IP Library Granted Patent US 11,797,698
Granted Patent B2
US 11,797,698 · App. 16/901,507 · Granted Oct 24, 2023

Decentralized consent network for decoupling the storage of personally identifiable user data from user profiling data

Inventors: Dashiell Lavine (Portland, OR); Paul Lawbaugh (Hillsboro, OR); Cian Montgomery (Portland, OR)
Assignee: Concord Technologies Inc.
G06F21/6218G06F21/604H04L9/0643H04L63/102G06F2221/2141H04L9/50
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,797,698
App. No.
16/901,507
Granted
Oct 24, 2023
Kind
B2
Abstract

A computer implemented method for tracking and securing user data, the method including providing a user data vault that stores user data, providing the user data to display on a user interface, collecting access rights and permission settings, storing the access rights on a blockchain consent network, and providing access to remote users. The system and methods utilize blockchain technology, encryption, and a novel data structure (e.g. consent tokens) that enhance the security, transparency, and user experience regarding user data collection.

Claims (45)

1. A computer-implemented method for tracking and securing user data, the method comprising:

providing a user data vault that stores user data associated with a user, wherein the user data comprises first data associated with a user identifier related to the user and second data associated with an anonymous identifier, wherein the first and second data comprise the same information;

providing an administration user interface that displays the first and second data;

collecting, from the administration user interface, permission settings for the first and second data;

storing the permission settings on a ledger of a blockchain consent network;

creating a system linkage between the first data and second data based on the permission settings;

determining that a remote device is authorized to access the first or second data based at least in part on the permission settings; and

providing, based on the access determination, the remote device with access to the first or second data.

2. The computer-implemented method of claim 1 , wherein the first data comprises one or more of personally identifiable information, contact data, identity data, certified claim data, or social media account data.

3. The computer-implemented method of claim 1 , further comprising:

providing the remote device with executable code via a consent application programming interface (API), wherein the executable code is executable at the remote device to enable presentation of a brand user interface via which the provided first or second data is displayed, and wherein the brand user interface is associated with a partner brand.

4. The computer-implemented method of claim 3 , wherein the brand user interface:

displays a partner brand reward associated with partner brand; and

displays a user score for the user data vault, wherein the user score is associated with a value, to the partner brand, of the first and second data to which the partner brand has access rights.

5. The computer-implemented method of claim 4 , wherein the brand user interface further includes a link to redeem the partner brand reward in the form of a virtual currency.

6. The computer-implemented method of claim 3 , wherein displaying the data on the administration user interface comprises displaying a first score representative of the value of the first data and a second score representative of the value of the second data.

7. The computer-implemented method of claim 3 , further comprising combining data collected from the brand user interface into a unified dashboard view, wherein the dashboard view is dynamically updated based at least in part on interaction of the user with the brand user interface.

8. The computer-implemented method of claim 3 , further comprising storing, on the ledger, an authenticated grant of permission by the user for a requesting system associated with the partner brand to access the user data vault, wherein the user receives a reward correlated to a level of permission granted by the user.

9. The computer-implemented method of claim 1 , wherein the administration user interface comprises:

an identification of a plurality of partner brands; and

an identification of a respective set of brand-specific data access rights and permission settings associated with each of the plurality of partner brands.

10. The computer-implemented method of claim 1 , wherein storing the permission settings on a ledger of a blockchain consent network comprises storing the permission settings in the form of a smart contract.

11. A system for tracking and securing user data, the system comprising:

a computer system having one or more physical processors programmed with computer program instructions that, when executed by the one or more physical processors, program the computer system to:

provide a user data vault that stores user data associated with a user, wherein the user data comprises first data associated with a user identifier related to the user and second data associated with an anonymous identifier, wherein the first and second data comprise the same information;

provide an administration user interface that displays the first and second data;

collect, from the administration user interface, permission settings for the first and second data;

store the permission settings on a ledger of a blockchain consent network;

create a system linkage between the first data and second data based on the permission settings;

determine that a remote device is authorized to access the first or second data based at least in part on the permission settings; and

provide, based on the access determination, the remote device with access to the first or second.

12. The system of claim 11 , wherein the plurality of data types comprises one or more of personally identifiable information, contact data, identity data, certified claim data, or social media account data.

13. The system of claim 11 , the computer system further programmed to:

provide the remote device with executable code via a consent application programming interface (API), wherein the executable code is executable at the remote device to enable presentation of a brand user interface via which the provided first or second data is displayed, and wherein the brand user interface is associated with a partner brand.

14. The system of claim 13 , the computer system further programmed to cause the brand user interface to:

display a partner brand reward associated with partner brand; and

display a user score for the user data vault, wherein the user score is associated with a value, to the partner brand, of the first and second data to which the partner brand has access rights.

15. The system of claim 14 , wherein the brand user interface further includes a link to redeem the partner brand reward in the form of a virtual currency.

16. The system of claim 13 , wherein displaying the data on the administration user interface comprises displaying a first score representative of the value of the first data and a second score representative of the value of the second data.

17. The system of claim 13 , the computer system further programmed to combine data collected from the brand user interface into a unified dashboard view, wherein the dashboard view is dynamically updated based at least in part on interaction of the user with the brand user interface.

18. The system of claim 13 , the computer system further programmed to store, on the ledger, an authenticated grant of permission by the user for a requesting system associated with the partner brand to access the user data vault, wherein the user receives a reward correlated to a level of permission granted by the user.

19. The system of claim 11 , wherein the administration user interface comprises:

an identification of a plurality of partner brands; and

an identification of a respective set of brand-specific data access rights and permission settings associated with each of the plurality of partner brands.

20. The system of claim 11 , wherein storing the permission settings on a ledger of a blockchain consent network comprises storing the permission settings in the form of a smart contract.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 15, 2020
From: LAVINE, DASHIELL; LAWBAUGH, PAUL; MONTGOMERY, CIAN
To: CONCORD TECHNOLOGIES INC.
Reel/Frame 052940/0163 →
Continuity (1)
Related Publication 20210390196A1 · Dec 16, 2021
Cited By (1)
US 12,468,799