| CPC G06Q 20/352 (2013.01) [G06Q 20/341 (2013.01); G06Q 20/3672 (2013.01); G06Q 20/3674 (2013.01)] | 20 Claims |

|
1. A method for controlling data access, comprising:
receiving, by a server via a network, an account link request to link a first account associated with a first account holder with a second account associated with a second account holder, the account link request accompanied by a token;
identifying, by the server, the first account based on the token;
determining whether the first account is eligible for linking to the second account based on at least one selected from the group of an identity of the first account holder and an identity of the second account holder and based on at least one selected from the group of an account type of the first account and an account type of the second account,
wherein the identity of the first account holder and the identity of the second account holder are at least one selected from the group of family members and members of the same business entity:
transmitting, by the server via the network, a link approval request to approve the account link request;
receiving, by the server via the network, a link approval message generated in response to an indication by the first account holder approving the account link request and one or more data control parameters for limiting access by the second account holder to the first account; and
transmitting, by the server via the network, an account link confirmation message and the one or more data control parameters, the account link confirmation message confirming approval of the account link request.
|