US 12,217,229 B2
Biometric authentication of pre-staged self-service terminal transactions
Heather McCracken, Scotland (GB); and Marcia Togara, Scotland (GB)
Assigned to NCR Atleos Corporation, Atlanta, GA (US)
Filed by NCR Atleos Corporation, Atlanta, GA (US)
Filed on Apr. 29, 2015, as Appl. No. 14/699,492.
Prior Publication US 2016/0321627 A1, Nov. 3, 2016
Int. Cl. G06Q 20/10 (2012.01); G06F 21/32 (2013.01); G06F 21/35 (2013.01); G06F 21/43 (2013.01); G06Q 20/18 (2012.01); G06Q 20/32 (2012.01); G06Q 20/40 (2012.01); G07F 19/00 (2006.01); H04L 9/40 (2022.01); H04W 12/069 (2021.01); H04W 88/02 (2009.01)
CPC G06Q 20/1085 (2013.01) [G06F 21/32 (2013.01); G06F 21/35 (2013.01); G06F 21/43 (2013.01); G06Q 20/18 (2013.01); G06Q 20/3278 (2013.01); G06Q 20/40145 (2013.01); G07F 19/20 (2013.01); H04L 63/0861 (2013.01); H04W 12/069 (2021.01); G06F 2221/2117 (2013.01); H04W 88/02 (2013.01)] 5 Claims
OG exemplary drawing
 
1. A method comprising:
defining input for a purchase transaction that is to be subsequently completed on a Self-Service Terminal (SST) by a mobile device app that executes on a mobile device of a customer, wherein the mobile device is operated by a customer associated with the purchase transaction;
initiating a transaction by transmitting, via a first wireless communication device of the mobile device, data defining the purchase transaction to pre-stage the purchase transaction on the server for download by the SST upon authentication of an account holder of an account, wherein the customer is the account holder of the account;
establishing a communication link with the SST by connecting, wirelessly via a second wireless communication device to the mobile device;
authenticating the customer by receiving, via the second wireless communication device of the mobile device, biometric data provided by a biometric reading device of the SST to authenticate the customer as the account holder who is operating the mobile device for the purchase transaction at the SST;
matching, on the mobile device by the mobile device app, the received biometric data with stored biometric data of the account holder by:
retrieving the stored biometric data stored on the mobile device; and
comparing the received biometric data and the retrieved stored biometric data to identify a match and determining a confidence level thereof, wherein the stored biometric data stored on the mobile device is stored securely by the mobile device app and is not accessible and never shared by the mobile device app;
finalizing the purchase transaction upon matching the received biometric data and the stored biometric data of the account holder on the mobile device, wherein finalizing further includes transmitting an authentication message via the second wireless communication device to the SST, wherein the transmitted authentication message includes an account identifier for the account, a security code or security certificate, and a transaction identifier for the purchase transaction, wherein transmitting the authentication message further causes the SST to receive, the data defining the purchase transaction from the server and causes the SST to process the data defining the purchase transaction on behalf of the customer on the SST, wherein the SST is an automated teller machine; and
flushing a secure memory of the biometric data on the SST upon completion of authentication ensuring the biometric data of the customer is not stored or compromised on the SST.