The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 28, 2026

Filed:

Nov. 12, 2025
Applicant:

Michael Pak, Portland, OR (US);

Inventor:

Michael Pak, Portland, OR (US);

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/00 (2013.01); G06F 21/57 (2013.01); H04L 9/08 (2006.01); H04L 9/32 (2006.01); H04L 9/40 (2022.01);
U.S. Cl.
CPC ...
H04L 63/0884 (2013.01); G06F 21/57 (2013.01); H04L 9/085 (2013.01); H04L 9/3278 (2013.01); H04L 63/0281 (2013.01);
Abstract

The present disclosure provides a distributed credential custody system that fundamentally separates credential possession from credential usage. The system eliminates the primary vulnerability of conventional API security by storing actual access credentials within a secure credential management system while providing clients only with opaque credential handles that cannot be independently used for authentication. Multiple independent authenticators perform distributed validation using hardware-anchored mechanisms, with each authenticator contributing weighted partial decryptions based on their assurance levels. The credential management system reconstructs plaintext credentials only after achieving threshold consensus from authenticators, then provides reconstructed credentials to a proxy. This architecture prevents credential theft from client systems while maintaining compatibility with existing authentication protocols, enabling organizations to implement zero-trust principles without requiring modifications to client applications or backend services. The distributed trust model ensures no single component can independently access complete credentials, providing enhanced security through cryptographic isolation and policy-driven authentication that adapts to real-time risk assessment.


Find Patent Forward Citations

Loading…