IP Library Granted Patent US 11,636,482
Granted Patent B2
US 11,636,482 · App. 17/322,428 · Granted Apr 25, 2023

Method and system for validation of identity of a user during a digital payment process

Inventor: Srinath Ravinathan (Singapore, SG)
Assignee: MASTERCARD INTERNATIONAL INCORPORATED
G06Q20/40145G06Q20/382G06V40/172G06V40/50H04L9/3213H04L9/3231G06Q2220/00H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,636,482
App. No.
17/322,428
Granted
Apr 25, 2023
Kind
B2
Abstract

A method for validation of identity of a user during a digital payment process comprises: receiving a user identifier; determining, based on the user identifier, that the user is enrolled for biometric authentication; transmitting, to a mobile device associated with the user identifier, a push notification, said push notification causing an authenticator application executing on the mobile device to initiate a biometric authentication process; receiving a result of said biometric authentication process; and transmitting authentication data, based on said result, to a transaction initiation system to trigger completion of the digital payment process.

Claims (43)

1. A method for validation of identity of a user during a digital payment process, comprising:

receiving a user identifier that identifies a user, the user identifier having been obtained based on an in-store biometric device at an in-store environment of a merchant, the in-store biometric device being used to identify the user based on a first type of biometric identification that identifies the user in-store at the in-store environment;

identifying, based on the user identifier, a mobile device of the user, the user having been enrolled for biometric authentication at the in-store environment;

transmitting, to the mobile device, a push notification, the push notification causing an authenticator application executing on the mobile device to initiate a biometric authentication process based on a second type of biometric identification, the second type being different from the first type;

receiving a result of the biometric authentication process; and

transmitting authentication data, which is based on the result, to a transaction initiation system to trigger completion of the digital payment process.

2. The method of claim 1 , wherein the digital payment process is a secure remote commerce (SRC) checkout process, and wherein the transaction initiation system is an SRC initiator.

3. The method of claim 1 , wherein the user identifier is a tokenized user identifier.

4. The method of claim 3 , wherein the tokenized user identifier is stored at a facial recognition system in association with biometric data of the user.

5. The method of claim 4 , wherein the tokenized user identifier is determined by:

obtaining sensor data from at least one sensor;

based on the sensor data, generating a biometric template; and

matching the biometric template against a database of biometric templates, each biometric template of the database being associated with a tokenized user identifier of a registered user.

6. The method of claim 1 , wherein the authentication data are at least partially generated by a biometric Application Programming Interface (API) service.

7. The method of claim 6 , wherein at least part of the authentication data is stored at, or obtained by, the biometric API service.

8. The method of claim 7 , wherein the authentication data comprises one or more WebAuthn keys.

9. A system for validation of identity of a user during a digital payment process, comprising at least one processor in communication with computer-readable storage having stored thereon instructions to cause the at least one processor to:

receive a user identifier that identifies a user, the user identifier having been obtained based on an in-store biometric device at an in-store environment of a merchant, the in-store biometric device being used to identify the user based on a first type of biometric identification that identifies the user in-store at the in-store environment;

identify, based on the user identifier, a mobile device of the user, the user having been enrolled for biometric authentication at the in-store environment;

transmit, to the mobile device, a push notification, the push notification causing an authenticator application executing on the mobile device to initiate a biometric authentication process based on a second type of biometric identification, the second type being different from the first type;

receive a result of the biometric authentication process; and

transmit authentication data, which is based on the result, to a transaction initiation system to trigger completion of the digital payment process.

10. The system of claim 9 , wherein the digital payment process is a secure remote commerce (SRC) checkout process, and wherein the transaction initiation system is an SRC initiator.

11. The system of claim 9 , wherein the user identifier is a tokenized user identifier.

12. The system of claim 11 , comprising a facial recognition system that stores the tokenized user identifier in association with biometric data of the user.

13. The system of claim 12 , comprising at least one sensor for capturing sensor data, wherein the facial recognition system comprises a database of biometric templates, each biometric template of the database being associated with a tokenized user identifier of a registered user; and wherein the instructions cause the at least one processor to determine the tokenized user identifier by:

generating a biometric template based on the sensor data; and

matching the biometric template against the database of biometric templates.

14. The system of claim 9 , wherein the authentication data are at least partially generated by a biometric Application Programming Interface (API) service.

15. The system of claim 14 , wherein at least part of the authentication data is stored at, or obtained by, the biometric API service.

16. The system of claim 15 , wherein the authentication data comprises one or more WebAuthn keys.

17. A non-transitory computer-readable medium having stored thereon instructions that, when executed by a processor, cause the processor to:

receive a user identifier that identifies a user, the user identifier having been obtained based on an in-store biometric device at an in-store environment of a merchant, the in-store biometric device being used to identify the user based on a first type of biometric identification that identifies the user in-store at the in-store environment;

identify, based on the user identifier, a mobile device of the user, the user having been enrolled for biometric authentication at the in-store environment;

transmit, to the mobile device, a push notification, the push notification causing an authenticator application executing on the mobile device to initiate a biometric authentication process based on a second type of biometric identification, the second type being different from the first type;

receive a result of the biometric authentication process; and

transmit authentication data, which is based on the result, to a transaction initiation system to trigger completion of a digital payment process.

18. The non-transitory computer-readable medium of claim 17 , wherein the user identifier is a tokenized user identifier.

19. The non-transitory computer-readable medium of claim 18 , wherein the tokenized user identifier is stored at a facial recognition system in association with biometric data of the user.

20. The non-transitory computer-readable medium of claim 19 , wherein the instructions further cause the processor to:

obtain sensor data from at least one sensor;

based on the sensor data, generate a biometric template; and

match the biometric template against a database of biometric templates, each biometric template of the database being associated with a tokenized user identifier of a registered user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 17, 2021
From: RAVINATHAN, SRINATH
To: MASTERCARD ASIA/PACIFIC PTE. LTD.
Reel/Frame 057435/0580 →
Priority Claims (1)
SG 10202006299Q · Jun 30, 2020 · national
Continuity (1)
Related Publication 20210406904A1 · Dec 30, 2021
Cited By (1)
US 12,718,289