Identification verification with user challenge
Abstract
Methods and apparatus for conducting user identity verification are disclosed. An example method includes requesting, from a user, a name and user identifying information associated with the provided name. The example method also includes querying a trusted database based on the provided name and the user identifying information and determining if a match exists in the database between the provided name and the user identifying information. In the event a match exists, the example method includes presenting a challenge to the user, the challenge being based on the user identifying information and determining a verification status of the user's identity based on a result of the challenge. The example method further includes designating the user's identity as verified or unverified in accordance with the verification status.
Claims
exact text as granted — not AI-modified1 . A computer-implemented method comprising:
sending, by an online service provider system to a user, a request for:
a name; and
user identifying information associated with the provided name;
querying, by the online service provider system, a trusted database based on the provided name and the user identifying information; determining, by the online service provider system, based on a result of the query, if a match exists in the database between the provided name and the user identifying information; in the event a match exists, presenting, by the online service provider system, a challenge to the user, the challenge being based on the user identifying information; determining, by the online service provider system, a verification status of the user's identity based on a result of the challenge; and designating, by the online service provider system, the user's identity as verified or unverified in accordance with the verification status.
2 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises a telephone number; the trusted database comprises a telephone directory database; and presenting the challenge comprises the online service provider system:
providing a code to the user;
calling the telephone number;
prompting the user to enter the provided code via the called telephone;
receiving an entered code from the user via the called telephone; and
in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified.
3 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises a telephone number; the trusted database comprises a telephone directory database; and presenting the challenge comprises the online service provider system:
calling the telephone number;
providing a code to the user via the called telephone;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as being verified.
4 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises a mobile telephone number; the trusted database comprises a mobile telephone directory database; and presenting the challenge comprises the online service provider system:
sending a short messaging system (SMS) message to the mobile telephone number, the SMS message including a code;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified.
5 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises an account number of a credit card account; the trusted database comprises a database associating credit cardholders' names with corresponding credit card account numbers; and presenting the challenge comprises the online service provider system:
carrying out a transaction on the credit card account;
providing an online graphical interface for requesting information regarding the transaction;
receiving entered transaction information; and
in the event the entered transaction information matches the requested transaction information, designating, by the online service provider system, the user's identity as verified.
6 . The computer-implemented method of claim 5 , wherein the requested transaction information comprises an amount of the transaction.
7 . The computer-implemented method of claim 5 , wherein the requested transaction information comprises a code included in a description of the transaction.
8 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises an account number of a bank account; the trusted database comprises a database associating bank account numbers with accountholders' names; and presenting the challenge comprises the online service provider system:
carrying out a transaction on the bank account;
providing an online graphical interface for requesting information regarding the transaction;
receiving entered transaction information; and
in the event the entered information matches the requested information, designating, by the online service provider system, the user's identity as verified.
9 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises an email address; the trusted database comprises a database associating email addresses with names of corresponding email account holders; and presenting the challenge comprises the online service provider system:
emailing a code to the email address;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the emailed code, designating, by the online service provider system, the user's identity as verified.
10 . The computer-implemented method of claim 1 , wherein:
the user identifying information comprises an email address; the trusted database comprises a database associating email addresses with names of corresponding email account holders; and presenting the challenge comprises the online service provider system:
providing a code to the user;
sending an email to the user requesting the code;
receiving a response email including an entered code; and
in the event the entered code matches the provided code, designating, by the online service provider system, the user's identity as verified.
11 . A computer program product tangibly embodied on a computer-readable medium and including executable instructions that, when executed, are configured to cause one or more data processing apparatuses to:
request, from a user:
a name; and
user identifying information associated with the provided name;
query a trusted database based on the provided name and the user identifying information; determine if a match exists in the database between the provided name and the user identifying information; in the event a match exists, presenting a challenge to the user, the challenge being based on the user identifying information; determine a verification status of the user's identity based on a result of the challenge; and designate the user's identity as verified or unverified in accordance with the verification status.
12 . The computer program product of claim 11 , wherein:
the user identifying information comprises a telephone number; the trusted database comprises a telephone directory database; and presenting the challenge comprises:
providing a code to the user;
calling the telephone number;
prompting the user to enter the provided code via the called telephone;
receiving an entered code from the user via the called telephone; and
in the event the entered code matches the provided code, designating the user's identity as verified.
13 . The computer program product of claim 11 , wherein:
the user identifying information comprises a telephone number; the trusted database comprises a telephone directory database; and presenting the challenge comprises:
calling the telephone number;
providing a code to the user via the called telephone;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the provided code, designating the user's identity as verified.
14 . The computer program product of claim 11 , wherein:
the user identifying information comprises a mobile telephone number; the trusted database comprises a telephone directory database; and presenting the challenge comprises:
sending a short messaging system (SMS) message to the mobile telephone number, the SMS message including a code;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the provided code, designating the user's identity as verified.
15 . The computer program product of claim 11 , wherein:
the user identifying information comprises an account number of a credit card account; the trusted database comprises a database associating credit cardholders' names with corresponding credit card account numbers; and presenting the challenge comprises:
carrying out a transaction on the credit card account;
providing an online graphical interface for requesting information regarding the transaction;
receiving entered transaction information; and
in the event the entered transaction information matches the requested transaction information, designating the user's identity as verified.
16 . The computer program product of claim 11 , wherein:
the user identifying information comprises an account number of a bank account; the trusted database comprises a database associating bank account numbers with accountholders' names; and presenting the challenge comprises:
carrying out a transaction on the bank account;
providing an online graphical interface for requesting information regarding the transaction;
receiving entered transaction information; and
in the event the entered transaction information matches the requested transaction information, designating the user's identity as verified.
17 . The computer program product of claim 11 , wherein:
the user identifying information comprises an email address; the trusted database comprises a database associating email addresses with names of corresponding email account holders; and presenting the challenge comprises:
emailing a code to the email address;
providing an online graphical interface for entering the code;
receiving an entered code; and
in the event the entered code matches the emailed code, designating the user's identity as verified.
18 . The computer program product of claim 11 , wherein:
the user identifying information comprises an email address; the trusted database comprises a database associating email addresses with names of corresponding email account holders; and presenting the challenge comprises:
providing a code to the user;
sending an email to the user requesting the code;
receiving, from the email address, a response email including an entered code; and
in the event the entered code matches the provided code, designating the user's identity as verified.
19 . A system comprising:
a server configured to provide online services to one or more users; one or more computer-readable media including machine-executable instructions; one or more instruction processors configured to execute at least a portion of the machine-executable instructions stored in the computer-readable media, wherein execution of the instructions, in response to a request from a user for access to the online services, results in:
requesting, from the user:
a name; and
user identifying information associated with the provided name;
querying a trusted database based on the provided name and the user identifying information;
determining if a match exists in the database between the provided name and the user identifying information;
in the event a match exists, presenting a challenge to the user, the challenge being based on the user identifying information;
determining a verification status of the user's identity based on a result of the challenge; and
designating the user's identity as verified or unverified in accordance with the verification status.Join the waitlist — get patent alerts
Track US2010131409A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.