Method and system for utilizing authorization factor pools
Abstract
One embodiment of the present disclosure provides a system and associated processes for sharing cardholder data (CHD) between a merchant that utilizes tokenization and a second merchant that may or may not utilize tokenization. In one embodiment, the merchant, or an employee of the merchant, can use the system and associated processes to reacquire CHD from a tokenization provider system. In one embodiment, the merchant identifies to the tokenization provider system a desire to share CHD, which is associated with a token, with a second merchant. The merchant and/or the tokenization provider system can then invite the second merchant to register with the tokenization provider system. Once registered with the tokenization provider system, the second merchant can access any CHD that the merchant associated with the second merchant.
Claims
exact text as granted — not AI-modified1 - 11 . (canceled)
12 . A system for sharing access to cardholder data (CHD), the system comprising:
a token access system of a first merchant environment, the token access system comprising computer hardware and configured to:
receive cardholder data (CHD) of a cardholder;
obtain a token corresponding to the CHD, the token configured as a substitute for the CHD;
discard the CHD from the token access system;
receive a request to perform a transaction at a second merchant environment associated with a third-party; and
authorize the second merchant environment to access the token enabling the third-party to use the CHD to perform the transaction without the third-party having access to the CHD.
13 . The system of claim 12 , wherein the token access system is further configured to obtain the token by at least:
transmitting the CHD to a tokenization provider system configured to generate tokens corresponding to received instances of CHD; and receiving the token from the tokenization provider system.
14 . The system of claim 12 , wherein the token is generated based on the CHD.
15 . The system of claim 12 , wherein the token comprises unique data configured to represent the CHD.
16 . The system of claim 12 , wherein the token is formatted to mimic CHD.
17 . The system of claim 12 , wherein the token access system is further configured to authorize the second merchant environment to access the token by authorizing a user of the third-party to access the token at a tokenization provider system.
18 . The system of claim 17 , wherein authorizing the user of the third-party to access the token comprises enabling the third-party to use the token without providing a copy of the token to the user.
19 . The system of claim 17 , wherein receiving the request to perform the transaction comprises receiving transaction details for the transaction, and wherein the token access system is further configured to perform the transaction on behalf of the third-party using the transaction details and the token.
20 . The system of claim 12 , wherein the token access system is further configured to:
generate an authorization factor; associate the authorization factor with the third-party; and provide the authorization factor to the third-party.
21 . The system of claim 20 , wherein the authorization factor comprises one or more words, numbers, symbols, images, or sounds.
22 . The system of claim 20 , wherein the token access system is further configured to:
receive the authorization factor from the third-party; determine that the third-party is authorized to access the token based at least in part on the authorization factor; and provide access to the token to the third-party.
23 . A method of sharing access to cardholder data (CHD), the method comprising:
by a token access system comprising computer hardware of a first merchant,
receiving cardholder data (CHD) of a cardholder;
obtaining a token corresponding to the CHD, the token configured as a substitute for the CHD;
removing the CHD from the token access system;
receiving a request to perform a transaction at a second merchant; and
authorizing the second merchant to access the token enabling the second merchant to use the CHD to perform the transaction without having access to the CHD.
24 . The method of claim 23 , wherein obtaining the token comprises:
transmitting the CHD to a tokenization provider system configured to generate tokens corresponding to received instances of CHD; and receiving the token from the tokenization provider system.
25 . The method of claim 23 , wherein authorizing the second merchant comprises enabling the second merchant to use the token without providing a copy of the token to the second merchant.
26 . The method of claim 23 , wherein the token comprises unique data configured to represent the CHD.
27 . The method of claim 23 , wherein the token is formatted to be used in place of the CHD.
28 . The method of claim 23 , wherein authorizing the second merchant to access the token comprises authorizing the second merchant to access the token at a tokenization provider system.
29 . The method of claim 23 , further comprising:
generating an authorization factor; associating the authorization factor with the second merchant and the token; and providing the authorization factor to the second merchant.
30 . The method of claim 29 , further comprising:
receiving the authorization factor from the second merchant; determining that the second merchant is authorized to access the token based at least in part on the authorization factor; and providing access to the token to the second merchant.
31 . The method of claim 23 , wherein receiving the request to perform the transaction comprises receiving transaction details for the transaction, and wherein the method further comprises performing the transaction on behalf of the second merchant using the transaction details and the token.Join the waitlist — get patent alerts
Track US2020234287A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.