Using a contactless card to securely share personal data stored in a blockchain
Abstract
Systems, methods, and articles of manufacture to securely share data stored in a blockchain. A contactless card may receive a request to provide a data element from a device. An applet of the contactless card may encrypt the data element and a wallet address. The applet may generate a signature for the request, and transmit, to a mobile device, the signature and the encrypted data. The mobile device may transmit, to a verification service, the signature and encrypted data. The verification service may verify the signature based on a public key. A node in a blockchain may generate a block in the blockchain, the block comprising indications of the verification of the signature, the requested data element, and the wallet address. An encrypted data element corresponding to the data element may be decrypted using a public key. The device may receive the decrypted data element from the wallet address.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method, comprising:
receiving, by a verification service executing on a server from a mobile device, a digital signature, an encrypted request to verify a user data element to a merchant wallet address based on a criterion, and a user wallet address, wherein an applet of a contactless card generates the digital signature based on a private key of the contactless card, wherein the applet generates the encrypted request based on a first request received from a merchant device as part of a transaction; verifying, by the verification service, the digital signature based on a public key associated with the private key of the contactless card; decrypting, by the verification service, the encrypted request using the public key; receiving, by the verification service, the user data element; verifying, by the verification service, the user data element based on the criterion; and generating, by a node of a blockchain responsive to a second request received from the verification service, a block in the blockchain corresponding to the first request, the block comprising an indication of the verification of the digital signature, an indication of the verification of the user data element based on the criterion, the public key, the merchant wallet address, and the user wallet address.
2 . The method of claim 1 , wherein the block in the blockchain further comprises an indication of a request token associated with the first request, wherein the user data element is one of a plurality of user data elements, each user data element corresponding to one or more personally identifiable attributes.
3 . The method of claim 2 , wherein the personally identifiable attributes comprise: (i) an age, (ii) a name, (iii) an address, (iv) an identification number, (v) one or more biometric identifiers, (vi) one or more account numbers, and (vii) an email address.
4 . The method of claim 1 , further comprising:
identifying, by the verification service, a plurality of blocks of the blockchain associated with a plurality of prior requests, the plurality of prior requests validated and fulfilled to provide user data elements of the user.
5 . The method of claim 1 , wherein verifying the user data element comprises:
comparing the user data element to the criterion; and determining the user data element satisfies the criterion.
6 . The method of claim 1 , further comprising:
reading, by the merchant device, the block in the blockchain; identifying, by the merchant device, the indication of the verification of the user data element; and authorizing, by the merchant device, the transaction based on the indication of the verification of the user data element.
7 . The method of claim 1 , wherein the user wallet address is encrypted when received with the request, the method further comprising:
decrypting, by the verification service based on the public key, the encrypted user wallet address.
8 . The method of claim 1 , wherein verifying the digital signature comprises decrypting the digital signature by the verification service based on the public key, wherein the digital signature comprises a hash value.
9 . A computer-readable storage medium including instructions that when executed by a processor, cause the processor to:
receive, from a mobile device, a digital signature, an encrypted request to verify a user data element to a merchant wallet address based on a criterion, and a user wallet address, wherein an applet of a contactless card generates the digital signature based on a private key of the contactless card, wherein the applet generates the encrypted request based on a first request received from a merchant device as part of a transaction; verify the digital signature based on a public key associated with the private key of the contactless card; decrypt the encrypted request using the public key; receive the user data element; verify the user data element based on the criterion; and generate a block in a blockchain corresponding to the first request to verify the user data element, the block comprising an indication of the verification of the digital signature, an indication of the verification of the user data element based on the criterion, the public key, the merchant wallet address, and the user wallet address.
10 . The computer-readable storage medium of claim 9 , wherein the block in the blockchain further comprises an indication of a request token associated with the first request, wherein the user data element is one of a plurality of user data elements, each user data element corresponding to one or more personally identifiable attributes.
11 . The computer-readable storage medium of claim 10 , wherein the personally identifiable attributes comprise: (i) an age, (ii) a name, (iii) an address, (iv) an identification number, (v) one or more biometric identifiers, (vi) one or more account numbers, and (vii) an email address.
12 . The computer-readable storage medium of claim 9 , wherein the instructions further cause the processor to:
identify a plurality of blocks of the blockchain associated with a plurality of prior requests, the plurality of prior requests validated and fulfilled to provide user data elements of the user.
13 . The computer-readable storage medium of claim 9 , wherein the instructions to verify the user data element comprise instructions to cause the processor to:
compare the user data element to the criterion; and determine the user data element satisfies the criterion.
14 . The computer-readable storage medium of claim 9 , wherein the user wallet address is encrypted when received with the request, wherein the instructions further cause the processor to:
decrypt the encrypted user wallet address based on the public key.
15 . The computer-readable storage medium of claim 9 , wherein the verification of the digital signature comprises decrypting the digital signature based on the public key, wherein the digital signature comprises a hash value.
16 . A computing apparatus comprising:
a processor; and a memory storing instructions that, when executed by the processor, cause the processor to:
receive, from a mobile device, a digital signature, an encrypted request to verify a user data element to a merchant wallet address based on a criterion, and a user wallet address, wherein an applet of a contactless card generates the digital signature based on a private key of the contactless card, wherein the applet generates the encrypted request based on a first request received from a merchant device as part of a transaction;
verify the digital signature based on a public key associated with the private key of the contactless card;
decrypt the encrypted request using the public key;
receive the user data element;
verify the user data element based on the criterion; and
generate a block in a blockchain corresponding to the first request to verify the user data element, the block comprising an indication of the verification of the digital signature, an indication of the verification of the user data element based on the criterion, the public key, the merchant wallet address, and the user wallet address.
17 . The computing apparatus of claim 16 , wherein the block in the blockchain further comprises an indication of a request token associated with the first request, wherein the user data element is one of a plurality of user data elements, each user data element corresponding to one or more personally identifiable attributes.
18 . The computing apparatus of claim 17 , wherein the personally identifiable attributes comprise: (i) an age, (ii) a name, (iii) an address, (iv) an identification number, (v) one or more biometric identifiers, (vi) one or more account numbers, and (vii) an email address.
19 . The computing apparatus of claim 16 , wherein the instructions further cause the processor to:
identify a plurality of blocks of the blockchain associated with a plurality of prior requests, the plurality of prior requests validated and fulfilled to provide user data elements of the user.
20 . The computing apparatus of claim 16 , wherein the instructions to verify the user data element comprise instructions to cause the processor to:
compare the user data element to the criterion; and determine the user data element satisfies the criterion.
21 . The computing apparatus of claim 16 , wherein the user wallet address is encrypted when received with the request, wherein the instructions further cause the processor to:
decrypt, based on the public key, the encrypted user wallet address.
22 . The computing apparatus of claim 16 , wherein the verification of the digital signature comprises decrypting the digital signature based on the public key, wherein the digital signature comprises a hash value.Join the waitlist — get patent alerts
Track US2023334476A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.