IP Library Granted Patent US 11,558,398
Granted Patent B2
US 11,558,398 · App. 16/948,633 · Granted Jan 17, 2023

Selectivity in privacy and verification with applications

Inventor: Yaron Gvili (Kefar Sava, IL)
H04L63/123H04L9/0625H04L9/085H04L9/3239H04L63/0428
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,558,398
App. No.
16/948,633
Granted
Jan 17, 2023
Kind
B2
Abstract

The present description relates to systems and techniques for allowing a third party verifier to verify aspects of secured data, or successful communication thereof. For example, a message or other data may be associated with a shared manifest that describes aspects of some data but does not reveal or expose the data. As a result, the data may be kept private while selective privacy and verification with respect to the data is achieved by the inclusion of only selected aspects of said data in the shared manifest.

Claims (64)

1. A computer program product including instructions recorded on a non-transitory computer readable storage medium, which, when executed by at least one processor, are configured to cause the at least one processor to:

transform a first secret related to confidential data into a first public representation of the first secret;

execute at least one instruction on the first secret to obtain a second secret;

transform the second secret into a second public representation of the second secret;

generate an instruction statement that conveys a relation between the first public representation of the first secret and the second public representation of the second secret;

generate a first gestalt statement characterizing a first gestalt relation between a first plurality of piece-secrets, the first gestalt relation defining a manner in which the first plurality of piece-secrets combined to provide the first secret;

generate a second gestalt statement characterizing a second gestalt relation between a second plurality of piece-secrets, the second gestalt relation defining a manner in which the second plurality of piece-secrets combine to provide the second secret;

provide the instruction statement, the first gestalt statement, and the second gestalt statement to enable verification of application of the instruction statement and the relation between the first secret and the second secret; and

perform an action in response to the verification of the application, wherein the action is related to the confidential data, and

wherein the confidential data and the verification comprise one of the following:

the confidential data includes a digital good and the verification includes confirmation of only a characteristic of the digital good; or

the confidential data includes accounting information and the verification includes confirmation of only a characteristic of the accounting information; or

the confidential data includes enciphered data and the verification includes a preview of the enciphered data without deciphering; or

the confidential data includes encrypted confidential data to be checked for authorization for transmission through a gateway, and the verification includes verifying the authorization without decrypting the encrypted confidential data.

2. The computer program product of claim 1 , wherein a recipient of the digital good has committed compensation to a provider of the digital good.

3. The computer program product of claim 1 , wherein the verification includes validating the communication of at least one secret.

4. The computer program product of claim 1 , wherein the relation conveys the second secret as a preview of the first secret.

5. The computer program product of claim 1 , wherein the relation conveys a compliance status of the confidential data.

6. The computer program product of claim 1 , wherein the relation conveys a restriction status of the encrypted confidential data with respect to a security domain.

7. The computer program product of claim 1 , wherein the action includes blocking a transfer of the encrypted confidential data.

8. The computer program product of claim 1 , wherein the relation is between a plurality of input secrets and a plurality of output secrets.

9. A computer-implemented method for conditionally performing data-processing, the method comprising:

transforming a first secret related to confidential data into a first public representation of the first secret;

executing at least one instruction on the first secret to obtain a second secret;

transforming the second secret into a second public representation of the second secret;

generating an instruction statement that conveys a relation between the first public representation of the first secret and the second public representation of the second secret;

generating a first gestalt statement characterizing a first gestalt relation between a first plurality of piece-secrets, the first gestalt relation defining a manner in which the first plurality of piece-secrets combined to provide the first secret;

generating a second gestalt statement characterizing a second gestalt relation between a second plurality of piece-secrets, the second gestalt relation defining a manner in which the second plurality of piece-secrets combine to provide the second secret;

providing the instruction statement, the first gestalt statement, and the second gestalt statement to enable verification of application of the instruction statement and the relation between the first secret and the second secret; and

performing an action in response to the verification of the application, wherein the action is related to the confidential data, and

wherein the confidential data and the verification comprise one of the following:

the confidential data includes a digital good and the verification includes confirmation of only a characteristic of the digital good; or

the confidential data includes accounting information and the verification includes confirmation of only a characteristic of the accounting information; or

the confidential data includes enciphered data and the verification includes a preview of the enciphered data without deciphering; or

the confidential data includes encrypted confidential data to be checked for authorization for transmission through a gateway, and the verification includes verifying the authorization without decrypting the encrypted confidential data.

10. The method of claim 9 , wherein a recipient of the digital good has committed compensation to a provider of the digital good.

11. The method of claim 9 , wherein the verification includes validation of the communication of at least one secret.

12. The method of claim 9 , comprising providing the relation as conveying the second secret as a preview of the first secret.

13. The method of claim 9 , the relation conveys a compliance status of the confidential data.

14. The method of claim 9 , wherein the relation conveys a restriction status of the encrypted confidential data with respect to a security domain.

15. The method of claim 9 , wherein the action includes blocking the transfer of the encrypted confidential data.

16. A computer system comprising:

at least one processor; and

at least one memory, the at least one memory storing instructions that are executable by the at least one processor and that, when executed, are configured to cause the at least one processor to

transform a first secret related to confidential data into a first public representation of the first secret;

execute at least one instruction on the first secret to obtain a second secret;

transform the second secret into a second public representation of the second secret;

generate an instruction statement that conveys a relation between the first public representation of the first secret and the second public representation of the second secret;

generate a first gestalt statement characterizing a first gestalt relation between a first plurality of piece-secrets, the first gestalt relation defining a manner in which the first plurality of piece-secrets combined to provide the first secret;

generate a second gestalt statement characterizing a second gestalt relation between a second plurality of piece-secrets, the second gestalt relation defining a manner in which the second plurality of piece-secrets combine to provide the second secret;

provide the instruction statement, the first gestalt statement, and the second gestalt statement to enable verification of application of the instruction statement and the relation between the first secret and the second secret; and

perform an action in response to the verification of the application, wherein the action is related to the confidential data, and

wherein the confidential data and the verification comprise one of the following:

the confidential data includes a digital good and the verification includes confirmation of only a characteristic of the digital good; or

the confidential data includes accounting information and the verification includes confirmation of only a characteristic of the accounting information; or

the confidential data includes enciphered data and the verification includes a preview of the enciphered data without deciphering; or

the confidential data includes encrypted confidential data to be checked for authorization for transmission through a gateway, and the verification includes verifying the authorization without decrypting the encrypted confidential data.

17. The computer system of claim 16 , wherein a recipient of the digital good has committed compensation to a provider of the digital good.

18. The computer system of claim 16 , wherein the verification includes validating the communication of at least one secret.

19. The computer system of claim 16 , wherein the relation conveys the second secret as a preview of the first secret.

20. The computer system of claim 16 , wherein the relation conveys a compliance status of the confidential data.

21. The computer system of claim 16 , wherein the relation conveys a restriction status of the encrypted confidential data with respect to a security domain.

22. The computer system of claim 16 , wherein the action includes blocking a transfer of the encrypted confidential data.

23. The computer system of claim 16 , wherein the relation is between a plurality of input secrets and a plurality of output secrets.

Continuity (7)
Continuation 15360848 · Nov 23, 2016
Provisional Application 62260125 · Nov 25, 2015
Provisional Application 62294631 · Feb 12, 2016
Provisional Application 62331139 · May 3, 2016
Provisional Application 62358970 · Jul 6, 2016
Provisional Application 62395276 · Sep 15, 2016
Related Publication 20210021606A1 · Jan 21, 2021