Virtualization and secure processing of data
Abstract
Systems, methods, and non-transient machine-interpretable data representing executable instruction sets and/or other products for the processing of data for the secure creation, administration, manipulation, processing, and storage of electronic data useful in the processing of payment transactions and other secure data processes. In various aspects and embodiments the disclosure provides secure means for the authorization of sensitive and other data processes subject to controlled access. Such processes include, for example the creation, administration, authorization, virtualization, storage, and other manipulation or processing of electronic data representing characteristics of, instructions for, and information associated with consumer, business, and other payment accounts, and other forms of secure payment elements, such as payment tokens; and data useful in processing transactions using such accounts and elements. Information associated with particular payment means, such as accounts or payment tokens, can be stored, for example, in a data set, usually secure, sometimes referred to as a virtual or electronic wallet, or a secure payment token.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A transaction communication device comprising:
at least one network communication system; at least one data processor; and at least one persistent memory device, the at least one persistent memory device comprising data representing at least: at least one identifier associated with at least one authorized user of at least one transaction payment account; at least one identifier associated with the transaction communication device; and an identifier associated with the at least one transaction payment account; a machine-executable coded instruction set configured to cause the at least one data processor to: access the persistent memory device and generate a transaction request data set, the transaction data set comprising at least:
the at least one identifier associated with at least one authorized user of at least one transaction payment account;
the at least one identifier associated with the transaction communication device; and
the identifier associated with the at least one transaction payment account; and to
route the generated transaction data request to a transaction adjudication server, using the network communication system.
2 . The transaction communication device of claim 1 , wherein the transaction communication device is a personal digital assistant (PDA).
3 . The transaction communication device of claim 1 , wherein the at least one network communication system comprises at least one wireless communication system.
4 . The transaction communication device of claim 3 , wherein the at least one wireless communication system comprises a near-field communication (NFC) system.
5 . The transaction communication device of claim 1 , the at least one persistent memory comprising at least one removable memory device.
6 . The transaction communication device of claim 1 , the at least one persistent memory further comprising data representing at least one encrypted payment token.
7 . The transaction communication device of claim 1 , the at least one persistent memory further comprising data representing at least one private key useable for at least one of encrypting and decrypting data in accordance with a private key encryption protocol.
8 . The transaction communication device of claim 1 , the at least one persistent memory comprising data representing identifiers associated a plurality of transaction payment accounts.
9 . A method, performed by at least one processor of a transaction communication device, the transaction communication device comprising at least one input device and a network communication system, the method comprising:
receiving, from the input device, signals representing a purchaser-defined identifier; using at least the purchaser-defined identifier, accessing one of a plurality of transaction authorization data sets; and using at least the accessed transaction authorization data set, generating a transaction request data set, the transaction request data set comprising at least two of:
an identifier associated with at least one authorized user of at least one transaction payment account;
an identifier associated with the transaction communication device; and
an identifier associated with the at least one transaction payment account; and
routing the generated transaction data request to a transaction adjudication server, using the wireless communication system.
10 . The method of claim 9 , wherein the transaction communication device is a personal digital assistant (PDA).
11 . The method of claim 9 , wherein the at least one network communication system comprises at least one wireless communication system.
12 . The method of claim 11 , wherein the at least one wireless communication system comprises a near-field communication (NFC) system.
13 . The method of claim 11 , comprising receiving from the transaction adjudication server an encrypted validation code.
14 . The method of claim 13 , comprising decrypting the validation code using at least one private key stored in persistent memory of the transaction communication device.
15 . The method of claim 14 , comprising routing to a merchant system an encrypted transaction data set comprising at least one identifier representing a payment amount associated with a proposed transaction.
16 . The method of claim 13 , comprising routing to a merchant system an encrypted payment token, the encrypted payment token comprising data representing at least one pre-authorized purchase amount.
17 . A server for adjudicating electronically-coded transaction requests, comprising one or more non-transient machine-executable coded instructions configured to cause the server to:
access a transaction request data set generated by a networked purchaser communication device, the transaction request data set comprising machine-interpretable data representing at least:
at least one identifier associated with at least one authorized user of at least one transaction payment account;
at least one identifier associated with the networked purchaser communication device; and
an identifier associated with the at least one transaction payment account;
data representing a transaction amount; and
data representing a transaction authorization routing address;
determine that:
the received identifier associated with an authorized user of the transaction payment account corresponds to at least one authorized user associated with the transaction authorization data set; and
the received identifier associated with a purchaser communication device corresponds to at least one purchaser communication device associated with the transaction authorization data set;
determine that an amount of funds associated with the identified transaction payment account is sufficient to cover the transaction amount; and
conditioned on said determinations, generate an transaction authorization data set; and
route the transaction authorization data set to the transaction authorization routing address.
18 . The server of claim 17 , wherein the non-transient machine-interpretable instructions cause further cause the server to generate and route to the transaction authorization address a validation code encrypted using at least a private key associated with the transaction authorization routing address.
19 . The server of claim 18 , wherein the generating the transaction authorization data set is conditioned upon receiving from the transaction authorization routing address a data set consistent with decryption of the validation code using the private key.
20 . A medium or media comprising non-transient machine-executable coded instructions configured to cause at least one processor of a transaction communication device to:
generate, using data accessed in a persistent memory of the transaction communication device, a transaction data set comprising at least:
at least one identifier associated with at least one authorized user of at least one transaction payment account;
at least one identifier associated with the transaction communication device; and
an identifier associated with the at least one transaction payment account; and to
route the generated transaction data request to a transaction adjudication server, using a network communication system of the transaction communication device.
21 . The medium or media of claim 20 , wherein the transaction communication device is a personal digital assistant (PDA).
22 . The medium or media of claim 20 , wherein the at least one network communication system comprises at least one wireless communication system.
23 . The medium or media of claim 22 , wherein the at least one wireless communication system comprises a near-field communication (NFC) system.
24 . The medium or media of claim 20 , the at least one persistent memory further comprising data representing at least one encrypted payment token.
25 . The medium or media of claim 20 , the at least one persistent memory further comprising data representing at least one private key useable for at least decrypting data in accordance with a private key encryption protocol and the medium or media configured to cause the at least one processor to decrypt at least one data set received using the network communication system, using at least the private key.
26 . The medium or media of claim 25 , wherein the at least one data set decrypted using the private key comprises at least one validation code.
27 . The medium or media of claim 25 , wherein the at least one data set decrypted using the private key comprises at least one encrypted payment token.
28 . The medium or media of claim 20 , the at least one persistent memory further comprising data representing at least one private key useable for at least encrypting data in accordance with a private key encryption protocol and the medium or media configured to cause the at least one processor to encrypt data sets routed using the network communication system, using at least the private key.
29 . The medium or media of claim 28 , wherein the at least one data set encrypted using the private key comprises at least one transaction request data set.
30 . The medium or media of claim 28 , wherein the at least one data set encrypted using the private key comprises at least one encrypted payment token.Join the waitlist — get patent alerts
Track US2014279552A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.