IP Library Granted Patent US 12,437,041
Granted Patent B2
US 12,437,041 · App. 18/609,752 · Granted Oct 7, 2025

Method and system for online third-party authentication of identity attributes

Inventors: Blake Hall (Washington, DC); Matthew Thompson (Chandler, AZ); Tony Huynh (Gainesville, VA); William Kern (Leesburg, VA)
Assignee: ID.me, LLC
G06F21/31H04L63/0884H04L63/105
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,437,041
App. No.
18/609,752
Granted
Oct 7, 2025
Kind
B2
Abstract

A method for online authentication includes receiving membership authenticating information specific to members of a particular affiliation from the members and from one or more remote databases. The information is aggregated and stored in an aggregate database. An individual is authenticated, via a widget at least one of integrated into, and accessible by, at least one of a mobile application and a website of a provider of at least one of a particular program and a particular service, as a member of the particular affiliation based on a comparison of authenticating indicia provided online by the individual and the information stored in at least one of the aggregate database and the remote databases. Digital credentials are provided to the individual for access to the at least one of the particular program and the particular service when the individual is authenticated. The credentials include a unique identifier, a login and password.

Claims (38)

1. A method for online authentication, comprising:

providing a digital credential to a device of a user, authenticated as a member of a particular affiliation, for access to at least one of a particular program and a particular service of a first relying party of a network of relying parties, and for access, to at least one of a particular program and a particular service of a second relying party of the network of relying parties, wherein the digital credential is usable with respect to any and all participating parties in the network of relying parties from a single session during which the digital credential is received,

wherein the user was authenticated as a member of the particular affiliation based on one or more of user authenticating information for authenticating an identity of the user, membership authenticating information specific to members of the particular affiliation, or device authenticating information regarding the device associated with the user.

2. The method of claim 1 ,

wherein the digital credential includes a credential level, wherein the credential level is associated with a permitted value and/or a permitted risk for a specific transaction by the user, and

wherein the method further comprises:

receiving additional information, including one or more of additional user authenticating information, additional membership authenticating information, or additional device authenticating information, from the user; and

modifying, based on a verification of the received additional information, the credential level of the digital credential of the user to allow a requested transaction by the user with a higher value and/or risk.

3. The method of claim 1 , further comprising:

authenticating the first relying party associated with the at least one of a particular program and the particular service via at least one widget that is at least one of integrated into, and accessible by, at least one of a mobile application and a website of the first relying party, wherein the at least one widget comprises at least one of a desktop widget, a mobile widget, a web widget, a television set widget, and a hybrid widget.

4. The method of claim 1 , wherein the user was further authenticated using a white list and a black list, the white list specifying users to be provided further consideration by the authenticating, and the black list specifying users to be denied further consideration by the authenticating.

5. The method of claim 4 , wherein the black list comprises identities of previously denied users and users known to have perpetrated a previous fraud.

6. The method of claim 4 , wherein the black list comprises identities of users who have been convicted of a particular list of crimes.

7. The method of claim 4 , wherein a user is denied the digital credential when the user is named on the black list, irrespective of whether the user is the member of the particular affiliation, based on a merchant provided preference.

8. The method of claim 4 , wherein the white list comprises known members of the affiliation that are in good standing based on certain criteria.

9. The method of claim 3 , further comprising allowing monetary transactions to be performed through the at least one widget and between the user and any one of the network of two or more relying parties providing the at least one of the particular program and the particular service using the digital credential.

10. A system for online authentication, the system comprising:

a data storage device that stores instructions for online authentication; and

one or more processors configured to execute the instructions to perform a method including:

providing a digital credential to a device of a user, authenticated as a member of a particular affiliation, for access to at least one of a particular program and a particular service of a first relying party of a network of relying parties, and for access, to at least one of a particular program and a particular service of a second relying party of the network of relying parties, wherein the digital credential is usable with respect to any and all participating parties in the network of relying parties from a single session during which the digital credential is received,

wherein the user was authenticated as a member of the particular affiliation based on one or more of user authenticating information for authenticating an identity of the user, membership authenticating information specific to members of the particular affiliation, or device authenticating information regarding the device associated with the user.

11. The system of claim 10 , wherein the user was further authenticated as a member of the particular affiliation by comparing the user authenticating information against a list of pre-approved authenticating indicia.

12. The system of claim 10 ,

wherein the digital credential includes a credential level, wherein the credential level is associated with a permitted value and/or a permitted risk for a specific transaction by the user, and

wherein the method further comprises:

receiving additional information, including one or more of additional user authenticating information, additional membership authenticating information, or additional device authenticating information, from the user; and

modifying, based on a verification of the received additional information, the credential level of the digital credential of the user to allow a requested transaction by the user with a higher value and/or risk.

13. The system of claim 10 , wherein the method further includes:

authenticating the first relying party associated with the at least one of a particular program and the particular service via at least one widget that is at least one of integrated into, and accessible by, at least one of a mobile application and a website of the first relying party, wherein the at least one widget comprises at least one of a desktop widget, a mobile widget, a web widget, a television set widget, and a hybrid widget.

14. The system of claim 10 , wherein the user was further authenticated as a member of the particular affiliation by authenticating the user using a white list and a black list, the white list specifying users to be further considered for authentication, and the black list specifying users to be denied further consideration for authentication.

15. The system of claim 14 , wherein the black list comprises identities of previously denied users and users known to have perpetrated a previous fraud.

16. The system of claim 14 , wherein the black list comprise identities of users who have been convicted of a particular list of crimes.

17. The system of claim 14 , wherein a user is denied the digital credential when the user is named on the black list, irrespective of whether the user is the member of the particular affiliation, based on a merchant provided preference.

18. The system of claim 14 , wherein the white list comprises known members of the affiliation that are in good standing based on certain criteria.

19. The system of claim 13 , wherein the at least one widget allows monetary transactions to be performed between the user and any one of the network of two or more relying parties providing the at least one of the particular program and the particular service using the digital credential.

20. A non-transitory computer-readable storage medium having computer-executable program code embodied therein that causes a computer system to perform a method comprising:

providing a digital credential to a device of a user, authenticated as a member of a particular affiliation, for access to at least one of a particular program and a particular service of a first relying party of a network of relying parties, and for access, to at least one of a particular program and a particular service of a second relying party of the network of relying parties, wherein the digital credential is usable with respect to any and all participating parties in the network of relying parties from a single session during which the digital credential is received,

wherein the user was authenticated as a member of the particular affiliation based on one or more of user authenticating information for authenticating an identity of the user, membership authenticating information specific to members of the particular affiliation, or device authenticating information regarding the device associated with the user.

Assignments (3)
CHANGE OF NAME Recorded May 9, 2025
From: ID.ME, INC.
To: ID.ME, LLC
Reel/Frame 071248/0794 →
PATENT SECURITY AGREEMENT Recorded Jan 22, 2025
From: ID.ME, INC.
To: ARES CAPITAL CORPORATION, AS ADMINISTRATIVE AGENT
Reel/Frame 069989/0493 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 24, 2024
From: HALL, BLAKE; THOMPSON, MATTHEW; HUYNH, TONY; KERN, WILLIAM
To: ID.ME, INC.
Reel/Frame 067213/0394 →
Continuity (6)
Continuation 18184442 · Mar 15, 2023
Continuation 17195710 · Mar 9, 2021
Continuation 16776924 · Jan 30, 2020
Continuation 13799997 · Mar 13, 2013
Provisional Application 61610992 · Mar 14, 2012
Related Publication 20240265077A1 · Aug 8, 2024
References Cited (18)
US 7412420B2 · Holdsworth · 2008 [cited by applicant]
US 7850080B2 · Guillot et al. · 2010 [cited by applicant]
US 8136148B1 · Chayanam et al. · 2012 [cited by applicant]
US 8510820B2 · Oberheide et al. · 2013 [cited by applicant]
US 8713672B2 · Radhakrishnan · 2014 [cited by examiner]
US 20030163686A1 · Ward et al. · 2003 [cited by applicant]
US 20030212790A1 · Thambidurai et al. · 2003 [cited by applicant]
US 20040187036A1 · Nakamura · 2004 [cited by examiner]
US 20060031494A1 · Marcus · 2006 [cited by examiner]
US 20090265753A1 · Anderson et al. · 2009 [cited by applicant]
US 20090307744A1 · Nanda · 2009 [cited by examiner]
US 20110154481A1 · Kilgore et al. · 2011 [cited by applicant]
US 20120054095A1 · Lesandro et al. · 2012 [cited by applicant]
US 20120054826A1 · Asim · 2012 [cited by examiner]
US 20130047266A1 · Radhakrishnan · 2013 [cited by examiner]
http://www.entrust.com/piv/, Mar. 2013, (1 page). [cited by applicant]
International Preliminary Report on Patentability issued in corresponding International Application No. PCT/US2013/030834, mailed Sep. 25, 2014. [cited by applicant]
Jackson, W., “Illinois Crosses the Bridge,” Government Computer News, Aug. 2007 (5 pages). [cited by applicant]