IP Library › Granted Patent US 12,461,938
Granted Patent B2
US 12,461,938 · App. 18/410,410 · Granted Nov 4, 2025

Exporting customer data using a compliant tenant shard

Inventors: Bo Liu (Sammamish, WA); Ke Wang (Redmond, WA); Ahmed Hassan Mohamed (Bellevue, WA)
Assignee: Microsoft Technology Licensing, LLC
G06F16/273G06F16/275
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,461,938
App. No.
18/410,410
Granted
Nov 4, 2025
Kind
B2
Abstract

User data is extracted from a user data shard and copied into a user-isolated tenant shard. Instructions for accessing the user data are stored in a separate data store. A tenant administrator computing system retrieves and runs the instructions for accessing and exporting the user data from the user-isolated tenant shard.

Claims (29)

1 . A computer implemented method, comprising:

receiving a request from a requestor requesting confidential user data from a user data partition in a computing system;

copying the confidential user data to a tenant data partition that resides behind a compliance boundary by;

scheduling an asynchronous data extraction job with an asynchronous extraction system corresponding to the user data partition; and

polling a status of the asynchronous data extraction job;

generating data access instructions for exporting the user data from the tenant data partition to a data location determined based upon the identity of the requestor;

storing the data access instructions in an object-based data storage system at a time based on the status of the asynchronous data extraction job; and

generating an output to the requestor indicating that the confidential user data and the data access instructions are available for access.

2 . The computer implemented method of claim 1 , further comprising:

authenticating an identify of the requestor; and

running the data access instructions to export the user data from the tenant data partition to a location based on the identity of the requestor.

3 . The computer implemented method of claim 1 , wherein generating the data access instructions comprises embedding a unique request identifier that corresponds to the request.

4 . The computer implemented method of claim 3 , further comprising encrypting the data access instructions with the unique request identifier.

5 . The computer implemented method of claim 3 , further comprising exposing a download interface through which the data access instructions can be retrieved only when the unique request identifier is supplied.

6 . The computer implemented method of claim 1 , further comprising transmitting a notification to the requestor indicating that the confidential user data and the data access instructions are available.

7 . The computer implemented method of claim 1 , further comprising, after an expiration time elapses, removing access to the confidential user data stored in the tenant data partition.

8 . The computer implemented method of claim 1 , wherein copying the confidential user data further comprises synchronously extracting the confidential user data from the user data partition in response to the request.

9 . The computer implemented method of claim 1 , wherein the data location to which the confidential user data is exported is within a compliance boundary and is selected based on the identity of the requestor.

10 . The computer implemented method of claim 9 , wherein the data location is a blob storage system.

11 . The computer implemented method of claim 1 , wherein scheduling the asynchronous data extraction job comprises using a mapping of users or tenants to data storage systems to identify the asynchronous extraction system that corresponds to the user data partition.

12 . The computer implemented method of claim 11 , further comprising scheduling respective asynchronous data extraction jobs with a plurality of asynchronous extraction systems that correspond to different data storage systems storing portions of the confidential user data.

13 . The computer implemented method of claim 12 , further comprising polling each asynchronous extraction system to determine a status of each asynchronous data extraction job until every job completes.

14 . The computer implemented method of claim 1 , further comprising, when the status of the asynchronous data extraction job indicates completion, writing a completion marker associated with the request in the object-based data storage system.

15 . The computer implemented method of claim 1 , further comprising authenticating the requestor by performing multi-level role-based access control before exporting the confidential user data.

16 . The computer implemented method of claim 1 , wherein the data access instructions specify at least one executable script configured to invoke a secure export interface of the tenant data partition and at least one parameter comprising authentication metadata or a destination location identifier required for the export of the confidential user data.

17 . The computer implemented method of claim 1 , wherein storing the data access instructions comprises writing the data access instructions to a blob storage system that is logically and physically distinct from the tenant data partition, such that access permissions for the blob storage are governed independently.

18 . The computer implemented method of claim 1 , further comprising generating, for an administrator, a secure user interface coupled to an authentication system and a data access instruction retrieval interface, the user interface being configured to permit submission of the request and authenticated retrieval of the data access instructions.

19 . The computer implemented method of claim 7 , further comprising setting the expiration time and monitoring the expiration time until the confidential user data is removed.

20 . The computer implemented method of claim 10 , wherein selecting the data location is performed by a customer-based location identifier configured to apply one or more user classification rules to determine whether the data location is the tenant data partition or the blob storage system.

Assignments (3)
CORRECTIVE ASSIGNMENT TO CORRECT THE RECEIVING PARTY DATA PREVIOUSLY RECORDED ON REEL 66192 FRAME 451. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Mar 1, 2024
From: LIU, BO; WANG, KE; MOHAMED, AHMED HASSAN
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 066713/0025 →
CORRECTIVE ASSIGNMENT TO CORRECT THE RECEIVING PARTY DATA PREVIOUSLY RECORDED ON REEL 66192 FRAME 451. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Feb 28, 2024
From: LIU, BO; WANG, KE; MOHAMED, AHMED HASSAN
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 066690/0688 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 22, 2024
From: LIU, BO; WANG, KE; MOHAMED, AHMED HASSAN
To: DEERE & COMPANY
Reel/Frame 066192/0451 →
Continuity (1)
Related Publication 20250231963A1 · Jul 17, 2025
References Cited (16)
US 9667720B1 · Bent · 2017 [cited by examiner]
US 9754006B2 · Wang · 2017 [cited by examiner]
US 10296633B1 · Collins · 2019 [cited by examiner]
US 10366062B1 · Lazier · 2019 [cited by examiner]
US 10387451B2 · Habouzit · 2019 [cited by examiner]
US 10606864B2 · Leiseboer · 2020 [cited by examiner]
US 20180276269A1 · Rasscevskis · 2018 [cited by examiner]
US 20190171537A1 · Wang · 2019 [cited by examiner]
US 20210034396A1 · Denny · 2021 [cited by examiner]
US 20210191825A1 · Chopra · 2021 [cited by examiner]
US 20220019579A1 · Meyerzon · 2022 [cited by examiner]
US 20220019622A1 · Meyerzon · 2022 [cited by examiner]
US 20220019740A1 · Meyerzon · 2022 [cited by examiner]
US 20220019905A1 · Meyerzon · 2022 [cited by examiner]
US 20220019908A1 · Meyerzon · 2022 [cited by examiner]
US 20220100727A1 · Li · 2022 [cited by examiner]