IP Library › Granted Patent US 12,026,702
Granted Patent B2
US 12,026,702 · App. 17/402,972 · Granted Jul 2, 2024

Multi-factor authentication (MFA) arrangements for dynamic virtual transaction token generation via browser extension

Inventors: Joshua Edwards (Philadelphia, PA); Adam Vukich (Alexandria, VA); Abdelkader M'Hamed Benkreira (Washington, DC)
Assignee: Capital One Services, LLC
G06Q20/38G06Q20/351G06Q20/409
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,026,702
App. No.
17/402,972
Granted
Jul 2, 2024
Kind
B2
Abstract

Logic to determine a record indicating an authentication by a first multi-factor authentication does not exist for a user in a memory. Logic to receive a request for issuance of a transaction token for a financial transaction, maintain a situation-specific predetermined value for each of a plurality of predetermined situations, and select the situation-specific predetermined value of the predetermined situation in the request, and sum a number of requested transaction tokens. And logic to retrieve the predetermined value and a predetermined number of transaction tokens, issue the transaction token, and complete the financial transaction using the transaction token issued.

Claims (66)

1. A non-transitory machine-readable medium storing program code of a browser extension executable by a processor to:

determine, by a browser extension executing on a processor, that a record indicating an authentication by a first multi-factor authentication does not exist for a user in a memory;

receives by the browser extension, a request for issuance of a transaction token for a financial transaction, wherein the request includes an indication of a value needed for the transaction token and a situational data type indicating a predetermined situation;

maintain a situation-specific predetermined value for each of a plurality of predetermined situations in a list of differing predetermined situations, wherein the list comprises multiple users with individualized limits on a per-user basis, wherein each user in the list is associated with a user-specific running period, a user-specific cumulative token value per running period, and a user-specific lifespan;

select, by the browser extension, the situation-specific predetermined value of the predetermined situation for the user in the request for the transaction token to be transacted in the financial transaction, wherein the situation-specific predetermined value is used as a predetermined value;

sum a number of requested transaction tokens including the transaction token requested in the request for the issuance of the transaction token;

in response to the predetermined situation and the sum of the requested transaction tokens being less than a threshold, retrieve, by the browser extension, the predetermined value and a predetermined number of transaction tokens from the memory, wherein the predetermined value is a monetary amount, and the predetermined number of tokens is a number of transaction tokens requested before another multi-factor authentication is requested;

issue the transaction token when the predetermined value needed does not exceed the predetermined value, the number of requested transaction tokens does not exceed the predetermined number of tokens, a cumulative token value does not exceed the user-specific cumulative token value per running period, and the user-specific lifespan has not expired; and

completes, by the browser extension, the financial transaction using the transaction token issued in response to an authenticated second multi-factor authentication.

2. The non-transitory machine-readable medium as claimed in claim 1 , wherein the transaction token is a virtual credit card, and the value needed for the transaction token is the monetary amount.

3. The non-transitory machine-readable medium as claimed in claim 1 , comprising:

maintaining a merchant-specific predetermined value for each merchant in a list of differing merchants; and

selecting the merchant-specific predetermined value of a merchant with which the transaction token is to be transacted, as the predetermined value.

4. The non-transitory machine-readable medium as claimed in claim 1 , wherein the transaction token includes identifier data mapping back to at least one of: identification of an individual; a prior session conducted previously; a financial service account; or a primary account number.

5. The non-transitory machine-readable medium of claim 1 , wherein when the processor is determining, by the browser extension, that the record indicating the authentication by the first multi-factor authentication, the non-transitory machine-readable medium causes the processor to:

determine whether a user-selected authorized span of time has passed since the first multi-factor authentication.

6. The non-transitory machine-readable medium of claim 1 , wherein when the program code of the browser extension is executed by the processor, the processor is further caused to:

in response to the determination that the authentication by a first multi-factor authentication does not exist for a user in the memory of a device, cause, by the browser extension, a prompt on a user interface on a display of the device to require a user input via a user input device to complete the authentication by the first multi-factor authentication;

receive, by the browser extension via the user input device, the first multi-factor authentication; and

present, by the browser extension, an option on the user interface for a second user input to request an issuance of a transaction token for a financial transaction.

7. The non-transitory machine-readable medium of claim 6 , wherein operation of the browser extension is device specific, requiring the first multi-factor authentication be performed after reinstalling the browser extension onto a same device or after installing the browser extension onto a new device.

8. A computing device comprising:

a user-interface device;

a processor;

a memory including browser extension program code, the browser extension program code, when executed by the processor, to cause the processor to:

determining, by a browser extension executing on the processor, that a record indicating an authentication by a first multi-factor authentication does not exist for a user in the memory;

receiving, by the browser extension, a request for issuance of a transaction token for a financial transaction, wherein the request includes an indication of a value needed for the transaction token and a situational data type indicating a predetermined situation;

maintaining a situation-specific predetermined value for each of a plurality of predetermined situations in a list of differing predetermined situations, wherein the list comprises multiple users with individualized limits on a per-user basis, wherein each user in the list is associated with a user-specific running period, a user-specific cumulative token value per running period, and a user-specific lifespan;

selecting, by the browser extension, the situation-specific predetermined value of the predetermined situation for the user in the request for the transaction token to be transacted in the financial transaction, wherein the situation-specific predetermined value is used as a predetermined value;

summing a number of requested transaction tokens including the transaction token requested in the request for the issuance of the transaction token;

in response to the predetermined situation and the sum of the requested transaction tokens being less than a threshold, retrieving, by the browser extension, the predetermined value and a predetermined number of transaction tokens from the memory, wherein the predetermined value is a monetary amount, and the predetermined number of tokens is a number of transaction tokens requested before another multi-factor authentication is requested;

issuing the transaction token when the predetermined value needed does not exceed the predetermined value, the number of requested transaction tokens does not exceed the predetermined number of tokens, a cumulative token value does not exceed the user-specific cumulative token value per running period, and the user-specific lifespan has not expired; and

completing, by the browser extension, the financial transaction using the transaction token issued in response to an authenticated second multi-factor authentication.

9. The computing device as claimed in claim 8 , wherein the transaction token is a virtual credit card, the value needed for the transaction token is a monetary value, and the predetermined value is a predetermined monetary amount.

10. The computing device as claimed in claim 8 , comprising:

a merchant-specific token selector configured to:

access a merchant-specific predetermined value for each merchant in a list of differing merchants; and

select the merchant-specific predetermined value of a merchant with which the transaction token is to be transacted, as the predetermined value.

11. The computing device as claimed in claim 8 , wherein the transaction token includes identifier data mapping back to at least one of: identification of an individual; a prior session conducted previously; a financial service account; or a primary account number.

12. The computing device of claim 8 , wherein when the processor is determining that the record indicating an authentication by the first multi-factor authentication does not exist for the user in the memory, the processor is operable to:

determine whether a user-selected authorized span of time has passed since the first multi-factor authentication.

13. The computing device of claim 8 , wherein when the program code of the browser extension is executed by the processor, the processor is further caused to:

in response to the determination that the authentication by a first multi-factor authentication does not exist for a user in the memory of a device, cause, by the browser extension, a prompt on a user interface on a display of the device to require a user input via a user input device to complete the authentication by the first multi-factor authentication;

receive, by the browser extension via the user input device, the first multi-factor authentication; and

present, by the browser extension, an option on the user interface for a second user input to request an issuance of a transaction token for a financial transaction.

14. The computing device of claim 13 , wherein operation of the browser extension is device specific, requiring the first multi-factor authentication be performed after reinstalling the browser extension onto a same device or after installing the browser extension onto a new device.

15. A computer-implemented method, comprising:

determining, by a browser extension executing on a processor, that a record indicating an authentication by a first multi-factor authentication does not exist for a user in a memory;

receiving, by the browser extension, a request for issuance of a transaction token for a financial transaction, wherein the request includes an indication of a value needed for the transaction token and a situational data type indicating a predetermined situation;

maintaining a situation-specific predetermined value for each of a plurality of predetermined situations in a list of differing predetermined situations, wherein each user in the list is associated with a user-specific running period, a user-specific cumulative token value per running period, and a user-specific lifespan;

selecting, by the browser extension, the situation-specific predetermined value of the predetermined situation for the user in the request for the transaction token to be transacted in the financial transaction, wherein the situation-specific predetermined value is used as a predetermined value;

summing a number of requested transaction tokens including the transaction token requested in the request for the issuance of the transaction token;

in response to the predetermined situation and the sum of the requested transaction tokens being less than a threshold, retrieving, by the browser extension, the predetermined value and a predetermined number of transaction tokens from the memory, wherein the predetermined value is a monetary amount, and the predetermined number of tokens is a number of transaction tokens requested before another multi-factor authentication is requested;

issuing the transaction token when the predetermined value needed does not exceed the predetermined value, the number of requested transaction tokens does not exceed the predetermined number of tokens, a cumulative token value does not exceed the user-specific cumulative token value per running period, and the user-specific lifespan has not expired; and

completing, by the browser extension, the financial transaction using the transaction token issued in response to an authenticated second multi-factor authentication.

16. The computer-implemented method as claimed in claim 15 , wherein the transaction token is a virtual credit card, and the predetermined value is a predetermined monetary amount.

17. The computer-implemented method as claimed in claim 15 , comprising:

maintaining a merchant-specific predetermined value for each merchant in a list of differing merchants; and

selecting the merchant-specific predetermined value of a merchant with which the transaction token is to be transacted, as the predetermined value.

18. The computer-implemented method as claimed in claim 15 , wherein the transaction token includes identifier data mapping back to at least one of: an identification of an individual; a prior session conducted previously; a financial service account; or a primary account number.

19. The computer-implemented method of claim 15 , wherein determining, by the browser extension executing on the processor, that the record indicating the authentication by the first multi-factor authentication does not exist for the user in the memory, further includes:

determining whether a user-selected authorized span of time has passed since the first multi-factor authentication.

20. The computer-implemented method of claim 15 , further comprising:

in response to the determination that the authentication by a first multi-factor authentication does not exist for a user in the memory of a device, causing, by the browser extension, a prompt on a user interface on a display of the device to require a user input via a user input device to complete the authentication by the first multi-factor authentication, wherein operation of the browser extension is device specific, requiring the first multi-factor authentication be performed after reinstalling the browser extension onto a same device or after installing the browser extension onto a new device;

receiving, by the browser extension via the user input device, the first multi-factor authentication; and

presenting, by the browser extension, an option on the user interface for a second user input to request an issuance of a transaction token for a financial transaction.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 16, 2021
From: EDWARDS, JOSHUA; VUKICH, ADAM; BENKREIRA, ABDELKADER M'HAMED
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 057189/0221 →
Continuity (2)
Continuation 16183971 · Nov 8, 2018
Related Publication 20210374746A1 · Dec 2, 2021