Application access management based on biometric behavior
According to one embodiment, a method, computer system, and computer program product for managing application access is provided. The embodiment may include receiving real-time biometric data of a user as the user interacts with a computing device and deriving a real-time biometric signature of the user based on the received real-time biometric data. Responsive to determining that the real-time biometric signature is known, the embodiment may include identifying the user, computing a confidence score of the real-time biometric signature, and configuring application access and application functionality available to the user via the computing device based on the identification of the user and the computed confidence score. The embodiment may include continuously performing the receiving and the deriving as the user interacts with the computing device. While a successive real-time biometric signature is known, the embodiment may include continuously performing the identifying, the computing, and the configuring.
1 . A computer-implemented method, the method comprising:
receiving real-time biometric data of a user as the user interacts with a computing device;
deriving a real-time biometric signature of the user based on the received real-time biometric data;
responsive to determining that the real-time biometric signature is known, identifying the user, and computing a confidence score of the real-time biometric signature, wherein the computed confidence score is based on a computed root mean square error deviation between a biometric signature associated with an application access control profile, of one or more stored application access control profiles, and the real-time biometric signature;
based on identification of the user and the computed confidence score, configuring accessibility and corresponding application programming interface (API) call functionality of one or more applications available to the user via the computing device, wherein configuring the API call functionality is based on how the computed confidence score relates to confidence thresholds defined within the application access control profile;
continuously performing the receiving and the deriving as the user interacts with the computing device; and
while a successive real-time biometric signature is known, continuously performing the identifying, the computing, and the configuring as the user interacts with the computing device.
2 . The method of claim 1 , wherein deriving the real-time biometric signature of the user further comprises:
inputting the received real-time biometric data of the user into a machine learning model; wherein the received real-time biometric data comprises one or more types of biometric data, and wherein the real-time biometric data is received from one or more sensors;
combining, via the machine learning model, one or more behavioral patterns observed from each type of input biometric data;
evaluating, via the machine learning model, variabilities of the one or more sensors; and
outputting, via the machine learning model, a real-time biometric model of the user.
3 . The method of claim 1 , wherein determining that the real-time biometric signature is known further comprises:
referencing the one or more stored application access control profiles, wherein each application access control profile of the one or more stored application access control profiles is associated with a respective biometric signature of a known user of the computing device; and
determining that the real-time biometric signature matches, within a threshold degree, the biometric signature associated with the application access control profile of the one or more stored application access control profiles.
4 . The method of claim 1 , wherein identification of the user is based on a user identity specified within the application access control profile associated with the biometric signature, and wherein configuring the accessibility is based on a defined listing and/or defined categories of applications on the computing device which are specified in the application access control profile as accessible by the user.
5 . The method of claim 1 , wherein continuous performance of the configuring comprises dynamically increasing or decreasing application accessibility and/or application API call functionality available to the user via the computing device.
6 . The method of claim 1 , further comprising:
responsive to determining that the real-time biometric signature is unknown, determining whether an adverse situation exists; and
responsive to determining that an adverse situation does exist, performing one or more evasive actions via the computing device.
7 . The method of claim 6 , further comprising:
responsive to determining that an adverse situation does not exist, disabling access to the computing device by the user.
8 . A computer system, the computer system comprising:
one or more processors, one or more computer-readable memories, one or more computer-readable tangible storage medium, and program instructions stored on at least one of the one or more tangible storage medium for execution by at least one of the one or more processors via at least one of the one or more memories, wherein the computer system is capable of performing a method comprising:
receiving real-time biometric data of a user as the user interacts with a computing device;
deriving a real-time biometric signature of the user based on the received real-time biometric data;
responsive to determining that the real-time biometric signature is known, identifying the user, and computing a confidence score of the real-time biometric signature, wherein the computed confidence score is based on a computed root mean square error deviation between a biometric signature associated with an application access control profile, of one or more stored application access control profiles, and the real-time biometric signature;
based on identification of the user and the computed confidence score, configuring accessibility and corresponding application programming interface (API) call functionality of one or more applications available to the user via the computing device, wherein configuring the API call functionality is based on how the computed confidence score relates to confidence thresholds defined within the application access control profile;
continuously performing the receiving and the deriving as the user interacts with the computing device;
while a successive real-time biometric signature is known, continuously performing the identifying, the computing, and the configuring as the user interacts with the computing device.
9 . The computer system of claim 8 , wherein deriving the real-time biometric signature of the user further comprises:
inputting the received real-time biometric data of the user into a machine learning model; wherein the received real-time biometric data comprises one or more types of biometric data, and wherein the real-time biometric data is received from one or more sensors;
combining, via the machine learning model, one or more behavioral patterns observed from each type of input biometric data;
evaluating, via the machine learning model, variabilities of the one or more sensors; and
outputting, via the machine learning model, a real-time biometric model of the user.
10 . The computer system of claim 8 , wherein determining that the real-time biometric signature is known further comprises:
referencing the one or more stored application access control profiles, wherein each application access control profile of the one or more stored application access control profiles is associated with a respective biometric signature of a known user of the computing device; and
determining that the real-time biometric signature matches, within a threshold degree, the biometric signature associated with the application access control profile of the one or more stored application access control profiles.
11 . The computer system of claim 8 , wherein identification of the user is based on a user identity specified within the application access control profile associated with the biometric signature, and wherein configuring the accessibility is based on a defined listing and/or defined categories of applications on the computing device which are specified in the application access control profile as accessible by the user.
12 . The computer system of claim 8 , wherein continuous performance of the configuring comprises dynamically increasing or decreasing application accessibility and/or application API call functionality available to the user via the computing device.
13 . The computer system of claim 8 , further comprising:
responsive to determining that the real-time biometric signature is unknown, determining whether an adverse situation exists; and
responsive to determining that an adverse situation does exist, performing one or more evasive actions via the computing device.
14 . The computer system of claim 13 , further comprising:
responsive to determining that an adverse situation does not exist, disabling access to the computing device by the user.
15 . A computer program product, the computer program product comprising:
one or more computer-readable tangible storage medium and program instructions stored on at least one of the one or more tangible storage medium, the program instructions executable by a processor capable of performing a method, the method comprising:
receiving real-time biometric data of a user as the user interacts with a computing device;
deriving a real-time biometric signature of the user based on the received real-time biometric data;
responsive to determining that the real-time biometric signature is known, identifying the user, and computing a confidence score of the real-time biometric signature, wherein the computed confidence score is based on a computed root mean square error deviation between a biometric signature associated with an application access control profile, of one or more stored application access control profiles, and the real-time biometric signature;
based on identification of the user and the computed confidence score, configuring accessibility and corresponding application programming interface (API) call functionality of one or more applications available to the user via the computing device, wherein configuring the API call functionality is based on how the computed confidence score relates to confidence thresholds defined within the application access control profile;
continuously performing the receiving and the deriving as the user interacts with the computing device; and
while a successive real-time biometric signature is known, continuously performing the identifying, the computing, and the configuring as the user interacts with the computing device.
16 . The computer program product of claim 15 , wherein deriving the real-time biometric signature of the user further comprises:
inputting the received real-time biometric data of the user into a machine learning model;
wherein the received real-time biometric data comprises one or more types of biometric data, and wherein the real-time biometric data is received from one or more sensors;
combining, via the machine learning model, one or more behavioral patterns observed from each type of input biometric data;
evaluating, via the machine learning model, variabilities of the one or more sensors; and
outputting, via the machine learning model, a real-time biometric model of the user.
17 . The computer program product of claim 15 , wherein determining that the real-time biometric signature is known further comprises:
referencing the one or more stored application access control profiles, wherein each application access control profile of the one or more stored application access control profiles is associated with a respective biometric signature of a known user of the computing device; and
determining that the real-time biometric signature matches, within a threshold degree, the biometric signature associated with the application access control profile of the one or more stored application access control profiles.
18 . The computer program product of claim 15 , wherein identification of the user is based on a user identity specified within the application access control profile associated with the biometric signature, and wherein configuring the accessibility is based on a defined listing and/or defined categories of applications on the computing device which are specified in the application access control profile as accessible by the user.
19 . The computer program product of claim 15 , wherein continuous performance of the configuring comprises dynamically increasing or decreasing application accessibility and/or application API call functionality available to the user via the computing device.
20 . The computer program product of claim 15 , further comprising:
responsive to determining that the real-time biometric signature is unknown, determining whether an adverse situation exists; and
responsive to determining that an adverse situation does exist, performing one or more evasive actions via the computing device.