IP Library Granted Patent US 12,596,842
Granted Patent B2
US 12,596,842 · App. 18/588,321 · Granted Apr 7, 2026

Data anonymization for service subscriber's privacy

Inventors: Jiwan L. Ninglekhu (Royersford, PA); Michael F. Starsinic (Newtown, PA); Dale N. Seed (Allentown, PA); Catalina Mihaela Mladin (Hatboro, PA); William Robert Flynn, IV (Schwenksville, PA); Zhuo Chen (Claymont, DE); Quang Ly (North Wales, PA); Lu Liu (Conshohocken, PA)
Assignee: InterDigital Patent Holdings, Inc.
G06F21/6254G06F21/6263G16Y10/75H04W12/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,596,842
App. No.
18/588,321
Granted
Apr 7, 2026
Kind
B2
Abstract

An IoT/M2M service layer may be provided with the capability to protect user privacy. This functionality may allow the IoT/M2M service layer to anonymize user data, particularly when user data is shared with third party consumers. A privacy policy service may enable the IoT service layer system to generate anonymization (e.g., privacy) policies based on inputs such as legal obligations, subscriber privacy preferences, and an authorization level of the data consumer. Data anonymization policies may be output from the privacy policy service and may be sent to a data anonymization service, where raw data may be anonymized based on the one or more data anonymization policies. The output from the data anonymization service function may be a privatized (e.g., anonymized) version of data that may prevent the data consumer from discovering one or more identifying characteristics of a user.

Claims (27)

1 . A method comprising:

receiving, by a service supporting service capabilities through a set of Application Programming Interfaces (APIs) and from an application service provider, a request to access data;

determining, by the service and based on the request to access the data, one or more privacy policies to be applied to the data for the application service provider, wherein the one or more privacy policies are generated by the service based on a subscriber privacy preference preconfigured by the service based on a request from a subscriber;

generating, by the service and based on the determined one or more privacy policies, an anonymized data set that prevents the application service provider from determining one or more user-identifying characteristics of the data; and

sending, to the application service provider, the anonymized data set.

2 . The method of claim 1 , wherein the subscriber privacy preference is preconfigured by the service upon obtaining subscriber's consent to the service's privacy policy.

3 . The method of claim 1 , wherein generating the anonymized data set comprises one or more of removing at least a portion of the data or modifying at least a portion of the data.

4 . The method of claim 3 , wherein modifying at least a portion of the data comprises one or more of abbreviating at least a portion of the data, substituting at least a portion of the data, shuffling at least a portion of the data, or encrypting at least a portion of the data.

5 . The method of claim 1 , wherein the one or more privacy policies comprise one or more user policies associated with a particular user, one or more application service provider policies, or one or more legal policies.

6 . The method of claim 1 , wherein the request to access the data comprises one or more characteristics associated with the application service provider.

7 . The method of claim 6 , further comprising selecting, based at least on the one or more characteristics associated with the application service provider, one or more of a plurality of privacy policies.

8 . The method of claim 1 , wherein sending the anonymized data set comprises sending, to the application service provider, at least one of an indication that the data has been anonymized or an indication of the anonymization techniques used to anonymize the data.

9 . An apparatus for a service of a communications network, wherein the service supports service capabilities through a set of Application Programming Interfaces (APIs), the apparatus comprising circuitry configured to:

receive, from an application service provider, a request to access data;

determine, based on the request to access the data, one or more privacy policies to be applied to the data for the application service provider, wherein the one or more privacy policies are generated by the service based on a subscriber privacy preference preconfigured by the service based on a request from a subscriber;

generate, based on the determined one or more privacy policies, an anonymized data set that prevents the application service provider from determining one or more user-identifying characteristics of the data; and

send, to the application service provider, the anonymized data set.

10 . The apparatus of claim 9 , wherein the subscriber privacy preference is preconfigured by the service upon obtaining subscriber's consent to the service's privacy policy.

11 . The apparatus of claim 10 , wherein the circuitry is configured to generate the anonymized data set by one or more of removing at least a portion of the data or modifying at least a portion of the data.

12 . The apparatus of claim 11 , wherein the circuitry is configured to modify at least a portion of the data by one or more of abbreviating at least a portion of the data, substituting at least a portion of the data, shuffling at least a portion of the data, or encrypting at least a portion of the data.

13 . The apparatus of claim 9 , wherein the one or more privacy policies comprise one or more user policies associated with a particular user, one or more application service provider policies, or one or more legal policies.

14 . The apparatus of claim 9 , wherein the request to access the data comprises one or more characteristics associated with the application service provider.

15 . The apparatus of claim 14 , wherein the circuitry is further configured to perform operations comprising selecting, based at least on the one or more characteristics associated with the application service provider, one or more of a plurality of privacy policies.

16 . The apparatus of claim 9 , wherein the circuitry is configured to send the anonymized data set by sending, to the application service provider, at least one of an indication that the data has been anonymized or an indication of the anonymization techniques used to anonymize the data.

17 . The method of claim 1 , wherein the service is provided as a middleware service for IoT services.

18 . The method of claim 17 , wherein the middleware service is a service layer located on top of network protocol stacks.

19 . The method of claim 18 wherein the service layer is defined according to ETSI/oneM2M standards.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 1, 2025
From: CONVIDA WIRELESS, LLC
To: INTERDIGITAL PATENT HOLDINGS, INC.
Reel/Frame 071773/0735 →
Continuity (3)
Continuation 17059830
Provisional Application 62681709 · Jun 7, 2018
Related Publication 20240273237A1 · Aug 15, 2024
References Cited (41)
US 11665188B1 · Vashisht · 2023 [cited by examiner]
US 20080141337A1 · Yeung et al. · 2008 [cited by applicant]
US 20110271352A1 · Kalogridis et al. · 2011 [cited by applicant]
US 20120084831A1 · Hu · 2012 [cited by examiner]
US 20120197488A1 · Lee · 2012 [cited by examiner]
US 20130017827A1 · Muhanna · 2013 [cited by examiner]
US 20130217332A1 · Altman et al. · 2013 [cited by applicant]
US 20130225122A1 · Kahn · 2013 [cited by examiner]
US 20130332600A1 · Amaya Calvo · 2013 [cited by examiner]
US 20140189001A1 · Tyagi · 2014 [cited by examiner]
US 20140325592A1 · Unagami · 2014 [cited by examiner]
US 20150007249A1 · Bezzi et al. · 2015 [cited by applicant]
US 20150186674A1 · Vyas et al. · 2015 [cited by applicant]
US 20150373124A1 · Bhalla · 2015 [cited by examiner]
US 20160036628A1 · Gupta · 2016 [cited by examiner]
US 20160148017A1 · Gossler et al. · 2016 [cited by applicant]
US 20160323247A1 · Stein · 2016 [cited by examiner]
US 20170063794A1 · Jain · 2017 [cited by examiner]
US 20190182215A1 · Dong et al. · 2019 [cited by applicant]
US 20210256159A1 · Ninglekhu et al. · 2021 [cited by applicant]
US 20230120160A1 · Oh · 2023 [cited by examiner]
CN 101091369A · 2007 [cited by applicant]
CN 103596172A · 2014 [cited by applicant]
CN 105531980A · 2016 [cited by applicant]
CN 105874768A · 2016 [cited by applicant]
CN 106936765A · 2017 [cited by applicant]
CN 116055050A · 2023 [cited by examiner]
EP 3023896B1 · 2019 [cited by examiner]
GB 2473083A · 2011 [cited by applicant]
JP 2017503278A · 2017 [cited by examiner]
JP 2017174458A · 2017 [cited by applicant]
Grusteser et al., “Anonymous Usage of Location-Based Services Through Spatial and Temporal Cloaking”, MobiSys '03: Proceedings of the 1st international conference on Mobile systems, applications and services, Published:… [cited by examiner]
Efthymiou et al., “Smart Grid Privacy via Anonymization of Smart Metering Data,” 2010 First IEEE International Conference on Smart Grid Communications, Gaithersburg, MD, USA,, pp. 238-243 (Year: 2010). [cited by examiner]
“OneM2M; Functional Architecture (oneM2M TS-0001 version 2.10.0 Release 2)”, ETSI Technical Specification, European Telecommunications Standards Institute (ETSI), vol. oneM2M, No. V2.10.0 Oct. 5, 2016. [cited by applicant]
Granzow et al., “Security Solutions for oneM2M”, TS-0003-SECURITY SOLUTIONS-V3_7 1.ZIP, ONEM2M vol. Work Programme, Work Progr, No. version= v3.7.1 Apr. 24, 2018, pp. 1-265. [cited by applicant]
Takabi et al., “Security and Privacy Challenges in Cloud Computing Environments”, IEEE Security & Privacy, vol. 8 Issue: 6 (Year: 2010). [cited by applicant]
3rd Generation Partnership Project (3GPP), “System Architecture for the 5G System; Stage 2”, Release 15, Technical Specification Group Services and System Aspects, 3GPP TS 23.501 V1.2.0, Jul. 2017, 166 pages. [cited by applicant]
NGMN, “Description of Network Slicing Concept”, NGMN Alliance, Version 1.0, Jan. 13, 2016, 7 pages. [cited by applicant]
Open Connectivity Foundation, “OIC Core Specification V1.1.0, Part 1”, 2016, 151 pages. [cited by applicant]
Open Mobile Alliance (oma), “Lightweight Machine to Machine Technical Specification” Approved version 1.0, Feb. 8, 2017, 138 pages. [cited by applicant]
ETSI, “Machine-to-Machine communications (M2M); Functional Architecture”, ETSI TS 102 690 V2.0.13, May 2013, 328 pages. [cited by applicant]