IP Library Granted Patent US 11,914,697
Granted Patent B2
US 11,914,697 · App. 17/305,782 · Granted Feb 27, 2024

System and method for a trusted digital identity platform

Inventor: Gopal Padinjaruveetil (Bloomfield Hills, MI)
Assignee: THE AUTO CLUB GROUP
G06F21/45G06F21/31G06F21/6245G06K7/1417H04L9/3213H04L63/0884H04L9/50
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,914,697
App. No.
17/305,782
Granted
Feb 27, 2024
Kind
B2
Abstract

A system and method is disclosed for a digital identity (DI) management platform. A carbon identification may be generated to include personal information unique to a user. The personal information may be authenticated by an external entity (e.g., governmental agency) to the digital identity management platform. A silicon identification may be generated for multiple devices registered to the user and may include a unique identifier for each device. A digital identity may be generated that links the carbon identification and the silicon identification The digital identity may be stored within a digital wallet accessible on each device by a user profile created and secured using a blockchain process. A request to access the personal information stored within the digital identity may be received and a predefined trust level will determine the amount of personal information to be provided.

Claims (46)

1. A method of providing a digital identity management platform, comprising:

generating a carbon identification that includes personal information unique to a user, wherein the personal information is authenticated by an entity external to the digital identity management platform;

generating a silicon identification for one or more devices registered to the user, the silicon identification including at least one identifier unique to the one or more devices; and

generating a digital identity that links the carbon identification and the silicon identification,

creating a user profile for the digital identity, the user profile including an attestation that is created using a blockchain process, the digital identity being stored within a digital wallet accessible on the one or more devices using the user profile;

receiving from the one or more devices a request to access the personal information stored within the digital identity, wherein a trust level associated with the request determines an amount of the personal information to be provided;

onboarding the one or more devices by generating a private key and public key unique to the one or more devices, wherein a device token and the public key are transmitted to a trusted-key backend that pairs the public key with the one or more devices; and

issuing the digital identity to includes the attestation for the user profile using the blockchain process, wherein the digital identity is generated using the device token and the public key that is paired with the one or more devices, and wherein the digital identity is stored within the digital wallet on the one or more devices.

2. The method of claim 1 , wherein prior to receiving the request, the amount of the personal information allowed to be provided for the trust level is predefined.

3. The method of claim 1 , further comprising: displaying on the one or more devices only the amount of the personal information that is allowed based on the trust level.

4. The method of claim 1 , wherein the at least one identifier is a hardware identification unique to the one or more devices.

5. The method of claim 1 , wherein the at least one identifier is a software identification unique to the one or more devices.

6. The method of claim 1 , wherein the personal information includes one or more documents issued by a government entity.

7. The method of claim 1 , wherein the personal information includes one or more medical records issued by a health care provider.

8. The method of claim 1 , further comprising: receiving the request from a third-party for access to the attestation stored within the digital identity.

9. The method of claim 1 , wherein receiving the request from the third-party further compromises:

sending a second request that a machine-readable code be generated;

receiving and approving the machine-readable code;

sending the attestation to the trusted-key backend; and

invoking a relying party backend service to present the attestation to the third-party.

10. The method of claim 9 , wherein the machine-readable code is a quick response code.

11. The method of claim 10 , wherein the relying party backend service is an edge-based platform that generates using a generate present data request.

12. The method of claim 1 , further comprising:

invoking a registration application programming interface to provide one or more unique identifiers for creating the user profile; and

transmitting an SMS message to the one or more devices that the user profile was created.

13. A system for providing a digital identity management platform, comprising:

a processor operable to:

generate a carbon identification that includes personal information unique to a user, wherein the personal information is authenticated by an entity external to the digital identity management platform;

generate a silicon identification for one or more devices registered to the user, the silicon identification including at least one identifier unique to the one or more devices; and

generate a digital identity that links the carbon identification and the silicon identification,

create a user profile for the digital identity, the user profile including an attestation that is created using a blockchain process, the digital identity being stored within a digital wallet accessible on the one or more devices using the user profile; and

receive from the one or more devices a request to access the personal information stored within the digital identity, wherein a trust level associated with the request determines an amount of the personal information to be provided;

onboard the one or more devices by generating a private key and public key unique to the one or more devices, wherein a device token and the public key are transmitted to a trusted-key backend that pairs the public key with the one or more devices; and

issue the digital identity to include the attestation for the user profile using the blockchain process, wherein the digital identity is generated using the device token and the public key that is paired with the one or more devices, and wherein the digital identity is stored within the digital wallet on the one or more devices.

14. The system of claim 13 , wherein the processor is further operable to: display on the one or more devices only the amount of the personal information that is allowed based on the trust level.

15. The system of claim 13 , wherein a verification code is used to confirm authorization of an email address for usage with the digital wallet.

16. The system of claim 13 , wherein a personal identification number is established and permits access to the digital wallet.

17. The system of claim 13 , wherein the trusted-key backend is invoked to sign and issue the attestation.

18. A method of providing a digital identity management platform, comprising:

generating a carbon identification that includes personal information unique to a user, wherein the personal information is authenticated by an entity external to the digital identity management platform;

generating a silicon identification for one or more devices registered to the user, the silicon identification including at least one identifier unique to the one or more devices; and

generating a digital identity that links the carbon identification and the silicon identification,

creating a user profile for the digital identity, the user profile including an attestation that is created using a blockchain process, the digital identity being stored within a digital wallet accessible on the one or more devices using the user profile;

receiving from the one or more devices a request to access the personal information stored within the digital identity, wherein a trust level associated with the request determines an amount of the personal information to be provided;

invoking a registration application programming interface to provide one or more unique identifiers for creating the user profile; and

transmitting an SMS message to the one or more devices that the user profile was created.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 14, 2021
From: PADINJARUVEETIL, GOPAL
To: THE AUTO CLUB GROUP
Reel/Frame 056855/0871 →
Continuity (1)
Related Publication 20230020703A1 · Jan 19, 2023