IP Library Granted Patent US 12,469,076
Granted Patent B2
US 12,469,076 · App. 18/088,114 · Granted Nov 11, 2025

Authorization code for access

Inventors: Gregory Slowiak (Chicago, IL); Michael Dempsey (Chicago, IL); Dougal J. Brindley (Alameda, CA)
Assignee: Early Warning Services, LLC
G06Q40/03G06F9/445G06F21/305G06F21/6263H04L9/0819H04L41/147H04L63/0876H04L63/0884H04L63/126H04L67/535
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,469,076
App. No.
18/088,114
Granted
Nov 11, 2025
Kind
B2
Abstract

A method for sharing digital identity data, the method comprising, using the identity network, receiving an indication of consent from a user device to share a plurality of identity attributes with a relying party, wherein the plurality of identity attributes are associated with a user of the user device, generating an internal authorization code after receiving the consent, providing the internal authorization code to the user device, receiving the internal authorization code from the relying party, in response to receiving the internal authorization code, providing an internal access token to the relying party, receiving the internal access token from the relying party, and in response to receiving the access token, providing the plurality of identity attributes to the relying party.

Claims (76)

1 . A method for sharing digital identity data, the method comprising, using an identity network:

receiving an indication of consent from a user device to share a plurality of identity attributes with a relying party, wherein the plurality of identity attributes are associated with a user of the user device;

receiving, from a selected identity provider, an identity provider authorization code that indicates that the selected identity provider authorizes the identity network to access the plurality of identity attributes from the selected identity provider;

generating an internal authorization code after receiving the consent;

providing the internal authorization code to the user device;

receiving the internal authorization code from the relying party;

in response to receiving the internal authorization code, providing an internal access token to the relying party;

receiving the internal access token from the relying party;

providing the identity provider authorization code to the selected identity provider;

in response to providing the identity provider authorization code, retrieving the plurality of identity attributes from the selected identity provider; and

in response to receiving the access token, providing the plurality of identity attributes to the relying party.

2 . The method of claim 1 , further comprising:

receiving a sign-up request for the user from the relying party;

displaying, within a user interface of a user device, a list of identity providers;

receiving a selection of the selected identity provider from the list of identity providers;

in response to receiving the selection, causing the user interface to display a login page associated with the selected identity provider; and

receiving a validation of authentication of the user.

3 . The method of claim 2 , further comprising:

receiving, from the identity provider, a plurality of identity attributes associated with the user; and

in response to receiving the validation, displaying, within the user interface, the plurality of identity attributes associated with the user.

4 . The method of claim 1 , wherein the identity provider authorization code is received after or during receipt of the consent from the user device.

5 . The method of claim 1 , wherein:

providing the plurality of identity attributes to the relying party comprises encrypting the plurality of identity attributes and transmitting the plurality of identity attributes to the relying party.

6 . The method of claim 1 , wherein:

the plurality of identity attributes comprise at least one identity attribute selected from a group comprising of a name of the user, an address of the user, a telephone number of the user, an email address of the user, a gender of the user, a birthdate of the user, a peer to peer payment account token of the user, a driver's license number of the user, and a social security number of the user.

7 . An identity network for sharing digital identity data, comprising:

one or more processors; and

a memory having stored thereon instructions that, upon execution by the one or more processors, cause the one or more processors to:

receive consent from a user device to share a plurality of identity attributes with a relying party, wherein the plurality of identity attributes are associated with a user of the user device;

receive, from a selected identity provider, an identity provider authorization code that indicates that the selected identity provider authorizes the identity network to access the plurality of identity attributes from the selected identity provider;

generate an internal authorization code after receiving the consent;

provide the internal authorization code to the user device;

receive the internal authorization code from the relying party;

in response to receiving the internal authorization code, provide an access token to the relying party;

receive the access token from the relying party;

provide the identity provider authorization code to the selected identity provider;

in response to providing the identity provider authorization code, retrieve the plurality of identity attributes from the selected identity provider; and

in response to receiving the access token, provide the plurality of identity attributes to the relying party.

8 . The identity network for sharing digital identity data of claim 7 , wherein the instructions further cause the one or more processors to:

receive a sign-up request for the user from the relying party;

display within a user interface of a user device, a list of identity providers;

receive a selection of the selected identity provider from the list of identity providers;

in response to receiving the selection, cause the user interface to display a login page associated with the selected identity provider; and

receive a validation of authentication of the user.

9 . The identity network for sharing digital identity data of claim 8 , wherein the instructions further cause the one or more processors to:

receive from the identity provider, the plurality of identity attributes associated with the user; and

in response to receiving the validation, display the plurality of identity attributes associated with the user within the user interface.

10 . The identity network for sharing digital identity data of claim 7 , wherein:

providing the plurality of identity attributes to the relying party comprises encrypting the plurality of identity attributes and transmitting the plurality of identity attributes to the relying party.

11 . The identity network for sharing digital identity data of claim 7 , wherein:

the plurality of identity attributes comprise at least one identity attribute selected from a group comprising of a name of the user, an address of the user, a telephone number of the user, an email address of the user, a gender of the user, a birthdate of the user, a peer to peer payment account token of the user, a driver's license number of the user, and a social security number of the user.

12 . The identity network for sharing digital identity data of claim 7 , wherein the identity provider authorization code is received after or during receipt of the consent from the user device.

13 . A non-transitory computing-device readable storage medium on which computing-device readable instructions of a program are stored, the instructions, when executed by one or more computing devices of an identity network, causing the one or more computing devices to perform a method, comprising:

receiving an indication of consent from a user device to share a plurality of identity attributes with a relying party, wherein the plurality of identity attributes are associated with a user of the user device;

receiving, from a selected identity provider, an identity provider authorization code that indicates that the selected identity provider authorizes the identity network to access the plurality of identity attributes from the selected identity provider;

generating an internal authorization code after receiving the consent;

providing the internal authorization code to the user device;

receiving the internal authorization code from the relying party;

in response to receiving the internal authorization code, providing an internal access token to the relying party;

receiving the internal access token from the relying party;

providing the identity provider authorization code to the selected identity provider;

in response to providing the identity provider authorization code, retrieving the plurality of identity attributes from the selected identity provider; and

in response to receiving the access token, providing the plurality of identity attributes to the relying party.

14 . The non-transitory computing-device readable storage medium of claim 13 , further comprising:

receiving a sign-up request for the user from the relying party;

displaying, within a user interface of a user device, a list of identity providers;

receiving a selection of the selected identity provider from the list of identity providers;

in response to receiving the selection, causing the user interface to display a login page associated with the selected identity provider; and

receiving a validation of authentication of the user.

15 . The non-transitory computing-device readable storage medium of claim 14 , further comprising:

receiving, from the identity provider, a plurality of identity attributes associated with the user; and

in response to receiving the validation, displaying, within the user interface, the plurality of identity attributes associated with the user.

16 . The non-transitory computing-device readable storage medium of claim 13 , wherein:

providing the plurality of identity attributes to the relying party comprises encrypting the plurality of identity attributes and transmitting the plurality of identity attributes to the relying party.

17 . The non-transitory computing-device readable storage medium of claim 13 , wherein:

the plurality of identity attributes comprise at least one identity attribute selected from a group comprising of a name of the user, an address of the user, a telephone number of the user, an email address of the user, a gender of the user, a birthdate of the user, a peer to peer payment account token of the user, a driver's license number of the user, and a social security number of the user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 18, 2023
From: SLOWIAK, GREGORY; DEMPSEY, MICHAEL; BRINDLEY, DOUGAL J.
To: EARLY WARNING SERVICES, LLC
Reel/Frame 065264/0322 →
Continuity (11)
Continuation In Part 17716516 · Apr 8, 2022
Continuation In Part 16908456 · Jun 22, 2020
Continuation In Part 16908443 · Jun 22, 2020
Continuation 16908460 · Jun 22, 2020
Provisional Application 63293462 · Dec 23, 2021
Provisional Application 62864911 · Jun 21, 2019
Provisional Application 62864891 · Jun 21, 2019
Provisional Application 62864900 · Jun 21, 2019
Provisional Application 62864889 · Jun 21, 2019
Provisional Application 62864906 · Jun 21, 2019
Related Publication 20230125547A1 · Apr 27, 2023
References Cited (20)
US 10255598B1 · Dean et al. · 2019 [cited by applicant]
US 11784995B1 · Slowiak et al. · 2023 [cited by applicant]
US 20140143837A1 · Fletcher · 2014 [cited by examiner]
US 20150332029A1 · Coxe · 2015 [cited by examiner]
US 20170250972A1 · Ronda · 2017 [cited by examiner]
US 20180219846A1 · Poschel et al. · 2018 [cited by applicant]
US 20190182042A1 · Ebrahimi et al. · 2019 [cited by applicant]
US 20200153814A1 · Smolny · 2020 [cited by examiner]
US 20200162447A1 · Fletcher · 2020 [cited by examiner]
US 20210099454A1 · Rahimi et al. · 2021 [cited by applicant]
US 20220029985A1 · Malhotra et al. · 2022 [cited by applicant]
WO 2019118682A1 · 2019 [cited by applicant]
Sharma et al, Identity and Access Management A Comprehensive Study, IEEE, Oct. 10, 2015, pp. 1481-1485. (Year: 2015). [cited by examiner]
Singh et al, Identity Management in Cloud Computing through Claim-Based Solution, IEEE, Feb. 22, 2015, pp. 524-529. (Year: 2015). [cited by examiner]
Notice of Allowance issued U.S. Appl. No. 16/908,443, dated Jun. 1, 2023 in 12 pages. [cited by applicant]
Non-Final Office Action issued in U.S. Appl. No. 16/908,456, dated Jun. 26, 2023 in 15 pages. [cited by applicant]
Notice of Allowance issued in U.S. Appl. No. 16/908,456, dated Sep. 19, 2023, 19 pages. [cited by applicant]
Notice of Allowance issued U.S. Appl. No. 17/716,516, dated Aug. 2, 2023 in 10 pages. [cited by applicant]
Goswami et al., “A Replay Attack Resilient System for PKI Based Authentication in Challenge-Response Mode for Online Application”, IEEE, 3rd International Conference on Eco-friendly Computing and Communication Systems, … [cited by applicant]
Vassilev et al., “Personal Brokerage of Web Service Access”, IEEE Security and Privacy Magazine, vol. 5, No. 5, Oct. 1, 2007, pp. 24-31. [cited by applicant]