at least in part on the user, the smart device, or both, being authorized to access the peripheral device, and based at least in part on determining the absence of the health anomaly; and

prevent the peripheral device from performing the user-perceptible action based at least in part on the user, the smart device, or both, not being authorized to access the peripheral device, based at least in part on determining the presence of the health anomaly, or both.

Assignments (6)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 30, 2025
From: MARS, DENIS; RATNER, SIMON
To: PROXY, INC.
Reel/Frame 072423/0059 →
MERGER AND CHANGE OF NAME Recorded Sep 30, 2025
From: PROXY, INC.; TWIN MERGER SUB II, LLC
To: TWIN MERGER SUB II, LLC
Reel/Frame 072423/0243 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 30, 2025
From: TWIN MERGER SUB II, LLC
To: OURARING INC.
Reel/Frame 072423/0445 →
RELEASE OF SECURITY INTERESTS IN PATENTS AND TRADEMARKS AT REEL/FRAME NO. 66986/0101 Recorded May 16, 2025
From: CRG SERVICING LLC, AS ADMINISTRATIVE AGENT
To: OURA HEALTH OY
Reel/Frame 071297/0305 →
SECURITY INTEREST Recorded May 16, 2025
From: OURA HEALTH OY; OURARING INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 071302/0800 →
SECURITY INTEREST Recorded Apr 2, 2024
From: OURA HEALTH OY
To: CRG SERVICING LLC, AS ADMINISTRATIVE AGENT
Reel/Frame 066986/0101 →
Continuity (5)
Continuation 17326122 · May 20, 2021
Provisional Application 63029004 · May 22, 2020
Provisional Application 63027769 · May 20, 2020
Provisional Application 63027774 · May 20, 2020
Related Publication 20240129708A1 · Apr 18, 2024
References Cited (2)
US 20040162984A1 · Freeman · 2004 [cited by examiner]
US 20120317639A1 · Huang · 2012 [cited by examiner]
Cited By (1)
US 12,572,756