IP Library Granted Patent US 12,651,254
Granted Patent B2
US 12,651,254 · App. 18/680,700 · Granted Jun 9, 2026

Multi-token provisioning, online purchase transaction processing, and card life cycle management systems and methods

Inventors: Bryan L. Manka (Spring, TX); George Danforth (Tomball, TX)
Assignee: Capital One Financial Corporation
G06Q20/3829G06Q20/26G06Q20/3823G06Q20/385G06Q20/409H04L63/062
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,651,254
App. No.
18/680,700
Granted
Jun 9, 2026
Kind
B2
Abstract

Systems, methods, and software are disclosed for provisioning tokens in a networked computing environment including merchants participating in payment networks. The method includes receiving, by a merchant processor, card account data of a purchase card from a cardholder. The method includes determining, by the merchant processor, that the card account data includes a multi-token enabled BIN. The method includes, in response to determining that the card account data includes the multi-token enabled BIN, receiving and storing, by the merchant processor and in a memory of the merchant, respectively, a primary token associated with a front-of-card brand of the purchase card. The method includes, in response to receiving the primary token, transmitting, by the merchant processor, a request for a secondary token. The method includes receiving and storing, by the merchant processor and in the merchant memory, respectively, the secondary token simultaneously with storing the primary token.

Claims (52)

1 . A networked computing environment for securely processing online purchase transactions using tokens, the networked computing environment comprising:

a first computing system operated by a first token service provider (TSP) associated with a first payment network;

a second computing system operated by a second token service provider (TSP) associated with a second payment network that differs from the first payment network;

a third computing system operated on behalf of an online merchant;

a fourth computing system operated on behalf of a cardholder of a purchase card having an associated primary account number (PAN); and

a fifth computing system operated on behalf of an issuer of the purchase card;

wherein the first, second, third, fourth, and fifth computing systems are networked together via one or more data networks;

wherein the first computing system comprises one or more processors and one or more non-transitory computer-readable mediums having program instructions stored thereon that, when executed by the one or more processors, cause the first computing system to:

receive, from the third computing system, a request for a first token for the purchase card that is available for use in place of the PAN when processing online purchase transactions involving the purchase card via the first payment network;

in response to the request for the first token, (i) generate the first token for the purchase card and (ii) transmit the first token to the third computing system;

receive, from the fifth computing system, a notification that an account associated with the purchase card has been suspended or closed; and

in response to receiving the notification, transmit a first life cycle management (LCM) message to the third computing system that instructs the third computing system to suspend or delete the first token;

wherein the second computing system comprises one or more processors and one or more non-transitory computer-readable mediums having program instructions stored thereon that, when executed by the one or more processors, cause the second computing system to:

receive, from the third computing system, a request for a second token for the purchase card that is available for use in place of the PAN when processing online purchase transactions involving the purchase card via the second payment network;

in response to the request for the second token, (i) generate the second token for the purchase card and (ii) transmit the second token to the third computing system;

receive, from the third computing system, an authorization request for a given online purchase transaction that includes the second token;

detokenize the second token;

based on detokenizing the second token, generate a rebuilt authorization request for the given online purchase transaction;

transmit the rebuilt authorization request to the fifth computing system;

receive, from the third computing system, a second LCM message comprising a request to suspend or delete the second token; and

in response to receiving the second LCM message, (i) process the second LCM message and (ii) transmit a third LCM message to the third computing system that instructs the third computing system to suspend or delete the second token;

wherein the third computing system comprises one or more processors and one or more non-transitory computer-readable mediums having program instructions stored thereon that, when executed by the one or more processors, cause the third computing system to:

obtain the first and second tokens for the purchase card by:

receiving, from the fourth computing system, card account data for the purchase card that is to be utilized by the online merchant for future online purchase transactions, wherein the card account data includes the PAN of the purchase card;

based on the received card account data, transmitting (i) the request for the first token to the first computing system and (ii) the request for the second token to the second computing system;

receiving the first token for the purchase card from the first computing system and storing the received first token in the one or more non-transitory computer-readable mediums of the third computing system; and

receiving the second token for the purchase card from the second computing system and storing the received second token in the one or more non-transitory computer-readable mediums of the third computing system;

process the given online purchase transaction involving the purchase card by:

receiving a request to initiate the given online purchase transaction involving the purchase card;

based on network routing preferences, (i) determining that the given online purchase transaction is to be routed to the second payment network rather than the first payment network and (ii) selecting the second token to use for the given online purchase transaction; and

transmitting, to the second computing system, the authorization request for the given online purchase transaction that includes the second token; and

manage a lifecycle of the first and second tokens in a synchronized manner by:

receiving the first LCM message from the first computing system that was transmitted in response to the notification that the account associated with the purchase card has been suspended or closed and instructs the third computing system to suspend or delete the first token;

in response to receiving the first LCM message, suspending or deleting the first token for the purchase card;

in response to suspending or deleting the first token for the purchase card, transmitting the second LCM message comprising the request to suspend or delete the second token to the second computing system;

receiving the third LCM message from the second computing system that instructs the third computing system to suspend or delete the second token; and

in response to receiving the third LCM message, suspending or deleting the second token for the purchase card;

wherein the fourth computing system comprises one or more processors and one or more non-transitory computer-readable mediums having program instructions stored thereon that, when executed by the one or more processors, cause the fourth computing system to:

receive, from the cardholder, the card account data of the purchase card; and

transmit the card account data of the purchase card to the third computing system; and

wherein the fifth computing system comprises one or more processors and one or more non-transitory computer-readable mediums having program instructions stored thereon that, when executed by the one or more processors, cause the fifth computing system to:

receive and process the rebuilt authorization request that is transmitted by the second computing system;

suspend or close the cardholder's account associated with the purchase card; and

transmit, to the first computing system, the notification that the account associated with the purchase card has been suspended or closed.

2 . The networked computing environment of claim 1 , wherein the first token comprises a primary network-based token associated with a front-of-card brand of the purchase card and the second token comprises a secondary network-based token associated with a back-of-card brand of the purchase card.

3 . The networked computing environment of claim 1 , wherein the purchase card is a debit card.

4 . The networked computing environment of claim 1 , wherein the first token for the purchase card and the second token for the purchase card are stored as co-existent, side-by-side tokens in the one or more non-transitory computer-readable mediums of the third computing system.

5 . The networked computing environment of claim 1 , wherein the purchase card comprises a multi-token enabled purchase card.

6 . The networked computing environment of claim 1 , wherein the program instructions of the fifth computing system that, when executed by the one or more processors, cause the fifth computing system to transmit, to the first computing system, the notification that the account associated with the purchase card has been suspended or closed comprise program instructions that, when executed by the one or more processors, cause the fifth computing system to: transmit the notification that the account associated with the purchase card has been suspended or closed to the first computing system via the first payment network.

7 . The networked computing environment of claim 1 , wherein the one or more non-transitory computer-readable mediums of the third computing system have program instructions stored thereon that, when executed by the one or more processors, cause the third computing system to: after suspending or deleting the first token for the purchase card, transmit, to the first computing system, a fourth LCM message that is responsive to the first LCM message; and wherein the one or more non-transitory computer-readable mediums of the first computing system have program instructions stored thereon that, when executed by the one or more processors, cause the first computing system to: receive the fourth LCM message from the third computing system.

8 . The networked computing environment of claim 1 , wherein the one or more non-transitory computer-readable mediums of the third computing system have program instructions stored thereon that, when executed by the one or more processors, cause the third computing system to: delete or update the card account data for the purchase card.

9 . The networked computing environment of claim 1 , wherein the network routing preferences indicate a preference for routing online purchase transactions to the second payment network rather than the first payment network.

Assignments (2)
MERGER Recorded Jul 2, 2025
From: DISCOVER FINANCIAL SERVICES
To: CAPITAL ONE FINANCIAL CORPORATION
Reel/Frame 071784/0903 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 3, 2024
From: MANKA, BRYAN L.; DANFORTH, GEORGE
To: DISCOVER FINANCIAL SERVICES
Reel/Frame 067602/0093 →
Continuity (3)
Continuation 18092406 · Jan 2, 2023
Continuation 16396323 · Apr 26, 2019
Related Publication 20240320665A1 · Sep 26, 2024
References Cited (26)
US 8768838B1 · Hoffman · 2014 [cited by applicant]
US 10454779B2 · Narasimhan et al. · 2019 [cited by applicant]
US 20080189214A1 · Mueller et al. · 2008 [cited by applicant]
US 20090048953A1 · Hazel et al. · 2009 [cited by applicant]
US 20100051685A1 · Royyuru et al. · 2010 [cited by applicant]
US 20110071892A1 · Dickelman · 2011 [cited by applicant]
US 20120259782A1 · Hammad · 2012 [cited by applicant]
US 20130103577A1 · Lawson et al. · 2013 [cited by applicant]
US 20130275245A1 · Dixon et al. · 2013 [cited by applicant]
US 20140158759A1 · Smets et al. · 2014 [cited by applicant]
US 20150032627A1 · Dill et al. · 2015 [cited by applicant]
US 20150039517A1 · Liberty et al. · 2015 [cited by applicant]
US 20150095367A1 · Mattsson et al. · 2015 [cited by applicant]
US 20150112871A1 · Kumnick · 2015 [cited by applicant]
US 20150199679A1 · Palanisamy et al. · 2015 [cited by applicant]
US 20150242853A1 · Powell · 2015 [cited by applicant]
US 20150379508A1 · Van · 2015 [cited by applicant]
US 20160110709A1 · Lacoss-Arnold · 2016 [cited by examiner]
US 20160239833A1 · Venugopalan et al. · 2016 [cited by applicant]
US 20160351200A1 · Sung et al. · 2016 [cited by applicant]
US 20170161733A1 · Koletsky et al. · 2017 [cited by applicant]
US 20170295155A1 · Wong · 2017 [cited by examiner]
US 20180068293A1 · Dunne · 2018 [cited by applicant]
US 20180075081A1 · Chipman · 2018 [cited by examiner]
GB 2370475A · 2002 [cited by examiner]
Daniel., An Efficient Forward Secure Authenticated Encryption Scheme with Ciphertext Authentication Based on Two Hard Problems, Advances in Big Data and Cloud Computing, 2018, vol. 645, p. 123-133. [cited by examiner]