US2021350024A1PendingUtilityA1

Providing transparency in private-user-data access

Assignee: VMWARE INCPriority: Nov 28, 2018Filed: Jul 21, 2021Published: Nov 11, 2021
Est. expiryNov 28, 2038(~12.3 yrs left)· nominal 20-yr term from priority
H04L 9/50G06F 21/6245G06F 21/64H04L 9/3297H04L 9/3239G06F 2221/2101H04L 9/0637G06F 21/602H04L 2209/38
49
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Examples described herein include systems and methods for providing privacy information to a user of a user device. An example method can include detecting, at a management server, access of the private data by an entity other than the user, such as an administrator who is authorized to access the management server. The method further includes generating an event reflecting the access of the private data. The generated event can be stored as part of an event log in a database. The method further includes providing the event to the user device for display to the user. The event displayed on the user device can include information such as an identity of the accessing entity, a description of the private data that was accessed, and when the access occurred. The user can select a displayed event at the user device and request further information on the event from an administrator.

Claims

exact text as granted — not AI-modified
1 - 20 . (canceled) 
     
     
         21 . A method for providing privacy information to a user of a user device, comprising:
 identifying data as private data of the user;   detecting, at a management server, access of the private data by an entity other than the user and the user device;   generating, at the management server, an event file reflecting the access of the private data;   storing the event file as part of an event log in a database accessible to the management server;   causing the user device to display a graphical element summarizing the detected access; and   providing the event file to the user device for display to the user.   
     
     
         22 . The method of  claim 21 , further comprising receiving a feedback message from the user device, the feedback message being generated based on a user selection condoning or disapproving of the private access. 
     
     
         23 . The method of  claim 21 , further comprising aggregating the feedback message with other feedback messages received from other user devices to recommend whether to change a data access policy related to the private data, wherein the recommendation is sent to an administrator. 
     
     
         24 . The method of  claim 21 , wherein the event file identifies the accessing entity, the private data accessed, and when the access occurred. 
     
     
         25 . The method of  claim 21 , further comprising receiving, at the management server, a second event file from a management agent on the user device, the second event file indicating access of private data on the user device by a third-party service other than the management server. 
     
     
         26 . The method of  claim 21 , further comprising storing the event log as a hash in a blockchain. 
     
     
         27 . The method of  claim 26 , further comprising:
 performing an audit by comparing the event log to the blockchain; and   taking a remedial action when a difference exists between event files in the blockchain and the event log.   
     
     
         28 . A non-transitory, computer-readable medium containing instructions that, when executed by a hardware-based processor, performs stages for providing privacy information to a user of a user device, the stages comprising:
 identifying data as private data of the user;   detecting, at a management server, access of the private data by an entity other than the user and the user device;   generating, at the management server, an event file reflecting the access of the private data;   storing the event file as part of an event log in a database accessible to the management server;   causing the user device to display a graphical element summarizing the detected access; and   providing the event file to the user device for display to the user.   
     
     
         29 . The non-transitory, computer-readable medium of  claim 28 , the stages further comprising receiving a feedback message from the user device, the feedback message being generated based on a user selection condoning or disapproving of the private access. 
     
     
         30 . The non-transitory, computer-readable medium of  claim 28 , the stages further comprising aggregating the feedback message with other feedback messages received from other user devices to recommend whether to change a data access policy related to the private data, wherein the recommendation is sent to an administrator. 
     
     
         31 . The non-transitory, computer-readable medium of  claim 28 , wherein the event file identifies the accessing entity, the private data accessed, and when the access occurred. 
     
     
         32 . The non-transitory, computer-readable medium of  claim 28 , the stages further comprising receiving, at the management server, a second event file from a management agent on the user device, the second event file indicating access of private data on the user device by a third-party service other than the management server. 
     
     
         33 . The non-transitory, computer-readable medium of  claim 28 , the stages further comprising storing the event log as a hash in a blockchain. 
     
     
         34 . The non-transitory, computer-readable medium of  claim 33 , the stages further comprising:
 performing an audit by comparing the event log to the blockchain; and   taking a remedial action when a difference exists between event files in the blockchain and the event log.   
     
     
         35 . A system for providing privacy information to a user of a user device, comprising:
 a memory storage including a non-transitory, computer-readable medium comprising instructions; and   a computing device including a hardware-based processor that executes the instructions to carry out stages comprising:
 identifying data as private data of the user; 
 detecting, at a management server, access of the private data by an entity other than the user and the user device; 
 generating, at the management server, an event file reflecting the access of the private data; 
 storing the event file as part of an event log in a database accessible to the management server; 
 causing the user device to display a graphical element summarizing the detected access; and 
 providing the event file to the user device for display to the user. 
   
     
     
         36 . The system of  claim 35 , the stages further comprising receiving a feedback message from the user device, the feedback message being generated based on a user selection condoning or disapproving of the private access. 
     
     
         37 . The system of  claim 35 , the stages further comprising aggregating the feedback message with other feedback messages received from other user devices to recommend whether to change a data access policy related to the private data, wherein the recommendation is sent to an administrator. 
     
     
         38 . The system of  claim 35 , wherein the event file identifies the accessing entity, the private data accessed, and when the access occurred. 
     
     
         39 . The system of  claim 35 , the stages further comprising receiving, at the management server, a second event file from a management agent on the user device, the second event file indicating access of private data on the user device by a third-party service other than the management server. 
     
     
         40 . The system of  claim 35 , the stages further comprising storing the event log as a hash in a blockchain.

Join the waitlist — get patent alerts

Track US2021350024A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.