IP Library › Granted Patent US 12,299,170
Granted Patent B2
US 12,299,170 · App. 18/614,902 · Granted May 13, 2025

Sensitive data management system

Inventors: Gerardo Fang (El Paso, TX); Nicholas Hermann (Rockledge, FL)
Assignee: Capital One Services, LLC
G06F21/6245H04W12/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,299,170
App. No.
18/614,902
Granted
May 13, 2025
Kind
B2
Abstract

Disclosed herein are various embodiments for a sensitive data management system. An embodiment operates by receiving a web form from a transaction account of a web application associated with a first user, the form indicating a request for sensitive information of a second user. A request for an authorization to release the sensitive information to the web application. The authorization from the second user to release the sensitive information to the transaction account associated with the first user is received. The web form is populated with the sensitive information of the second user responsive to receiving the authorization from the second user to release the sensitive information, and the populated form including the sensitive information of the second user is provided to the web application.

Claims (53)

1. A computer-implemented method, comprising:

receiving, from a first user, a request for sensitive information of a second user, wherein the sensitive information is stored by a data management system;

identifying, by one or more processors, contact information for the second user from the data management system;

providing, by the one or more processors, an electronic request for an authorization to the second user based on the contact information, wherein the electronic request for the authorization requests permission to release the sensitive information, wherein the providing the electronic request for the authorization is performed subsequent to receiving the request for the sensitive information;

receiving, responsive to the electronic request for the authorization, an authorization from the second user to release the sensitive information; and

populating a web form, associated with the request for the sensitive information, with the sensitive information responsive to receiving the authorization from the second user to release the sensitive information.

2. The method of claim 1 , wherein the sensitive information comprises a social security number and birthdate of the second user.

3. The method of claim 1 , wherein the authorization is associated with releasing the sensitive information as part of a loan prequalification transaction.

4. The method of claim 3 , wherein the populating comprises:

identifying a format for the sensitive information from the web form;

reformatting at least a portion of the sensitive information in accordance with the format associated with the web form; and

populating the web form with the reformatted portion of the sensitive information.

5. The method of claim 1 , further comprising:

identifying non-sensitive information associated with the second user associated with the web form; and

populating the web form with the non-sensitive information prior to receiving the authorization to release the sensitive information.

6. The method of claim 1 , wherein the providing the electronic request for the authorization comprises:

transmitting the electronic request for the authorization to a user device identified by the contact information and associated with the second user.

7. The method of claim 6 , wherein the providing the electronic request for the authorization comprises:

determining that the user device has an app associated with sensitive information installed on the user device, wherein the sensitive information installed on the user device was received through the app; and

transmitting the electronic request for the authorization to the user device via the app.

8. The method of claim 1 , wherein the authorization to release the sensitive information comprises a code associated with the second user.

9. The method of claim 8 , wherein the code comprises a portion of a social security number of the second user.

10. A system comprising:

a memory; and

at least one processor coupled to the memory and configured to perform operations comprising:

receiving, from a first user, a request for sensitive information of a second user, wherein the sensitive information is stored by a data management system;

identifying contact information for the second user from the data management system;

providing an electronic request for an authorization to the second user based on the contact information, wherein the electronic request for the authorization requests permission to release the sensitive information, wherein the providing the electronic request for the authorization is performed subsequent to receiving the request for the sensitive information;

receiving, responsive to the electronic request for the authorization, an authorization from the second user to release the sensitive information; and

populating a web form, associated with the request for the sensitive information, with the sensitive information responsive to receiving the authorization from the second user to release the sensitive information.

11. The system of claim 10 , wherein the sensitive information comprises a social security number and birthdate of the second user.

12. The system of claim 10 , wherein the authorization is associated with releasing the sensitive information as part of a loan prequalification transaction.

13. The system of claim 12 , wherein the populating comprises:

identifying a format for the sensitive information from the web form;

reformatting at least a portion of the sensitive information in accordance with the format associated with the web form; and

populating the web form with the reformatted portion of the sensitive information.

14. The system of claim 10 , the operations further comprising:

identifying non-sensitive information associated with the second user associated with the web form; and

populating the web form with the non-sensitive information prior to receiving the authorization to release the sensitive information.

15. The system of claim 10 , wherein the providing the electronic request for the authorization comprises:

transmitting the electronic request for the authorization to a user device identified by the contact information and associated with the second user.

16. The system of claim 15 , wherein the providing the electronic request for the authorization comprises:

determining that the user device has an app associated with sensitive information installed on the user device, wherein the sensitive information installed on the device was received through the app; and

transmitting the electronic request for the authorization to the user device via the app.

17. The system of claim 10 , wherein the authorization to release the sensitive information comprises a code associated with the second user.

18. The system of claim 17 , wherein the code comprises a portion of a social security number of the second user.

19. A non-transitory computer-readable medium having instructions stored thereon that, when executed by at least one computing device, cause the at least one computing device to perform operations comprising:

receiving, from a first user, a request for sensitive information of a second user, wherein the sensitive information is stored by a data management system;

identifying contact information for the second user from the data management system;

providing an electronic request for an authorization to the second user based on the contact information, wherein the electronic request for the authorization requests permission to release the sensitive information, wherein the providing the electronic request for the authorization is performed subsequent to receiving the request for the sensitive information;

receiving, responsive to the electronic request for the authorization, an authorization from the second user to release the sensitive information; and

populating a web form, associated with the request for the sensitive information, with the sensitive information responsive to receiving the authorization from the second user to release the sensitive information.

20. The non-transitory computer-readable medium of claim 19 , wherein the sensitive information comprises a social security number and birthdate of the second user, and wherein the authorization from the second user comprises at least a portion of one of the social security number or birthdate of the second user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2024
From: FANG, GERARDO; HERMANN, NICHOLAS
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 066884/0973 →
Continuity (2)
Continuation 17393613 · Aug 4, 2021
Related Publication 20240232429A1 · Jul 11, 2024
References Cited (27)
US 7774378B2 · Nelson · 2010 [cited by examiner]
US 8639615B1 · Neal · 2014 [cited by applicant]
US 9342611B2 · Vellozo Luz et al. · 2016 [cited by applicant]
US 9639515B2 · Inukonda et al. · 2017 [cited by applicant]
US 9710657B1 · Kakkar et al. · 2017 [cited by applicant]
US 9805014B2 · Ramakrishnan et al. · 2017 [cited by applicant]
US 10474838B1 · Edwards et al. · 2019 [cited by applicant]
US 10671760B2 · Esmailzadeh et al. · 2020 [cited by applicant]
US 11113415B1 · Amico · 2021 [cited by examiner]
US 11972016B2 · Fang · 2024 [cited by examiner]
US 20100328225A1 · Black · 2010 [cited by examiner]
US 20110238482A1 · Carney et al. · 2011 [cited by applicant]
US 20110265187A1 · Li · 2011 [cited by applicant]
US 20140108252A1 · Itwaru et al. · 2014 [cited by applicant]
US 20160343076A1 · Kennedy et al. · 2016 [cited by applicant]
US 20170337626A1 · Bryant et al. · 2017 [cited by applicant]
US 20200082460A1 · Patidar et al. · 2020 [cited by applicant]
US 20200380509A1 · Billman et al. · 2020 [cited by applicant]
US 20200410023A1 · Hurst · 2020 [cited by examiner]
US 20220309489A1 · Kahn · 2022 [cited by examiner]
US 20230038128A1 · Fang et al. · 2023 [cited by applicant]
US 20230137378A1 · LaTerza et al. · 2023 [cited by applicant]
US 20230342166A1 · DeNeui · 2023 [cited by examiner]
CN 115664668A · 2023 [cited by applicant]
CN 116595495A · 2023 [cited by examiner]
FR 3114714A1 · 2022 [cited by examiner]
WO 2020141890A1 · 2020 [cited by applicant]