IP Library Granted Patent US 12,505,433
Granted Patent B2
US 12,505,433 · App. 18/513,923 · Granted Dec 23, 2025

Tokenizing sensitive data

Inventors: Bryan T. Bailey (Florence, KY); John Romer (Wilmington, OH); Chris Doyle (Alexandria, KY); Jeremy Gifford (Mason, OH); Kevin Zibart (Pewee Valley, KY)
Assignee: Worldpay, LLC
G06Q20/3829G06F21/60G06Q20/12G06Q20/38215G06Q20/3823H04L9/0891H04L9/3234H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,505,433
App. No.
18/513,923
Granted
Dec 23, 2025
Kind
B2
Abstract

Included are embodiments for tokenizing sensitive data. Some embodiments of systems and/or methods are configured to receive sensitive data from a vendor, determine a token key for the vendor, and utilize a proprietary algorithm, based on the token key to generate a vendor-specific token that is associated with the sensitive data. Some embodiments include creating a token identifier that comprises data related to the token key sending the vendor-specific token and the token identifier to the vendor.

Claims (67)

1 . A method for tokenization of sensitive data, comprising:

receiving, by a tokenization computing device, sensitive data from a vendor computing device associated with a vendor;

generating, by the tokenization computing device and using a token key of the vendor, a unique vendor-specific token associated with the sensitive data;

receiving, by the tokenization computing device, a request to change the unique vendor-specific token, wherein the request includes the unique vendor-specific token and a token identifier linked to the unique vendor-specific token in a database associated with the tokenization computing device;

retrieving, by the tokenization computing device and using the token identifier, the sensitive data from the database;

generating, by the tokenization computing device and using a new token key, a new token for associating with the sensitive data;

in response to generating the new token, updating, by the tokenization computing device, the token identifier for associating with the new token; and

sending, by the tokenization computing device, the updated token identifier and the new token to the vendor computing device, wherein a tokenization of the new token is validated using the updated token identifier.

2 . The method of claim 1 , further comprising:

receiving, by the tokenization computing device, a request to rotate the new token;

accessing, by the tokenization computing device, a table to determine whether the new token is associated with a rollup identifier;

in response to determining that the new token is associated with the rollup identifier, determining, by the tokenization computing device, a new token key that is utilized for entities in a predetermined group;

updating, by the tokenization computing device, the new token according to the new token key; and

sending, by the tokenization computing device, the updated new token and the token identifier to the vendor.

3 . The method of claim 1 , further comprising generating, by the tokenization computing device, a rollup identifier associated with the unique vendor-specific token, wherein the rollup identifier provides a pointer to the token key, wherein the token key is common to a plurality of entities.

4 . The method of claim 1 , further comprising:

receiving, by the tokenization computing device, an indication of joining of the vendor with a second entity, wherein the indication includes a request to associate the new token with another token from the second entity;

updating, by the tokenization computing device, the token identifier to generate a rollup identifier that points to a common token key for the vendor and the second entity; and

sending, by the tokenization computing device, the updated token and the token identifier to the vendor.

5 . The method of claim 1 , wherein the token identifier includes a sanity value.

6 . A system for tokenization of sensitive data, comprising:

a tokenization computing device comprising a processor; and

a memory component that is coupled to the processor and stores logic that when executed by the processor, causes the system to perform at least the following:

receive, by the tokenization computing device, sensitive data from a vendor computing device associated with a vendor;

generate, by the tokenization computing device and using a token key of the vendor, a unique vendor-specific token associated with the sensitive data;

receive, by the tokenization computing device, a request to change the unique vendor-specific token, wherein the request includes the unique vendor-specific token and a token identifier linked to the unique vendor-specific token in a database associated with the tokenization computing device;

retrieve, by the tokenization computing device and using the token identifier, the sensitive data from the database;

generate, by the tokenization computing device and using a new token key, a new token for associating with the sensitive data;

in response to generating the new token, update, by the tokenization computing device, the token identifier for associating with the new token; and

send, by the tokenization computing device, the updated token identifier and the new token to the vendor computing device, wherein a tokenization of the new token is validated using the updated token identifier.

7 . The system of claim 6 , wherein the sensitive data includes at least one of a credit card number, a debit card number, a prepaid card number, a social security number, a bank account number, a telephone number, and an address.

8 . The system of claim 6 , wherein the logic further causes the system to store the new token and the token identifier.

9 . The system of claim 6 , wherein the logic further causes the system to generate a rollup identifier associated with the unique vendor-specific token, wherein the rollup identifier provides a pointer to the token key, wherein the token key is common to a plurality of entities.

10 . The system of claim 6 , wherein the logic further causes the system to perform at least the following:

receive sensitive data from the vendor computing device;

determine the token key for the vendor;

link the vendor-specific token and the token identifier in a database;

generate the vendor-specific token; and

create the token identifier that comprises data related to the token key.

11 . The system of claim 6 , wherein the logic further causes the system to perform at least the following:

receive a request to rotate the new token;

access a table to determine whether the new token is associated with a rollup identifier;

in response to determining that the new token is associated with a rollup identifier, determine a new token key that is utilized for entities in a predetermined group;

update the new token according to the new token key; and

send the updated new token and the token identifier to the vendor computing device.

12 . The system of claim 6 , wherein the token identifier includes a sanity value.

13 . A non-transitory computer-readable medium for tokenization of sensitive data that stores a program that when executed by a tokenization computing device, causes the tokenization computing device to perform operations including:

receive, by the tokenization computing device, sensitive data from a vendor computing device associated with a vendor;

generate, by the tokenization computing device and using a token key of the vendor, a unique vendor-specific token associated with the sensitive data;

receive, by the tokenization computing device, a request to change the unique vendor-specific token, wherein the request includes the unique vendor-specific token and a token identifier linked to the unique vendor-specific token in a database associated with the tokenization computing device;

retrieve, by the tokenization computing device and using the token identifier, the sensitive data from the database;

generate, by the tokenization computing device and using a new token key, a new token for associating with the sensitive data;

in response to generating the new token, update, by the tokenization computing device, the token identifier for associating with the new token; and

send, by the tokenization computing device, the updated token identifier and the new token to the vendor computing device, wherein a tokenization of the new token is validated using the updated token identifier.

14 . The non-transitory computer-readable medium of claim 13 , wherein the sensitive data includes at least one of a credit card number, a debit card number, a prepaid card number, a bank account number, a social security number, a telephone number, and an address.

15 . The non-transitory computer-readable medium of claim 13 , wherein the program further causes the computing device to perform at least the following:

receive a request to rotate the token;

access a table to determine whether the token is associated with a rollup identifier;

in response to determining that the token is associated with a rollup identifier, determine a new token key that is utilized for entities in a predetermined group; and

update the token according to the new token key.

16 . The non-transitory computer-readable medium of claim 13 , wherein the program further causes the tokenization computing device to store the new token and the token identifier.

17 . The non-transitory computer-readable medium of claim 13 , wherein the program further causes the tokenization computing device to generate a rollup identifier associated with the unique vendor-specific token, wherein the rollup identifier provides a pointer to the token key, wherein the token key is common to a plurality of entities.

18 . The non-transitory computer-readable medium of claim 13 , wherein the program further causes the computing device to perform at least the following:

receive an indication of joining of the vendor with a second entity, wherein the indication includes a request to associate the token with another token from the second entity;

update the token identifier to generate a rollup identifier that points to a common token key to the vendor and the second entity; and

send the updated token and the token identifier to the vendor computing device.

19 . The non-transitory computer-readable medium of claim 13 , wherein the token identifier includes a sanity value.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 21, 2023
From: BAILEY, BRYAN T.; ROMER, JOHN; DOYLE, CHRIS; GIFFORD, JEREMY; ZIBART, KEVIN
To: FIFTH THIRD PROCESSING SOLUTIONS, LLC
Reel/Frame 065634/0839 →
CHANGE OF NAME Recorded Nov 21, 2023
From: FIFTH THIRD PROCESSING SOLUTIONS, LLC
To: VANTIV, LLC
Reel/Frame 065657/0831 →
CHANGE OF NAME Recorded Nov 21, 2023
From: VANTIV, LLC
To: WORLDPAY, LLC
Reel/Frame 065657/0834 →
Continuity (7)
Continuation 17491097 · Sep 30, 2021
Continuation 16657578 · Oct 18, 2019
Continuation 16057450 · Aug 7, 2018
Continuation 15696626 · Sep 6, 2017
Continuation 14563076 · Dec 8, 2014
Continuation 13117599 · May 27, 2011
Related Publication 20240086908A1 · Mar 14, 2024
References Cited (88)
US 5625694A · Lee et al. · 1997 [cited by applicant]
US 5982896A · Cordery et al. · 1999 [cited by applicant]
US 6163811A · Porter · 2000 [cited by applicant]
US 6418420B1 · DiGiorgio · 2002 [cited by examiner]
US 6560706B1 · Carbajal et al. · 2003 [cited by applicant]
US 7454356B2 · Fields · 2008 [cited by examiner]
US 7555460B1 · Barkan · 2009 [cited by applicant]
US 7827101B2 · Mascavage, III · 2010 [cited by applicant]
US 8458487B1 · Palgon et al. · 2013 [cited by applicant]
US 8601553B1 · Griffin et al. · 2013 [cited by applicant]
US 8819769B1 · Dijk et al. · 2014 [cited by applicant]
US 8935802B1 · Mattsson et al. · 2015 [cited by applicant]
US 8978152B1 · Rozenberg et al. · 2015 [cited by applicant]
US 9313024B1 · Stute · 2016 [cited by applicant]
US 9354629B2 · Balentine et al. · 2016 [cited by applicant]
US 9425958B2 · Vennelakanti et al. · 2016 [cited by applicant]
US 9704190B2 · Custer · 2017 [cited by applicant]
US 9824471B2 · Lei et al. · 2017 [cited by applicant]
US 20020002538A1 · Ling · 2002 [cited by applicant]
US 20020035540A1 · Yamaguchi · 2002 [cited by applicant]
US 20020152126A1 · Lieu et al. · 2002 [cited by applicant]
US 20020184508A1 · Bialick · 2002 [cited by examiner]
US 20020198848A1 · Michener · 2002 [cited by applicant]
US 20030115140A1 · Pal · 2003 [cited by applicant]
US 20040081120A1 · Chaskar · 2004 [cited by applicant]
US 20040123159A1 · Kerstens et al. · 2004 [cited by applicant]
US 20040128257A1 · Okamoto et al. · 2004 [cited by applicant]
US 20040153451A1 · Phillips et al. · 2004 [cited by applicant]
US 20050071809A1 · Pulley · 2005 [cited by applicant]
US 20050108627A1 · Mireku · 2005 [cited by applicant]
US 20050138386A1 · Saint · 2005 [cited by applicant]
US 20050154913A1 · Barriga et al. · 2005 [cited by applicant]
US 20050277420A1 · Shin et al. · 2005 [cited by applicant]
US 20060015358A1 · Chua · 2006 [cited by applicant]
US 20060031085A1 · Postel et al. · 2006 [cited by applicant]
US 20060277112A1 · Lieu et al. · 2006 [cited by applicant]
US 20060287004A1 · Fuqua · 2006 [cited by applicant]
US 20070118393A1 · Rosen et al. · 2007 [cited by applicant]
US 20070130194A1 · Kaiser · 2007 [cited by applicant]
US 20080028470A1 · Remington et al. · 2008 [cited by applicant]
US 20080115201A1 · Sturms et al. · 2008 [cited by applicant]
US 20080215489A1 · Lawson et al. · 2008 [cited by applicant]
US 20080243702A1 · Hart · 2008 [cited by examiner]
US 20080244721A1 · Barrus et al. · 2008 [cited by applicant]
US 20080307229A1 · Andersson et al. · 2008 [cited by applicant]
US 20080313088A1 · Cahn · 2008 [cited by applicant]
US 20090076967A1 · Fields · 2009 [cited by examiner]
US 20090106150A1 · Pelegero et al. · 2009 [cited by applicant]
US 20090193511A1 · Noe et al. · 2009 [cited by applicant]
US 20090271847A1 · Karjala et al. · 2009 [cited by applicant]
US 20100145860A1 · Pelegero · 2010 [cited by applicant]
US 20100190472A1 · Gorthi et al. · 2010 [cited by applicant]
US 20100257612A1 · McGuire et al. · 2010 [cited by applicant]
US 20100325297A1 · Romney · 2010 [cited by examiner]
US 20110075652A1 · Ogura · 2011 [cited by applicant]
US 20110082780A1 · Nagaram et al. · 2011 [cited by applicant]
US 20110103586A1 · Nobre · 2011 [cited by applicant]
US 20110126002A1 · Fu et al. · 2011 [cited by applicant]
US 20110138453A1 · Verma et al. · 2011 [cited by applicant]
US 20110154466A1 · Harper et al. · 2011 [cited by applicant]
US 20110166992A1 · Dessert et al. · 2011 [cited by applicant]
US 20110173684A1 · Hurry et al. · 2011 [cited by applicant]
US 20110178863A1 · Daigle · 2011 [cited by applicant]
US 20110191829A1 · Fischer · 2011 [cited by examiner]
US 20110307710A1 · McGuire et al. · 2011 [cited by applicant]
US 20110320344A1 · Faith et al. · 2011 [cited by applicant]
US 20120060210A1 · Baker et al. · 2012 [cited by applicant]
US 20120072762A1 · Atchison et al. · 2012 [cited by applicant]
US 20120095822A1 · Chiocchi · 2012 [cited by applicant]
US 20120113985A1 · Lee et al. · 2012 [cited by applicant]
US 20120117561A1 · Lee et al. · 2012 [cited by applicant]
US 20120167098A1 · Lee et al. · 2012 [cited by applicant]
US 20120216269A1 · Yeung et al. · 2012 [cited by applicant]
US 20120284506A1 · Kravitz et al. · 2012 [cited by applicant]
US 20120323654A1 · Writer · 2012 [cited by applicant]
US 20130036048A1 · Campos et al. · 2013 [cited by applicant]
US 20130086141A1 · Saldhana · 2013 [cited by applicant]
US 20130124755A1 · Haywood et al. · 2013 [cited by applicant]
US 20130160099A1 · Fitzpatrick, III · 2013 [cited by applicant]
US 20130212007A1 · Mattsson et al. · 2013 [cited by applicant]
US 20140143089A1 · Campos et al. · 2014 [cited by applicant]
US 20140195425A1 · Campos et al. · 2014 [cited by applicant]
US 20140310811A1 · Hentunen · 2014 [cited by applicant]
US 20150172287A1 · Ortiz et al. · 2015 [cited by applicant]
US 20150207787A1 · Cannell · 2015 [cited by examiner]
US 20160180334A1 · Kassemi et al. · 2016 [cited by applicant]
US 20160323110A1 · Campagna et al. · 2016 [cited by applicant]
US 20230196356A1 · Ortiz et al. · 2023 [cited by applicant]