IP Library › Granted Patent US 10,152,582
Granted Patent B2
US 10,152,582 · App. 14/665,868 · Granted Dec 11, 2018

System and method for securing, and providing secured access to encrypted global identities embedded in a QR code

Inventors: Jose Bolanos (Orinda, CA); Yanick Gaudet (Cumberland, CA)
G06F21/34G06F21/36G16H10/60G16H10/65
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,152,582
App. No.
14/665,868
Granted
Dec 11, 2018
Kind
B2
Abstract

A computer implemented method for use of encrypted identity on a QR code encoded onto a permanent medium. The system includes mechanism to generate the encrypted identity into a QR code. Also, at patient authentication, the encrypted identity in QR code is read through a custom application. The custom application decrypts the double encrypted global ID using the application encryption key. The server decrypts the application decrypted ID using the server key and date of the encryption. The decrypted global ID is then used to match with the patient information.

Claims (68)

1. A method for generating an encrypted identity of a user comprising said steps of:

via a computer processor, generating a global identifier and query a database for a user, saving said global identifier with said user;

via a computer processor, forming said encrypted identifier comprising:

running an encryption algorithm, said running an encryption algorithm encrypts said global identifier via pairing with a stored server key;

via a computer processor, forming a doubly encrypted identifier, said forming said doubly encrypted identifier comprising:

running a second encryption algorithm, said running said second encryption algorithm encrypts said encrypted global identifier along with an encrypted date using an application key;

via a computer processor, encoding a web site URL along with said doubly encrypted identifier into a QR code;

printing said QR code on an output medium.

2. The method of claim 1 , said output medium for said QR code selected from the group consisting of:

an identity card;

a medical identity card;

a computer; and

mobile device screen.

3. The method of claim 2 , further comprising the steps of:

via a processor, detecting a fraudulent activity of said QR code;

deleting a compromised server key from said database.

4. The method of claim 2 , further comprising:

via a network interface, requesting input of a username and a password, said password corresponding to a value associated with said username in said database,

via a processor, querying database for matching said username and said password; and granting access to said healthcare data if said match found.

5. A method of claim 2 , further comprising the steps of:

via a network interface, requesting said linked patient health information from other databases;

Sending said matched patient health care information including linked health care information systems, Nike health and/or Fitbit information to said application.

6. The method of claim 1 , further comprising the steps of:

via a processor, storing in said database the links between said global unique identifier and health care identification data;

said data selected from the group consisting of:

hospital identification data;

laboratory identification data;

Nike identification data;

insurance identification data;

dental health plan identification data;

prescription identification data;

Fitbit identification data; and

other health care identifications data.

7. The method of claim 1 , further comprising the steps of:

linking a manufacturing device using the Universal Device Identifier to the manufacturer ID, subcontractor ID, batch ID, customer id, and delivery date and received by person.

8. The method of claim 1 , further comprising the steps of:

linking a secure pharmacy pill container to a specified quantity of product.

9. The method of claim 1 , further comprising said server key has a duration of time validity value stored in a database.

10. The system of claim 1 , wherein said patient database contains identifiers to other hospital systems.

11. The system of claim 1 , wherein said patient database contain links between said global unique identifier with health care identification data;

said data selected from the group consisting of:

hospital identification data;

laboratory identification data;

Nike identification data;

insurance identification data;

dental health plan identification data;

prescription identification data; and

Fitbit identification data.

12. A method for securely authenticating and authorizing the identity of a user comprising the steps of:

via an image device, obtaining an image of a QR code and storing in a transient computer readable medium;

via a computer processor, running a protocol, said protocol identifying if said QR code contains reference a website URL with a doubly encrypted identifier;

via said computer processor, decrypting said doubly encrypted identifier and said application key into said encrypted global identifier;

via computer network interface, sending a data message, said data message comprising said encrypted global identifier, said encrypted date, internet protocol address of the QR code reader, and said patient information request to the software system;

via a server processor, querying a server key from the database for a server key matching said encrypted date;

via a server processor, decrypting said encrypted global identifier;

via a network interface, return requested data.

13. A system comprising:

an image capture device comprising:

a camera for reading an encrypted secure identifier encoded in a QR code;

a QR code reader connected to a PC for reading an encrypted secure identifier encoded in said QR code;

a processor for decrypting said encrypted secure identifier and a encrypted date and storing on a non-transient computer readable medium as a data packet;

a server comprising:

a server processor for receiving a data request from said image capture device, said data request comprising said decrypted secure identifier and an encrypted date, said server processor in response to receipt of said data request decrypting said data packet to a global identifier;

a database stored on a non-transient computer readable medium, said database comprising:

a server key registry;

said server key registry searchable by said processor for returning a server key an effective date to match the encrypted date to use the server key to decrypted the encrypted secure identifier to global identifier;

a patient registry database;

said patient registry database searchable by said processor for returning patient data matching said global identifier.

Continuity (2)
Provisional Application 61967614 · Mar 24, 2014
Related Publication 20150269331A1 · Sep 24, 2015