Section · 04

Patent

German-protected innovation in continuous biometric and behavioral identity verification — DE 20 2026 100 678 U1.

German Registered Utility Model

Continuous Identity Verification Using Multiple Biometric and Behavioral Characteristics

DE 20 2026 100 678 U1 · A privacy-focused security architecture for continuously verifying a user's identity during device operation.

Sagar Gupta is the applicant for German Registered Utility Model DE 20 2026 100 678 U1, covering a device architecture for continuously evaluating a user's identity through multiple biometric and behavioral characteristics. The system repeatedly determines an identity state during ongoing device use and applies local, graduated access controls without requiring repeated explicit authentication or external transmission of the captured identity signals.

Patent Protection at a Glance

Publication number
DE 20 2026 100 678 U1
German application number
20 2026 100 678
Application date
February 9, 2026
Publication date
April 16, 2026
Applicant
Sagar Gupta, Cincinnati, Ohio, United States
Jurisdiction
Federal Republic of Germany
Publication type
German registered utility model specification
Classification (IPC)
G07C 11/00
Published claims
Three
German title
Vorrichtung zur fortlaufenden Identitätsprüfung unter Verwendung mehrerer biometrischer und verhaltensbezogener Merkmale
English title
Device for Continuous Identity Verification Using Multiple Biometric and Behavioral Characteristics

Executive Summary

Traditional authentication systems generally verify a user only at a specific moment — when a device is unlocked, an application is opened, or a password is entered. Once authentication succeeds, the system commonly assumes the same authorized person continues using the device. This creates an important security gap: a device may remain accessible when

  • The authorized user walks away from the device.
  • Another person takes physical control of the device.
  • The device is passed between multiple users.
  • Usage behavior changes significantly mid-session.
  • A previously authenticated session is hijacked.
  • A malicious actor gains access after the initial login.

The invention disclosed in DE 20 2026 100 678 U1 addresses this problem through continuous identity verification. Instead of treating authentication as a single event, the device repeatedly determines an identity state throughout the user's session. The architecture combines multiple biometric signals with behavioral usage signals, evaluates changes over time, and adjusts device access according to the resulting level of identity confidence — and the disclosed security response occurs locally, without requiring the captured signals to be transmitted to an external system.

Architecture — What the Device Actually Does

  1. 01

    Multi-modal signal capture

    The device continuously collects a combination of biometric signals (physical identity characteristics) and behavioral signals (interaction and usage patterns) throughout an active session — not only at login.

  2. 02

    Continuous identity-state evaluation

    Rather than treating authentication as a one-time event, the system repeatedly determines an identity state, so the confidence that the current operator is the authorized user is re-established over time.

  3. 03

    Temporal change detection

    Changes across the biometric and behavioral inputs are evaluated over time. Deviations from the established identity profile drive a change in identity confidence.

  4. 04

    Graduated, local access control

    As identity confidence changes, device access is adjusted in graduated steps rather than through a single accept/deny gate — enabling proportional responses instead of abrupt lockouts.

  5. 05

    Privacy-focused local processing

    The disclosed security response occurs locally on the device. The captured biometric and behavioral signals are not required to be transmitted to an external system, keeping identity data on-device.

Published Claims

Summarized in plain English — three claims are published in the utility-model specification.

Claim 1

Device architecture

A security device that continuously determines an identity state during device operation using a combination of biometric characteristics and behavioral characteristics of the user, and adapts device access based on the determined identity state.

Claim 2

Temporal evaluation

The device evaluates changes in the captured biometric and behavioral characteristics over time and updates the identity state accordingly, enabling ongoing rather than one-time verification.

Claim 3

Local, graduated response

The identity-driven access response is applied locally on the device in a graduated manner, without requiring transmission of the captured biometric or behavioral signals to an external system.

Where It Matters

  • Enterprise laptops and workstations handling regulated data.
  • Financial-services and banking endpoints where session hijack is a top risk.
  • Healthcare devices where shared or unattended access must be constrained.
  • Government and defense endpoints requiring continuous assurance.
  • Executive and privileged-access devices in enterprise environments.
  • High-value personal devices for privacy-conscious users.

Note on German Utility-Model Protection

A German utility model (Gebrauchsmuster) is an intellectual-property right registered by the German Patent and Trade Mark Office (DPMA). Utility models are registered after a formal examination and are not substantively examined for novelty, inventive step, or industrial applicability before registration — those requirements may be examined later if the right is challenged or enforced. Utility-model protection may continue for up to ten years, subject to applicable requirements and maintenance fees.

The accurate public description of this right is therefore "Holder of German Registered Utility Model DE 20 2026 100 678 U1" or "Developer and Applicant of a German-Protected Invention for Continuous Identity Verification." The phrase "granted German patent" is not used unless a separate examined patent is granted. Current procedural and legal status can be confirmed through DPMAregister, the official source for German patent and utility-model status.

This page is provided for informational and portfolio-presentation purposes and is not a patentability, validity, infringement, freedom-to-operate, valuation, or legal opinion.