Apparatus and methods for controlling sensitive content in an electronic message
Provided are methods and apparatus that control sensitive content of an electronic message. In an example, a computer-implemented method includes (i) identifying a pattern match by applying an expression pattern matching algorithm to a body of the electronic message; (ii) generating a quantitative score indicating a validity of the sensitive information in the pattern match by using an artificial intelligence algorithm configured with a sensitive information entity model to analyze the pattern match; (iii) determining, by applying a confidence calculator to the pattern match, a confidence score based on proximate content in the body of the electronic message; (iv) producing a final score by applying an algorithm to the quantitative score and the confidence score; and (v) sending, when the final score indicates sensitive information is present in the electronic message, a request for review to an administrator user device.
1 . A computer-implemented method for automatically generating at least a portion of a machine configured to control sensitive content in an electronic message, the method being performed by a computing device comprising at least one processor, the method comprising:
identifying, by the computing device, a pattern match by applying an expression pattern matching algorithm to a body of the electronic message, wherein the pattern match:
identifies a presence of a pattern in the body of the electronic message, a presence of a keyword in the body of the electronic message, or both; and
indicates a presence of sensitive information in the body of the electronic message;
generating, by the computing device, a quantitative score indicating a validity of the sensitive information in the pattern match by using an artificial intelligence algorithm configured with a sensitive information entity model to analyze the pattern match;
determining, by the computing device and by applying a confidence calculator to the pattern match, a confidence score based on proximate content in the body of the electronic message, wherein the proximate content is proximate to the pattern in the body of the electronic message, the keyword in the body of the electronic message, or both;
producing, by the computing device, a final score by applying an algorithm to the quantitative score and the confidence score; and
sending, from the computing device and when the final score indicates sensitive information is present in the electronic message, a request for review to an administrator user device, wherein the request for review includes a copy of the electronic message and the final score.
2 . The computer-implemented method of claim 1 , further comprising:
receiving, at the computing device and from a subscribed application, an application programming interface call to initiate controlling of sensitive content in the electronic message.
3 . The computer-implemented method of claim 1 , further comprising:
receiving, from a subscribed application, the electronic message having the pattern in the body of the electronic message, the keyword in the body of the electronic message, or both.
4 . The computer-implemented method of claim 1 , further comprising:
verifying registration of a subscribed application.
5 . The computer-implemented method of claim 4 , wherein the verifying the registration of the subscribed application further comprises:
sending, from the computing device and to a database, a verification request including information describing the subscribed application; and
receiving, at the computing device, a verification response from the database.
6 . The computer-implemented method of claim 1 , further comprising:
authenticating a subscribed application;
performing token-based authentication of the subscribed application; or
both.
7 . The computer-implemented method of claim 6 , wherein the authenticating the subscribed application further comprises:
sending, from the computing device and to an identity and access management device, an authentication request including information describing the subscribed application; and
receiving, at the computing device and from the identity and access management device, an authentication response indicating the application is authentic.
8 . The computer-implemented method of claim 1 , further comprising:
publishing a quality management notification for message validation; and
initiating, in response to the published quality management notification, message validation.
9 . The computer-implemented method of claim 1 , further comprising:
validating a block list.
10 . The computer-implemented method of claim 1 , further comprising:
initiating, for a new message recipient, an opt-in process comprising:
sending an opt-in request via a message service device to a recipient user device;
receiving an opt-in confirmation via the message service device from the recipient user device; and
enabling, in response to the opt-in confirmation, administration and configuration services of the computing device via an application programming interface.
11 . The computer-implemented method of claim 10 , further comprising:
updating, in response to the enabling the administration and configuration services via the application programming interface, a database including information describing message recipients.
12 . The computer-implemented method of claim 1 , wherein the sensitive information in the body of the electronic message includes:
personally identifiable information;
personal health information;
a postal address;
a social security number;
a phone number;
privacy sensitive information;
national security sensitive information;
privacy sensitive information;
national security sensitive information;
classified information;
unclassified information;
secret information;
top secret information; or
a combination thereof.
13 . The computer-implemented method of claim 1 , wherein the determining the confidence score further comprises:
calculating a distance between:
the pattern in the body of the electronic message or the keyword in the body of the electronic message; and
another keyword in the electronic message.
14 . The computer-implemented method of claim 1 , wherein the sensitive information entity model is:
a personally identifiable information entity model trained to analyze the pattern match;
a personal health information entity model trained to analyze the pattern match;
a postal address entity model trained to analyze the pattern match;
a social security number entity model trained to analyze the pattern match;
a phone number entity model trained to analyze the pattern match;
a privacy sensitive information entity model trained to analyze the pattern match;
a national security sensitive information entity model trained to analyze the pattern match;
a classified information entity model trained to analyze the pattern match;
a unclassified information entity model trained to analyze the pattern match;
a secret information entity model trained to analyze the pattern match;
a top secret information entity model trained to analyze the pattern match; or
a combination thereof.
15 . The computer-implemented method of claim 1 , further comprising:
comparing the final score to a threshold value to determine the final score indicates sensitive information is present in the electronic message.
16 . The computer-implemented method of claim 1 , further comprising:
receiving, via the administrator user device, information indicating approval to send the electronic message; and
sending, in response to the receiving the information indicating approval, the electronic message to a recipient user device via a message service device.
17 . The computer-implemented method of claim 16 , further comprising:
sending, in response to the sending the electronic message to the recipient user device via the message service device, a notification to the administrator user device that the electronic message was sent.
18 . The computer-implemented method of claim 16 , further comprising:
receiving a delivery confirmation message via the message service device, wherein the delivery confirmation message includes payload information; and
forwarding, to a return uniform resource locator of a subscribed application, the payload information.
19 . The computer-implemented method of claim 16 , further comprising:
storing, in response to the receiving the information indicating approval, status update information in a database.
20 . The computer-implemented method of claim 16 , wherein the message service device is:
a short message service device;
a multimedia messaging device;
a rich communication services device;
a text message server;
a chat message server;
a messaging transmission channel device;
a messaging channel delivery device;
a cross-platform messaging service device;
an email server;
an Internet messaging server;
an instant messaging server;
an encrypted messaging server;
a video conference server;
a message delivery channel device;
a transmission delivery channel device;
a part of a multiprovider architecture; or
a combination thereof.
21 . The computer-implemented method of claim 1 , further comprising:
sending, from the computing device and when the final score indicates sensitive information is present in the electronic message, an error message to the subscribed application.
22 . The computer-implemented method of claim 1 , further comprising:
training, using training information, the artificial intelligence algorithm to identify the presence of sensitive information in electronic messages,
wherein:
the training information includes digital information indicating electronic message content known to include sensitive information; and
the artificial intelligence algorithm is logically separated from a public-facing network.
23 . The computer-implemented method of claim 22 , further comprising:
receiving, from the administrator user device, a response to the request for review;
producing, in response to receiving the response to the request for review, updated training information including at least a portion of the information in the electronic message; and
retraining, automatically and using the updated training information, the artificial intelligence algorithm to identify the presence of sensitive information in electronic messages.
24 . The computer-implemented method of claim 1 , further comprising:
training, using training information, the artificial intelligence algorithm to determine the confidence score,
wherein:
the training information includes digital information indicating electronic message content known to include sensitive information; and
the artificial intelligence algorithm is logically separated from a public-facing network.
25 . The computer-implemented method of claim 24 , further comprising:
receiving, from the administrator user device, a response to the request for review;
producing, in response to receiving the response to the request for review, updated training information including at least a portion of the information in the electronic message; and
retraining, automatically and using the updated training information, the artificial intelligence algorithm to determine the confidence score.
26 . The computer-implemented method of claim 1 , further comprising:
configuring the expression pattern matching algorithm to match a specific pattern that is based on a format of a type of sensitive information.
27 . The computer-implemented method of claim 26 , further comprising:
receiving, from the administrator user device, a response to the request for review; and
reconfiguring, automatically and in response to receiving the response to the request for review, the expression pattern matching algorithm with a specific pattern based on a format of a type of sensitive information in at least a portion of the electronic message.
28 . The computer-implemented method of claim 1 , further comprising:
receiving, at the administrator user device, an identity verification card authentication request;
sending the identity verification card authentication request to an identity and access management device;
receiving an identity verification card response from the identity and access management device; and
sending, in response to receiving the identity verification card response, an authentication token to the administrator user device.
29 . The computer-implemented method of claim 1 , wherein the electronic message is:
addressed to multiple recipient user devices;
in a plurality of electronic messages sent simultaneously;
a text message;
a text message sent in a bulk text;
a short message service message;
a multimedia message;
a rich communication services message;
an email;
an instant message;
an encrypted message; or
a combination thereof.
30 . The computer-implemented method of claim 1 , wherein the electronic message is received from a subscribed application and addressed to another application.