18462031. VERIFIABLE CONSENT FOR PRIVACY PROTECTION simplified abstract (GOOGLE LLC)

From WikiPatents
Revision as of 11:13, 12 April 2024 by Wikipatents (talk | contribs) (Creating a new page)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

VERIFIABLE CONSENT FOR PRIVACY PROTECTION

Organization Name

GOOGLE LLC

Inventor(s)

Gang Wang of Jersey City NJ (US)

Marcel M. Moti Yung of New York NY (US)

VERIFIABLE CONSENT FOR PRIVACY PROTECTION - A simplified explanation of the abstract

This abstract first appeared for US patent application 18462031 titled 'VERIFIABLE CONSENT FOR PRIVACY PROTECTION

Simplified Explanation

The patent application describes a method for updating user consent in a verifiable manner, involving receiving a request with an attestation token from a client device, verifying the integrity of the request using the attestation token, and performing an action in response to the request.

  • The method includes receiving a request from a client device with an attestation token.
  • The attestation token contains a set of data including a user identifier, token creation time, user consent data, and a digital signature.
  • The integrity of the request is verified using the attestation token.

Potential Applications

This technology could be applied in data privacy and consent management systems to ensure that user consent is accurately recorded and verified.

Problems Solved

This technology solves the problem of ensuring that user consent for data usage is verifiable and up-to-date in a secure manner.

Benefits

The benefits of this technology include improved data privacy compliance, enhanced user trust, and streamlined consent management processes.

Potential Commercial Applications

A potential commercial application of this technology could be in online platforms and services that handle user data and require explicit consent for data usage.

Possible Prior Art

One possible prior art could be systems or methods for managing user consent in data processing systems, but the specific approach of using attestation tokens for verifiable consent updates may be novel.

What are the specific technical details of the digital signature process used in the attestation token?

The specific technical details of the digital signature process used in the attestation token are not provided in the abstract. Further information on the cryptographic algorithms, key management, and verification process involved in generating and validating the digital signature would be necessary to fully understand the security and reliability of the method.

How does the method handle situations where user consent data conflicts or is inconsistent across different entities receiving the attestation token?

The abstract does not mention how the method handles situations where user consent data conflicts or is inconsistent across different entities receiving the attestation token. It would be important to understand how such conflicts are resolved or managed to ensure accurate and reliable consent updates.


Original Abstract Submitted

Methods, systems, and apparatus, including a method for updating user consent in a verifiable manner. In some aspects, a method includes receiving, from a client device, a request including an attestation token. The attestation token includes a set of data that includes at least a user identifier that uniquely identifies a user of the client device, a token creation time that indicates a time at which the attestation token was created, user consent data specifying whether one or more entities that receive the attestation token are eligible to use data of the user, an action to be performed in response to the request. The attestation token also includes a digital signature of at least a portion of the set of data, including at least the user identifier and the token creation time. An integrity of the request is verified using the attestation token.