US 12,438,862 B2
Email-based authentication for account login, account creation and security for passwordless transactions
John P. Killoran, Jr., Albuquerque, NM (US); and Graham Bass, Albuquerque, NM (US)
Assigned to SWOOP IP HOLDINGS LLC, Wilmington, DE (US)
Filed by SWOOP IP HOLDINGS LLC, Wilmington, DE (US)
Filed on May 2, 2024, as Appl. No. 18/653,307.
Application 18/653,307 is a continuation of application No. 16/649,127, granted, now 11,979,390, previously published as PCT/US2018/051984, filed on Sep. 20, 2018.
Claims priority of provisional application 62/561,128, filed on Sep. 20, 2017.
Claims priority of provisional application 62/561,127, filed on Sep. 20, 2017.
Prior Publication US 2024/0283782 A1, Aug. 22, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06Q 10/107 (2023.01); G06F 16/245 (2019.01); G06F 16/27 (2019.01); G06Q 30/018 (2023.01); H04L 9/40 (2022.01); H04L 51/42 (2022.01); H04L 61/4511 (2022.01); H04L 67/141 (2022.01); H04L 69/329 (2022.01)
CPC H04L 63/08 (2013.01) [G06F 16/245 (2019.01); G06F 16/27 (2019.01); G06Q 10/107 (2013.01); G06Q 30/0185 (2013.01); H04L 51/42 (2022.05); H04L 61/4511 (2022.05); H04L 63/102 (2013.01); H04L 63/18 (2013.01); H04L 67/141 (2013.01); H04L 69/329 (2013.01); H04L 2463/082 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method for improving security of a computer system by limiting an ability of a user to access a secure webpage utilizing Simple Mail Transfer Protocol (SMTP), the method comprising:
displaying an image on a webpage that contains an embedded mailto link that, when activated by the user, generates a request to access the secure webpage, wherein the request is generated outside of a browser-based form submission and is an email that is transmitted to an e-commerce system using an email client;
receiving a message from the e-commerce system in response to the user activating the embedded mailto link, wherein the message contains a result of an authentication performed by the e-commerce system;
granting the user access to the secure webpage in response to the result of the authentication indicating the user was successfully authenticated, wherein the secure webpage is conditionally accessible only after receiving the result of the authentication; and
denying the user access to the secure webpage in response to the result of the authentication indicating the user was not successfully authenticated;
wherein the authentication includes:
confirming a sender of the email, and
validating the user based on a unique identifier contained in the email, wherein the unique identifier is unique to the request.