US2020234287A1PendingUtilityA1

Method and system for utilizing authorization factor pools

Assignee: SHIFT4 CORPPriority: Apr 15, 2011Filed: Nov 22, 2019Published: Jul 23, 2020
Est. expiryApr 15, 2031(~4.7 yrs left)· nominal 20-yr term from priority
G06Q 20/0855G06Q 20/3821G06Q 20/24G06Q 20/382G06Q 20/4014G06Q 20/40
69
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

One embodiment of the present disclosure provides a system and associated processes for sharing cardholder data (CHD) between a merchant that utilizes tokenization and a second merchant that may or may not utilize tokenization. In one embodiment, the merchant, or an employee of the merchant, can use the system and associated processes to reacquire CHD from a tokenization provider system. In one embodiment, the merchant identifies to the tokenization provider system a desire to share CHD, which is associated with a token, with a second merchant. The merchant and/or the tokenization provider system can then invite the second merchant to register with the tokenization provider system. Once registered with the tokenization provider system, the second merchant can access any CHD that the merchant associated with the second merchant.

Claims

exact text as granted — not AI-modified
1 - 11 . (canceled) 
     
     
         12 . A system for sharing access to cardholder data (CHD), the system comprising:
 a token access system of a first merchant environment, the token access system comprising computer hardware and configured to:
 receive cardholder data (CHD) of a cardholder; 
 obtain a token corresponding to the CHD, the token configured as a substitute for the CHD; 
 discard the CHD from the token access system; 
 receive a request to perform a transaction at a second merchant environment associated with a third-party; and 
 authorize the second merchant environment to access the token enabling the third-party to use the CHD to perform the transaction without the third-party having access to the CHD. 
   
     
     
         13 . The system of  claim 12 , wherein the token access system is further configured to obtain the token by at least:
 transmitting the CHD to a tokenization provider system configured to generate tokens corresponding to received instances of CHD; and   receiving the token from the tokenization provider system.   
     
     
         14 . The system of  claim 12 , wherein the token is generated based on the CHD. 
     
     
         15 . The system of  claim 12 , wherein the token comprises unique data configured to represent the CHD. 
     
     
         16 . The system of  claim 12 , wherein the token is formatted to mimic CHD. 
     
     
         17 . The system of  claim 12 , wherein the token access system is further configured to authorize the second merchant environment to access the token by authorizing a user of the third-party to access the token at a tokenization provider system. 
     
     
         18 . The system of  claim 17 , wherein authorizing the user of the third-party to access the token comprises enabling the third-party to use the token without providing a copy of the token to the user. 
     
     
         19 . The system of  claim 17 , wherein receiving the request to perform the transaction comprises receiving transaction details for the transaction, and wherein the token access system is further configured to perform the transaction on behalf of the third-party using the transaction details and the token. 
     
     
         20 . The system of  claim 12 , wherein the token access system is further configured to:
 generate an authorization factor;   associate the authorization factor with the third-party; and   provide the authorization factor to the third-party.   
     
     
         21 . The system of  claim 20 , wherein the authorization factor comprises one or more words, numbers, symbols, images, or sounds. 
     
     
         22 . The system of  claim 20 , wherein the token access system is further configured to:
 receive the authorization factor from the third-party;   determine that the third-party is authorized to access the token based at least in part on the authorization factor; and   provide access to the token to the third-party.   
     
     
         23 . A method of sharing access to cardholder data (CHD), the method comprising:
 by a token access system comprising computer hardware of a first merchant,
 receiving cardholder data (CHD) of a cardholder; 
 obtaining a token corresponding to the CHD, the token configured as a substitute for the CHD; 
 removing the CHD from the token access system; 
 receiving a request to perform a transaction at a second merchant; and 
 authorizing the second merchant to access the token enabling the second merchant to use the CHD to perform the transaction without having access to the CHD. 
   
     
     
         24 . The method of  claim 23 , wherein obtaining the token comprises:
 transmitting the CHD to a tokenization provider system configured to generate tokens corresponding to received instances of CHD; and   receiving the token from the tokenization provider system.   
     
     
         25 . The method of  claim 23 , wherein authorizing the second merchant comprises enabling the second merchant to use the token without providing a copy of the token to the second merchant. 
     
     
         26 . The method of  claim 23 , wherein the token comprises unique data configured to represent the CHD. 
     
     
         27 . The method of  claim 23 , wherein the token is formatted to be used in place of the CHD. 
     
     
         28 . The method of  claim 23 , wherein authorizing the second merchant to access the token comprises authorizing the second merchant to access the token at a tokenization provider system. 
     
     
         29 . The method of  claim 23 , further comprising:
 generating an authorization factor;   associating the authorization factor with the second merchant and the token; and   providing the authorization factor to the second merchant.   
     
     
         30 . The method of  claim 29 , further comprising:
 receiving the authorization factor from the second merchant;   determining that the second merchant is authorized to access the token based at least in part on the authorization factor; and   providing access to the token to the second merchant.   
     
     
         31 . The method of  claim 23 , wherein receiving the request to perform the transaction comprises receiving transaction details for the transaction, and wherein the method further comprises performing the transaction on behalf of the second merchant using the transaction details and the token.

Join the waitlist — get patent alerts

Track US2020234287A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.