US2018357642A1PendingUtilityA1

User positive approval and authentication services (upaas)

Assignee: STANTON MAN GROUP INCPriority: Aug 2, 2010Filed: Aug 21, 2018Published: Dec 13, 2018
Est. expiryAug 2, 2030(~4 yrs left)· nominal 20-yr term from priority
G06Q 20/40G06Q 20/4012H04W 12/06G06Q 20/401G06Q 20/409G06Q 20/4015H04W 12/069H04W 12/068
53
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

The invention provides Users of Retail Payment and Identification instruments with the ability to review transaction details and approve transaction by capturing UVM in User controlled environment and Issuers of these instruments with the ability to positively authenticate Users in Issuer controlled environment. The invention accounts for real time legacy or non-legacy processing systems to provide an authorization request from POA to Issuer Host. The invention introduces two UPAAS components—User Gateway and User Application. The UPAAS User Gateway is implemented in an Issuer controlled environment enabling interface between Issuer legacy Host and UPAAS User Applications. The UPAAS User Application can be implemented on any device supporting communication protocol such as TCP/IP without any hardware changes enabling the User to login to UPAAS User Gateway, review and approve or decline a specific transaction in real time by entering UVM, such as PIN, for User authentication purposes.

Claims

exact text as granted — not AI-modified
1 . A method of enabling issuers of retail payment and identification instruments to request and receive approval from users of these instruments in transaction real time to authenticate the users, comprising:
 sending a request, from an issuer host, to a user comprising a request for the user to provide information of one or more data connected devices during a registration process wherein this information is associated with a user ID and used for processing a user approval request and response;   sending download instructions for a user application to the user and enabling the user to download the user application to one or more of the data connected devices over a wired or wireless communication protocol;   providing the user with an ability to activate the user application using a one-time authentication key or a method selected by the issuer;   receiving, on the issuer host, a transaction authorization request from at least one of a network or an acquirer, the transaction authorization request comprising information describing a presently-unapproved transaction;   sending the user approval request in transaction real time requesting the user to approve or decline the transaction and prompting the user to enter a user verification method key; and   sending the user approval response to the issuer host for approval by the issuer.   
     
     
         2 . The method of  claim 1 , wherein the user approval request includes at least the user ID, an accepter name and location, and a transaction currency and amount. 
     
     
         3 . The method of  claim 1 , wherein the user approval request requests additional information from the user including at least one account type. 
     
     
         4 . The method of  claim 1 , wherein the user approval response indicates whether the user accepted or declined the transaction, wherein user acceptance of the transaction includes an encrypted user verification method key block. 
     
     
         5 . The method of  claim 1 , further comprising:
 capturing the user verification method key for approved transactions wherein subject to issuer discretion the user verification method key may information known only to the user;   encrypting the user verification method key using either symmetric or asymmetric keys;   sending the encrypted user verification method key in the user approval response without including any other information that can be associated with the identity of the user identity or the user payment and identification instrument information;   decrypting the user verification method key block received in the user approval response using either symmetric or asymmetric keys; and   verifying an authenticity of the user.

Join the waitlist — get patent alerts

Track US2018357642A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.