Invention Grant
- Patent Title: Controlled, secure exchange of privacy sensitive data units
-
Application No.: US15775539Application Date: 2016-11-11
-
Publication No.: US10666444B2Publication Date: 2020-05-26
- Inventor: Sven Berkvens-Matthijsse
- Applicant: ZD Exploitatie B.V.
- Applicant Address: NL Nijmegen
- Assignee: Consumer Health Entrepreneurs B.V.
- Current Assignee: Consumer Health Entrepreneurs B.V.
- Current Assignee Address: NL Nijmegen
- Agency: Leydig, Voit & Mayer, Ltd.
- Priority: com.zzzhc.datahub.patent.etl.us.BibliographicData$PriorityClaim@1ae84a0a
- International Application: PCT/NL2016/050787 WO 20161111
- International Announcement: WO2017/082731 WO 20170518
- Main IPC: G06F21/60
- IPC: G06F21/60 ; H04L9/32 ; H04L29/06 ; G16H10/60 ; G06F21/62

Abstract:
A method is provided for controlling exchange of privacy sensitive data between a first certified party server (A) associated with a first party and at least a second certified party server (B) associated with a second party using a certified intermediate server (Y) subject to authorizations (XAB) imposed by an authorizing party (X), using a public network. Therein the first certified party server (A) transmits (S2) to the certified intermediate server (Y) a primary request (ARQ(IxA,ΓxA)) that includes a digitally signed primary request indication (IXA,ΓXA) comprising a primary request indication (IXA) specifying a set of privacy sensitive data units (XA) for which a copy (CXA) is requested and a digital signature (ΓXA) of said first party, associated with said primary request indication (IXA). The certified intermediate server (Y) determines (S3) which authorizations are provided by the authorizing party (X) for transmission of information concerning privacy sensitive data from the second certified second party server (B) to the first certified party server (A). The certified intermediate server (Y) executes (S4) a query procedure (QP) in which at least includes transmitting the digitally signed primary request (IXA,ΓXA) by the certified intermediate server (Y) to the second certified party server (B). The second certified party server (B) inspects (S5) the digital signature (ΓXA) to verify authenticity of said the primary request. Subject to confirmation of its authenticity it makes available a provider copy (CXAMB) including at least a censored copy, being a copy of a censored subset of privacy sensitive data units, the censored subset comprising the privacy sensitive data units as specified by the primary request indication (IXA) subject at least to said authorizations (XAB) and subject to availability thereof with the at least a second certified party server. It also provides a second party digital signature, i.e. a digital signature (ΓB) of the second certified party, associated with the censored subset. Upon completion of the query procedure, the censored copy and the second party digital signature are made available to the first certified party server as a digitally signed authorized copy.
Public/Granted literature
- US20180359098A1 CONTROLLED, SECURE EXCHANGE OF PRIVACY SENSITIVE DATA UNITS Public/Granted day:2018-12-13
Information query