One-tap payment using a contactless card
Abstract
An authentication application may receive, from a merchant application of a client device, a merchant identifier, a transaction identifier of a transaction, encrypted data, and a location of the client device. The authentication application may decrypt the encrypted data based at least in part on a private key. The authentication application may determine that the contactless card has been used to make a previous purchase with the merchant and that the location of the client device is within a threshold distance of a known location associated with a contactless card. A virtual account number generator may generate a virtual account number and transmit the merchant identifier, the transaction identifier, the virtual account number, an expiration date, and a card verification value (CVV) to a merchant server associated with the merchant to process the transaction using the transaction identifier, the virtual account number, the expiration date, and the CVV.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method, comprising:
receiving, by a processor from a merchant application executing on a client device: (i) a merchant identifier of a merchant associated with the merchant application, (ii) a transaction identifier of a transaction, (iii) encrypted data, and (iv) a location of the client device; verifying, by the processor, the encrypted data by decrypting the encrypted data based at least in part on a key for a contactless card; generating, by the processor, a virtual account number based on the verification of the encrypted data; and transmitting, by the processor, the merchant identifier, the transaction identifier, the virtual account number, an expiration date associated with the virtual account number, and a card verification value (CVV) associated with the virtual account number to a merchant server associated with the merchant to process the transaction using the transaction identifier, the virtual account number, the expiration date, and the CVV.
2 . The method of claim 1 , further comprising:
determining, by the processor, that the contactless card has been used to make a previous purchase with the merchant, wherein the virtual account number is generated based on the determination that the contactless card has previously been used to make a purchase with the merchant.
3 . The method of claim 1 , further comprising:
determining, by the processor, that the location of the client device is within a threshold distance of a known location associated with the contactless card, wherein the virtual account number is generated based on the determination that the client device is within the threshold distance of the known location.
4 . The method of claim 1 , further comprising:
determining, by the processor, that a device identifier received from the client device is associated with a user account associated with the contactless card, wherein the virtual account number is generated based on the determination that the device identifier is associated with the contactless card.
5 . The method of claim 1 , wherein the expiration date and the CVV comprise one or more of: (i) an expiration date and a CVV generated by the processor, and (ii) an expiration date and a CVV of the contactless card received by the processor from an account database.
6 . The method of claim 1 , further comprising:
receiving, by the processor, a software fingerprint of the client device; and determining, by the processor, that the software fingerprint matches a known software fingerprint associated with the contactless card, wherein the virtual account number is generated based on the determination that the software fingerprint matches the known software fingerprint.
7 . The method of claim 1 , further comprising:
receiving, by the processor from the client device, authentication information for a user account associated with the contactless card, the authentication information comprising one or more of: (i) a username and a password, (ii) biometric credentials; and verifying, by the processor, the authentication information for the user account, wherein the virtual account number is generated based on the verification of the authentication information.
8 . A non-transitory computer-readable storage medium, the computer-readable storage medium including instructions that when executed by a processor, cause the processor to:
receive, from a merchant application executing on a client device: (i) a merchant identifier of a merchant associated with the merchant application, (ii) a transaction identifier of a transaction, (iii) encrypted data, and (iv) a location of the client device; verify the encrypted data by decrypting the encrypted data based at least in part on a key for a contactless card; generate a virtual account number based on the verification of the encrypted data; and transmit the merchant identifier, the transaction identifier, the virtual account number, an expiration date associated with the virtual account number, and a card verification value (CVV) associated with the virtual account number to a merchant server associated with the merchant to process the transaction using the transaction identifier, the virtual account number, the expiration date, and the CVV.
9 . The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to:
determine that the contactless card has been used to make a previous purchase with the merchant, wherein the virtual account number is generated based on the determination that the contactless card has previously been used to make a purchase with the merchant.
10 . The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to:
determine that the location of the client device is within a threshold distance of a known location associated with the contactless card, wherein the virtual account number is generated based on the determination that the client device is within the threshold distance of the known location.
11 . The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to:
determine that a device identifier received from the client device is associated with a user account associated with the contactless card, wherein the virtual account number is generated based on the determination that the device identifier is associated with the contactless card.
12 . The computer-readable storage medium of claim 8 , wherein the expiration date and the CVV comprise one or more of: (i) an expiration date and a CVV generated by the processor, and (ii) an expiration date and a CVV of the contactless card received by the processor from an account database.
13 . The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to:
receive a software fingerprint of the client device; and determine that the software fingerprint matches a known software fingerprint associated with the contactless card, wherein the virtual account number is generated based on the determination that the software fingerprint matches the known software fingerprint.
14 . The computer-readable storage medium of claim 8 , wherein the instructions further cause the processor to:
receive, from the client device, authentication information for a user account associated with the contactless card, the authentication information comprising one or more of: (i) a username and a password, (ii) biometric credentials; and verify the authentication information for the user account, wherein the virtual account number is generated based on the verification of the authentication information.
15 . A computing apparatus comprising:
a processor; and a memory storing instructions that, when executed by the processor, cause the processor to:
receive, from a merchant application executing on a client device: (i) a merchant identifier of a merchant associated with the merchant application, (ii) a transaction identifier of a transaction, (iii) encrypted data, and (iv) a location of the client device;
verify the encrypted data by decrypting the encrypted data based at least in part on a key for a contactless card;
generate a virtual account number based on the verification of the encrypted data; and
transmit the merchant identifier, the transaction identifier, the virtual account number, an expiration date associated with the virtual account number, and a card verification value (CVV) associated with the virtual account number to a merchant server associated with the merchant to process the transaction using the transaction identifier, the virtual account number, the expiration date, and the CVV.
16 . The computing apparatus of claim 15 , wherein the instructions further cause the processor to:
determine that the contactless card has been used to make a previous purchase with the merchant, wherein the virtual account number is generated based on the determination that the contactless card has previously been used to make a purchase with the merchant.
17 . The computing apparatus of claim 15 , wherein the instructions further configure the apparatus to:
determine, by the processor, that the location of the client device is within a threshold distance of a known location associated with the contactless card, wherein the virtual account number is generated based on the determination that the client device is within the threshold distance of the known location.
18 . The computing apparatus of claim 15 , wherein the instructions further cause the processor to:
determine that a device identifier received from the client device is associated with a user account associated with the contactless card, wherein the virtual account number is generated based on the determination that the device identifier is associated with the contactless card.
19 . The computing apparatus of claim 15 , wherein the expiration date and the CVV comprise one or more of: (i) an expiration date and a CVV generated by the processor, and (ii) an expiration date and a CVV of the contactless card received by the processor from an account database.
20 . The computing apparatus of claim 15 , wherein the instructions further cause the processor to:
receive a software fingerprint of the client device; and determine that the software fingerprint matches a known software fingerprint associated with the contactless card, wherein the virtual account number is generated based on the determination that the software fingerprint matches the known software fingerprint.Join the waitlist — get patent alerts
Track US2022405741A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.