Patent · US Active

System and method for providing controlled application programming interface security

US10432598B2 · kind B2 · utility

1Cited by
4References
18Claims
0Family size

Assignee

Inventor

Key dates

Filing dateDec 23, 2014
Grant dateOct 1, 2019
Priority date
Expiry dateDec 23, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/10
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system and method for providing access to data of a user or services relevant to a user. A customer data key is created by a server that is specific to an application, the user of the application, and the device upon which the application resides. The server may receive an application programming interface call to create the customer data key; however, any call accessing or affecting user-specific data which does not contain a valid and authorized customer data key may be rejected. To authorize the access to the offered data or services, the user conducts an entirely separate transaction not mediated by the application. During this separate transaction, the customer data key may be activated, permitting access to the data or services using the activated customer data key.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.