Digital, personal and secure electronic access permission
The present invention puts forward a personal electronic access permission (Figure B, 31 ) that can both check on the customer's identity (Figure A, step 2 ) and right to access an event/venue in one scanning event, and address the unwanted secondary market, still enabling a customer (Figure D, 5 ) to sell back an electronic access permission to the system (Figure D, I) in case the customer is not able to attend the event.
1. A method for generating a personal electronic access permission addressing reselling of tickets by non-original ticket issuers and ensuring an entrance process validating both a customer's identity and customer's permission to access an event or venue, comprising:
downloading an application to a mobile communication device;
registering, using the mobile communication device, a customer in a system including one or more servers and one or more databases and one or more applications, wherein registering includes verifying the customer's identity using an electronic ID service accepted for identification by government authorities and wherein the electronic ID service upon successful verification of the customer's identity sends customer identity data for the customer to the system;
associating the customer identity data with a unique ID number and storing the ID number and customer identity data in the system;
transmitting the ID number to the mobile communication device and storing the ID number in the mobile communication device;
purchasing, using the mobile communication device, an electronic access permission to the event or venue, wherein the purchasing comprises:
associating a unique customer-event number with the ID number;
storing the associated customer-event number and ID number in the system; and
transmitting the customer-event number to the mobile communication device;
generating the electronic access permission in the mobile communication device, wherein the generating comprises:
authenticating the identity of the customer by using the electronic ID service to ensure that the customer identity data generated by the electronic ID service is identical to the customer identity data stored in the system, wherein authentication is successful if there is a match between the customer identity data; and
combining the ID number and the customer-event number by using an algorithm in the mobile communication device to generate the electronic access permission, wherein the electronic access permission has a time-limited validity in the mobile communication device, requiring the customer to generate the electronic access permission within a particular time period prior to a scanning event at an entrance of the event or venue;
transmitting the generated electronic access permission from the mobile communication device to the system and storing the electronic access permission in the system;
scanning the generated electronic access permission in the mobile communication device with a scanning device and transmitting the scanned electronic access permission to the system;
comparing, by the system, the scanned electronic access permission with the electronic access permission stored in the system;
checking on transactions on the electronic access permission stored in the system, including validating both the customer identity data and the customer's access permission to the event or venue in exactly one scanning event; and
registering the scanning transaction on the electronic access permission in the system and transmitting the result of the validation to the scanning device to be displayed on the scanning device.
2. The method of claim 1 , wherein generating the electronic access permission in the mobile communication device includes: generating a series containing at least two unique numbers, representing a starting time and an ending time, respectively, between which the electronic access permission is valid, or creating single time-varying value representing the electronic access permission.
3. The method of claim 1 , wherein the time-limited validity is in the range of 1 second to 72 hours and is based on a security level set by an organizer of the event.
4. The method of claim 1 , wherein generating the electronic access permission in the mobile communication device occurs in response to a request immediately prior to the scanning event.
5. The method of claim 1 , further comprising:
selling back the electronic access permission to the system for a refund, following a designated refund process, through an interaction between the system and the customer, wherein the selling back includes marking the electronic access permission stored in the system as invalid and in the system and enabling issuance of a new electronic access permission.
6. The method of claim 5 , further comprising:
validating the customer's right to sell back the electronic access permission to the system by:
confirming the identity of the customer by using the electronic ID service and verifying in the system that the customer is the owner of the electronic access permission by the checking customer identity data stored in the mobile communication device and in the system.
7. The method of claim 1 , further comprising:
encrypting all data stored on and transmitted to or from the system and the mobile communication device, respectively.
8. The method of claim 1 , further comprising:
checking the integrity of the data stored in the mobile communication device and in the system to ensure the data has not been tampered with; and
in response to detecting a loss of integrity, invalidating the electronic access permission.
9. The method of claim 1 , further comprising:
invalidating the electronic access permission upon request.
10. The method of claim 1 , wherein validating both the customer identity and the customer's access permission to the event in exactly one scanning event includes validating the customer's right to access the event, together with at least one of: the customer's name and the customer's age.
11. The method of claim 1 , further comprising:
tracking, authorizing and storing all transactions on the electronic access permission in the system.
12. The method of claim 1 , further comprising:
controlling by the system how many electronic access permissions the customer can purchase.
13. The method of claim 1 , wherein scanning the generated electronic access permission comprises:
authenticating a user of the scanning device, using the electronic ID service; and
in response to successful authentication by the electronic ID service enabling the scanning device for scanning by the user.
14. The method of claim 1 , further comprising:
purchasing electronic access permissions for a plurality of customers registered in the system, wherein each customer has an associated mobile communication device;
transmitting a unique customer-event number to each mobile communication device after successful payment of the purchase has been processed; and
generating in the mobile communication device of each customer included in the plurality of customers, a personal electronic access permission.