IP Library › Granted Patent US 10,686,781
Granted Patent B1
US 10,686,781 · App. 14/578,353 · Granted Jun 16, 2020

System and method for passwordless logins

Inventors: Jeffrey Howard Kaditz (San Francisco, CA); Andrew Gettings Stevens (Palo Alto, CA); Bradley Neale Selby (San Francisco, CA); Aaron Ng Ligon (Palo Alto, CA); Manuel De Jesus Arias (San Francisco, CA)
Assignee: Affirm Inc.
H04L63/0853G06F21/35H04L63/08H04L63/10H04L67/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,686,781
App. No.
14/578,353
Granted
Jun 16, 2020
Kind
B1
Abstract

A login system allows users to access computer systems without using a password. The passwordless system and method can use other information to securely and reliably identify true authorized system users. The identity of a user can be associated with their mobile device. The login can be based upon a minimal amount of information such as a name and a phone number which can be stored as an identification record for each of the users in a database.

Claims (64)

1. A method for purchasing goods comprising:

providing a server, a database and a smart phone in communication with the server through a network;

receiving by the smart phone only a user name and a phone number for the smart phone provided by a user, wherein a password is not used;

transmitting from the smart phone to the server, the user name, the phone number for the smart phone associated with the user name and identification information for the smart phone during a registration of the user;

storing by the server, the user name, the phone number and the identification information for the smart phone on the database;

recognizing by the server, the user name, the phone number and the identification information for the smart phone to authenticate the user during a passwordless login of the user;

inputting the goods in a personal point of sales program running on a mobile computing device;

transmitting by the server, a verification message that includes a unique randomly generated verification code that is part of a hyperlink for purchasing the goods to the phone number of the smart phone during the passwordless login of the user after the goods have been input in the personal point of sales program;

displaying a webpage for the hyperlink for purchasing the goods on the smart phone of the user during the passwordless login of the user;

receiving by the server, a purchase acceptance response to the verification message transmitted through the hyperlink for accepting the purchasing the goods from the smart phone to authenticate the user during the passwordless login of the user;

binding by the server, identification information for the smart phone to the user during the passwordless login of the user; and

authorizing by the server, the user and the smart phone to interact with the server using the passwordless login to complete the purchase of the goods during the passwordless login of the user.

2. The method of claim 1 , wherein the purchase of the goods includes a loan to the user for purchasing the goods.

3. The method of claim 1 , wherein the verification message includes a push notification sent to the smartphone, and where in the push notification interacts with an app installed on the smart phone.

4. The method of claim 1 , wherein the verification message includes a phone call made to the phone that plays an audio signal of a verification code.

5. The method of claim 1 , wherein the verification message is a short message service (SMS).

6. The method of claim 1 wherein the unique randomly generated verification code is at least five alphanumeric characters long.

7. The method of claim 1 wherein the hyperlink includes the verification code that is a randomly generated sequence of characters that is at least five characters long.

8. The method of claim 1 wherein the verification code includes at least one upper case letter and at least one lower case letter.

9. The method of claim 1 wherein the receiving step is within a predetermined time from the transmitting step.

10. The method of claim 1 further comprising:

canceling by the server, the authorization of the user and the smart phone to interact with the server using the passwordless login when the receiving step is after the predetermined time from the transmitting step.

11. The method of claim 1 further comprising:

canceling by the server, the authorization of the user and the smart phone to interact with the server using the passwordless login when the phone number for the smart phone is no longer associated with the user.

12. A method for obtaining a loan for purchasing goods comprising:

providing a server, a database and a smart phone in communication with the server through a network;

receiving by the smart phone only a user name and a phone number for the smart phone provided by a user, wherein a password is not used;

transmitting from the smart phone to the server, the user name, the phone number for the smart phone associated with the user and identification information for the smart phone during a registration of a user;

storing by the server, the user name, the phone number and the identification information for the smart phone on the database;

recognizing by the server, the user name, the phone number and the identification information for the smart phone to authenticate the user during a passwordless login of the user;

inputting the goods in a personal point of sales program running on a mobile computing device;

transmitting by the server, a verification message that includes a hyperlink and a unique randomly generated verification code that is part of the hyperlink for the loan for purchasing the goods to the phone number of the mobile device during the passwordless login of the user after the goods have been input in the personal point of sales program;

displaying a webpage for the hyperlink for the loan for purchasing the goods on the smart phone of the user during the passwordless login of the user;

receiving by the server, a purchase acceptance response to the verification message transmitted through the hyperlink for accepting the loan for purchasing the goods from the mobile device to authenticate the user during the passwordless login of the user;

binding by the server, identification information for the mobile device to the user during the passwordless login of the user; and

authorizing by the server, the user and the mobile device to interact with the server using the passwordless login to complete the loan for the purchase of the goods.

13. The method of claim 12 wherein the unique randomly generated verification code is at least five alphanumeric characters long.

14. The method of claim 12 wherein the verification message is a short message service (SMS).

15. The method of claim 12 wherein the unique randomly generated verification code includes at least one upper case letter and at least one lower case letter.

16. The method of claim 12 wherein the receiving step is within a predetermined time from the transmitting step.

17. The method of claim 12 further comprising:

canceling by the server, the authorization of the user and the mobile device to interact with the server using the passwordless login when the receiving step is after the predetermined time from the transmitting step.

18. The method of claim 12 further comprising:

canceling by the server, the authorization of the user and the mobile device to interact with the server using the passwordless login when the phone number for the mobile device is no longer associated with the user.

19. A method for purchasing goods comprising:

providing a server, a database and a mobile device in communication with the server through a network;

receiving by the mobile device only a user name and a phone number for the mobile device from a user, wherein a password is not used;

transmitting from the mobile device to the server, the user name, the phone number for the mobile device and the unique identifier for the mobile device associated with the user during a registration of the user;

storing by the server, the user name, the phone number and the unique identifier on the database;

recognizing by the server, the user name, the phone number and the unique identifier for the mobile device to authenticate the user during a passwordless login of the user;

inputting the goods in a personal point of sales program running on a mobile computing device;

transmitting by the server, a verification message that includes a hyperlink and a unique randomly generated verification code that is part of the hyperlink for purchasing the goods using the unique identifier to the mobile device during the passwordless login of the user after the goods have been input in the personal point of sales program;

displaying a webpage for the hyperlink for purchasing the goods on the mobile device of the user during the passwordless login of the user;

receiving by the server, a purchase acceptance response to the verification message transmitted through the hyperlink for accepting the purchasing the goods from the mobile device to authenticate the user during the passwordless login of the user;

binding by the server, identification information for the mobile device to the user; and

authorizing by the server, the user and the mobile device to interact with the server using the passwordless login to complete the purchase of the goods during the passwordless login of the user.

20. The method of claim 19 wherein the verification code is a randomly generated sequence of characters that is at least five characters long.

21. The method of claim 19 wherein the hyperlink includes the unique randomly generated verification code that is at least five alphanumeric characters long.

22. The method of claim 19 wherein the unique randomly generated verification code includes at least one upper case letter and at least one lower case letter.

23. The method of claim 19 wherein the receiving step is within a predetermined time from the transmitting step.

24. The method of claim 19 further comprising:

canceling by the server, the authorization of the user and the mobile device to interact with the server using the passwordless login when the receiving step is after the predetermined time from the transmitting step.

25. The method of claim 19 further comprising:

canceling by the server, the authorization of the user and the mobile device to interact with the server using the passwordless login when the unique identifier for the mobile device is no longer associated with the user.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 15, 2024
From: ARIAS, MANUEL
To: AFFIRM, INC.
Reel/Frame 066467/0876 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 29, 2021
From: KADITZ, JEFFREY HOWARD; STEVENS, ANDREW GETTINGS; SELBY, BRADLEY N.; LIGON, AARON NG
To: AFFIRM, INC.
Reel/Frame 058497/0568 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 11, 2020
From: STEVENS, ANDREW GETTINGS; LIGON, AARON NG
To: AFFIRM INC.
Reel/Frame 052629/0631 →
Continuity (1)
Provisional Application 61920475 · Dec 24, 2013
Cited By (8)
US 12,248,941 US 12,341,778 US 12,360,984 US 12,367,515 US 12,443,914 US 12,495,298 US 12,626,263 US 12,641,084