IP Library › Granted Patent US 12,403,862
Granted Patent B1
US 12,403,862 · App. 18/640,527 · Granted Sep 2, 2025

Central authority for certifying unbonded access to a vehicle via a digital key device

Inventors: Emelie Jess Ashdown (San Diego, CA); Nicholas Ryan Miller (New York, NY)
Assignee: Google LLC
B60R25/241B60R25/01
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,403,862
App. No.
18/640,527
Granted
Sep 2, 2025
Kind
B1
Abstract

Techniques for certifying unbonded access to a vehicle are disclosed herein. An example method includes receiving, by a vehicle and from a computing system, a service identifier associated with a function of the vehicle, wherein the vehicle stores one or more device identifiers for each digital key device in communication with the vehicle, receiving, from a digital key device, a signed token associated with the service identifier, wherein the one or more device identifiers do not include a device identifier for the digital key device, sending, to the computing system, the signed token, receiving, from the computing system, an indication of whether the signed token is verified, responsive to determining, based on the indication, that the signed token is verified, authorizing use of the function of the vehicle, and storing the device identifier for the digital key device.

Claims (56)

1. A method comprising:

receiving, by a vehicle and from a computing system, a service identifier associated with a function of the vehicle, wherein the vehicle stores one or more device identifiers for each digital key device in communication with the vehicle;

after advertising, by the vehicle, the service identifier, receiving, by the vehicle and from a digital key device, a signed token associated with the service identifier, wherein the one or more device identifiers do not include a device identifier for the digital key device;

sending, by the vehicle and to the computing system, the signed token;

receiving, by the vehicle and from the computing system, an indication of whether the signed token is verified;

responsive to determining, by the vehicle and based on the indication, that the signed token is verified, authorizing, by the vehicle, use of the function of the vehicle; and

storing, by the vehicle, the device identifier for the digital key device.

2. The method of claim 1 , further comprising:

responsive to determining, by the vehicle and based on the indication, that the signed token is not verified, refraining, by the vehicle, from authorizing use of the function of the vehicle.

3. The method of claim 1 , further comprising:

establishing, by the vehicle, a communication link with the digital key device; and

receiving, by the vehicle, one or more commands from the digital key device via the communication link.

4. The method of claim 3 , wherein the one or more commands control operation of the function of the vehicle.

5. The method of claim 3 , further comprising terminating, by the vehicle, the communication link based on one or more criteria received from the computing system.

6. The method of claim 1 , further comprising sending, by the vehicle, an indication that the vehicle is disabled, wherein the computing system refrains from verifying the signed token when the vehicle is disabled.

7. The method of claim 1 , wherein the signed token is a first signed token, the method further comprising:

receiving, by the digital key device, a second signed token from the vehicle;

sending, by the digital key device, the second signed token to the computing system for verification;

receiving, by the digital key device and from the computing system, an indication the second signed token was verified by the computing system; and

responsive to receiving the indication of the verification of the second signed token, presenting, by the digital key device, a notification that the vehicle is verified.

8. The method of claim 7 , further comprising:

receiving, by the vehicle and from the computing system, the first signed token; and

receiving, by the digital key device and from the computing system, the second signed token.

9. The method of claim 1 , further comprising receiving, by the vehicle and from the computing system, an indication of an itinerary including an occurring time period within which the itinerary is to occur.

10. The method of claim 9 , further comprising:

determining, by the vehicle, a current time is outside the occurring time period; and

responsive to determining the current time is outside the occurring time period, refraining, by the vehicle, from authorizing use of the function of the vehicle.

11. The method of claim 1 , wherein the function is an action performed by the vehicle selected from the group consisting of unlocking one or more doors, starting the vehicle, and selecting a drive mode of the vehicle.

12. A vehicle comprising:

a memory that stores instructions; and

one or more processors that execute the instructions to:

receive, from a computing system, a service identifier associated with a function of the vehicle, wherein the vehicle stores one or more device identifiers for each digital key device in communication with the vehicle;

after advertising the service identifier, receive, from a digital key device, a signed token associated with the service identifier, wherein the one or more device identifiers do not include a device identifier for the digital key device;

send, to the computing system, the signed token;

receive, from the computing system, an indication of whether the signed token is verified;

responsive to determining, based on the indication, that the signed token is verified, authorize use of the function of the vehicle; and

store the device identifier for the digital key device.

13. The vehicle of claim 12 , wherein the one or more processors further execute the instructions to:

responsive to determining, based on the indication, that the signed token is not verified, refrain from authorizing use of the function of the vehicle.

14. The vehicle of claim 12 , wherein the one or more processors further execute the instructions to:

establish a communication link with the digital key device; and

receive one or more commands from the digital key device via the communication link.

15. The vehicle of claim 14 , wherein the one or more commands control operation of the function of the vehicle.

16. The vehicle of claim 14 , wherein the one or more processors further execute the instructions to terminate the communication link based on one or more criteria received from the computing system.

17. The vehicle of claim 12 , wherein the one or more processors further execute the instructions to send an indication that the vehicle is disabled, wherein the computing system refrains from verifying the signed token when the vehicle is disabled.

18. The vehicle of claim 12 , wherein the one or more processors further execute the instructions to receive, from the computing system, an indication of an itinerary including an occurring time period within which the itinerary is to occur.

19. The vehicle of claim 18 , wherein the one or more processors further execute the instructions to:

determine a current time is outside the occurring time period; and

responsive to determining the current time is outside the occurring time period, refrain from authorizing use of the function of the vehicle.

20. A non-transitory computer-readable storage medium comprising instructions, that when executed by one or more processors of a computing system, cause the one or more processors to:

receive, from a computing system, a service identifier associated with a function of a vehicle, wherein the vehicle stores one or more device identifiers for each digital key device in communication with the vehicle;

after advertising the service identifier, receive, from a digital key device, a signed token associated with the service identifier, wherein the one or more device identifiers do not include a device identifier for the digital key device;

send, to the computing system, the signed token;

receive, from the computing system, an indication of whether the signed token is verified;

responsive to determining, based on the indication, that the signed token is verified, authorize use of the function of the vehicle; and

store the device identifier for the digital key device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 10, 2024
From: ASHDOWN, EMELIE JESS; MILLER, NICHOLAS RYAN
To: GOOGLE LLC
Reel/Frame 067376/0545 →
References Cited (18)
US 10310505B1 · Hanson · 2019 [cited by examiner]
US 20140188348A1 · Gautama et al. · 2014 [cited by applicant]
US 20160063786A1 · Lewis · 2016 [cited by examiner]
US 20160203661A1 · Pudar · 2016 [cited by examiner]
US 20170178035A1 · Grimm et al. · 2017 [cited by applicant]
US 20170195322A1 · Cho · 2017 [cited by examiner]
US 20180194324A1 · Neugebauer · 2018 [cited by examiner]
US 20210061224A1 · Kim et al. · 2021 [cited by applicant]
US 20210078536A1 · Stitt · 2021 [cited by applicant]
US 20210250355A1 · Galdo · 2021 [cited by examiner]
US 20220111820A1 · Hassani et al. · 2022 [cited by applicant]
US 20230101560A1 · Ghamsari et al. · 2023 [cited by applicant]
US 20230162544A1 · Hua et al. · 2023 [cited by applicant]
US 20230316831A1 · Einberg · 2023 [cited by examiner]
US 20240208462A1 · Bandi · 2024 [cited by examiner]
WO 2023093222A1 · 2023 [cited by applicant]
WO WO2025004126A1 · 2025 [cited by examiner]
International Search Report and Written Opinion of International Application No. PCT/US2025/019393 dated Jun. 11, 2025, 10 pp. [cited by applicant]