IP Library › Granted Patent US 12,147,566
Granted Patent B2
US 12,147,566 · App. 17/683,681 · Granted Nov 19, 2024

Controlling personal information

Inventors: Remy Pottier (Grenoble, FR); Minsheng Lu (Cambridge, GB); Arthur Michael Goldberg (Parkland, FL); Christopher Daniel Emmons (Austin, TX)
Assignee: Arm Limited
G06F21/6245G06F21/6254G06F2221/2141
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,147,566
App. No.
17/683,681
Granted
Nov 19, 2024
Kind
B2
Abstract

Provided is a digital/analog signal processing apparatus and method for controlling exposure of personally identifiable information to be transferred from storage in a secure enclave, comprising a memory and an integrated circuit coupled to the memory, configured to: select a data set stored in the storage; individuate personally identifiable information in the data set; determine an individual person's subset of personally identifiable information; extract an identifier for the individual person from the subset; interrogate stored data using the identifier to locate metadata comprising permission to expose the individual person's subset; and responsive to a failure to locate the metadata comprising permission, either: emit a signal seeking the permission; or apply a protective measure to the individual person's subset of individuated personally identifiable information prior to transfer of the data set in a digital/analog signal outside the secure enclave.

Claims (52)

1. A digital/analog signal processing apparatus for controlling exposure of personally identifiable information to be transferred from storage in a secure enclave, comprising:

a memory; and

an integrated circuit coupled to said memory, configured to:

select a data set stored in said storage;

individuate personally identifiable information in said data set;

determine an individual person's subset of individuated personally identifiable information;

extract an identifier for said individual person from said individual person's subset of individuated personally identifiable information;

interrogate stored data using said identifier to locate metadata comprising permission to expose said individual person's subset of individuated personally identifiable information; and

responsive to a failure of said interrogating to locate said metadata comprising permission, either:

emit a signal seeking said permission; or

apply a protective measure to said individual person's subset of individuated personally identifiable information prior to transfer of said data set in a digital/analog signal outside said secure enclave;

wherein said determining an individual person's subset of individuated personally identifiable information further comprises:

distinguishing between an intended subject of said data set and an incidentally included individual person using a machine learning technique; and

selecting said incidentally included individual person's individuated personally identifiable information for further processing.

2. The digital/analog signal processing apparatus according to claim 1 , said metadata comprising rules governing said permission; and further comprising: extracting contextual data relating to said individuated personally identifiable information from said data set; and applying said rules according to the contextual data.

3. The digital/analog signal processing apparatus according to claim 1 , said applying a protective measure comprising one of deleting said individual person's subset of individuated personally identifiable information or disguising said individual person's subset of individuated personally identifiable information.

4. The digital/analog signal processing apparatus according to claim 3 , said disguising comprising one of visually obfuscating image data, recoding sound data or de-localising location data.

5. The digital/analog signal processing apparatus according to claim 1 , said distinguishing between an intended subject of said data set and an incidentally included individual person using a machine learning technique comprising distinguishing based on one or more of relative data size, relative volume of speech, centrality of image data, % coverage in data set, posing indicators, orientation in image, or point of focus of image.

6. The digital/analog signal processing apparatus according to claim 1 , said metadata comprising an opt-in/opt-out indicator of said permission; and wherein opt-out is a default setting of said indicator.

7. The digital/analog signal processing apparatus according to claim 6 , wherein said opt-in/opt-out indicator is obtained from a broadcast by an external device at a capture time of said data set.

8. The digital/analog signal processing apparatus according to claim 1 , wherein, in a real-time streaming system, a temporary upload hold is applied to perform said interrogating said metadata to determine permission prior to transfer of said data set in a digital/analog signal outside said secure enclave.

9. A computer-implemented digital/analog signal processing method for controlling exposure of personally identifiable information to be transferred from storage in a secure enclave, comprising:

selecting a data set stored in said storage;

individuating personally identifiable information in said data set;

determining an individual person's subset of individuated personally identifiable information;

extracting an identifier for said individual person from said individual person's subset of individuated personally identifiable information;

interrogating stored data using said identifier to locate metadata comprising permission to expose said individual person's subset of individuated personally identifiable information; and

responsive to a failure of said interrogating to locate said metadata comprising permission, either:

emitting a signal seeking said permission; or

applying a protective measure to said individual person's subset of individuated personally identifiable information prior to transfer of said data set in a digital/analog signal outside said secure enclave;

wherein said determining an individual person's subset of individuated personally identifiable information further comprises:

distinguishing between an intended subject of said data set and an incidentally included individual person using a machine learning technique; and

selecting said incidentally included individual person's individuated personally identifiable information for further processing.

10. The computer-implemented digital/analog signal processing method according to claim 9 , said metadata comprising rules governing said permission; and further comprising: extracting contextual data relating to said individuated personally identifiable information from said data set; and applying said rules according to the contextual data.

11. The computer-implemented digital/analog signal processing method according to claim 9 , said applying a protective measure comprising one of deleting said individual person's subset of individuated personally identifiable information or disguising said individual person's subset of individuated personally identifiable information.

12. The computer-implemented digital/analog signal processing method according to claim 11 , said disguising comprising one of visually obfuscating image data, recoding sound data or de-localising location data.

13. The computer-implemented digital/analog signal processing method according to claim 9 , said distinguishing between an intended subject of said data set and an incidentally included individual person using a machine learning technique comprising distinguishing based on one or more of relative data size, relative volume of speech, centrality of image data, % coverage in data set, posing indicators, orientation in image, or point of focus of image.

14. The computer-implemented digital/analog signal processing method according to claim 9 , said metadata comprising an opt-in/opt-out indicator of said permission; and wherein opt-out is a default setting of said indicator.

15. The computer-implemented digital/analog signal processing method according to claim 14 , wherein said opt-in/opt-out indicator is obtained from a broadcast by an external device at a capture time of said data set.

16. The computer-implemented digital/analog signal processing method according to claim 9 , wherein, in a real-time streaming system, a temporary upload hold is applied to perform said interrogating said metadata to determine permission prior to transfer of said data set in a digital/analog signal outside said secure enclave.

17. A non-transitory computer readable medium storing computer program code to, when loaded into a computer system an executed thereon, cause said computer system to perform a digital/analog signal processing method for controlling exposure of personally identifiable information to be transferred from storage in a secure enclave, comprising:

selecting a data set stored in said storage;

individuating personally identifiable information in said data set;

determining an individual person's subset of individuated personally identifiable information;

extracting an identifier for said individual person from said individual person's subset of individuated personally identifiable information;

interrogating stored data using said identifier to locate metadata comprising permission to expose said individual person's subset of individuated personally identifiable information; and

responsive to a failure of said interrogating to locate said metadata comprising permission, either:

emitting a signal seeking said permission; or

applying a protective measure to said individual person's subset of individuated personally identifiable information prior to transfer of said data set in a digital/analog signal outside said secure enclave;

wherein said determining an individual person's subset of individuated personally identifiable information further comprises:

distinguishing between an intended subject of said data set and an incidentally included individual person using a machine learning technique; and

selecting said incidentally included individual person's individuated personally identifiable information for further processing.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 1, 2022
From: POTTIER, REMY; LU, MINSHENG; GOLDBERG, ARTHUR MICHAEL; EMMONS, CHRISTOPHER DANIEL
To: ARM LIMITED
Reel/Frame 059133/0515 →
Continuity (1)
Related Publication 20230281336A1 · Sep 7, 2023