18462031. VERIFIABLE CONSENT FOR PRIVACY PROTECTION simplified abstract (GOOGLE LLC)

From WikiPatents
Jump to navigation Jump to search

VERIFIABLE CONSENT FOR PRIVACY PROTECTION

Organization Name

GOOGLE LLC

Inventor(s)

Gang Wang of Jersey City NJ (US)

Marcel M. Moti Yung of New York NY (US)

VERIFIABLE CONSENT FOR PRIVACY PROTECTION - A simplified explanation of the abstract

This abstract first appeared for US patent application 18462031 titled 'VERIFIABLE CONSENT FOR PRIVACY PROTECTION

Simplified Explanation

The patent application describes a method for updating user consent in a verifiable manner, involving receiving a request with an attestation token from a client device, verifying the integrity of the request using the token, and performing an action based on the request.

  • The method involves receiving a request from a client device with an attestation token.
  • The attestation token includes a user identifier, token creation time, user consent data, and a digital signature.
  • The integrity of the request is verified using the attestation token.

Potential Applications

This technology could be applied in data privacy and security systems, user consent management platforms, and compliance verification processes.

Problems Solved

This technology helps ensure that user consent is accurately recorded and verified, enhancing data protection and privacy compliance efforts.

Benefits

The method provides a secure and verifiable way to update user consent, increasing transparency and trust between users and entities handling their data.

Potential Commercial Applications

"Verifiable User Consent Update Method" could be utilized in industries such as healthcare, finance, and e-commerce where user data privacy and consent management are critical.

Possible Prior Art

One possible prior art could be systems or methods for verifying user consent in data processing applications.

Unanswered Questions

How does the method handle revoked user consent?

The patent application does not specify how the system manages situations where a user revokes their consent after it has been updated. This aspect could be crucial in ensuring compliance with data protection regulations.

What measures are in place to prevent unauthorized access to user consent data?

The patent application does not detail the security measures implemented to safeguard user consent data from unauthorized access or tampering. Understanding the security protocols in place would be essential for assessing the overall robustness of the system.


Original Abstract Submitted

Methods, systems, and apparatus, including a method for updating user consent in a verifiable manner. In some aspects, a method includes receiving, from a client device, a request including an attestation token. The attestation token includes a set of data that includes at least a user identifier that uniquely identifies a user of the client device, a token creation time that indicates a time at which the attestation token was created, user consent data specifying whether one or more entities that receive the attestation token are eligible to use data of the user, an action to be performed in response to the request. The attestation token also includes a digital signature of at least a portion of the set of data, including at least the user identifier and the token creation time. An integrity of the request is verified using the attestation token.