SECURE PERMISSIONING OF ACCESS TO USER ACCOUNTS, INCLUDING SECURE DEAUTHORIZATION OF ACCESS TO USER ACCOUNTS

    公开(公告)号:US20230080415A1

    公开(公告)日:2023-03-16

    申请号:US18050921

    申请日:2022-10-28

    Applicant: Plaid Inc.

    Abstract: A permissions management system is disclosed for enabling a user to securely authorize a third-party system to access user account data and initiate transactions related to a user account, without disclosing to the third-party system account credentials. The system enables the user to also securely de-authorize the third-party system. For example, records may be automatically generated that securely store account information, including one or more permissions related to the account and/or the third-party. A token associated with a record may be shared with the third-party system, but neither the record itself, nor the user account credentials, may be shared with the third-party. Accordingly, the third-party may request user account data and/or initiate transactions by providing the token, but does not itself know, e.g., the user account credentials. Further, the user may set various permissions related to the token, and may also revoke the token (e.g., de-authorize the third-party), thus providing increased security to the user's account.

    SECURE PERMISSIONING OF ACCESS TO USER ACCOUNTS, INCLUDING SECURE DISTRIBUTION OF AGGREGATED USER ACCOUNT DATA

    公开(公告)号:US20220028012A1

    公开(公告)日:2022-01-27

    申请号:US17395900

    申请日:2021-08-06

    Applicant: Plaid Inc.

    Abstract: A system and method for secure permissioning of access to user accounts, including secure distribution of aggregated user account data can include generating a financial report based on account information associated with one or more user accounts; receiving a financial report request for the financial report of the user account, wherein the financial report request is identified as being received from a third-party system; generating an audit report token associated with the financial report; sharing the audit token with the first third-party system in response to the financial report request; and providing the first third-party system account access to the financial report through the report token, where the audit report token can be shared with a second third-party system and provided by the second third-party system in order to confirm authorization to the report and integrity of the report.

    System and method for facilitating programmatic verification of transactions

    公开(公告)号:US11216814B1

    公开(公告)日:2022-01-04

    申请号:US16800543

    申请日:2020-02-25

    Applicant: Plaid Inc.

    Abstract: Systems and methods for programmatic access of a financial institution system. A normalized API request provided by an application system specifies user information corresponding to at least one account endpoint of an external financial institution system. Responsive to the request, at least one application proxy instance associated with the normalized API request is used to collect transaction information from a corresponding financial institution system by providing the financial institution system with a proprietary API request that specifies at least account credentials associated with the user information. The transaction information is included in at least one proprietary API response provided by the financial institution system. A normalized API response is generated based on the collected transaction information and provided to the application system. Each application proxy instance is constructed to simulate an application of the corresponding financial institution system on behalf of a user associated with the application proxy instance.

    Secure permissioning of access to user accounts, including secure distribution of aggregated user account data

    公开(公告)号:US11120158B2

    公开(公告)日:2021-09-14

    申请号:US16384810

    申请日:2019-04-15

    Applicant: Plaid Inc.

    Abstract: A system and method for secure permissioning of access to user accounts, including secure distribution of aggregated user account data can include generating a financial report based on account information associated with one or more user accounts; receiving a financial report request for the financial report of the user account, wherein the financial report request is identified as being received from a third-party system; generating an audit report token associated with the financial report; sharing the audit token with the first third-party system in response to the financial report request; and providing the first third-party system account access to the financial report through the report token, where the audit report token can be shared with a second third-party system and provided by the second third-party system in order to confirm authorization to the report and integrity of the report.

    SECURE PERMISSIONING OF ACCESS TO USER ACCOUNTS, INCLUDING SECURE DEAUTHORIZATION OF ACCESS TO USER ACCOUNTS

    公开(公告)号:US20210281558A1

    公开(公告)日:2021-09-09

    申请号:US17126673

    申请日:2020-12-18

    Applicant: Plaid Inc.

    Abstract: A permissions management system is disclosed for enabling a user to securely authorize a third-party system to access user account data and initiate transactions related to a user account, without disclosing to the third-party system account credentials. The system enables the user to also securely de-authorize the third-party system. For example, records may be automatically generated that securely store account information, including one or more permissions related to the account and/or the third-party. A token associated with a record may be shared with the third-party system, but neither the record itself, nor the user account credentials, may be shared with the third-party. Accordingly, the third-party may request user account data and/or initiate transactions by providing the token, but does not itself know, e.g., the user account credentials. Further, the user may set various permissions related to the token, and may also revoke the token (e.g., de-authorize the third-party), thus providing increased security to the user's account.

    SYSTEM AND METHOD FOR PROGRAMMATICALLY ACCESSING FINANCIAL DATA

    公开(公告)号:US20250029177A1

    公开(公告)日:2025-01-23

    申请号:US18906736

    申请日:2024-10-04

    Applicant: Plaid Inc.

    Abstract: Systems and methods for programmatic access of external financial service systems. An application proxy instance is created that simulates an application of an external financial service system. A normalized account request is received for financial data of the external financial service system for a specified account. The normalized account request is provided by an external financial application system by using a financial data API of the financial platform system. Responsive to the normalized account request, communication is negotiated with the external financial service system by using the application proxy instance to access the requested financial data from the external financial service system by using a proprietary Application Programming Interface (API) of the external financial service system. The financial data is provided to the external financial application system as a response to the normalized account request.

    SYSTEM AND METHOD FOR FACILITATING PROGRAMMATIC VERIFICATION OF TRANSACTIONS

    公开(公告)号:US20240354720A1

    公开(公告)日:2024-10-24

    申请号:US18762784

    申请日:2024-07-03

    Applicant: Plaid Inc.

    CPC classification number: G06Q20/023 G06Q20/3223 G06Q20/4014

    Abstract: Systems and methods for programmatic access of a financial institution system. A normalized API request provided by an application system specifies user information corresponding to at least one account endpoint of an external financial institution system. Responsive to the request, at least one application proxy instance associated with the normalized API request is used to collect transaction information from a corresponding financial institution system by providing the financial institution system with a proprietary API request. The transaction information is included in at least one proprietary API response provided by the financial institution system. A normalized API response is generated based on the collected transaction information and provided to the application system. Each application proxy instance is constructed to simulate an application of the corresponding financial institution system on behalf of a user associated with the application proxy instance.

    System and method linking to accounts using credential-less authentication

    公开(公告)号:US11869005B2

    公开(公告)日:2024-01-09

    申请号:US17024332

    申请日:2020-09-17

    Applicant: Plaid Inc.

    CPC classification number: G06Q20/4014 H04L63/0838

    Abstract: A system and method for linking to accounts using credential-less authentication that includes: within a first application context at an account-linking computing service: receiving a request to establish an account link, establishing the account link to a user account of an account service using user credentials, and receiving user identifying information of the first application context and storing the user identifying information in association with the account link; and within a second application context at the account-linking computing service: receiving user identifying information of the second application context, searching and identifying a candidate account link using the user identifying information of the second application context, verifying eligibility for access to the account link, and permitting access to the account link upon successful verification of eligibility.

    System and method for programmatically accessing data

    公开(公告)号:US11798072B1

    公开(公告)日:2023-10-24

    申请号:US17302630

    申请日:2021-05-07

    Applicant: Plaid Inc.

    CPC classification number: G06Q40/02 G06F21/31 G06Q40/00 G06Q40/12

    Abstract: Systems and methods for programmatic access of external financial service systems. An application proxy instance is created that simulates an application of an external financial service system. A normalized account request is received for financial data of the external financial service system for a specified account. The normalized account request is provided by an external financial application system by using a financial data API of the financial platform system. Responsive to the normalized account request, communication is negotiated with the external financial service system by using the application proxy instance to access the requested financial data from the external financial service system by using a proprietary Application Programming Interface (API) of the external financial service system. The financial data is provided to the external financial application system as a response to the normalized account request.

    Systems and methods for estimating past and prospective attribute values associated with a user account

    公开(公告)号:US11682070B2

    公开(公告)日:2023-06-20

    申请号:US17230835

    申请日:2021-04-14

    Applicant: Plaid Inc.

    CPC classification number: G06Q40/02 G06F16/951

    Abstract: Systems and techniques are disclosed for accessing accounts associated with a user and estimating a value of an attribute associated with the user based upon the retrieved account information. Transaction data associated with an account at an external user account system is received. The transactions are categorized into transaction groups. For each transaction group, a confidence value that the group is associated with the attribute is estimated, based at least in part upon a distribution of transaction amounts for the transactions of the group over a time period associated with the group. An attribute value is estimated for each group, based at least in part upon the transaction amounts of the transaction of the group. In addition a value of the attribute for a future time period may be predicted based upon the transaction groups.

Patent Agency Ranking