IP Library Granted Patent US 12,561,674
Granted Patent B2
US 12,561,674 · App. 16/931,756 · Granted Feb 24, 2026

Post payment processing tokenization in merchant payment processing

Inventors: Apekshith Ramesha (Sugar Hill, GA); John Laffoon (Leander, TX); Stephen Pitts (Dallas, GA)
Assignee: Home Depot Product Authority, LLC
G06Q20/3674G06Q20/0855G06Q20/108G06Q20/202G06Q20/204G06Q20/34G06Q20/3672G06Q20/401G06Q30/0185G06Q40/02G06Q2220/00H04L9/32
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,561,674
App. No.
16/931,756
Granted
Feb 24, 2026
Kind
B2
Abstract

Systems and methods for payment processing include receiving, by a payment terminal, a personal account number to complete a payment. The personal account number is encrypted by the payment terminal. The encrypted personal account number is sent from the payment terminal to a merchant server via a network. The encrypted personal account number is sent from the merchant server to a tokenization service provider server for tokenization and validation via a payment processor. The merchant server receives an indication of whether the transaction was successful and a token from the tokenization service provider server.

Claims (30)

1 . A computer-implemented method comprising:

receiving, by a first electronic device and from a second electronic device, a first request for verification, wherein the first request includes an encrypted identifier decryptable by a third electronic device, the encrypted identifier is based on an identifier associated with a user of the second electronic device, and the identifier represents a user account associated with a fourth electronic device;

forwarding, by the first electronic device and to the third electronic device, the encrypted identifier for verification;

receiving, by the first electronic device and from the third electronic device, a first token and a first indication of successful verification, wherein the first token is generated by the third electronic device and is stored on the first electronic device in association with the user for subsequent requests from the user;

providing, by the first electronic device and to the second electronic device, a first response to the first request, wherein the first response is based on the first indication of successful verification;

receiving, by the first electronic device and from the second electronic device, a second request for verification, wherein the second request does not include the encrypted identifier;

forwarding, by the first electronic device and to the third electronic device, the first token for verification;

receiving, by the first electronic device and from the third electronic device, a second token and a second indication of successful verification, wherein the second token is stored on the first electronic device in association with the user for subsequent requests from the user and replaces the first token; and

providing, by the first electronic device and to the second electronic device, a second response to the second request, wherein the second response is based on the second indication of successful verification.

2 . The computer-implemented method of claim 1 , wherein the identifier is re-encrypted before being provided to the fourth electronic device for verifying the identifier.

3 . The computer-implemented method of claim 1 , wherein the encrypted identifier is not decryptable by the first electronic device.

4 . The computer-implemented method of claim 1 , wherein the first token is generated after successful verification of the identifier.

5 . The computer-implemented method of claim 1 , wherein the second electronic device is a point-of-sale electronic device.

6 . The computer-implemented method of claim 1 , wherein the encrypted identifier is encrypted by point-to-point encryption (P2PE).

7 . The computer-implemented method of claim 1 , wherein forwarding the encrypted identifier to the third electronic device further comprises the third electronic device decrypting the identifier, generating the first token associated with the identifier, and providing the identifier to the fourth electronic device for verifying the identifier with the user account.

8 . The computer-implemented method of claim 1 , wherein forwarding the first token to the third electronic device comprises the third electronic device obtaining the identifier corresponding to the first token, generating a second token associated with the identifier, and providing the identifier to the fourth electronic device for verifying the identifier with the user account.

9 . A first electronic device, comprising:

a processor; and

a memory storing instructions that, when executed by the processor, cause the first electronic device to perform a method comprising:

receiving, from a second electronic device, a first request for verification, wherein the first request includes an encrypted identifier decryptable by a third electronic device, the encrypted identifier is based on an identifier associated with a user of the second electronic device, and the identifier represents a user account associated with a fourth electronic device;

forwarding, to the third electronic device, the encrypted identifier for verification;

receiving, from the third electronic device, a first token and a first indication of successful verification, wherein the first token is generated by the third electronic device and is stored on the first electronic device in association with the user for subsequent requests from the user;

providing, to the second electronic device, a first response to the first request, wherein the first response is based on the first indication of successful verification;

receiving, from the second electronic device, a second request for verification, wherein the second request does not include the encrypted identifier;

forwarding, to the third electronic device, the first token for verification;

receiving, from the third electronic device, a second token and a second indication of successful verification, wherein the second token is stored on the first electronic device in association with the user for subsequent requests from the user and replaces the first token; and

providing, to the second electronic device, a second response to the second request, wherein the second response is based on the second indication of successful verification.

10 . The first electronic device of claim 9 , wherein the identifier is re-encrypted before being provided to the fourth electronic device for verifying the identifier.

11 . The first electronic device of claim 9 , wherein forwarding the encrypted identifier to the third electronic device further comprises the third electronic device decrypting the identifier, generating the first token associated with the identifier, and providing the identifier to the fourth electronic device for verifying the identifier with the user account.

12 . The first electronic device of claim 9 , wherein forwarding the first token to the third electronic device comprises the third electronic device obtaining the identifier corresponding to the first token, generating a second token associated with the identifier, and providing the identifier to the fourth electronic device for verifying the identifier with the user account.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2020
From: RAMESHA, APEKSHITH; LAFFOON, JOHN; PITTS, STEPHEN
To: HOME DEPOT PRODUCT AUTHORITY, LLC
Reel/Frame 054094/0120 →
Continuity (1)
Related Publication 20220020002A1 · Jan 20, 2022
References Cited (37)
US 8332325B2 · Faith et al. · 2012 [cited by applicant]
US 9633342B2 · Blackhurst et al. · 2017 [cited by applicant]
US 10127528B2 · Solis · 2018 [cited by applicant]
US 10134031B2 · Laracey · 2018 [cited by applicant]
US 10460311B2 · Curtis · 2019 [cited by applicant]
US 20110307710A1 · Mcguire et al. · 2011 [cited by applicant]
US 20140006127A1 · DeCook et al. · 2014 [cited by applicant]
US 20160012465A1 · Sharp · 2016 [cited by applicant]
US 20160117666A1 · Davis et al. · 2016 [cited by applicant]
US 20160125417A1 · Huang et al. · 2016 [cited by applicant]
US 20160381118A1 · Andrews et al. · 2016 [cited by applicant]
US 20170068949A1 · Brendell et al. · 2017 [cited by applicant]
US 20170076291A1 · Cairns · 2017 [cited by examiner]
US 20170093809A1 · Barnett et al. · 2017 [cited by applicant]
US 20170149739A1 · Hull, IV · 2017 [cited by examiner]
US 20170293913A1 · Gulak · 2017 [cited by examiner]
US 20170330181A1 · Ortiz · 2017 [cited by applicant]
US 20170357964A1 · Subrahmanyam et al. · 2017 [cited by applicant]
US 20180036543A1 · Delisle · 2018 [cited by applicant]
US 20180082284A1 · Gomes · 2018 [cited by examiner]
US 20180082292A1 · Chuang et al. · 2018 [cited by applicant]
US 20180247306A1 · Dowty · 2018 [cited by examiner]
US 20180268405A1 · Lopez · 2018 [cited by examiner]
US 20180293573A1 · Ortiz et al. · 2018 [cited by applicant]
US 20180367510A1 · Barnett et al. · 2018 [cited by applicant]
US 20190080332A1 · MacKinnon · 2019 [cited by applicant]
US 20190156335A1 · Safak et al. · 2019 [cited by applicant]
US 20190370892A1 · Rampell et al. · 2019 [cited by applicant]
US 20190384896A1 · Jones · 2019 [cited by examiner]
US 20200265422A1 · Mokhasi · 2020 [cited by examiner]
US 20210142320A1 · Cacioppo · 2021 [cited by examiner]
Tokenization: https://searchsecurity.techtarget.com/definition/tokenization, 10 pgs. [cited by applicant]
P2PE: https://www.bluefin.com/pci-validated-p2pe-faq/, 8 pgs. [cited by applicant]
Business Rules engine: https://martinfowler.com/bliki/RulesEngine.html, 3 pgs. [cited by applicant]
Forward Proxy: https://docs.trafficserver.apache.org/en/latest/adminguide/configuration/transparent-forward-proxying.en.html, 3 pgs. [cited by applicant]
Distributed architecture: https://keetmalin.wixsite.com/keetmalin/post/2017/09/27/distributedsystem-architectures-and-architectural-styles, 15 pgs. [cited by applicant]
ISA/US, Inter'l Search Report and Written Opinion issued in Appl. No. PCT/US21/41005, dated Oct. 19, 2021, 8 pgs. [cited by applicant]