US2014143152A1PendingUtilityA1

Methods and systems using contactless card

Assignee: CITIBANK NAPriority: Mar 4, 2011Filed: Jan 8, 2014Published: May 22, 2014
Est. expiryMar 4, 2031(~4.6 yrs left)· nominal 20-yr term from priority
Inventors:Satish Menon
G06Q 20/20G06Q 20/382G06Q 20/354G06Q 20/3278G06Q 20/40G06Q 20/24G06Q 20/3263G06Q 20/108
62
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

It is desirable to implement security features that can prevent the unauthorized use of a customer's sensitive account information from an RFID sticker. The methods and systems described herein attempt to resolve the deficiencies with the conventional RFID stickers. In a more secure implementation, a financial institution allows a customer to activate or deactivate the account for use with the RFID sticker by submitting a request to the financial institution using internet banking, mobile banking, SMS texting, or other communications method.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A computer-implemented method for more securely using an RFID mechanism in a transaction, the method comprising:
 receiving, by a computer, a first request from a customer to activate a credit account for making a payment using the RFID mechanism;   upon receiving the first request, activating, by the computer, the credit account for making the payment using the RFID mechanism;   receiving, by the computer, a request from a merchant to authorize a payment from the customer using the RFID mechanism;   authorizing, by the computer, the payment from the customer using the RFID mechanism when the account is activated subsequent to the first request;   receiving, by the computer, a second request from a customer to deactivate the credit account to prevent making a second payment using the RFID mechanism; and   upon receiving the second request, deactivating, by the computer, the credit account to prevent making the second payment using the RFID mechanism, wherein the credit account of the customer remains available for use by the customer using any payment mechanism other than the RFID mechanism after deactivating the credit account.   
     
     
         2 . The method according to  claim 1 , wherein the first request is submitted via a website, a text message, a mobile banking application, or a phone call. 
     
     
         3 . The method according to  claim 1 , wherein the second request is submitted via a website, a text message, a mobile banking application, or a phone call. 
     
     
         4 . The method according to  claim 1 , wherein receiving the first request further comprises:
 verifying an identity of the customer;   receiving a selection of a link by the customer to activate the credit account; and   updating a record in a database of a financial institution that the credit account is activated.   
     
     
         5 . The method according to  claim 1 , further comprising:
 determining whether the credit account is activated based upon a record in a database of the financial institution;   authorizing the payment if the credit account is activated; and   declining the transaction if the credit account is deactivated.   
     
     
         6 . The method according to  claim 1 , wherein the website used to submit the first request is an online banking website of the financial institution. 
     
     
         7 . The method according to  claim 1 , wherein the first request is received from a mobile device of the customer. 
     
     
         8 . The method according to  claim 1 , wherein the first request is submitted via the text message to the financial institution, the method further comprising:
 receiving the text message from a mobile phone number registered with the financial institution for the customer,   wherein the text message comprises an instruction to activate the credit account.   
     
     
         9 . The method according to  claim 1 , wherein receiving the second request further comprises:
 verifying an identity of the customer;   receiving a selection of a link to deactivate the credit account; and   updating a record in a database of a financial institution that the credit account is deactivated.   
     
     
         10 . The method according to  claim 1 , wherein the second request is submitted via the text message to the financial institution, the method further comprising:
 receiving the text message from a mobile phone number registered with the financial institution for the customer,   wherein the text message comprises an instruction to deactivate the credit account.   
     
     
         11 . The method according to  claim 1 , wherein the authorization further comprises determining whether a transaction amount exceeds a predetermined threshold and whether account is activated or deactivated. 
     
     
         12 . A computer-implemented method for more securely using an RFID mechanism in a transaction, the method comprising:
 receiving, by a computer of a financial institution, a request from a customer to switch on the use an RFID mechanism associated with a credit account of the customer, wherein the request is submitted via a website of the financial institution, a text message to the financial institution, a mobile banking application of the financial institution, or a phone call to the financial institution;   switching on, by a computer of the financial institution, the use of the RFID mechanism associated with the credit account of the customer;   receiving, by a computer of the financial institution, a request from a merchant to authorize a transaction with the customer using the RFID mechanism;   transmitting, by a computer of the financial institution, an authorization to the merchant for the transaction; and   switching off, by a computer of the financial institution, the use of the RFID mechanism associated with the credit account of the customer after the transaction with the merchant.   
     
     
         13 . The method according to  claim 12 , wherein switching off the credit account further comprises:
 identifying the time of the switching on of the account;   identifying a predetermined time for the account to remain on; and   switching off the use of the RFID mechanism associated with the account after the predetermined period of time.   
     
     
         14 . The method according to  claim 13 , further comprising receiving a request from the customer to extend the predetermined period of time. 
     
     
         15 . The method according to  claim 13 , further comprising automatically extending the predetermined period of time based upon a completion of the transaction by the customer. 
     
     
         16 . The method according to  claim 12 , wherein receiving the request further comprises:
 verifying the identity of the customer;   receiving a selection of a link to switch on the account; and   updating a record in a database that the account is on.   
     
     
         17 . The method according to  claim 12 , wherein the website used to submit the request is an online banking website of the financial institution. 
     
     
         18 . The method according to  claim 12 , wherein the request is received from a mobile device of the customer. 
     
     
         19 . The method according to  claim 12 , wherein the request is submitted via the text message to the financial institution, the method further comprising:
 receiving the text message from a mobile phone number registered with the financial institution for the customer,   wherein the text message comprises an instruction to switch on the use of the RFID mechanism associated with the account.   
     
     
         20 . A computer-implemented method for conducting a transaction, the method comprising:
 receiving, by a computer of a financial institution, a first request from a customer using a first communication channel to activate the use of a payment mechanism associated with an account of the customer;   activating, by a computer of the financial institution, the account of the customer;   receiving, by a computer of the financial institution, a request from a point of sale to authorize a transaction with the customer using the payment mechanism;   transmitting, by a computer of the financial institution, authorization for the transaction to the point of sale; and   deactivating, by a computer of the financial institution, the account of the customer after the transaction.   
     
     
         21 . The computer implemented method according to  claim 18 , further comprising receiving, by a computer of a financial institution, a second request from a customer using a second communication channel to deactivate the use of the payment mechanism associated with the account of the customer. 
     
     
         22 . The computer implemented method according to  claim 18 , wherein the first communication channel is selected from the group consisting of the internet, a mobile network, and a telephone network. 
     
     
         23 . The computer implemented method according to  claim 18 , wherein the payment mechanism comprises an RFID sticker. 
     
     
         24 . A computer-implemented method for authorizing a transaction, the method comprising:
 receiving, by a computer, a request to authorize a transaction;   determining, by the computer, whether the transaction was initiated by an RFID sticker;   determining, by the computer, whether the account has been switched on or off for use of the RFID sticker;   authorizing the transaction if:
 the request was not initiated by the RFID sticker; or 
 the requested was initiated by the RFID sticker and the account has been switched on; and 
   declining the transaction if:
 the request was initiated by the RFID sticker and the account has been switched off. 
   
     
     
         25 . A computer-implemented method for preventing processing of unauthorized transactions using an RFID mechanism, the method comprising:
 receiving, by a computer of a financial institution, a first request from a customer to activate a credit account of the customer for use with the RFID mechanism, wherein the RFID mechanism is always in a state of transmitting data, and wherein the first request is submitted via a website of the financial institution, a text message to the financial institution, a mobile banking application of the financial institution, or a phone call to the financial institution;   after receiving the first request, activating, by a computer of the financial institution, the credit account of the customer allowing processing of at least one transaction that is made by the customer using the RFID mechanism, wherein activating comprises linking the use of the RFID mechanism to the credit account of the customer for any subsequent transactions after the first request;   after activating the credit card account of the customer, receiving, by a computer of the financial institution, a request from a merchant to authorize the at least one transaction that is made by the customer using the RFID mechanism;   transmitting, by a computer of the financial institution, an authorization for the at least one transaction to the merchant;   completing the at least one authorized transaction;   after completing the at least one authorized transaction, receiving, by a computer of the financial institution, a second request from the customer to deactivate the credit account of the customer from use of the RFID mechanism, and wherein the second request is submitted via the website of the financial institution, a text message to the financial institution, the mobile banking application of the financial institution, or a phone call to the financial institution; and   after receiving the second request, deactivating, by a computer of the financial institution, the credit account of the customer, wherein deactivating comprises unlinking the use of the RFID mechanism from the credit account of the customer for any subsequent transactions made using the RFID mechanism after the second request, and wherein the credit account of the customer remains available for use by the customer using a payment mechanism other than the RFID mechanism after deactivating the credit account of the customer.   
     
     
         26 . The method according to  claim 25 , wherein receiving the first request further comprises:
 verifying an identity of the customer;   receiving a selection of a link by the customer activating the credit account; and   updating a record in a database of the financial institution that the credit account is in an active state.   
     
     
         27 . The method according to  claim 25 , further comprising:
 determining whether the credit account is in an active state based on a record in a database of the financial institution;   authorizing the at least one transaction if the credit account is in an active state; and   declining the at least one transaction if the credit account is in a deactive state.   
     
     
         28 . The method according to  claim 25 , wherein the website used to submit the first request is an online banking website of the financial institution. 
     
     
         29 . The method according to  claim 25 , wherein the first request is received from a mobile device of the customer. 
     
     
         30 . The method according to  claim 25 , wherein the first request is submitted via the text message to the financial institution, the method further comprising:
 receiving the text message from a mobile phone number registered with the financial institution for the customer, wherein the text message comprises an instruction to activate the credit account.   
     
     
         31 . The method according to  claim 25 , wherein receiving the second request further comprises:
 verifying an identity of the customer;   receiving a selection of a link by the customer deactivating the credit account; and   updating a record in a database of the financial institution that the credit account is in a deactive state.   
     
     
         32 . The method according to  claim 25 , wherein the second request is submitted via the text message to the financial institution, the method further comprising:
 receiving the text message from a mobile phone number registered with the financial institution for the customer, wherein the text message comprises an instruction to deactivate the credit account.   
     
     
         33 . The method according to  claim 25 , wherein the authorization further comprises determining whether a transaction amount exceeds a predetermined threshold, and whether the credit account is in an active state or in a deactive state.

Join the waitlist — get patent alerts

Track US2014143152A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.