Movatterモバイル変換


[0]ホーム

URL:


US20230359763A1 - Permission monitoring and data exchange - Google Patents

Permission monitoring and data exchange
Download PDF

Info

Publication number
US20230359763A1
US20230359763A1US18/167,339US202318167339AUS2023359763A1US 20230359763 A1US20230359763 A1US 20230359763A1US 202318167339 AUS202318167339 AUS 202318167339AUS 2023359763 A1US2023359763 A1US 2023359763A1
Authority
US
United States
Prior art keywords
user
questions
personal data
data
party
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
US18/167,339
Inventor
Emerson Paulo Borsato
Walter Timothy Miller
Joni Hansen Pierce
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Consent Vault Inc
Original Assignee
Consent Vault Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Consent Vault IncfiledCriticalConsent Vault Inc
Priority to US18/167,339priorityCriticalpatent/US20230359763A1/en
Assigned to Consent Vault Inc.reassignmentConsent Vault Inc.ASSIGNMENT OF ASSIGNORS INTEREST (SEE DOCUMENT FOR DETAILS).Assignors: BORSATO, EMERSON PAULO, MILLER, WALTER TIMOTHY, PIERCE, JONI HANSEN
Publication of US20230359763A1publicationCriticalpatent/US20230359763A1/en
Pendinglegal-statusCriticalCurrent

Links

Images

Classifications

Definitions

Landscapes

Abstract

A method may include providing a user with one or more questions regarding permissions for use of personal data related to the user, and compiling the permissions for the use of the personal data. The method may also include receiving a request from a third party for access to the personal data, and providing a response to the third party based on the compiled permissions. The method may also include, based on the response indicating that the third party is permitted access to the personal data, sending a responsive dataset to a data holder, where the responsive dataset is responsive to the request from the third party. The method may also include facilitating the third party accessing the personal data.

Description

Claims (20)

What is claimed is:
1. A method, comprising:
generating a plurality of questions for a user, each of the plurality of questions including multiple facets of permissions regarding use of personal data related to the user;
sequentially providing at least two questions of the plurality of questions to the user, the at least two questions covering at least what entities are permitted access to the personal data and for what purposes the personal data can be used;
compiling answers provided by the user to the at least two of the plurality of questions to generate compiled permissions by a consent server;
receiving a request from a third party for access to the personal data of the user for a given purpose, the personal data being stored by a data holder and not stored by the consent server when the request is received; and
providing a response to the third party based on the compiled permissions and the request.
2. The method ofclaim 1, wherein the at least two questions are binary questions such that the user is able to respond with a single affirmative or negative response.
3. The method ofclaim 1, wherein the at least two questions are multi-modal such that each individual questions addresses at least two instances of a combination of what entities are permitted access to the personal data and for what purposes the personal data can be used.
4. The method ofclaim 1, wherein the generating and sequentially providing questions is repeated until a series of entries related to a combination of what entities are permitted access to the personal data and for what purposes the personal data can be used are filled for the user.
5. The method ofclaim 1, wherein the plurality of questions further include separate categories of personal data.
6. The method ofclaim 1, wherein the consent server stores a limited version of demographic information of the user.
7. The method ofclaim 6, wherein the limited version of the demographic information is limited to age, gender, name, address, and telephone number.
8. The method ofclaim 1, wherein the entities of one of the at least two questions includes both a named entity and partners of the named entity.
9. The method ofclaim 8, wherein the named entity includes at least one of a clinic, medical office, or hospital and the partners of the named entity include at least one of a laboratory, a vendor, a service provider, a medical office referring to the named entity, or a medical office referring from the named entity.
10. One or more non-transitory computer-readable media containing instructions that, when executed by one or more processors, cause a system to perform operations, the operations comprising:
generating a plurality of questions for a user, each of the plurality of questions including multiple facets of permissions regarding use of personal data related to the user;
sequentially providing at least two questions of the plurality of questions to the user, the at least two questions covering at least what entities are permitted access to the personal data and for what purposes the personal data can be used;
compiling answers provided by the user to the at least two of the plurality of questions to generate compiled permissions by a consent server;
receiving a request from a third party for access to the personal data of the user for a given purpose, the personal data being stored by a data holder and not stored by the consent server when the request is received; and
providing a response to the third party based on the compiled permissions and the request.
11. The computer-readable media ofclaim 10, wherein the at least two questions are binary questions such that the user is able to respond with a single affirmative or negative response.
12. The computer-readable media ofclaim 10, wherein the at least two questions are multi-modal such that each individual questions addresses at least two instances of a combination of what entities are permitted access to the personal data and for what purposes the personal data can be used.
13. The computer-readable media ofclaim 10, wherein the generating and sequentially providing questions is repeated until a series of entries related to a combination of what entities are permitted access to the personal data and for what purposes the personal data can be used are filled for the user.
14. The computer-readable media ofclaim 10, wherein the plurality of questions further include separate categories of personal data.
15. The computer-readable media ofclaim 10, wherein the consent server stores a limited version of demographic information of the user.
16. The computer-readable media ofclaim 15, wherein the limited version of the demographic information is limited to age, gender, name, address, and telephone number.
17. The computer-readable media ofclaim 10, wherein the entities of one of the at least two questions includes both a named entity and partners of the named entity.
18. The computer-readable media ofclaim 17, wherein the named entity includes at least one of a clinic, medical office, or hospital and the partners of the named entity include at least one of a laboratory, a vendor, a service provider, a medical office referring to the named entity, or a medical office referring from the named entity.
19. A consent server, comprising:
one or more processors; and
one or more non-transitory computer-readable media containing instructions that, when executed by the one or more processors, cause the consent server to perform operations, the operations comprising:
generating a plurality of questions for a user, each of the plurality of questions including multiple facets of permissions regarding use of personal data related to the user;
sequentially providing at least two questions of the plurality of questions to the user, the at least two questions covering at least what entities are permitted access to the personal data and for what purposes the personal data can be used;
compiling answers provided by the user to the at least two of the plurality of questions to generate compiled permissions;
receiving a request from a third party for access to the personal data of the user for a given purpose, the personal data being stored by a data holder and not stored by the consent server when the request is received; and
providing a response to the third party based on the compiled permissions and the request.
20. The system ofclaim 19, wherein the generating and sequentially providing questions is repeated until a series of entries related to a combination of what entities are permitted access to the personal data and for what purposes the personal data can be used are filled for the user.
US18/167,3392021-05-042023-02-10Permission monitoring and data exchangePendingUS20230359763A1 (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
US18/167,339US20230359763A1 (en)2021-05-042023-02-10Permission monitoring and data exchange

Applications Claiming Priority (3)

Application NumberPriority DateFiling DateTitle
US202163184042P2021-05-042021-05-04
US17/662,014US11604895B2 (en)2021-05-042022-05-04Permission monitoring and data exchange
US18/167,339US20230359763A1 (en)2021-05-042023-02-10Permission monitoring and data exchange

Related Parent Applications (1)

Application NumberTitlePriority DateFiling Date
US17/662,014ContinuationUS11604895B2 (en)2021-05-042022-05-04Permission monitoring and data exchange

Publications (1)

Publication NumberPublication Date
US20230359763A1true US20230359763A1 (en)2023-11-09

Family

ID=83900497

Family Applications (2)

Application NumberTitlePriority DateFiling Date
US17/662,014ActiveUS11604895B2 (en)2021-05-042022-05-04Permission monitoring and data exchange
US18/167,339PendingUS20230359763A1 (en)2021-05-042023-02-10Permission monitoring and data exchange

Family Applications Before (1)

Application NumberTitlePriority DateFiling Date
US17/662,014ActiveUS11604895B2 (en)2021-05-042022-05-04Permission monitoring and data exchange

Country Status (4)

CountryLink
US (2)US11604895B2 (en)
EP (1)EP4348474A4 (en)
CA (1)CA3236723A1 (en)
WO (1)WO2022236282A1 (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US11893597B2 (en)*2021-03-222024-02-06Royal Bank Of CanadaSystem and method for loading secure data in multiparty secure computing environment
US20240104189A1 (en)*2022-09-162024-03-28Capital One Services, LlcComputer based systems configured to surface expected demographic queries within interaction sessions and methods of use thereof

Citations (4)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20190258820A1 (en)*2018-02-212019-08-22Rapsag-Arrac Inc.System and Method for Maintaining the Security and Confidentiality of Consumer Information
US20210089602A1 (en)*2019-09-192021-03-25Microsoft Technology Licensing, LlcTuning model parameters to optimize online content
US20210141913A1 (en)*2019-11-122021-05-13Accenture Global Solutions LimitedSystem and Method for Management of Policies and User Data during Application Access Sessions
US20220284121A1 (en)*2021-03-082022-09-08Honda Motor Co., Ltd.Information management device, information management system and information management method

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US6820204B1 (en)*1999-03-312004-11-16Nimesh DesaiSystem and method for selective information exchange
US20120084349A1 (en)2009-12-302012-04-05Wei-Yeh LeeUser interface for user management and control of unsolicited server operations
US8418229B2 (en)*2010-08-172013-04-09Bank Of America CorporationSystems and methods for performing access entitlement reviews
US9032544B2 (en)*2010-12-222015-05-12Private Access, Inc.System and method for controlling communication of private information over a network
EP3910515A1 (en)2014-10-022021-11-17Trunomi Ltd.Systems and methods for context-based permissioning of personally identifiable information
EP3353943B1 (en)*2015-09-212019-07-03Swiss Reinsurance Company Ltd.System and method for secure digital sharing based on an inter-system exchange of a two-tier double encrypted digital information key
US20170093917A1 (en)*2015-09-302017-03-30Fortinet, Inc.Centralized management and enforcement of online behavioral tracking policies
US11184323B2 (en)*2017-09-282021-11-23L3 Technologies, IncThreat isolation using a plurality of containers
EP3963493A1 (en)*2019-04-302022-03-09ResMed Inc.Data consent storage and management system and method
US11966823B2 (en)*2019-10-232024-04-23Argenti Health Inc.Systems and methods for intelligent contract analysis and data organization
US12111949B2 (en)*2020-12-182024-10-08Paypal, Inc.Rights management regarding user data associated with data lifecycle discovery platform

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20190258820A1 (en)*2018-02-212019-08-22Rapsag-Arrac Inc.System and Method for Maintaining the Security and Confidentiality of Consumer Information
US20210089602A1 (en)*2019-09-192021-03-25Microsoft Technology Licensing, LlcTuning model parameters to optimize online content
US20210141913A1 (en)*2019-11-122021-05-13Accenture Global Solutions LimitedSystem and Method for Management of Policies and User Data during Application Access Sessions
US20220284121A1 (en)*2021-03-082022-09-08Honda Motor Co., Ltd.Information management device, information management system and information management method

Also Published As

Publication numberPublication date
US11604895B2 (en)2023-03-14
US20220358239A1 (en)2022-11-10
CA3236723A1 (en)2022-11-10
EP4348474A1 (en)2024-04-10
EP4348474A4 (en)2025-04-30
WO2022236282A1 (en)2022-11-10

Similar Documents

PublicationPublication DateTitle
US11790117B2 (en)Systems and methods for enforcing privacy-respectful, trusted communications
US20210210160A1 (en)System, method and apparatus to enhance privacy and enable broad sharing of bioinformatic data
AU2016206450B2 (en)Healthcare data interchange system and method
US20220199208A1 (en)System and method of managing access of a user's health information stored over a health care network
US20170243028A1 (en)Systems and Methods for Enhancing Data Protection by Anonosizing Structured and Unstructured Data and Incorporating Machine Learning and Artificial Intelligence in Classical and Quantum Computing Environments
Obeid et al.A survey of practices for the use of electronic health records to support research recruitment
US20150149362A1 (en)Encryption and Distribution of Health-related Data
US20200067925A1 (en)Systems and methods for use in managing access to user profiles, and content blocks included therein
US20070143148A1 (en)Anonymous brokering of patient health records
US20230359763A1 (en)Permission monitoring and data exchange
Schmeelk et al.Electronic health records and blockchain interoperability requirements: a scoping review
Radwan et al.Cloud-based service for secure electronic medical record exchange
Vimalachandran et al.Preserving patient-centred controls in electronic health record systems: A reliance-based model implication
YasnoffA secure and efficiently searchable health information architecture
AU2020101898A4 (en)MHOC- Blockchain Technology: Medicine and Healthcare Observation Care using Blockchain Technology
Gerstle et al.E-mail communication between pediatricians and their patients
Sachdeva et al.Secure and privacy issues in telemedicine: Issues, solutions, and standards
Birnbaum et al.Addressing public health informatics patient privacy concerns
Hunter et al.New Zealanders’ attitudes towards access to their electronic health records: preliminary results from a national study using vignettes
US20240242797A1 (en)System and method of blockchain consortium to support transactions containing healthcare data without compromising patient privacy
Godlove et al.Patient matching within a health information exchange
Hussainy et al.Protocol for ACCESS: a qualitative study exploring barriers and facilitators to accessing the emergency contraceptive pill from community pharmacies in Australia
US12293001B2 (en)Referential data grouping and tokenization for longitudinal use of de-identified data
MajumderCyberbanks and other virtual research repositories
BarkerPrivacy protection or data value: Can we have both?

Legal Events

DateCodeTitleDescription
ASAssignment

Owner name:CONSENT VAULT INC., UTAH

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:BORSATO, EMERSON PAULO;MILLER, WALTER TIMOTHY;PIERCE, JONI HANSEN;REEL/FRAME:062657/0750

Effective date:20220503

STCTInformation on status: administrative procedure adjustment

Free format text:PROSECUTION SUSPENDED

STPPInformation on status: patent application and granting procedure in general

Free format text:NON FINAL ACTION MAILED


[8]ページ先頭

©2009-2025 Movatter.jp