IP Library Granted Patent US 12,314,949
Granted Patent B2
US 12,314,949 · App. 18/370,358 · Granted May 27, 2025

Method and system for multi-modal transaction authentication

Inventor: Steven V. Bacastow (Cumming, GA)
Assignee: STRIPE, INC.
G06Q20/4012G06Q20/027G06Q20/26G06Q20/322G06Q20/356G06Q20/40G06Q20/405G06Q20/425
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,314,949
App. No.
18/370,358
Granted
May 27, 2025
Kind
B2
Abstract

This invention relates to systems and methods for authenticating transactions using a mobile device based primarily on the introduction of a layer of middleware and wherein the Payment Networks, Merchants, Issuing Banks, Credit Reporting Bureaus, Insurance Companies, Healthcare Providers may customize the implementation of the services based on individual strategy and consumer preferences.

Claims (46)

1. A computer-implemented method for processing a secure mobile payment transaction conducted at a location of a merchant comprising:

receiving, from a point-of-sale device at the location of a merchant, a set of data transmitted from a mobile device of a consumer, the set of data including mobile payment data that is associated with the secure mobile payment transaction and additional data of the consumer;

analyzing the set of data received from the point-of-sale device to determine if additional authentication is required to complete the secure mobile payment transaction;

sending, by a secure payment computing device, an authentication request from the secure payment computing device to the mobile device upon determining that the additional authentication is required to complete the secure mobile payment transaction;

receiving, at the secure payment computing device from the mobile device, an authentication response, the authentication response comprising biometric-related information obtained via capture by the mobile device;

completing the additional authentication based on the biometric-related information captured by the mobile device matching previously stored information;

in response to completing the additional authentication, transmitting at least a portion of the mobile payment data to a secure payment network for processing; and

after transmitting the mobile payment data to the secure payment network for processing, transmitting a payment confirmation to the point-of-sale device at the location of the merchant.

2. The computer-implemented method defined in claim 1 wherein the additional data comprises address or location information.

3. The computer-implemented method defined in claim 1 wherein the authentication response is sent on a different communication link than the set of data transmitted from the mobile device.

4. The computer-implemented method defined in claim 1 wherein the biometric-related information indicates that a user has approved the secure mobile payment transaction.

5. The computer-implemented method defined in claim 1 wherein the biometric-related information comprises at least one or more fingerprint biometric factors corresponding to a fingerprint captured contemporaneously when a user touches a position on a user interface of the mobile device.

6. The computer-implemented method defined in claim 5 wherein the fingerprint factors are received by a biometric signal handler of the mobile device and validated on the mobile device by comparing the one or more fingerprint biometric factors to previously registered fingerprint biometric factors stored on a file system or secure element of the mobile device, wherein a first fingerprint biometric factor is captured when a registered user's first finger touches a position of the user interface.

7. The computer-implemented method of claim 1 further comprising determining rules and settings that establish criteria used in authenticating the payment transaction.

8. The computer-implemented method of claim 7 wherein the criteria include a prescribed biometric correlation sequence.

9. The computer-implemented method of claim 1 wherein analyzing the set of data received from the point-of-sale device to determine if additional authentication is required to complete the secure mobile payment transaction comprises accessing configuration settings to determine criteria for authorizing the secure payment transaction.

10. A network environment for processing a secure mobile payment transaction conducted at a location of a merchant comprising:

a secure payment computing device having

a web server having a network interface for receiving and processing information received from Internet sources;

a transaction gateway for receiving and processing payment transactions;

a messaging server having a network interface for communicating with a mobile device, and

a database for storing settings from one or more of a merchant, an issuer, a payment network, a payment acquirer, and an e-commerce gateway;

a first system communicably coupled to the secure payment computing device, wherein the first system is operable to analyze a set of data received from a point-of-sale device to determine if additional authentication is required to complete the secure mobile payment transaction;

wherein, upon determining that the additional authentication is required to complete the secure mobile payment transaction, the secure payment system is operable to

send an authentication request from a secure payment computing device to the mobile device,

receive an authentication response, the authentication response comprising biometric-related information obtained via capture by the mobile device,

complete the additional authentication based on the biometric-related information captured by the mobile device matching previously stored information,

in response to completing the additional authentication, transmitting at least a portion of mobile payment data to a secure payment network for processing, and

wherein after transmitting the mobile payment data to the secure payment network for processing, the first system is operable to transmit a payment confirmation to the point-of-sale device at the location of the merchant.

11. The network environment defined in claim 10 wherein the set of data comprises address or location information.

12. The network environment defined in claim 10 wherein the authentication response is sent on a different communication link than the set of data transmitted from the mobile device.

13. The network environment defined in claim 10 wherein the biometric-related information indicates that a user has approved the secure mobile payment transaction.

14. The network environment defined in claim 10 wherein the biometric-related information comprises at least one or more fingerprint biometric factors corresponding to a fingerprint captured contemporaneously when a user touches a position on a user interface of the mobile device.

15. The network environment defined in claim 14 wherein the fingerprint factors are received by a biometric signal handler of the mobile device and validated on the mobile device by comparing the one or more fingerprint biometric factors to previously registered fingerprint biometric factors stored on a file system or secure element of the mobile device, wherein a first fingerprint biometric factor is captured when a registered user's first finger touches a position of the user interface.

16. The network environment of claim 10 wherein the first system determines whether additional authentication is required to complete the secure mobile payment transaction based on rules and settings that establish criteria used in authenticating the payment transaction.

17. The network environment of claim 16 wherein the criteria include a prescribed biometric correlation sequence.

18. A non-transitory computer readable storage medium storing instructions, which when executed by a computer processing system, causes the computer processing system to perform operations for processing a secure mobile payment transaction conducted at a location of a merchant, the operations comprising:

receiving, from a point-of-sale device at the location of a merchant, a set of data transmitted from a mobile device of a consumer, the set of data including mobile payment data that is associated with the secure mobile payment transaction and additional data of the consumer;

analyzing the set of data received from the point-of-sale device to determine if additional authentication is required to complete the secure mobile payment transaction;

sending, by a secure payment computing device, an authentication request from the secure payment computing device to the mobile device upon determining that the additional authentication is required to complete the secure mobile payment transaction;

receiving, at the secure payment computing device from the mobile device, an authentication response, the authentication response comprising biometric-related information obtained via capture by the mobile device;

completing the additional authentication based on the biometric-related information captured by the mobile device matching previously stored information;

in response to completing the additional authentication, transmitting at least a portion of the mobile payment data to a secure payment network for processing; and

after transmitting the mobile payment data to the secure payment network for processing, transmitting a payment confirmation to the point-of-sale device at the location of the merchant.

19. The non-transitory computer readable storage medium defined in claim 18 wherein the biometric-related information indicates that a user has approved the secure mobile payment transaction.

20. The non-transitory computer readable storage medium of claim 18 wherein analyzing the set of data received from the point-of-sale device to determine if additional authentication is required to complete the secure mobile payment transaction comprises accessing configuration settings to determine criteria for authorizing the secure payment transaction.

Continuity (11)
Continuation 17483998 · Sep 24, 2021
Continuation 16718861 · Dec 18, 2019
Continuation 15827606 · Nov 30, 2017
Continuation 14581471 · Dec 23, 2014
Continuation In Part 14035160 · Sep 24, 2013
Continuation 12390003 · Feb 20, 2009
Provisional Application 61190743 · Sep 2, 2008
Provisional Application 61130306 · May 29, 2008
Provisional Application 61050724 · May 6, 2008
Provisional Application 61066416 · Feb 20, 2008
Related Publication 20240054492A1 · Feb 15, 2024
References Cited (88)
US 5590038A · Pitroda · 1996 [cited by applicant]
US 5884271A · Pitroda · 1999 [cited by applicant]
US 6236981B1 · Hill · 2001 [cited by applicant]
US 6535726B1 · Johnson · 2003 [cited by applicant]
US 6925439B1 · Pitroda · 2005 [cited by applicant]
US 7024174B2 · Nagy et al. · 2006 [cited by applicant]
US 7039389B2 · Johnson, Jr. · 2006 [cited by applicant]
US 7308426B1 · Pitroda · 2007 [cited by applicant]
US 7526652B2 · Ziegler · 2009 [cited by applicant]
US 7552094B2 · Park et al. · 2009 [cited by applicant]
US 7610216B1 · May et al. · 2009 [cited by applicant]
US 8321342B2 · Marshall · 2012 [cited by applicant]
US 8577804B1 · Bacastow · 2013 [cited by applicant]
US 8843417B2 · Hammad · 2014 [cited by applicant]
US 9159061B2 · Bacastow · 2015 [cited by applicant]
US 9330390B2 · Pitroda et al. · 2016 [cited by applicant]
US 9501774B2 · Ashfield · 2016 [cited by applicant]
US 9852426B2 · Bacastow · 2017 [cited by applicant]
US 11068890B2 · Bacastow · 2021 [cited by applicant]
US 11501298B2 · Bacastow · 2022 [cited by applicant]
US 20010037264A1 · Husemann et al. · 2001 [cited by applicant]
US 20020077978A1 · O'Leary et al. · 2002 [cited by applicant]
US 20020116329A1 · Serbetcioglu et al. · 2002 [cited by applicant]
US 20030074328A1 · Schiff et al. · 2003 [cited by applicant]
US 20030115126A1 · Pitroda · 2003 [cited by applicant]
US 20030119478A1 · Nagy et al. · 2003 [cited by applicant]
US 20030125054A1 · Garcia · 2003 [cited by applicant]
US 20030153278A1 · Johnson · 2003 [cited by applicant]
US 20030163710A1 · Ortiz et al. · 2003 [cited by applicant]
US 20040044739A1 · Ziegler · 2004 [cited by applicant]
US 20040107170A1 · Labrou et al. · 2004 [cited by applicant]
US 20040254848A1 · Golan et al. · 2004 [cited by applicant]
US 20050086164A1 · Kim et al. · 2005 [cited by applicant]
US 20050203843A1 · Wood et al. · 2005 [cited by applicant]
US 20050247777A1 · Pitroda · 2005 [cited by applicant]
US 20050250538A1 · Narasimhan et al. · 2005 [cited by applicant]
US 20060003780A1 · Mamdani et al. · 2006 [cited by applicant]
US 20060133651A1 · Polcha et al. · 2006 [cited by applicant]
US 20060235795A1 · Johnson et al. · 2006 [cited by applicant]
US 20060255128A1 · Johnson et al. · 2006 [cited by applicant]
US 20060266825A1 · Do · 2006 [cited by examiner]
US 20060287965A1 · Bajan · 2006 [cited by applicant]
US 20070005514A1 · Fieschi et al. · 2007 [cited by applicant]
US 20070092114A1 · Ritter et al. · 2007 [cited by applicant]
US 20070175978A1 · Stambaugh · 2007 [cited by applicant]
US 20070198432A1 · Pitroda et al. · 2007 [cited by applicant]
US 20070203715A1 · Kane · 2007 [cited by applicant]
US 20070203850A1 · Singh et al. · 2007 [cited by applicant]
US 20070255620A1 · Tumminaro et al. · 2007 [cited by applicant]
US 20070288392A1 · Peng et al. · 2007 [cited by applicant]
US 20080010215A1 · Rackley et al. · 2008 [cited by applicant]
US 20080082452A1 · Wankmueller et al. · 2008 [cited by applicant]
US 20080091616A1 · Helwin et al. · 2008 [cited by applicant]
US 20080114659A1 · Pitroda · 2008 [cited by applicant]
US 20080114697A1 · Black et al. · 2008 [cited by applicant]
US 20080154772A1 · Carlson · 2008 [cited by applicant]
US 20080155268A1 · Jazayeri et al. · 2008 [cited by applicant]
US 20080167017A1 · Wentker et al. · 2008 [cited by applicant]
US 20080177826A1 · Pitroda · 2008 [cited by applicant]
US 20080207203A1 · Arthur et al. · 2008 [cited by applicant]
US 20080249938A1 · Drake-Stoker · 2008 [cited by applicant]
US 20090094126A1 · Killian et al. · 2009 [cited by applicant]
US 20090132813A1 · Schibuk · 2009 [cited by applicant]
US 20090234760A1 · Walter · 2009 [cited by applicant]
US 20090254440A1 · Pharris · 2009 [cited by applicant]
US 20100274720A1 · Carlson et al. · 2010 [cited by applicant]
US 20110142234A1 · Rogers · 2011 [cited by examiner]
US 20110202466A1 · Carter · 2011 [cited by applicant]
US 20120130904A1 · Weiss · 2012 [cited by applicant]
US 20120203698A1 · Duncan et al. · 2012 [cited by applicant]
US 20130265136A1 · Wadia · 2013 [cited by applicant]
US 20140025580A1 · Bacastow · 2014 [cited by applicant]
US 20140046845A1 · Dogin et al. · 2014 [cited by applicant]
US 20140358789A1 · Boding et al. · 2014 [cited by applicant]
US 20140372321A1 · Khan · 2014 [cited by applicant]
CA 2460886A1 · 2003 [cited by applicant]
EP 1544816A1 · 2005 [cited by applicant]
FR 2819127A1 · 2002 [cited by applicant]
WO 0152202A1 · 2001 [cited by applicant]
WO 0201516A2 · 2002 [cited by applicant]
WO 0215165A1 · 2002 [cited by applicant]
WO 0327798A2 · 2003 [cited by applicant]
WO 0332122A2 · 2003 [cited by applicant]
WO 2007005005A1 · 2007 [cited by applicant]
WO 2007050005A1 · 2007 [cited by applicant]
WO WO2013082190A1 · 2013 [cited by examiner]
Gamble, Richard H., PINning Hopes on e-Commerce Debit, Transaction Trends, Nov. 2010, pp. 18-20. [cited by applicant]
Motorola's Enterprise Mobility Solutions Enable Retailers to Give Consumers Better Shopping Experience. PR Newswire. Jan. 12, 2009. [cited by applicant]