Smart card secure online checkout
Abstract
Wireless communication technologies, a dynamic transaction card, and a mobile application may be utilized to facilitate multi-factor authentication and secure electronic checkout of any website. A wireless connection between a dynamic transaction card and a user device may be utilized to authenticate a user. A user device application may be triggered to call, via an application programming interface (API), an account provider system, and this unique pairing may automatically facilitate payment to a merchant system associated with the electronic check out page. The account provider system may send a push notification to a browser extension associated with the checkout page to prompt the browser extension to populate fields on the electronic checkout page using user account information transmitted from the account provider system, providing a novel digital authentication framework that utilizes digital authentication techniques enables by user devices and dynamic transaction cards to seamlessly facilitate electronic checkout.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A dynamic transaction card comprising:
a secure payment chip storing financial data; a payment processing microprocessor; and memory string a dynamic transaction card application, wherein the dynamic transaction card application, when executed, causes the dynamic transaction card to:
receive, via a short-range wireless communication network, a connection attempt from a user device application executed on a user device;
create a short-range wireless connection between the dynamic transaction card and the user device;
authenticate a user based on (1) the short-range wireless connection and (2) the user device identifying a plurality of fields in a checkout page displayed on the user device, the fields indicating a transaction is pending;
approve the transaction based on the authentication; and
transmit, via the short-range wireless connection, user account information stored on the dynamic transaction card directly to the checkout page to enable a browser extension operating on the user device to populate the fields with the user account information and complete the transaction without user intervention.
2 . The dynamic transaction card of claim 1 , wherein:
the dynamic transaction card application generates a unique key associated with the browser extension; the unique key comprises a single-use transaction key; and an account provider system evaluates the unique key to authenticate the user.
3 . The dynamic transaction card of claim 1 , wherein the authentication of the user is further based on log in credentials of the user obtained from the user logging in to the browser extension.
4 . The dynamic transaction card of claim 1 , wherein the authentication of the user is further based on user information stored in a digital security delivery database, the user information including identifying characteristics of the dynamic transaction card and the user device.
5 . The dynamic transaction card of claim 1 , wherein the short-range wireless communication network comprises a Bluetooth or Bluetooth Low Energy (BLE) network.
6 . The dynamic transaction card of claim 1 , wherein the dynamic transaction card further comprises:
a sensor; and an antenna; wherein the dynamic transaction card application further causes the dynamic transaction card to activate the antenna in response to receiving an activation input at the sensor.
7 . The dynamic transaction card of claim 6 , wherein the sensor includes at least one of a capacitive touch sensor or a piezoelectric sensor.
8 . A dynamic transaction card comprising:
a secure payment chip that stores financial data; a payment processing microprocessor; and memory storing a dynamic transaction card application, wherein the dynamic transaction card application, when executed, causes the dynamic transaction card to:
create a wireless connection with a user device;
approve a transaction in response to the user device identifying a plurality of fields in a checkout page displayed on the user device, the fields indicating the transaction is pending; and
transmit, via the wireless connection, user account information stored on the dynamic transaction card to a browser extension operating on the user device to enable the browser extension to populate the fields with the user account information and complete the transaction without user intervention.
9 . The dynamic transaction card of claim 8 , wherein the wireless connection comprises a Near Field Communication (NFC) connection.
10 . The dynamic transaction card of claim 8 , wherein:
the dynamic transaction card application generates a unique key associated with the browser extension; the unique key comprises a single-use transaction key; and an account provider system evaluates the unique key to authenticate the user.
11 . The dynamic transaction card of claim 8 , wherein the user account information is transmitted in response to a user of the user device providing log in credentials to the browser extension.
12 . The dynamic transaction card of claim 8 , wherein the approval of the transaction is further based on user information stored in a digital security delivery database, the user information including identifying characteristics of the dynamic transaction card and the user device.
13 . The dynamic transaction card of claim 8 , wherein the dynamic transaction card further comprises:
a sensor; and an antenna; wherein the dynamic transaction card application further causes the dynamic transaction card to activate the antenna in response to receiving an activation input at the sensor.
14 . The dynamic transaction card of claim 13 , wherein the sensor includes at least one of a capacitive touch sensor or a piezoelectric sensor.
15 . A method of populating a plurality of fields in a checkout page, the method comprising:
receiving, at a short-range wireless antenna on a user device, a connection attempt from a dynamic transaction card; create, with the short-range wireless antenna, a wireless connection with the dynamic transaction card; receive, at a browser extension operating on the user device, log in credentials for a user; authenticate a user based on the wireless connection and the log in credentials; identify, with an application processor, the fields within the checkout page, the fields indicating a transaction is pending; contacting an account provider system in response to identifying the fields; receiving a push notification from the account provider system, the push notification including user account information; and populating, with the application processor, the fields using the user account information to complete the transaction without user intervention.
16 . The method of claim 15 , wherein a web crawler operating on the user device identifies the fields within the checkout page.
17 . The method of claim 15 , wherein the log in credentials are received at a user device application operating on the user device.
18 . The method of claim 15 , wherein the wireless connection comprises at least one of a Bluetooth, a Bluetooth Low Energy (BLE), or Near Field Communication (NFC) connection.
19 . The method of claim 15 , wherein:
contacting the account provider system comprises calling, via an application programming interface (API) coupled to a communication interface that communicates with the dynamic transaction card and the user device via a network, the account provider system; and the API further encrypts communications between the dynamic transaction card and the user device.
20 . The method of claim 15 , wherein:
authentication of the user is further based on user information stored in a digital security delivery database; and the digital security delivery database stores information indicating the user is enrolled in push notification authentication, including characteristics of the dynamic transaction card and the user device, and the log in credentials of the user for the browser extension associated with the checkout page.Join the waitlist — get patent alerts
Track US2020065805A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.