WO2023007786A1 - Terminal device, information processing method, program, and insurance service server - Google Patents

Terminal device, information processing method, program, and insurance service server Download PDF

Info

Publication number
WO2023007786A1
WO2023007786A1 PCT/JP2022/006984 JP2022006984W WO2023007786A1 WO 2023007786 A1 WO2023007786 A1 WO 2023007786A1 JP 2022006984 W JP2022006984 W JP 2022006984W WO 2023007786 A1 WO2023007786 A1 WO 2023007786A1
Authority
WO
WIPO (PCT)
Prior art keywords
information
authentication
unit
user
insurance
Prior art date
Application number
PCT/JP2022/006984
Other languages
French (fr)
Japanese (ja)
Inventor
篤史 内田
雅史 森
啓宏 王
Original Assignee
ソニーグループ株式会社
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ソニーグループ株式会社 filed Critical ソニーグループ株式会社
Priority to JP2023538224A priority Critical patent/JPWO2023007786A1/ja
Publication of WO2023007786A1 publication Critical patent/WO2023007786A1/en

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q40/00Finance; Insurance; Tax strategies; Processing of corporate or income taxes
    • G06Q40/08Insurance

Definitions

  • This technology makes it possible to easily prevent fraud without the need for complicated operations regarding terminal devices, information processing methods, programs, and insurance business servers.
  • Patent Document 1 exercise information, vital information, health checkup information, etc. are acquired, and the acquired information is information of the insured person, that is, the authenticity of the acquired information is guaranteed. Insurance premiums for life and medical insurance are determined based on guaranteed information.
  • the first pulse wave information representing the first pulse wave which is the pulse wave of the person to be authenticated
  • the second pulse wave information representing the second pulse wave which is the measured person's pulse wave
  • the exercise information of the person to be measured etc. It guarantees authenticity. Therefore, if the pulse wave information cannot be obtained, it is impossible to prevent fraudulent exercise information and the like.
  • the authenticity assurance device in order to obtain the image information of the person to be authenticated by providing an imaging unit and to obtain the second pulse wave information, the authenticity assurance device must be worn at a position where the body surface of the person to be measured can be sensed. Therefore, it is not possible to easily prevent fraud.
  • a first aspect of the present technology is to perform personal authentication using the user's unique information, and to evaluate the insurance risk collected after the authenticity that the user is an insured person is guaranteed by the personal authentication.
  • an authentication unit that, in continuous authentication using sensing information, repeats the identity authentication when the authenticity of information collected from the user whose authenticity is guaranteed by the identity authentication is not guaranteed by the sensing information. It is in the terminal device provided.
  • the user is authenticated by the authentication unit using the user's unique information. Do this every time the period passes.
  • Continuous authentication uses sensing information for insurance risk evaluation that is collected after the authenticity of the user as an insured person is guaranteed by personal authentication. If the authenticity of the sensing information is not guaranteed, the authenticating unit repeats the authentication.
  • continuous authentication for example, authenticity is guaranteed when the change in feature values calculated based on sensing information is less than a preset threshold. Further, continuous authentication may be performed by the authentication unit, or may be performed by an insurance business server that evaluates insurance risks using sensing information.
  • the sensing information includes exercise-related information that changes according to the user's exercise, and is collected, for example, by a sensing unit provided in the terminal device.
  • the terminal device Based on the authentication results of personal authentication and continuous authentication, the terminal device aggregates the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed in the aggregation unit. Provides the aggregated results to the insurance business server.
  • the tallying unit determines a user's rest period based on the sensing information, and excludes the sensing information collected during the rest period from the tally result. Also, the control unit provides the authentication result of the personal authentication and the continuous authentication to the insurance business server.
  • the user interface unit that accepts user operations and presents information presents follow-up information notified from the insurance business server in response to providing sensing information to the insurance business server. Also, the user interface unit may present the counting result of the counting unit and the authentication status of continuous authentication.
  • a second aspect of the technology is performing personal authentication in an authenticating unit using the user-specific information; In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. an information processing method including repeating the personal authentication by the authentication unit when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
  • a third aspect of the technology is A program that causes a computer to verify the authenticity of a user, a procedure for performing personal authentication in an authenticating unit using user-specific information; In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. and a procedure for repeating the personal authentication when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
  • the program of the present technology is, for example, a storage medium or communication medium provided in a computer-readable format to a general-purpose computer capable of executing various program codes, such as an optical disk, a magnetic disk, or a semiconductor memory. It is a program that can be provided by a medium or a communication medium such as a network. By providing such a program in a computer-readable format, processing according to the program is realized on the computer.
  • a fourth aspect of the present technology is An insurance business server comprising an insurance business processing unit that evaluates insurance risks based on sensing information collected from a terminal device for a user during a period in which the user is an insured person and authenticity is guaranteed.
  • the insurance business processing unit in the insurance business server of this technology evaluates the insurance risk based on the sensing information collected from the user by the terminal device during the period in which the authenticity of the user as the insured person is guaranteed. .
  • the insurance risk is evaluated by determining the exercise status of the user, who is the insured person and whose authenticity is guaranteed, and using the determination result.
  • the insurance business processing unit generates follow-up information based on the insurance risk evaluation result.
  • the insurance business processing unit performs continuous authentication to verify the authenticity of information collected from users who are insured persons whose authenticity is guaranteed by sensing information, and notifies the terminal device of the authentication result. .
  • FIG. 10 is a sequence diagram showing an operation example of the insurance system after the conclusion of an insurance contract;
  • FIG. 10 is a diagram illustrating a display screen during sensing information collection operation;
  • FIG. 10 is a sequence diagram illustrating an operation after exercise. It is the figure which illustrated the presentation screen of follow-up information.
  • FIG. 1 illustrates the configuration of the insurance system of this technology.
  • a terminal device 20 used by a user and an insurance business server 30 of an insurance company are connected via a network 40 .
  • the terminal device 20 has a sensing section 21 and an information processing section 22 .
  • FIG. 2 illustrates the configuration of the terminal device.
  • the sensing unit 21 collects sensing information indicating the exercise state of the user. Sensing information is information collected by sensing the user who owns the terminal device 20, and includes exercise-related information that changes according to the user's exercise. Also, the sensing information is used for insurance risk evaluation in the insurance business server 30 . For example, if the insurance product contracted with the user of the terminal device is an insurance product for the purpose of health promotion, the terminal device 20 receives vital information such as heart rate, blood pressure, respiratory rate, oxygen saturation, body temperature, and the like. Information indicating what kind of exercise was performed and how much, how much positional change occurred, etc., is collected as sensing information. The insurance business server 30 also uses the sensing information to evaluate the insurance risk according to the exercise status of the user possessing the terminal device 20, and reduces (discounts) the insurance premium based on the evaluation result.
  • the sensing unit 21 has, for example, a motion measuring unit 211 and a positioning unit 212 in order to collect sensing information including exercise-related information that changes according to the user's exercise. Further, the sensing unit 21 may have an authentication sensor unit 213 for collecting user-specific information used for personal authentication. Furthermore, the sensing unit 21 has a near field communication unit 214 that provides the information processing unit 22 with collected sensing information and authentication information.
  • the motion measurement unit 211 is configured using a vital sensor and an IMU (Inertial Measurement Unit) or an acceleration sensor.
  • the exercise measurement unit 211 measures the vital information of the user wearing the sensing unit 21 (for example, at least one of heart rate, blood pressure, breathing rate, oxygen saturation, body temperature, etc.), the number of steps of the user wearing the sensing unit 21, Exercise intensity (for example, METs (metabolic equivalents)), and what kind of behavior the user wearing the sensing unit 21 is doing (for example, walking or running, sports such as tennis and golf, work performed in daily life, etc.) and so on, and supplies the measurement result to the near field communication unit 214 as sensing information.
  • IMU Inertial Measurement Unit
  • the exercise measurement unit 211 measures the vital information of the user wearing the sensing unit 21 (for example, at least one of heart rate, blood pressure, breathing rate, oxygen saturation, body temperature, etc.), the number of steps of the user wearing the sensing unit 21, Exercise intensity (for example, METs (metabolic equivalents)), and
  • the positioning unit 212 receives a positioning signal transmitted from a satellite or the like, a beacon signal from an access point, etc., performs position measurement by the sensing unit 21, and supplies the position measurement result to the near field communication unit 214 as sensing information.
  • the authentication sensor unit 213 collects user's unique information. For example, the authentication sensor unit 213 collects, as unique information, biological unique information (eg, face image, fingerprint information, iris information, vein information, etc.) of the user wearing the sensing unit 21 and supplies it to the near field communication unit 214 .
  • biological unique information eg, face image, fingerprint information, iris information, vein information, etc.
  • the near field communication unit 214 performs wireless communication with the information processing unit 22 using near field communication technology (for example, Bluetooth (trademark), NFC (Near field communication), etc.).
  • Proximity communication unit 214 outputs sensing information collected by motion measurement unit 211 and positioning unit 212 and unique information generated by authentication sensor unit 213 to information processing unit 22 .
  • the information processing unit 22 performs personal authentication using the unique information of the user, information provision processing for providing the insurance business server with sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed, insurance company performs information presentation processing for presenting the information notified from to the user, and the like.
  • a smart phone or the like is used as the information processing unit 22 .
  • the information processing unit 22 includes, for example, a motion measurement unit 221, a positioning unit 222, an authentication sensor unit 223, an authentication unit 224, a counting unit 225, a near field communication unit 226, a communication unit 227, a user interface unit 228, and a control unit 229.
  • a motion measurement unit 221 for example, a positioning unit 222, an authentication sensor unit 223, an authentication unit 224, a counting unit 225, a near field communication unit 226, a communication unit 227, a user interface unit 228, and a control unit 229.
  • the exercise measurement unit 221 collects at least one of information such as the number of steps, exercise intensity, and behavior of the user who owns the information processing unit 22 as sensing information. and output to totalization unit 225 .
  • the positioning unit 222 receives positioning signals transmitted from satellites and the like, beacon signals from access points, etc., performs position measurement of the information processing unit 22, and outputs the position measurement results to the aggregation unit 225 as sensing information.
  • the authentication sensor unit 223 collects user's unique information.
  • the authentication sensor unit 223 collects biometric information (for example, face image, fingerprint information, iris information, vein information, etc.) of the user possessing the information processing unit 22 as unique information and outputs it to the authentication unit 224 .
  • biometric information for example, face image, fingerprint information, iris information, vein information, etc.
  • the authentication unit 224 receives unique information acquired from the sensing unit 21 via the near field communication unit 226, unique information collected by the authentication sensor unit 223, or unique information input from the user interface unit 228 (for example, an ID, a password, a question, etc.).
  • personal authentication is performed by using pre-registered responses to personal identification numbers, user knowledge information such as personal identification numbers, and user-possessed information such as one-time passwords and code tables.
  • personal authentication is authentication processing for verifying the authenticity of the user of the terminal device as an insured person.
  • the authentication unit 224 performs personal authentication based on the authentication result of continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by personal authentication. Do it again.
  • continuous authentication refers to authenticity (hereinafter simply referred to as “authenticity of sensing information”) that is information collected from users whose authenticity is guaranteed by personal authentication based on sensing information, This is an authentication process for repeating and automatically verifying each time elapses.
  • the authenticating unit 224 performs personal authentication again when the authenticity of the sensing information is not guaranteed by continuous authentication.
  • the continuous authentication may be performed by the authentication unit 224 , or may be performed by the insurance business server 30 , and the authentication unit 224 may acquire the authentication result of the continuous authentication from the insurance business server 30 .
  • the aggregation unit 225 aggregates the sensing information acquired from the sensing unit 21 via the near field communication unit 226 and the sensing information collected by the movement measurement unit 221 and the positioning unit 222 . Also, the counting unit 225 counts the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed, based on the authentication results of the personal authentication and the continuous authentication. For example, when the authenticity of the sensing information is no longer guaranteed when the continuous authentication is repeated, the counting unit 225 collects the authentication result indicating that the authenticity of the sensing information is guaranteed after the authenticity is guaranteed by the personal authentication. Aggregate the sensing information collected during the period up to the continuous authentication just before the is obtained.
  • the counting unit 225 invalidates the collected sensing information, and after obtaining the authentication result indicating the assurance of the authenticity by the new personal authentication, the operation is performed.
  • the sensing information collected until it is confirmed that the authenticity is continuously guaranteed by continuous authentication at the time of termination may be aggregated.
  • the tallying unit 225 determines the user's rest period based on the sensing information, and excludes the sensing information collected during the rest period from the tally result.
  • the tallying unit 225 includes the collection time (or collection time) of the sensing information in the tally result of the sensing information.
  • the near field communication unit 226 performs wireless communication with the sensing unit 21 using near field communication technology (for example, Bluetooth (trademark), NFC (Near field communication), etc.).
  • the near field communication unit 226 outputs the unique information acquired by the sensing unit 21 to the authentication unit 224 and outputs the sensing information collected by the sensing unit 21 to the counting unit 225 .
  • the communication unit 227 communicates with the insurance business server 30 via the network 40 and provides the insurance business server 30 with the authentication result of the authentication unit 224 and the aggregation result of the sensing information calculated by the aggregation unit 225 . Further, the communication unit 227 outputs to the control unit 229 after-follow information, which is notified from the insurance business server 30 and will be described later.
  • the user interface unit 228 presents various types of information to the user and accepts user operations.
  • a display element and a touch panel are provided on the display surface of the display element to form a GUI (graphical user interface).
  • the user interface unit 228 presents to the user information regarding settings and operations of the terminal device 20, information notified from the insurance business server 30, and the like.
  • the user interface unit 228 also outputs an operation signal to the control unit 229 according to the user's operation.
  • user interface unit 228 accepts unique information input by a user operation.
  • the control section 229 controls the operation of each section of the information processing section 22 .
  • the control unit 229 causes the authentication unit 224 to perform personal authentication for verifying that the user of the terminal device 20 is a preset user, and it is verified that the user of the terminal device 20 is an insured person. , provides the authentication result of the personal authentication to the insurance business server 30 .
  • the control unit 229 may provide an authentication result to the insurance business server 30 .
  • the control unit 229 causes the totalizing unit 225 to totalize the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication, and causes the communication unit 227 to It causes the insurance business server 30 to provide the aggregated results via the Internet. Further, the control unit 229 performs processing for presenting the follow-up information notified from the insurance business server 30 on the user interface unit 228, and the like.
  • the configuration of the terminal device 20 is not limited to the configuration in which sensing information is acquired by the sensing unit 21 and the information processing unit 22 as shown in FIG.
  • the sensing unit 21 may be provided in the information processing unit 22 , or the sensing information may be acquired only by the sensing unit 21 . It may also have a configuration not shown in the figure.
  • the insurance business server 30 has an insurance business processing unit 31 and an insurance business database unit 32 .
  • the insurance business processing unit 31 performs insurance product proposals, contract processing, and follow-up processing after contract conclusion.
  • the follow-up process is to determine the exercise status (for example, amount of exercise, exercise intensity, etc.) of the user who is the insured person based on the aggregated result of sensing information acquired from the terminal device 20, and determine the exercise status. Evaluate the insurance risk of the insured based on the results and already obtained discrimination results.
  • the insurance business processing unit 31 also generates follow-up information and sends it to the terminal device 20 .
  • the follow-up information is additional information related to the insurance contract concluded between the user and the insurance company. This is information that the insurance company notifies the user in advance that the process of inviting the user will be performed at a predetermined timing (for example, contract renewal).
  • FIG. 3 exemplifies the configuration of the insurance business processing unit.
  • the insurance business processing unit 31 has a communication unit 311 , an evaluation unit 312 , and a follow-up processing unit 313 . Also, the insurance business processing unit 31 may have an authentication unit 314 .
  • the communication unit 311 communicates with the terminal device 20 via the network 40 and acquires the tally result of the sensing information from the terminal device 20 .
  • the communication unit 311 outputs to the terminal device 20 insurance premiums determined by the after-follow processing unit 313 and after-follow information indicating changes in insurance premiums.
  • the evaluation unit 312 determines the exercise status of the insured person possessing the terminal device 20 based on the tally result of the sensing information acquired from the terminal device 20, and evaluates the insurance risk based on the determination result. In addition, the evaluation unit 312 may evaluate changes in insurance risk using the determination result of the insured's exercise status and the insurance risk evaluation result stored in the insurance business database unit 32 . The evaluation unit 312 outputs the evaluation result to the follow-up processing unit 313 .
  • the after-follow processing unit 313 performs after-follow processing using the evaluation results output from the evaluation unit 312, and determines, for example, insurance premiums and changes in insurance premiums.
  • the follow-up processing unit 313 generates follow-up information indicating insurance premiums determined based on the evaluation results, changes in insurance premiums, and the like.
  • the after-follow processing unit 313 also outputs the generated after-follow information to the terminal device 20 via the communication unit 311 .
  • the authentication unit 314 acquires sensing information from the terminal device 20, performs continuous authentication based on the acquired sensing information, and performs continuous authentication via the communication unit 311.
  • the authentication result is output to the terminal device 20 .
  • the insurance business database unit 32 stores insurance contract information (for example, personal information of the insured person and information on insurance products with which the contract is concluded), determination results of the exercise status of the insured person, and insurance risk information. Save evaluation results, etc.
  • the insurance business database unit 32 may also store sensing information and the like acquired from the terminal device 20 .
  • the terminal device 20 of the insurance system 10 collects sensing information for insurance risk evaluation from users whose authenticity is guaranteed by personal authentication as insured persons. In addition, the terminal device 20 performs continuous authentication using the collected sensing information every time a predetermined period elapses, and performs personal authentication again when the authenticity of the sensing information is not guaranteed. Furthermore, the terminal device 20 sends the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication to the insurance business server 30 via the network 40. send to
  • the insurance business server 30 performs follow-up processing for contracted insurance products based on sensing information collected during the period in which the user of the terminal device 20 is the insured person and the authenticity is guaranteed.
  • FIG. 4 is a flowchart illustrating an insurance-related operation of the terminal device.
  • the terminal device performs pairing in step ST1.
  • the terminal device 20 performs pairing so that the sensing unit 21 and the information processing unit 22 can mutually recognize and communicate with each other, and proceeds to step ST2.
  • step ST2 the terminal device performs personal authentication.
  • the information processing unit 22 determines whether the user possessing the terminal device is an insured person, or the unique information of the user acquired by the authentication sensor unit 213 of the sensing unit 21, the authentication sensor unit 223 of the information processing unit 22, or the like.
  • the authentication unit 224 performs personal authentication using the ID, and proceeds to step ST3.
  • the terminal device determines whether the authenticity is guaranteed.
  • the information processing section 22 determines that the authenticity is guaranteed, proceeds to step ST4, and proceeds to step ST4. If not, it is determined that the authenticity is not guaranteed, and the process proceeds to step ST9.
  • step ST4 the terminal device acquires sensing information.
  • the information processing unit 22 acquires and aggregates sensing information for insurance risk evaluation collected by the motion measurement unit 211 and the positioning unit 212 of the sensing unit 21 and the motion measurement unit 221 and the positioning unit 222 of the information processing unit 22. Output to the section 225 and proceed to step ST5.
  • step ST5 the terminal device determines whether a predetermined period has passed.
  • the information processing section 22 returns to step ST4 if the predetermined period has not elapsed, and proceeds to step ST6 if the predetermined period has elapsed.
  • step ST6 the terminal device performs continuous authentication.
  • the information processing unit 22 performs continuous authentication using sensing information collected after the authenticity of the insured person is guaranteed.
  • FIG. 5 is a flowchart illustrating the continuous authentication operation, and illustrates a case where the user's heart rate, user movement information (eg, acceleration information, angular velocity information, etc.), position information, etc. are collected as sensing information.
  • user movement information eg, acceleration information, angular velocity information, etc.
  • position information etc.
  • step ST21 the terminal device determines whether the heart rate is being measured. If the authentication unit 224 of the terminal device 20 determines that the heart rate is being measured based on the sensing information collected by the exercise measurement unit 211 of the sensing unit 21, the process proceeds to step ST22, and the heart rate is not being measured. If it is determined that there is not, the process proceeds to step ST30.
  • the terminal device determines whether the probability of the person's behavioral characteristics being the person is equal to or greater than the threshold.
  • the authentication unit 224 of the terminal device 20 performs gait authentication and the like based on sensing information collected by the motion measurement unit 211 (or the motion measurement unit 221) of the sensing unit 21, for example.
  • the authenticating unit 224 in determining the personal probability of being equal to or greater than the threshold, uses a template, which is a learning result of the motion feature amount extracted from the motion information of the insured person, for example, and the motion measuring unit 211 (or the motion measuring unit 221).
  • the extracted motion feature quantity is collated based on the motion information included in the sensing information.
  • the authenticating section 224 determines that the authenticity probability is equal to or greater than the threshold, and proceeds to step ST23. If the difference in feature amount is larger than the predetermined amount, the authenticating section 224 determines that the probability of authenticity is lower than the threshold, and proceeds to step ST30.
  • step ST23 the terminal device determines whether close proximity wireless communication is continuing.
  • the authentication unit 224 of the terminal device 20 determines whether the short-range wireless communication is continuing between the sensing unit 21 and the information processing unit 22, and if it is continued, proceeds to step ST24, and performs the short-range wireless communication. If it is determined that the disconnection has occurred, for example, if the sensing unit 21 and the information processing unit 22 are separated from each other and the short-range wireless communication has been disconnected, the process proceeds to step ST30.
  • the terminal device determines whether there is a position change. Based on the positioning result indicated by the sensing information collected by the authentication unit 224 of the terminal device 20, for example, the positioning unit 212 of the sensing unit 21 or the positioning unit 222 of the information processing unit 22, it is determined whether a position change has occurred, and the position change is detected. If it is determined that the position change has occurred, the process proceeds to step ST25, and if it is determined that the position change has not occurred, the process proceeds to step ST26.
  • the terminal device determines whether the position change speed is within a predetermined speed range.
  • the authentication unit 224 of the terminal device 20 calculates the moving speed from the positioning result and the elapsed time, and determines whether the moving speed of the positioning position is within a predetermined speed range.
  • the predetermined speed range is set in advance so that it can be determined whether the user is using an illegal means of transportation. For example, the predetermined speed range is up to the maximum speed in exercise such as jogging, and the predetermined speed range is up to the maximum speed in exercise such as cycling.
  • the authentication unit 224 proceeds to step ST29 if the calculated moving speed is within the predetermined speed range, and proceeds to step ST30 if it exceeds the predetermined speed range.
  • the terminal device determines whether motion is detected.
  • the authentication unit 224 of the terminal device 20 proceeds to step ST27 when detecting that the user is exercising based on the heart rate and motion information, and proceeds to step ST30 when not detecting exercise.
  • step ST27 the terminal device determines whether the exercise has fallen below the threshold. If the authentication unit 224 of the terminal device 20 determines that the user's exercise is lower than the threshold value based on the heart rate and motion information, the authentication unit 224 sets a threshold value that indicates the boundary between the exercise state and the normal state, for example, and allows the user to rest. If the heart rate or the motion information falls below the threshold, the process proceeds to step ST28, and if it does not fall below the threshold, the process proceeds to step ST29.
  • step ST28 the terminal device sets the rest period.
  • the authentication unit 224 of the terminal device 20 sets the period during which the exercise is lower than the threshold as the rest period, and proceeds to step ST29.
  • step ST29 the terminal device determines that authenticity is guaranteed.
  • the authentication unit 224 of the terminal device 20 determines that the collected sensing information is information collected from users whose authenticity is guaranteed by personal authentication, and that the authenticity of the sensing information is guaranteed.
  • step ST30 the terminal device determines that authenticity is not guaranteed. It is determined that the collected sensing information is not information collected from users whose authenticity is guaranteed by personal authentication, and that the authenticity of the sensing information is not guaranteed.
  • the user holding the terminal device 20 may use a car or the like to increase the amount of exercise, or remove the sensing unit 21 and remove only the sensing unit 21 to increase the amount of exercise. If an illegal operation or the like is performed, it can be determined that the authenticity of the sensing information is not guaranteed. Also, the sensing information collected while the user is resting can be prevented from being used for insurance risk evaluation.
  • the identity authentication determines that the user's unique information and the insured person's unique information match, but continuous authentication determines that the identity probability is equal to or greater than the threshold.
  • personal authentication is an authentication method with higher authentication accuracy than continuous authentication.
  • step ST7 the terminal device determines whether the authenticity is guaranteed.
  • the information processing section 22 proceeds to step ST8 when it is determined that the authenticity is guaranteed in the continuous authentication in step ST6, and proceeds to step ST9 when it is determined that the authenticity is not guaranteed.
  • step ST8 the terminal device determines whether sensing has ended. For example, when a user operation indicating the end of exercise is performed on the user interface unit, the information processing unit 22 determines that the sensing is finished, proceeds to step ST10, and proceeds to step ST10. It is determined that sensing has not ended, and the process returns to step ST4.
  • the terminal device notifies that the authenticity is not guaranteed.
  • the information processing section 22 notifies the user through the user interface section 228 that the authenticity is not guaranteed by the personal authentication or continuous authentication, and returns to step ST2.
  • the terminal device performs the totalization result upload process.
  • the information processing unit 22 aggregates the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed by the aggregation unit 225 based on the authentication results of the personal authentication and the continuous authentication.
  • the tabulation result is uploaded to the insurance business server 30, and the process proceeds to step ST11.
  • step ST11 the terminal device presents follow-up information.
  • the information processing unit 22 presents the follow-up information notified from the insurance business server 30 to the user in response to uploading the aggregate result of the sensing information to the insurance business server 30 .
  • the flowchart shown in FIG. 4 is an example of the insurance-related operation of the terminal device, and may include processes not shown in FIG.
  • the flowchart shown in FIG. 5 is not limited to the case where the processing is performed in the order shown in the figure. For example, after determination of position change and position change speed, measurement of heart rate, calculation of probability of a person of a behavioral characteristic, and the like may be performed. Further, a process not shown in FIG. 5 may be performed to determine whether or not the authenticity of the sensing information is guaranteed.
  • FIG. 6 is a flow chart illustrating the operation of the insurance business server.
  • the insurance business server acquires sensing information.
  • the insurance business processing unit 31 of the insurance business server 30 acquires the tally result of the sensing information from the terminal device 20, and proceeds to step ST42.
  • step ST42 the insurance business server evaluates the insurance risk.
  • the insurance business processing unit 31 of the insurance business server 30 identifies the insured person based on the sensing information collected from the user (insured person) by the terminal device 20 during the period in which the authenticity of the insured person is guaranteed. Evaluate the insurance risk and proceed to step ST43.
  • step ST43 the insurance business server saves the evaluation results.
  • the insurance business processing unit 31 of the insurance business server 30 saves the evaluation result obtained in step ST42 in the insurance business database unit 32, and proceeds to step ST44.
  • step ST44 the insurance business server performs follow-up processing.
  • the insurance business processing unit 31 of the insurance business server 30 provides incentives and/or disadvantage to the user based on the evaluation result obtained in step ST42 and the evaluation result of the insured person stored in the insurance business database unit 32. Inviting processing, etc. are performed, and the process proceeds to step ST45.
  • step ST45 the insurance business server performs notification processing of follow-up information.
  • the insurance business processing unit 31 of the insurance business server 30 generates follow-up information indicating the processing result of the follow-up processing performed in step ST44. Furthermore, the insurance business processing unit 31 notifies the terminal device 20 of follow-up information.
  • the insurance business processing unit 31 may include, in the notification of follow-up information, the insurance risk evaluation result, the aggregate result of sensing information, advice for receiving incentives, and the like.
  • FIG. 6 shows part of the operation of the insurance business server, and may include processes not shown in FIG.
  • FIG. 7 illustrates a screen when applying for health promotion insurance on a terminal device.
  • the screens shown in FIG. 7 and FIGS. 8, 10, and 12, which will be described later, are displayed using the user interface unit 228, for example.
  • FIG. 7 illustrates an information input screen U1 when applying for insurance.
  • the information input screen U1 is provided with menu items U1a that can be selected by the user and command buttons U1c for executing the selected items.
  • the menu item U1a includes, for example, an item for user registration, an item for registering insurance application information related to contracted insurance, an item for registering an address, etc., and any of the items is selected.
  • the command button U1c is operated, the information of the selected item can be input.
  • the terminal device 20 displays the contract acceptance operation screen U2 shown in FIG. 7(b).
  • the contract acceptance operation screen U2 is provided with menu items U2a that can be selected by the user, and command buttons U2ca and U2cb for executing the selected items.
  • the menu item U2a includes, for example, an item for confirming the contract and an item for confirming the terms of use.
  • the command button U2ca is operated, for example, Display information.
  • the command button U2ca is operated after the information of each selection item is displayed, it is determined that the user has agreed to the insurance contract, and the insurance business server 30 is notified that the insurance contract has been agreed.
  • the command button U2cb is operated, it is determined that the user has not agreed to the insurance contract, and the insurance business server 30 is notified of the non-agreement of the insurance contract.
  • the insurance business server 30 notifies the terminal device 20 of the completion of the contract, and the terminal device 20 displays the contract completion screen U3 as shown in FIG. 7(c).
  • FIG. 8 exemplifies a screen related to health promotion insurance for which an insurance contract has been concluded.
  • FIG. 8(a) illustrates an operation screen U4 at startup.
  • the operation screen U4 is provided with menu buttons U4a, U4b, and U4c that can be selected by the user.
  • the menu button U4a is a menu button operated when browsing insurance premiums
  • the menu button U4b is a menu button operated when browsing exercise history.
  • the menu button U4c is a menu button operated when notifying the insurance company of the user's exercise state.
  • FIG. 8 illustrates a user operation instruction screen U5 when the menu button U4c is operated.
  • a display U5a to the effect that the sensing unit 21 and the information processing unit 22 are to be paired is displayed.
  • the terminal device 20 displays the personal authentication screen U6 shown in FIG. 8(c).
  • the personal authentication screen U6 includes a notification screen U6a for notifying the authentication method for personal authentication, and a menu button U6b for switching the authentication method for personal authentication.
  • the information processing section 22 enables switching of the unique information used for personal authentication in response to the operation of the menu button U6b.
  • FIG. 8(c) shows that the user is authenticated using a fingerprint.
  • FIG. 9 is a sequence diagram showing an operation example of the insurance system after the conclusion of the insurance contract.
  • the sequence diagram of FIG. 9 shows the sensing unit 21 and the information processing unit 22 of the terminal device 20 and the insurance business processing unit 31 of the insurance business server 30.
  • the sensing information collected by the sensing unit 21 is used to perform personal authentication.
  • step ST51 the information processing section 22 requests the sensing section 21 for unique information.
  • the sensing unit 21 generates unique information.
  • the authentication sensor unit 213 of the sensing unit 21 generates, for example, an image representing a fingerprint as unique information and outputs the unique information to the information processing unit 22 .
  • step ST53 the information processing section 22 determines authenticity based on the unique information.
  • the authentication unit 224 of the information processing unit 22 compares the fingerprint indicated by the unique information generated in step ST52 with a pre-registered fingerprint, and if the fingerprints match, the authenticity is guaranteed. If they do not match, it is determined that the authenticity is not guaranteed.
  • the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
  • the insurance business processing unit 31 verifies the signature.
  • the insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST53, confirms whether the user of the terminal device 20 is the insured person, and outputs the confirmation result to the information processing unit 22. do.
  • the information processing unit 22 starts collecting sensing information and displays a collection start notification screen.
  • FIG. 8(d) exemplifies a collection start notification screen U7, and the collection start notification screen U7 is provided with a display U7a indicating that collection of sensing information has started.
  • the information processing section 22 requests the sensing section 21 for sensing information.
  • the request for sensing information is not limited to the case where it is automatically made when the insurance business processing unit 31 confirms that the person is insured.
  • a collection start menu button may be provided on the screen, and sensing information may be requested when the collection start menu button is operated.
  • the sensing unit 21 starts collecting sensing information.
  • the sensing unit 21 starts collecting sensing information in the movement measuring unit 211 and the positioning unit 212 in response to a request for sensing information, and outputs the collected sensing information to the information processing unit 22 .
  • step ST57 the information processing section 22 determines authenticity based on the sensing information.
  • the authentication unit 224 of the information processing unit 22 uses the sensing information collected by the sensing unit 21 to determine the authenticity of information collected from users whose authenticity is guaranteed by personal authentication, and to perform user change, etc. is not performed. For example, the authentication unit 224 guarantees authenticity when the change in the feature amount calculated based on the motion information of the user is less than a preset threshold value, and guarantees authenticity when the change is equal to or greater than the threshold value. It is determined that it is not.
  • the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
  • step ST58 the insurance business processing unit 31 verifies the signature.
  • the insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST57 to confirm whether the information is from the insured person. Further, the insurance business processing unit 31 outputs the verification result of the signature verification to the information processing unit 22 so that the information processing unit 22 can determine that the authenticity determination result has been correctly notified.
  • step ST59 the information processing section 22 determines authenticity based on the sensing information in the same manner as in step ST57. For example, the authentication unit 224 guarantees authenticity when the change in the feature amount calculated based on the motion information of the user is less than a preset threshold value, and guarantees authenticity when the change is equal to or greater than the threshold value. It is determined that it is not.
  • the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
  • step ST60 the insurance business processing unit 31 verifies the signature.
  • the insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST59 to confirm whether the information is from the insured person. Further, the insurance business processing unit 31 outputs the verification result of the signature verification to the information processing unit 22 so that the information processing unit 22 can determine that the authenticity determination result has been correctly notified.
  • FIG. 10 exemplifies the display screen during the operation of collecting sensing information.
  • (a) of FIG. 10 illustrates the display screen U8 when sensing information is being collected.
  • a distance display U8a is provided to indicate the distance traveled up to the present time, which is the result of interim tallying of the sensing information.
  • an authentication accuracy display U8b is provided to indicate the authentication accuracy based on the change in the feature amount calculated in the last continuous authentication.
  • the display screen U8 is provided with a command button U8c indicating the end of exercise, and when the command button U8c is operated, it is determined that the exercise is finished.
  • FIG. 10 exemplifies the display screen U9 when it is determined that the authenticity of the sensing information is not guaranteed by continuous authentication.
  • the display screen U9 is provided with a command button U9a for re-authentication and a command button U9b for indicating the end of exercise. When the command button U9b is operated, it is determined that the exercise is finished.
  • FIG. 11 is a sequence diagram illustrating an operation after exercise. Note that the sequence diagram of FIG. 11 shows the sensing unit 21 and the information processing unit 22 of the terminal device 20 and the insurance business processing unit 31 and the insurance business database unit 32 of the insurance business server 30 .
  • step ST71 the information processing section 22 outputs an end notification to the sensing section 21 when the exercise ends.
  • the information processing unit 22 outputs an end notification for ending collection of sensing information to the sensing unit 21 when a user operation indicating the end of exercise is performed.
  • the sensing unit 21 performs sensing information collection end processing.
  • the sensing unit 21 terminates the collection of sensing information performed by the motion measurement unit 211 and the positioning unit 212 and transmits the collected sensing information to the information processing unit 22 .
  • the information processing section 22 aggregates sensing information whose authenticity is guaranteed.
  • the tallying unit 225 of the information processing unit 22 tallies the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication. For example, the tallying unit 225 may calculate the total value of the amount of exercise and the amount of movement, and may calculate the consumed calories during the period in which the authenticity is guaranteed based on the accumulated sensing information. In addition, the tallying unit 225 excludes the exercise rest period of the user when tallying the sensing information.
  • the information processing unit 22 applies an electronic signature to the tally result of the tally unit 225 and outputs it to the insurance business server 30 .
  • step ST74 the insurance business processing unit 31 verifies the signature.
  • the insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST73, confirms whether the information is provided from the terminal device 20 of the insured person, and sends the confirmation result to the information processing unit. 22.
  • the insurance business processing unit 31 performs an evaluation based on the aggregated results.
  • the insurance business processing unit 31 determines the exercise status of the insured person based on the aggregated result.
  • the insurance business processing unit 31 evaluates the insurance risk based on the exercise status determination result, and outputs the evaluation result to the insurance business database unit 32 .
  • step ST76 the insurance business database section 32 saves the evaluation results.
  • the insurance business database unit 32 stores the evaluation results obtained by the insurance business processing unit 31 for each insured person.
  • the insurance business database unit 32 outputs the evaluation result. Based on a request from the insurance business processing unit 31 , the insurance business database unit 32 outputs the already obtained and stored evaluation result of the insured person to the insurance business processing unit 31 .
  • step ST78 the insurance business processing unit 31 performs follow-up processing.
  • the insurance business processing unit 31 calculates the insurance risk of the insured person based on the result of determining the exercise status of the insured person based on the aggregated result of the sensing information acquired from the terminal device 20 and the already obtained evaluation result of the insurance risk. evaluate. Furthermore, the insurance business processing unit 31 generates follow-up information based on the insurance risk evaluation result and notifies the terminal device 20 of the follow-up information. For example, the insurance business processing unit 31 provides follow-up information for notifying the insured person in advance that an incentive will be provided if the insurance risk of the insured person is lower than the assumed risk range.
  • the after-follow information includes the aggregate result of the sensing information acquired from the terminal device 20 and the evaluation result of the insured's exercise. If this information is included, the user can determine what kind of aggregated result was provided to the insurance business server 30 and what kind of exercise evaluation result was used to generate the follow-up information.
  • step ST79 the insurance business database section 32 saves the follow-up information.
  • the insurance business database unit 32 stores the follow-up information generated by the insurance business processing unit 31 for each insured person. By storing the follow-up information in this way, the insurance business database unit 32 can grasp the progress of notifications to the insured regarding contracted insurance products.
  • step ST80 the information processing section 22 presents follow-up information.
  • the information processing section 22 presents the follow-up information notified from the insurance business processing section 31 to the user.
  • FIG. 12 exemplifies a presentation screen for follow-up information.
  • the after-follow information presentation screen U10 a display U10a showing the after-follow information notified from the insurance business processing unit 31 is provided. The distance, the remaining travel distance until the insurance premium is reduced, and the like are shown.
  • the presentation of the follow-up information is not limited to the display using the user interface unit 228, and voice or the like may be used.
  • the terminal device 20 performs continuous authentication using sensing information for insurance risk evaluation that is collected after authenticity that the user is an insured person is guaranteed by personal authentication. , the identity authentication is repeated when the authenticity of the sensing information is not guaranteed. Therefore, even if the user does not perform complicated operations, the terminal device 20 can determine whether the information is collected from a user whose authenticity is guaranteed by personal authentication based on the sensing information. can be prevented.
  • continuous authentication is performed by the terminal device 20, there is no need to transmit the sensing information acquired from the insured person from the terminal device 20 to the insurance business server 30, which is an external device, so the confidentiality of the sensing information can be enhanced. can. Furthermore, continuous authentication may be performed by the insurance business server 30 . In this case, the terminal device 20 does not need to perform feature amount extraction or the like based on the motion information included in the sensing information, so it is possible to reduce load and power consumption. In addition, the insurance business server 30 can optimize and perform continuous authentication for each insured person.
  • the authentication results of the personal authentication and the continuous authentication are provided to the insurance business server 30. Therefore, the insurance business server 30 receives the information during the period in which the authenticity of the user of the terminal device 20 as the insured person is guaranteed. can be calculated. Therefore, the insurance business server 30 can confirm the authenticity of the tally result by matching the period calculated based on the authentication result with the period indicated by the tally result notified from the terminal device 20 .
  • the authentication method of this technology can also be applied to other systems.
  • the system performs authentication using unique information and continuous authentication using sensing information collected from fraud detection targets, and uses sensing information collected after authenticity is guaranteed by authentication using unique information. to repeat continuous authentication. Also, if the authenticity of the sensing information is not guaranteed by continuous authentication, the system performs authentication using unique information.
  • various systems can easily prevent fraud without requiring the user to perform complicated operations.
  • a series of processes described in the specification can be executed by hardware, software, or a composite configuration of both.
  • a program recording a processing sequence is installed in a memory within a computer incorporated in dedicated hardware and executed.
  • the program can be installed and executed in a general-purpose computer capable of executing various processes.
  • the program can be recorded in advance on a hard disk, SSD (Solid State Drive), or ROM (Read Only Memory) as a recording medium.
  • the program can be stored on flexible discs, CD-ROMs (Compact Disc Read Only Memory), MO (Magneto optical) discs, DVDs (Digital Versatile Discs), BDs (Blu-Ray Discs (registered trademark)), magnetic discs, and semiconductor memory cards. It can be temporarily or permanently stored (recorded) in a removable recording medium such as.
  • Such removable recording media can be provided as so-called package software.
  • the program can also be downloaded from the download site via a network such as WAN (Wide Area Network), LAN (Local Area Network) such as cellular, or the Internet to the computer wirelessly or by wire. You can transfer with The computer can receive the program transferred in this way and install it in a built-in recording medium such as a hard disk.
  • WAN Wide Area Network
  • LAN Local Area Network
  • the terminal device of the present technology can also have the following configuration.
  • Personal authentication is performed using the user's unique information, and continuation using sensing information for insurance risk evaluation collected after the user's authenticity as an insured person is guaranteed by the personal authentication
  • a terminal device comprising an authentication unit that, in authentication, repeats the identity authentication when the authenticity of information collected from the user whose authenticity is guaranteed by the identity authentication is not guaranteed by the sensing information.
  • the personal authentication is an authentication method with higher authentication accuracy than the continuous authentication.
  • any of (1) to (3) in the continuous authentication, authenticity is guaranteed when a change in the feature amount calculated based on the sensing information is less than a preset threshold.
  • the terminal device according to 1. The terminal device according to any one of (1) to (4), wherein the continuous authentication is performed by the authentication unit. (6) The terminal device according to any one of (1) to (5), including a sensing unit that collects the sensing information. (7) The terminal device according to any one of (1) to (6), wherein the sensing information includes exercise-related information that changes according to the user's exercise.
  • an aggregating unit that aggregates the sensing information collected during a period in which the authenticity of the insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication;
  • the terminal device according to any one of (1) to (7), further comprising a control unit that provides a total result of the totalizing unit to an insurance business server.
  • the counting unit determines a rest period of the user based on the sensing information, and excludes the sensing information collected during the rest period from the counting result.
  • the control unit provides authentication results of the personal authentication and the continuous authentication to the insurance business server.
  • (11) having a user interface unit that accepts user operations and presents information; The terminal according to any one of (8) to (10), wherein the user interface unit presents follow-up information notified from the insurance business server in response to providing the sensing information to the insurance business server.
  • Device (12) The terminal device according to (11), wherein the user interface unit presents the counting result of the counting unit and the authentication status of the continuous authentication.
  • the follow-up information includes information for notifying an increase or decrease in insurance premiums.
  • the present technology can include the following insurance system.
  • Personal authentication is performed using the user's unique information, and in continuous authentication using sensing information for insurance risk evaluation collected after the authenticity of the user as an insured person is guaranteed in the personal authentication, a terminal device comprising an authentication unit that repeats the identity authentication when the authenticity of information collected from the sensing information for the user whose authenticity is guaranteed by the identity authentication is not guaranteed; an insurance business server comprising an insurance business processing unit that evaluates insurance risks based on sensing information collected from the user by the terminal device during a period in which the authenticity of the user as an insured person is guaranteed; insurance system with

Abstract

This invention makes it possible to easily prevent fraud without requiring complicated operations. An authentication unit 224 of an information processing unit 22 uses user-specific information to perform identity authentication. In addition, the authentication unit 224 or an insurance service server 30 performs ongoing authentication. In the ongoing authentication, after authenticity as to the user being an insured person has been guaranteed by the identity authentication, sensing information for insurance risk evaluation collected by a sensing unit 21 or the like is used. In the ongoing authentication, the identity authentication is repeated if authenticity is not guaranteed as to the information collected about the user guaranteed to be authentic through the identity authentication using the sensing information. Thus, it becomes possible to easily prevent fraud without requiring complicated operations.

Description

端末装置と情報処理方法とプログラムおよび保険業務サーバTerminal device, information processing method, program, and insurance business server
 本技術は、端末装置と情報処理方法とプログラムおよび保険業務サーバに関し、煩雑な操作が必要なく容易に不正を防止できるようにする。 This technology makes it possible to easily prevent fraud without the need for complicated operations regarding terminal devices, information processing methods, programs, and insurance business servers.
 近年、ユーザから取得した情報に基づいて、提供するサービスのコスト等を変化させることが行われている。例えば、特許文献1では、運動情報やバイタル情報、健診情報等を取得して、取得した情報が被保険者の情報であること、すなわち取得した情報の真正性を保証して、真正性が保証された情報に基づいて生命・医療保険の保険料等を決定することが行われている。 In recent years, the cost of services provided has been changed based on information obtained from users. For example, in Patent Document 1, exercise information, vital information, health checkup information, etc. are acquired, and the acquired information is information of the insured person, that is, the authenticity of the acquired information is guaranteed. Insurance premiums for life and medical insurance are determined based on guaranteed information.
特開2017-041199号公報JP 2017-041199 A
 ところで、特許文献1では、被認証者画像情報に基づいて被認証者の脈波である第1の脈波を表す第1の脈波情報と、被測定者の体表面をセンシングすることによって取得された被測定者の脈波である第2の脈波を表す第2の脈波情報との照合結果、および被認証者画像情報に基づく本人認証結果に基づき、被測定者の運動情報等の真正性を保証するものである。このため、脈波情報を取得できないと運動情報等の不正を防止できない。また、撮像部を設けて被認証者画像情報を取得することや、第2の脈波情報を取得すために、被測定者の体表面をセンシングできる位置に真正性保証装置を装着しなければならず、不正防止を容易に行うことができない。 By the way, in Patent Document 1, the first pulse wave information representing the first pulse wave, which is the pulse wave of the person to be authenticated, is acquired based on the image information of the person to be authenticated by sensing the body surface of the person to be measured. Based on the result of collation with the second pulse wave information representing the second pulse wave, which is the measured person's pulse wave, and the result of personal authentication based on the image information of the person to be authenticated, the exercise information of the person to be measured, etc. It guarantees authenticity. Therefore, if the pulse wave information cannot be obtained, it is impossible to prevent fraudulent exercise information and the like. In addition, in order to obtain the image information of the person to be authenticated by providing an imaging unit and to obtain the second pulse wave information, the authenticity assurance device must be worn at a position where the body surface of the person to be measured can be sensed. Therefore, it is not possible to easily prevent fraud.
 そこで、本技術で、煩雑な操作が必要なく容易に不正を防止できる情報処理装置と情報処理方法とプログラムおよびサーバを提供することを目的とする。 Therefore, it is an object of the present technology to provide an information processing device, an information processing method, a program, and a server that can easily prevent fraud without complicated operations.
 本技術の第1の側面は、ユーザの固有情報を用いて本人認証を行い、前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す認証部
を備える端末装置にある。
A first aspect of the present technology is to perform personal authentication using the user's unique information, and to evaluate the insurance risk collected after the authenticity that the user is an insured person is guaranteed by the personal authentication. an authentication unit that, in continuous authentication using sensing information, repeats the identity authentication when the authenticity of information collected from the user whose authenticity is guaranteed by the identity authentication is not guaranteed by the sensing information. It is in the terminal device provided.
 本技術では、ユーザの固有情報を用いて本人認証を認証部で行い、本人認証でユーザが被保険者である真正性が保証された後に、例えば本人認証よりも認証精度の低い継続認証を所定期間が経過する毎に行う。継続認証では、本人認証でユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いて、センシング情報によって本人認証で真正性の保証されたユーザを対象として収集した情報であるか検証して、センシング情報の真正性が保証されない場合に本人認証を認証部で繰り返す。 In this technology, the user is authenticated by the authentication unit using the user's unique information. Do this every time the period passes. Continuous authentication uses sensing information for insurance risk evaluation that is collected after the authenticity of the user as an insured person is guaranteed by personal authentication. If the authenticity of the sensing information is not guaranteed, the authenticating unit repeats the authentication.
 継続認証では、例えばセンシング情報に基づいて算出された特徴量の変化が予め設定された閾値よりも少ない場合に真正性が保証されているとする。また、継続認証は、認証部で行ってもよく、センシング情報を用いて保険リスクの評価を行う保険業務サーバで継続認証を行ってもよい。 In continuous authentication, for example, authenticity is guaranteed when the change in feature values calculated based on sensing information is less than a preset threshold. Further, continuous authentication may be performed by the authentication unit, or may be performed by an insurance business server that evaluates insurance risks using sensing information.
 センシング情報は、ユーザの運動によって変化する運動関連情報を含み、例えば端末装置に設けられたセンシング部で収集する。 The sensing information includes exercise-related information that changes according to the user's exercise, and is collected, for example, by a sensing unit provided in the terminal device.
 端末装置は、本人認証と継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を集計部で集計して、制御部は集計部の集計結果を保険業務サーバへ提供する。集計部は、センシング情報に基づきユーザの休息期間を判別して、休息期間に収集されたセンシング情報を集計結果から除外する。また、制御部は、本人認証と継続認証の認証結果を保険業務サーバへ提供する。 Based on the authentication results of personal authentication and continuous authentication, the terminal device aggregates the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed in the aggregation unit. Provides the aggregated results to the insurance business server. The tallying unit determines a user's rest period based on the sensing information, and excludes the sensing information collected during the rest period from the tally result. Also, the control unit provides the authentication result of the personal authentication and the continuous authentication to the insurance business server.
 ユーザ操作の受け入れと情報提示を行うユーザインタフェース部は、センシング情報を保険業務サーバへ提供することに応じて、保険業務サーバから通知されたアフターフォロー情報を提示する。また、ユーザインタフェース部は、集計部の集計結果と継続認証の認証状況を提示してもよい。 The user interface unit that accepts user operations and presents information presents follow-up information notified from the insurance business server in response to providing sensing information to the insurance business server. Also, the user interface unit may present the counting result of the counting unit and the authentication status of continuous authentication.
 本技術の第2の側面は、
 ユーザ固有情報を用いて本人認証を認証部で行うことと、
 前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を前記認証部で繰り返すこと
を含む情報処理方法。
A second aspect of the technology is
performing personal authentication in an authenticating unit using the user-specific information;
In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. an information processing method including repeating the personal authentication by the authentication unit when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
 本技術の第3の側面は、
 ユーザの真正性の検証をコンピュータで実行させるプログラムであって、
 ユーザ固有情報を用いて本人認証を認証部で行う手順と、
 前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す手順と
を前記コンピュータで実行させるプログラムにある。
A third aspect of the technology is
A program that causes a computer to verify the authenticity of a user,
a procedure for performing personal authentication in an authenticating unit using user-specific information;
In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. and a procedure for repeating the personal authentication when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
 なお、本技術のプログラムは、例えば、様々なプログラム・コードを実行可能な汎用コンピュータに対して、コンピュータ可読な形式で提供する記憶媒体、通信媒体、例えば、光ディスクや磁気ディスク、半導体メモリなどの記憶媒体、あるいは、ネットワークなどの通信媒体によって提供可能なプログラムである。このようなプログラムをコンピュータ可読な形式で提供することにより、コンピュータ上でプログラムに応じた処理が実現される。 Note that the program of the present technology is, for example, a storage medium or communication medium provided in a computer-readable format to a general-purpose computer capable of executing various program codes, such as an optical disk, a magnetic disk, or a semiconductor memory. It is a program that can be provided by a medium or a communication medium such as a network. By providing such a program in a computer-readable format, processing according to the program is realized on the computer.
 本技術の第4の側面は、
 ユーザが被保険者である真正性が保証されている期間に端末装置で前記ユーザを対象として収集されたセンシング情報に基づいて保険リスクの評価を行う保険業務処理部
を備える保険業務サーバにある。
A fourth aspect of the present technology is
An insurance business server comprising an insurance business processing unit that evaluates insurance risks based on sensing information collected from a terminal device for a user during a period in which the user is an insured person and authenticity is guaranteed.
 本技術の保険業務サーバにおける保険業務処理部は、ユーザが被保険者である真正性が保証されている期間に端末装置でユーザを対象として収集されたセンシング情報に基づいて保険リスクの評価を行う。保険リスクの評価は、被保険者である真正性が保証されているユーザの運動状況を判別して、判別結果を用いて行う。また、保険業務処理部は、保険リスクの評価結果に基づきアフターフォロー情報を生成する。また、保険業務処理部は、センシング情報によって被保険者である真正性が保証されているユーザを対象として収集した情報である真正性を検証する継続認証を行い、認証結果を端末装置に通知する。 The insurance business processing unit in the insurance business server of this technology evaluates the insurance risk based on the sensing information collected from the user by the terminal device during the period in which the authenticity of the user as the insured person is guaranteed. . The insurance risk is evaluated by determining the exercise status of the user, who is the insured person and whose authenticity is guaranteed, and using the determination result. Also, the insurance business processing unit generates follow-up information based on the insurance risk evaluation result. In addition, the insurance business processing unit performs continuous authentication to verify the authenticity of information collected from users who are insured persons whose authenticity is guaranteed by sensing information, and notifies the terminal device of the authentication result. .
保険システムの構成を例示した図である。It is the figure which illustrated the structure of the insurance system. 端末装置の構成を例示した図である。It is the figure which illustrated the structure of the terminal device. 保険業務処理部の構成を例示した図である。It is the figure which illustrated the structure of the insurance business process part. 端末装置の保険関連動作を例示したフローチャートである。4 is a flowchart illustrating insurance-related operations of a terminal device; 継続認証の動作を例示したフローチャートである。It is the flowchart which illustrated the operation|movement of continuous authentication. 保険業務サーバの動作を例示したフローチャートである。It is the flowchart which illustrated the operation|movement of an insurance business server. 保険商品として健康増進保険を申し込む場合の画面を例示した図である。It is the figure which illustrated the screen in the case of applying for health promotion insurance as an insurance product. 保険契約が締結された健康増進保険に関する画面を例示した図である。It is the figure which illustrated the screen regarding the health promotion insurance with which the insurance contract was concluded. 保険契約締結後の保険システムの動作例を示すシーケンス図である。FIG. 10 is a sequence diagram showing an operation example of the insurance system after the conclusion of an insurance contract; センシング情報の収集動作時の表示画面を例示した図である。FIG. 10 is a diagram illustrating a display screen during sensing information collection operation; 運動終了後の動作を例示したシーケンス図である。FIG. 10 is a sequence diagram illustrating an operation after exercise. アフターフォロー情報の提示画面を例示した図である。It is the figure which illustrated the presentation screen of follow-up information.
 1.保険システムの構成
 2.保険システムの動作
  2-1.端末装置の動作
  2-2.保険業務サーバの動作
  2-3.保険システムの動作例
 3.変形例
1. Configuration of insurance system 2 . Operation of insurance system 2-1. Operation of terminal device 2-2. Operation of Insurance Business Server 2-3. Operation example of the insurance system 3 . Modification
 <1.保険システムの構成>
 図1は、本技術の保険システムの構成を例示している。保険システム10は、ユーザが用いる端末装置20と保険会社の保険業務サーバ30がネットワーク40を介して接続されている。
<1. Configuration of insurance system>
FIG. 1 illustrates the configuration of the insurance system of this technology. In the insurance system 10 , a terminal device 20 used by a user and an insurance business server 30 of an insurance company are connected via a network 40 .
 端末装置20は、センシング部21と情報処理部22を有している。図2は、端末装置の構成を例示している。センシング部21はユーザの運動状態等を示すセンシング情報を収集する。センシング情報とは、端末装置20を所持するユーザを対象としてセンシングを行うことに収集された情報であり、ユーザの運動によって変化する運動関連情報を含む。また、センシング情報は、保険業務サーバ30において保険リスクの評価に用いられる。例えば、端末装置のユーザと契約が締結された保険商品が健康増進を目的とした保険商品である場合、端末装置20は、心拍数や血圧,呼吸数,酸素飽和度,体温等のようなバイタル情報、どのような運動をどの程度行ったか、どの程度の位置変化を生じたか等を示す情報をセンシング情報として収集する。また、保険業務サーバ30は、センシング情報を用いて端末装置20を所持するユーザの運動状況に応じて保険リスクを評価して、評価結果に基づき保険料の減額(割引)等を行う。 The terminal device 20 has a sensing section 21 and an information processing section 22 . FIG. 2 illustrates the configuration of the terminal device. The sensing unit 21 collects sensing information indicating the exercise state of the user. Sensing information is information collected by sensing the user who owns the terminal device 20, and includes exercise-related information that changes according to the user's exercise. Also, the sensing information is used for insurance risk evaluation in the insurance business server 30 . For example, if the insurance product contracted with the user of the terminal device is an insurance product for the purpose of health promotion, the terminal device 20 receives vital information such as heart rate, blood pressure, respiratory rate, oxygen saturation, body temperature, and the like. Information indicating what kind of exercise was performed and how much, how much positional change occurred, etc., is collected as sensing information. The insurance business server 30 also uses the sensing information to evaluate the insurance risk according to the exercise status of the user possessing the terminal device 20, and reduces (discounts) the insurance premium based on the evaluation result.
 センシング部21は、ユーザの運動によって変化する運動関連情報を含むセンシング情報を収集するため、例えば運動計測部211と測位部212を有している。また、センシング部21は、本人認証に用いるユーザの固有情報を収集するための認証センサ部213を有してもよい。さらに、センシング部21は、収集したセンシング情報や認証情報を情報処理部22に提供する近傍通信部214を有している。 The sensing unit 21 has, for example, a motion measuring unit 211 and a positioning unit 212 in order to collect sensing information including exercise-related information that changes according to the user's exercise. Further, the sensing unit 21 may have an authentication sensor unit 213 for collecting user-specific information used for personal authentication. Furthermore, the sensing unit 21 has a near field communication unit 214 that provides the information processing unit 22 with collected sensing information and authentication information.
 運動計測部211は、バイタルセンサとIMU(Inertial Measurement Unit)あるいは加速度センサ等を用いて構成されている。運動計測部211は、センシング部21が装着されたユーザのバイタル情報(例えば心拍数や血圧,呼吸数,酸素飽和度,体温等の少なくとも何れか)、センシング部21が装着されたユーザの歩数や運動強度(例えばMETs(metabolic equivalents))、センシング部21が装着されたユーザがどのような行動(例えば、ウォーキングあるいはランニング,テニス,ゴルフ等のスポーツ、日常生活で行われる作業等)を行っているか等の少なくともいずれかを計測して、計測結果をセンシング情報として近傍通信部214に供給する。 The motion measurement unit 211 is configured using a vital sensor and an IMU (Inertial Measurement Unit) or an acceleration sensor. The exercise measurement unit 211 measures the vital information of the user wearing the sensing unit 21 (for example, at least one of heart rate, blood pressure, breathing rate, oxygen saturation, body temperature, etc.), the number of steps of the user wearing the sensing unit 21, Exercise intensity (for example, METs (metabolic equivalents)), and what kind of behavior the user wearing the sensing unit 21 is doing (for example, walking or running, sports such as tennis and golf, work performed in daily life, etc.) and so on, and supplies the measurement result to the near field communication unit 214 as sensing information.
 測位部212は、衛星等から送信されている測位信号やアクセスポイントからのビーコン信号等を受信してセンシング部21の位置計測を行い、位置計測結果をセンシング情報として近傍通信部214に供給する。 The positioning unit 212 receives a positioning signal transmitted from a satellite or the like, a beacon signal from an access point, etc., performs position measurement by the sensing unit 21, and supplies the position measurement result to the near field communication unit 214 as sensing information.
 認証センサ部213は、ユーザの固有情報を収集する。例えば認証センサ部213は、センシング部21が装着されたユーザの生体固有情報(例えば顔画像や指紋情報,虹彩情報,静脈情報等)を固有情報として収集して、近傍通信部214に供給する。 The authentication sensor unit 213 collects user's unique information. For example, the authentication sensor unit 213 collects, as unique information, biological unique information (eg, face image, fingerprint information, iris information, vein information, etc.) of the user wearing the sensing unit 21 and supplies it to the near field communication unit 214 .
 近傍通信部214は、近傍無線通信技術(例えばBluetooth(商標)やNFC(Near field communication)等)を用いて情報処理部22と無線通信を行う。近傍通信部214は、運動計測部211や測位部212で収集されたセンシング情報と、認証センサ部213で生成された固有情報を情報処理部22へ出力する。 The near field communication unit 214 performs wireless communication with the information processing unit 22 using near field communication technology (for example, Bluetooth (trademark), NFC (Near field communication), etc.). Proximity communication unit 214 outputs sensing information collected by motion measurement unit 211 and positioning unit 212 and unique information generated by authentication sensor unit 213 to information processing unit 22 .
 情報処理部22は、ユーザの固有情報を用いた本人認証、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を保険業務サーバへ提供する情報提供処理、保険会社から通知された情報をユーザに提示する情報提示処理等を行う。情報処理部22としては、例えばスマートフォン等が用いられる。 The information processing unit 22 performs personal authentication using the unique information of the user, information provision processing for providing the insurance business server with sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed, insurance company performs information presentation processing for presenting the information notified from to the user, and the like. For example, a smart phone or the like is used as the information processing unit 22 .
 情報処理部22は、例えば運動計測部221、測位部222、認証センサ部223、認証部224、集計部225、近傍通信部226、通信部227、ユーザインタフェース部228、制御部229を有している。 The information processing unit 22 includes, for example, a motion measurement unit 221, a positioning unit 222, an authentication sensor unit 223, an authentication unit 224, a counting unit 225, a near field communication unit 226, a communication unit 227, a user interface unit 228, and a control unit 229. there is
 運動計測部221は、運動計測部211と同様に、情報処理部22を所有しているユーザの歩数や運動強度、どのような行動を行っているか等の情報の少なくともいずれかをセンシング情報として収集して集計部225へ出力する。 As with the exercise measurement unit 211, the exercise measurement unit 221 collects at least one of information such as the number of steps, exercise intensity, and behavior of the user who owns the information processing unit 22 as sensing information. and output to totalization unit 225 .
 測位部222は、衛星等から送信されている測位信号やアクセスポイントからのビーコン信号等を受信して情報処理部22の位置計測を行い、位置計測結果をセンシング情報として集計部225へ出力する。 The positioning unit 222 receives positioning signals transmitted from satellites and the like, beacon signals from access points, etc., performs position measurement of the information processing unit 22, and outputs the position measurement results to the aggregation unit 225 as sensing information.
 認証センサ部223は、ユーザの固有情報を収集する。例えば認証センサ部223は、情報処理部22を所持するユーザの生体情報(例えば顔画像や指紋情報,虹彩情報,静脈情報等)を固有情報として収集して認証部224へ出力する。 The authentication sensor unit 223 collects user's unique information. For example, the authentication sensor unit 223 collects biometric information (for example, face image, fingerprint information, iris information, vein information, etc.) of the user possessing the information processing unit 22 as unique information and outputs it to the authentication unit 224 .
 認証部224は、近傍通信部226を介してセンシング部21から取得した固有情報や認証センサ部223で収集された固有情報、あるいはユーザインタフェース部228から入力された固有情報(例えばIDやパスワード,質問に対して事前に登録した回答,個人識別番号等のユーザ知識情報や、例えばワンタイムパスワードや暗号表等のユーザ所持情報)等を用いて本人認証を行う。なお、本技術において、本人認証とは端末装置のユーザが被保険者である真正性を検証するための認証処理である。 The authentication unit 224 receives unique information acquired from the sensing unit 21 via the near field communication unit 226, unique information collected by the authentication sensor unit 223, or unique information input from the user interface unit 228 (for example, an ID, a password, a question, etc.). Personal authentication is performed by using pre-registered responses to personal identification numbers, user knowledge information such as personal identification numbers, and user-possessed information such as one-time passwords and code tables. In the present technology, personal authentication is authentication processing for verifying the authenticity of the user of the terminal device as an insured person.
 また、認証部224は、本人認証でユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証の認証結果に基づいて本人認証を再度行う。本技術において、継続認証とは、センシング情報によって本人認証で真正性の保証されたユーザを対象として収集した情報である真正性(以下、単に「センシング情報の真正性」ともいう)を、所定期間が経過する毎に繰り返し自動的に検証するための認証処理である。認証部224は、センシング情報の真正性が継続認証で保証されていない場合に本人認証を再度行う。継続認証は認証部224で行ってもよく、保険業務サーバ30で継続認証を行い、認証部224は保険業務サーバ30から継続認証の認証結果を取得してもよい。 In addition, the authentication unit 224 performs personal authentication based on the authentication result of continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by personal authentication. Do it again. In the present technology, continuous authentication refers to authenticity (hereinafter simply referred to as “authenticity of sensing information”) that is information collected from users whose authenticity is guaranteed by personal authentication based on sensing information, This is an authentication process for repeating and automatically verifying each time elapses. The authenticating unit 224 performs personal authentication again when the authenticity of the sensing information is not guaranteed by continuous authentication. The continuous authentication may be performed by the authentication unit 224 , or may be performed by the insurance business server 30 , and the authentication unit 224 may acquire the authentication result of the continuous authentication from the insurance business server 30 .
 集計部225は、近傍通信部226を介してセンシング部21から取得したセンシング情報と運動計測部221や測位部222で収集されたセンシング情報を集計する。また、集計部225は、本人認証と前記継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を集計する。例えば、集計部225は、継続認証の繰り返し時にセンシング情報の真正性が保証されなくなった場合、本人認証で真正性が保証されてから、センシング情報の真正性が保証されていることを示す認証結果が得られた直前の継続認証までの期間に収集されたセンシング情報を集計する。また、集計部225は、継続認証の繰り返し時に真正性が保証されなくなった場合、収集されたセンシング情報を無効として、新たな本人認証で真正性の保証を示す認証結果が得られてから、動作終了時の継続認証で真正性が継続して保証されていることが確認されるまでに収集されたセンシング情報を集計してもよい。さらに、集計部225は、センシング情報に基づきユーザの休息期間を判別して、休息期間に収集されたセンシング情報を集計結果から除外する。また、集計部225は、センシング情報の集計結果にセンシング情報の収集時間(あるいは収集時刻)を含める。 The aggregation unit 225 aggregates the sensing information acquired from the sensing unit 21 via the near field communication unit 226 and the sensing information collected by the movement measurement unit 221 and the positioning unit 222 . Also, the counting unit 225 counts the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed, based on the authentication results of the personal authentication and the continuous authentication. For example, when the authenticity of the sensing information is no longer guaranteed when the continuous authentication is repeated, the counting unit 225 collects the authentication result indicating that the authenticity of the sensing information is guaranteed after the authenticity is guaranteed by the personal authentication. Aggregate the sensing information collected during the period up to the continuous authentication just before the is obtained. In addition, when the authenticity is no longer guaranteed when the continuous authentication is repeated, the counting unit 225 invalidates the collected sensing information, and after obtaining the authentication result indicating the assurance of the authenticity by the new personal authentication, the operation is performed. The sensing information collected until it is confirmed that the authenticity is continuously guaranteed by continuous authentication at the time of termination may be aggregated. Further, the tallying unit 225 determines the user's rest period based on the sensing information, and excludes the sensing information collected during the rest period from the tally result. In addition, the tallying unit 225 includes the collection time (or collection time) of the sensing information in the tally result of the sensing information.
 近傍通信部226は、近傍無線通信技術(例えばBluetooth(商標)やNFC(Near field communication)等)を用いてセンシング部21と無線通信を行う。近傍通信部226は、センシング部21で取得された固有情報を認証部224、センシング部21で収集されたセンシング情報を集計部225へ出力する。 The near field communication unit 226 performs wireless communication with the sensing unit 21 using near field communication technology (for example, Bluetooth (trademark), NFC (Near field communication), etc.). The near field communication unit 226 outputs the unique information acquired by the sensing unit 21 to the authentication unit 224 and outputs the sensing information collected by the sensing unit 21 to the counting unit 225 .
 通信部227は、ネットワーク40を介して保険業務サーバ30と通信を行い、認証部224での認証結果や集計部225で算出されたセンシング情報の集計結果を保険業務サーバ30へ提供する。また、通信部227は、保険業務サーバ30から通知された後述するアフターフォロー情報を制御部229へ出力する。 The communication unit 227 communicates with the insurance business server 30 via the network 40 and provides the insurance business server 30 with the authentication result of the authentication unit 224 and the aggregation result of the sensing information calculated by the aggregation unit 225 . Further, the communication unit 227 outputs to the control unit 229 after-follow information, which is notified from the insurance business server 30 and will be described later.
 ユーザインタフェース部228は、ユーザに対して各種情報の提示やユーザ操作の受け付けを行う。例えば、ユーザインタフェース部228では表示素子と表示素子の表示面にタッチパネルを設けて、GUI(グラフィカルユーザインタフェース)が構成されている。ユーザインタフェース部228は、端末装置20の設定や動作に関する情報の提示、保険業務サーバ30から通知された情報等をユーザに提示する。また、ユーザインタフェース部228は、ユーザ操作に応じた操作信号を制御部229へ出力する。さらに、ユーザインタフェース部228は、ユーザ操作によって入力された固有情報を受け付ける。 The user interface unit 228 presents various types of information to the user and accepts user operations. For example, in the user interface unit 228, a display element and a touch panel are provided on the display surface of the display element to form a GUI (graphical user interface). The user interface unit 228 presents to the user information regarding settings and operations of the terminal device 20, information notified from the insurance business server 30, and the like. The user interface unit 228 also outputs an operation signal to the control unit 229 according to the user's operation. Furthermore, user interface unit 228 accepts unique information input by a user operation.
 制御部229は、情報処理部22の各部の動作を制御する。制御部229は、端末装置20のユーザが予め設定されたユーザであることを検証する本人認証を認証部224で行わせて、端末装置20のユーザが被保険者であることが検証された場合、本人認証の認証結果を保険業務サーバ30へ提供する。また、制御部229は、継続認証が認証部224で行われる場合、認証結果を保険業務サーバ30へ提供してもよい。 The control section 229 controls the operation of each section of the information processing section 22 . When the control unit 229 causes the authentication unit 224 to perform personal authentication for verifying that the user of the terminal device 20 is a preset user, and it is verified that the user of the terminal device 20 is an insured person. , provides the authentication result of the personal authentication to the insurance business server 30 . In addition, when continuous authentication is performed by the authentication unit 224 , the control unit 229 may provide an authentication result to the insurance business server 30 .
 制御部229は、本人認証と継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を集計部225で集計させて、通信部227を介して保険業務サーバ30に集計結果を提供させる。さらに、制御部229は、保険業務サーバ30から通知されたアフターフォロー情報をユーザインタフェース部228で提示させる処理等を行う。 The control unit 229 causes the totalizing unit 225 to totalize the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication, and causes the communication unit 227 to It causes the insurance business server 30 to provide the aggregated results via the Internet. Further, the control unit 229 performs processing for presenting the follow-up information notified from the insurance business server 30 on the user interface unit 228, and the like.
 端末装置20の構成は、図2に示すように、センシング部21と情報処理部22でセンシング情報を取得する構成に限られない。例えば、センシング部21の構成が情報処理部22に設けられた構成でもよく、センシング情報は、センシング部21のみで取得する構成であってもよい。また、図に示されていない構成を有してもよい。 The configuration of the terminal device 20 is not limited to the configuration in which sensing information is acquired by the sensing unit 21 and the information processing unit 22 as shown in FIG. For example, the sensing unit 21 may be provided in the information processing unit 22 , or the sensing information may be acquired only by the sensing unit 21 . It may also have a configuration not shown in the figure.
 図1に戻り、保険業務サーバ30は、保険業務処理部31と保険業務データベース部32を有している。 Returning to FIG. 1, the insurance business server 30 has an insurance business processing unit 31 and an insurance business database unit 32 .
 保険業務処理部31は、保険商品の提案や契約処理,契約締結後のアフターフォロー処理等を行う。本技術において、アフターフォロー処理とは、端末装置20から取得したセンシング情報の集計結果に基づき、被保険者であるユーザの運動状況(例えば運動量や運動強度等)を判別して、運動状況の判別結果や既に得られている判別結果に基づき被保険者の保険リスクを評価する。さらに、想定したリスク範囲よりも被保険者の保険リスクが低い場合、インセンティブの付与(例えば保険料の減額や商品購入に利用可能なポイントあるいは商品割引クーポンの付与等)等の処理を行い、想定したリスク範囲よりも被保険者の保険リスクが高い場合、ユーザの不利益を招く処理(例えば保険料の割増や保険の更新を認めない処理等)等を行う。また、保険業務処理部31は、アフターフォロー情報を生成して端末装置20へ送付する。アフターフォロー情報は、ユーザと保険会社との間で締結された保険契約に関する追加情報であり、例えばインセンティブの付与(保険料の減額等)の処理やユーザの不利益(保険料の割増等)を招く処理等が所定のタイミング(例えば契約更新等)で行われることを、事前に保険会社からユーザに通知する情報である。 The insurance business processing unit 31 performs insurance product proposals, contract processing, and follow-up processing after contract conclusion. In the present technology, the follow-up process is to determine the exercise status (for example, amount of exercise, exercise intensity, etc.) of the user who is the insured person based on the aggregated result of sensing information acquired from the terminal device 20, and determine the exercise status. Evaluate the insurance risk of the insured based on the results and already obtained discrimination results. Furthermore, if the insurance risk of the insured person is lower than the assumed risk range, incentives (for example, reduction of insurance premiums, provision of points that can be used to purchase products, or product discount coupons, etc.) If the insurance risk of the insured person is higher than the calculated risk range, processing that causes disadvantages to the user (for example, processing that increases insurance premiums or prohibits renewal of insurance, etc.) is performed. The insurance business processing unit 31 also generates follow-up information and sends it to the terminal device 20 . The follow-up information is additional information related to the insurance contract concluded between the user and the insurance company. This is information that the insurance company notifies the user in advance that the process of inviting the user will be performed at a predetermined timing (for example, contract renewal).
 図3は、保険業務処理部の構成を例示している。保険業務処理部31は、通信部311と評価部312、アフターフォロー処理部313を有している。また、保険業務処理部31は、認証部314を有してもよい。 FIG. 3 exemplifies the configuration of the insurance business processing unit. The insurance business processing unit 31 has a communication unit 311 , an evaluation unit 312 , and a follow-up processing unit 313 . Also, the insurance business processing unit 31 may have an authentication unit 314 .
 通信部311は、ネットワーク40を介して端末装置20と通信を行い、端末装置20からセンシング情報の集計結果を取得する。また、通信部311は、アフターフォロー処理部313で判定された保険料や保険料の変動分を示すアフターフォロー情報を端末装置20へ出力する。 The communication unit 311 communicates with the terminal device 20 via the network 40 and acquires the tally result of the sensing information from the terminal device 20 . In addition, the communication unit 311 outputs to the terminal device 20 insurance premiums determined by the after-follow processing unit 313 and after-follow information indicating changes in insurance premiums.
 評価部312は、端末装置20から取得したセンシング情報の集計結果に基づき、端末装置20を所持している被保険者の運動状況を判別して、判別結果に基づき保険リスクを評価する。また、評価部312は、保険業務データベース部32に保存されている被保険者の運動状況の判別結果や保険リスクの評価結果を利用して、保険リスクの変化を評価してもよい。評価部312は、評価結果をアフターフォロー処理部313へ出力する。 The evaluation unit 312 determines the exercise status of the insured person possessing the terminal device 20 based on the tally result of the sensing information acquired from the terminal device 20, and evaluates the insurance risk based on the determination result. In addition, the evaluation unit 312 may evaluate changes in insurance risk using the determination result of the insured's exercise status and the insurance risk evaluation result stored in the insurance business database unit 32 . The evaluation unit 312 outputs the evaluation result to the follow-up processing unit 313 .
 アフターフォロー処理部313は、評価部312から出力された評価結果を用いてアフターフォロー処理を行い、例えば保険料や保険料の変動分等を判定する。アフターフォロー処理部313は、評価結果に基づき判定した保険料や保険料の変動分等を示すアフターフォロー情報を生成する。また、アフターフォロー処理部313は、生成したアフターフォロー情報を、通信部311を介して端末装置20へ出力する。 The after-follow processing unit 313 performs after-follow processing using the evaluation results output from the evaluation unit 312, and determines, for example, insurance premiums and changes in insurance premiums. The follow-up processing unit 313 generates follow-up information indicating insurance premiums determined based on the evaluation results, changes in insurance premiums, and the like. The after-follow processing unit 313 also outputs the generated after-follow information to the terminal device 20 via the communication unit 311 .
 認証部314が保険業務処理部31に設けられている場合、認証部314は、端末装置20からセンシング情報を取得して、取得したセンシング情報に基づいて継続認証を行い、通信部311を介して端末装置20に認証結果を出力する。 When the authentication unit 314 is provided in the insurance business processing unit 31, the authentication unit 314 acquires sensing information from the terminal device 20, performs continuous authentication based on the acquired sensing information, and performs continuous authentication via the communication unit 311. The authentication result is output to the terminal device 20 .
 図1に戻り、保険業務データベース部32は、保険契約情報(例えば被保険者の個人情報と契約が締結されている保険商品の情報等)、被保険者の運動状況の判別結果や保険リスクの評価結果等を保存する。また、保険業務データベース部32は、端末装置20から取得したセンシング情報等を保存してもよい。 Returning to FIG. 1, the insurance business database unit 32 stores insurance contract information (for example, personal information of the insured person and information on insurance products with which the contract is concluded), determination results of the exercise status of the insured person, and insurance risk information. Save evaluation results, etc. The insurance business database unit 32 may also store sensing information and the like acquired from the terminal device 20 .
 <2.保険システムの動作>
 保険システム10の端末装置20は、本人認証で被保険者である真正性が保証されたユーザを対象として保険リスクの評価のためのセンシング情報を収集する。また、端末装置20は、収集されたセンシング情報を用いた継続認証を所定期間が経過する毎に行い、センシング情報の真正性が保証されていない場合に再度本人認証を行う。さらに、端末装置20は、本人認証と継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を、ネットワーク40を介して保険業務サーバ30に送付する。
<2. Operation of Insurance System>
The terminal device 20 of the insurance system 10 collects sensing information for insurance risk evaluation from users whose authenticity is guaranteed by personal authentication as insured persons. In addition, the terminal device 20 performs continuous authentication using the collected sensing information every time a predetermined period elapses, and performs personal authentication again when the authenticity of the sensing information is not guaranteed. Furthermore, the terminal device 20 sends the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication to the insurance business server 30 via the network 40. send to
 保険業務サーバ30は、端末装置20のユーザが被保険者である真正性の保証されている期間に収集されたセンシング情報に基づき、契約されている保険商品のアフターフォロー処理を行う。 The insurance business server 30 performs follow-up processing for contracted insurance products based on sensing information collected during the period in which the user of the terminal device 20 is the insured person and the authenticity is guaranteed.
 <2-1.端末装置の動作>
 図4は、端末装置の保険関連動作を例示したフローチャートである。ステップST1で端末装置はペアリングを行う。端末装置20は、センシング部21と情報処理部22を互いに認識して通信できるようにペアリングを行いステップST2に進む。
<2-1. Operation of terminal device>
FIG. 4 is a flowchart illustrating an insurance-related operation of the terminal device. The terminal device performs pairing in step ST1. The terminal device 20 performs pairing so that the sensing unit 21 and the information processing unit 22 can mutually recognize and communicate with each other, and proceeds to step ST2.
 ステップST2で端末装置は本人認証を行う。情報処理部22は、端末装置を所持しているユーザが被保険者であるか、センシング部21の認証センサ部213あるいは情報処理部22の認証センサ部223等で取得されたユーザの固有情報を用いて認証部224で本人認証を行いステップST3に進む。 In step ST2, the terminal device performs personal authentication. The information processing unit 22 determines whether the user possessing the terminal device is an insured person, or the unique information of the user acquired by the authentication sensor unit 213 of the sensing unit 21, the authentication sensor unit 223 of the information processing unit 22, or the like. The authentication unit 224 performs personal authentication using the ID, and proceeds to step ST3.
 ステップST3で端末装置は真正性が保証されたか判別する。情報処理部22は、ステップST2の本人認証において、ユーザの固有情報が被保険者の固有情報と一致している場合に真正性が保証されていると判別してステップST4に進み、一致していない場合に真正性が保証されないと判別してステップST9に進む。 At step ST3, the terminal device determines whether the authenticity is guaranteed. When the unique information of the user matches the unique information of the insured person in the personal authentication in step ST2, the information processing section 22 determines that the authenticity is guaranteed, proceeds to step ST4, and proceeds to step ST4. If not, it is determined that the authenticity is not guaranteed, and the process proceeds to step ST9.
 ステップST4で端末装置はセンシング情報を取得する。情報処理部22は、センシング部21の運動計測部211や測位部212および情報処理部22の運動計測部221や測位部222で収集された保険リスクの評価のためのセンシング情報を取得して集計部225へ出力してステップST5に進む。 In step ST4, the terminal device acquires sensing information. The information processing unit 22 acquires and aggregates sensing information for insurance risk evaluation collected by the motion measurement unit 211 and the positioning unit 212 of the sensing unit 21 and the motion measurement unit 221 and the positioning unit 222 of the information processing unit 22. Output to the section 225 and proceed to step ST5.
 ステップST5で端末装置は所定期間が経過したか判別する。情報処理部22は、予め設定されている所定期間が経過していない場合にステップST4に戻り、所定期間が経過している場合にステップST6に進む。 In step ST5, the terminal device determines whether a predetermined period has passed. The information processing section 22 returns to step ST4 if the predetermined period has not elapsed, and proceeds to step ST6 if the predetermined period has elapsed.
 ステップST6で端末装置は継続認証を行う。情報処理部22は、被保険者である真正性が保証された後に収集されたセンシング情報を用いて継続認証を行う。 In step ST6, the terminal device performs continuous authentication. The information processing unit 22 performs continuous authentication using sensing information collected after the authenticity of the insured person is guaranteed.
 図5は、継続認証の動作を例示したフローチャートであり、センシング情報としてユーザの心拍数とユーザの動き情報(例えば加速度情報や角速度情報等)と位置情報等を収集する場合を例示している。 FIG. 5 is a flowchart illustrating the continuous authentication operation, and illustrates a case where the user's heart rate, user movement information (eg, acceleration information, angular velocity information, etc.), position information, etc. are collected as sensing information.
 ステップST21で端末装置は心拍数が測定されているか判別する。端末装置20の認証部224は、例えばセンシング部21の運動計測部211で収集されたセンシング情報に基づき、心拍数が測定されていると判別した場合はステップST22に進み、心拍数が測定されていないと判別した場合はステップST30に進む。 In step ST21, the terminal device determines whether the heart rate is being measured. If the authentication unit 224 of the terminal device 20 determines that the heart rate is being measured based on the sensing information collected by the exercise measurement unit 211 of the sensing unit 21, the process proceeds to step ST22, and the heart rate is not being measured. If it is determined that there is not, the process proceeds to step ST30.
 ステップST22で端末装置は行動的特徴の本人確率が閾値以上であるか判別する。端末装置20の認証部224は、例えばセンシング部21の運動計測部211(あるいは運動計測部221)で収集されたセンシング情報に基づき歩容認証等を行う。認証部224は、閾値以上である本人確率の判別において、例えば被保険者の動き情報から抽出した動き特徴量の学習結果であるテンプレートと、運動計測部211(あるいは運動計測部221)で収集されたセンシング情報に含まれている動き情報に基づき抽出した動き特徴量を照合する。認証部224は、動き特徴量の違いが所定量以下である場合は本人確率が閾値以上であると判別してステップST23に進む。また、認証部224は、特徴量の違いが所定量よりも大きい場合は本人確率が閾値よりも低いと判別してステップST30に進む。 In step ST22, the terminal device determines whether the probability of the person's behavioral characteristics being the person is equal to or greater than the threshold. The authentication unit 224 of the terminal device 20 performs gait authentication and the like based on sensing information collected by the motion measurement unit 211 (or the motion measurement unit 221) of the sensing unit 21, for example. The authenticating unit 224, in determining the personal probability of being equal to or greater than the threshold, uses a template, which is a learning result of the motion feature amount extracted from the motion information of the insured person, for example, and the motion measuring unit 211 (or the motion measuring unit 221). The extracted motion feature quantity is collated based on the motion information included in the sensing information. If the difference between the motion feature amounts is equal to or less than the predetermined amount, the authenticating section 224 determines that the authenticity probability is equal to or greater than the threshold, and proceeds to step ST23. If the difference in feature amount is larger than the predetermined amount, the authenticating section 224 determines that the probability of authenticity is lower than the threshold, and proceeds to step ST30.
 ステップST23で端末装置は近接無線通信が継続しているか判別する。端末装置20の認証部224は、センシング部21と情報処理部22との間で近距離無線通信が継続しているか判別して、継続している場合にステップST24に進み、近距離無線通信の切断を生じたことがあると判別された場合、例えばセンシング部21と情報処理部22が離れて近距離無線通信の切断を生じたことがある場合にステップST30に進む。 In step ST23, the terminal device determines whether close proximity wireless communication is continuing. The authentication unit 224 of the terminal device 20 determines whether the short-range wireless communication is continuing between the sensing unit 21 and the information processing unit 22, and if it is continued, proceeds to step ST24, and performs the short-range wireless communication. If it is determined that the disconnection has occurred, for example, if the sensing unit 21 and the information processing unit 22 are separated from each other and the short-range wireless communication has been disconnected, the process proceeds to step ST30.
 ステップST24で端末装置は位置変化があるか判別する。端末装置20の認証部224、例えばセンシング部21の測位部212あるいは情報処理部22の測位部222で収集されたセンシング情報が示す測位結果に基づき位置変化を生じているか判別して、位置変化を生じていると判別した場合にステップST25に進み、位置変化を生じていないと判別した場合にステップST26に進む。 At step ST24, the terminal device determines whether there is a position change. Based on the positioning result indicated by the sensing information collected by the authentication unit 224 of the terminal device 20, for example, the positioning unit 212 of the sensing unit 21 or the positioning unit 222 of the information processing unit 22, it is determined whether a position change has occurred, and the position change is detected. If it is determined that the position change has occurred, the process proceeds to step ST25, and if it is determined that the position change has not occurred, the process proceeds to step ST26.
 ステップST25で端末装置は位置変化速度が所定速度範囲内であるか判別する。端末装置20の認証部224は、測位結果と経過時間から移動速度を算出して、測位位置の移動速度が所定速度範囲内であるか判別する。所定速度範囲は、ユーザが不正な移動手段を利用しているか判別できるように予め設定する。例えばジョギング等の運動における最高速度までを所定速度範囲、サイクリング等の運動における最高速度までを所定速度範囲とする。認証部224は、算出された移動速度が所定速度範囲内である場合にステップST29に進み、所定速度範囲を超える場合にステップST30に進む。 At step ST25, the terminal device determines whether the position change speed is within a predetermined speed range. The authentication unit 224 of the terminal device 20 calculates the moving speed from the positioning result and the elapsed time, and determines whether the moving speed of the positioning position is within a predetermined speed range. The predetermined speed range is set in advance so that it can be determined whether the user is using an illegal means of transportation. For example, the predetermined speed range is up to the maximum speed in exercise such as jogging, and the predetermined speed range is up to the maximum speed in exercise such as cycling. The authentication unit 224 proceeds to step ST29 if the calculated moving speed is within the predetermined speed range, and proceeds to step ST30 if it exceeds the predetermined speed range.
 ステップST24からステップST26に進むと、端末装置は運動を検出しているか判別する。端末装置20の認証部224は、心拍数や動き情報に基づきユーザが運動していることを検出した場合にステップST27に進み、運動を検出していない場合にステップST30に進む。 When proceeding from step ST24 to step ST26, the terminal device determines whether motion is detected. The authentication unit 224 of the terminal device 20 proceeds to step ST27 when detecting that the user is exercising based on the heart rate and motion information, and proceeds to step ST30 when not detecting exercise.
 ステップST27で端末装置は運動が閾値よりも低下したか判別する。端末装置20の認証部224は、心拍数や動き情報に基づきユーザの運動が閾値よりも低下したと判別した場合、例えば運動状態と平常状態との境界を示す閾値を設定して、ユーザが休息をとり心拍数や動き情報が閾値よりも低下した場合にステップST28に進み、閾値よりも低下していない場合にステップST29に進む。 In step ST27, the terminal device determines whether the exercise has fallen below the threshold. If the authentication unit 224 of the terminal device 20 determines that the user's exercise is lower than the threshold value based on the heart rate and motion information, the authentication unit 224 sets a threshold value that indicates the boundary between the exercise state and the normal state, for example, and allows the user to rest. If the heart rate or the motion information falls below the threshold, the process proceeds to step ST28, and if it does not fall below the threshold, the process proceeds to step ST29.
 ステップST28で端末装置は休息期間を設定する。端末装置20の認証部224は、運動が閾値よりも低下している期間を休息期間に設定してステップST29に進む。 In step ST28, the terminal device sets the rest period. The authentication unit 224 of the terminal device 20 sets the period during which the exercise is lower than the threshold as the rest period, and proceeds to step ST29.
 ステップST29で端末装置は真正性が保証されていると判定する。端末装置20の認証部224は、収集されているセンシング情報が本人認証で真正性の保証されたユーザを対象として収集した情報であり、センシング情報の真正性が保証されていると判定する。 In step ST29, the terminal device determines that authenticity is guaranteed. The authentication unit 224 of the terminal device 20 determines that the collected sensing information is information collected from users whose authenticity is guaranteed by personal authentication, and that the authenticity of the sensing information is guaranteed.
 ステップST30で端末装置は真正性が保証されていないと判定する。収集されているセンシング情報が本人認証で真正性の保証されたユーザを対象として収集した情報ではなく、センシング情報の真正性が保証されていないと判定する。 In step ST30, the terminal device determines that authenticity is not guaranteed. It is determined that the collected sensing information is not information collected from users whose authenticity is guaranteed by personal authentication, and that the authenticity of the sensing information is not guaranteed.
 このような継続認証を行えば、端末装置20を保持しているユーザが自動車等で移動することにより運動量が増加させる不正や、センシング部21を取り外して運動量が増加するようにセンシング部21のみを操作する不正等が行われた場合、センシング情報は真正性が保証されていないと判定できる。また、ユーザが休息状態となった期間に収集されたセンシング情報は、保険リスクの評価に用いられないようにできる。 If such continuous authentication is performed, the user holding the terminal device 20 may use a car or the like to increase the amount of exercise, or remove the sensing unit 21 and remove only the sensing unit 21 to increase the amount of exercise. If an illegal operation or the like is performed, it can be determined that the authenticity of the sensing information is not guaranteed. Also, the sensing information collected while the user is resting can be prevented from being used for insurance risk evaluation.
 なお、本人認証は、ユーザの固有情報と被保険者の固有情報が一致することを判別しているが、継続認証は、本人確率が閾値以上であることを判別している。すなわち、本人認証は、継続認証に比べて認証精度が高い認証方法である。 It should be noted that the identity authentication determines that the user's unique information and the insured person's unique information match, but continuous authentication determines that the identity probability is equal to or greater than the threshold. In other words, personal authentication is an authentication method with higher authentication accuracy than continuous authentication.
 図4に戻り、ステップST7で端末装置は真正性が保証されたか判別する。情報処理部22は、ステップST6の継続認証において真正性が保証されていると判定されている場合にステップST8に進み、真正性が保証されないと判定されている場合にステップST9に進む。 Returning to FIG. 4, in step ST7, the terminal device determines whether the authenticity is guaranteed. The information processing section 22 proceeds to step ST8 when it is determined that the authenticity is guaranteed in the continuous authentication in step ST6, and proceeds to step ST9 when it is determined that the authenticity is not guaranteed.
 ステップST8で端末装置はセンシングの終了であるか判別する。情報処理部22は、例えばユーザインタフェース部で運動の終了を示すユーザ操作が行なわれた場合にセンシングの終了と判別してステップST10に進み、運動の終了を示すユーザ操作が行なわれていない場合にセンシングの終了でない判別してステップST4に戻る。 In step ST8, the terminal device determines whether sensing has ended. For example, when a user operation indicating the end of exercise is performed on the user interface unit, the information processing unit 22 determines that the sensing is finished, proceeds to step ST10, and proceeds to step ST10. It is determined that sensing has not ended, and the process returns to step ST4.
 ステップST9で端末装置は真正性が保証されていないことを通知する。情報処理部22は、本人認証や継続認証で真正性が保証されていないことを、ユーザインタフェース部228でユーザに通知してステップST2に戻る。 At step ST9, the terminal device notifies that the authenticity is not guaranteed. The information processing section 22 notifies the user through the user interface section 228 that the authenticity is not guaranteed by the personal authentication or continuous authentication, and returns to step ST2.
 ステップST10で端末装置は集計結果アップロード処理を行う。情報処理部22は、本人認証と継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を集計部225で集計して、得られた集計結果を保険業務サーバ30にアップロードしてステップST11に進む。 At step ST10, the terminal device performs the totalization result upload process. The information processing unit 22 aggregates the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed by the aggregation unit 225 based on the authentication results of the personal authentication and the continuous authentication. The tabulation result is uploaded to the insurance business server 30, and the process proceeds to step ST11.
 ステップST11で端末装置はアフターフォロー情報を提示する。情報処理部22はセンシング情報の集計結果を保険業務サーバ30にアップロードしたことに応じて、保険業務サーバ30から通知されたアフターフォロー情報をユーザに提示する。 In step ST11, the terminal device presents follow-up information. The information processing unit 22 presents the follow-up information notified from the insurance business server 30 to the user in response to uploading the aggregate result of the sensing information to the insurance business server 30 .
 なお、図4に示すフローチャートは、端末装置の保険関連動作の一例であって、図4に示されていない処理が含まれてもよい。また、図5に示すフローチャートは、図に示す順序で処理を行う場合に限られない。例えば、位置変化や位置変化速度の判定を行ってから心拍数の測定や行動的特徴の本人確率の算出等を行ってもよい。また、図5に示されていない処理を行って、センシング情報の真正性が保証されているか否かを判定してもよい。 Note that the flowchart shown in FIG. 4 is an example of the insurance-related operation of the terminal device, and may include processes not shown in FIG. Moreover, the flowchart shown in FIG. 5 is not limited to the case where the processing is performed in the order shown in the figure. For example, after determination of position change and position change speed, measurement of heart rate, calculation of probability of a person of a behavioral characteristic, and the like may be performed. Further, a process not shown in FIG. 5 may be performed to determine whether or not the authenticity of the sensing information is guaranteed.
 <2-2.保険業務サーバの動作>
 図6は、保険業務サーバの動作を例示したフローチャートである。ステップST41で保険業務サーバはセンシング情報を取得する。保険業務サーバ30の保険業務処理部31は、端末装置20からセンシング情報の集計結果を取得してステップST42に進む。
<2-2. Operation of insurance business server>
FIG. 6 is a flow chart illustrating the operation of the insurance business server. In step ST41, the insurance business server acquires sensing information. The insurance business processing unit 31 of the insurance business server 30 acquires the tally result of the sensing information from the terminal device 20, and proceeds to step ST42.
 ステップST42で保険業務サーバは保険リスクを評価する。保険業務サーバ30の保険業務処理部31は、被保険者である真正性が保証されている期間に端末装置20でユーザ(被保険者)を対象として収集されたセンシング情報に基づき被保険者の保険リスクを評価してステップST43に進む。 In step ST42, the insurance business server evaluates the insurance risk. The insurance business processing unit 31 of the insurance business server 30 identifies the insured person based on the sensing information collected from the user (insured person) by the terminal device 20 during the period in which the authenticity of the insured person is guaranteed. Evaluate the insurance risk and proceed to step ST43.
 ステップST43で保険業務サーバは評価結果を保存する。保険業務サーバ30の保険業務処理部31はステップST42で得られた評価結果を保険業務データベース部32に保存してステップST44に進む。 In step ST43, the insurance business server saves the evaluation results. The insurance business processing unit 31 of the insurance business server 30 saves the evaluation result obtained in step ST42 in the insurance business database unit 32, and proceeds to step ST44.
 ステップST44で保険業務サーバはアフターフォロー処理を行う。保険業務サーバ30の保険業務処理部31は、ステップST42で得られた評価結果や保険業務データベース部32に保存されている被保険者の評価結果等に基づき、インセンティブの付与やユーザの不利益を招く処理等を行ってステップST45に進む。 In step ST44, the insurance business server performs follow-up processing. The insurance business processing unit 31 of the insurance business server 30 provides incentives and/or disadvantage to the user based on the evaluation result obtained in step ST42 and the evaluation result of the insured person stored in the insurance business database unit 32. Inviting processing, etc. are performed, and the process proceeds to step ST45.
 ステップST45で保険業務サーバはアフターフォロー情報の通知処理を行う。保険業務サーバ30の保険業務処理部31は、ステップST44で行われたアフターフォロー処理の処理結果を示すアフターフォロー情報を生成する。さらに、保険業務処理部31は、アフターフォロー情報を端末装置20へ通知する。また、保険業務処理部31は、アフターフォロー情報の通知に、保険リスクの評価結果やセンシング情報の集計結果、インセンティブの付与を受けるためのアドバイス等を含めてもよい。 In step ST45, the insurance business server performs notification processing of follow-up information. The insurance business processing unit 31 of the insurance business server 30 generates follow-up information indicating the processing result of the follow-up processing performed in step ST44. Furthermore, the insurance business processing unit 31 notifies the terminal device 20 of follow-up information. In addition, the insurance business processing unit 31 may include, in the notification of follow-up information, the insurance risk evaluation result, the aggregate result of sensing information, advice for receiving incentives, and the like.
 なお、図6に示すフローチャートは、保険業務サーバの動作の一部を示しており、図6に示されていない処理が含まれてもよい。 It should be noted that the flowchart shown in FIG. 6 shows part of the operation of the insurance business server, and may include processes not shown in FIG.
 <2-3.保険システムの動作例>
 次に、保険システムの動作例として、被保険者の運動状況に応じて保険料等が変化する健康増進保険が契約されている場合を例示する。
<2-3. Operation example of the insurance system>
Next, as an example of the operation of the insurance system, a case will be described in which health promotion insurance is contracted in which premiums and the like change according to the exercise status of the insured person.
 図7は、端末装置で健康増進保険を申し込む場合の画面を例示している。なお、図7や後述する図8、図10、図12に示す画面は、例えばユーザインタフェース部228を利用して表示される。 FIG. 7 illustrates a screen when applying for health promotion insurance on a terminal device. The screens shown in FIG. 7 and FIGS. 8, 10, and 12, which will be described later, are displayed using the user interface unit 228, for example.
 図7の(a)は保険を申し込む際の情報入力画面U1を例示している。情報入力画面U1ではユーザの選択が可能なメニュー項目U1aと、選択された項目を実行するためのコマンドボタンU1cが設けられている。メニュー項目U1aでは、例えばユーザ登録を行うための項目、契約する保険に関する保険申請情報を登録するための項目、住所等を登録するための項目等が設けられており、いずれかの項目が選択されてコマンドボタンU1cが操作されたときには、選択された項目の情報の入力を可能とする。また、端末装置20は、保険契約に必要な情報の入力が完了した場合、図7の(b)に示す契約承諾操作画面U2を表示する。 (a) of FIG. 7 illustrates an information input screen U1 when applying for insurance. The information input screen U1 is provided with menu items U1a that can be selected by the user and command buttons U1c for executing the selected items. The menu item U1a includes, for example, an item for user registration, an item for registering insurance application information related to contracted insurance, an item for registering an address, etc., and any of the items is selected. When the command button U1c is operated, the information of the selected item can be input. Further, when the input of the information necessary for the insurance contract is completed, the terminal device 20 displays the contract acceptance operation screen U2 shown in FIG. 7(b).
 契約承諾操作画面U2ではユーザの選択が可能なメニュー項目U2aと、選択された項目を実行するためのコマンドボタンU2ca,U2cbが設けられている。メニュー項目U2aでは、例えば契約書を確認ための項目、利用規約を確認するための項目等が設けられており、いずれかの項目が選択されて例えばコマンドボタンU2caが操作されたとき、選択項目の情報を表示する。さらに、各選択項目の情報の表示後にコマンドボタンU2caが操作された場合、保険契約をユーザが同意したと判別して、保険契約が同意されたことを保険業務サーバ30へ通知する。なお、コマンドボタンU2cbが操作された場合、保険契約をユーザが同意していないと判別して、保険契約の非同意を保険業務サーバ30へ通知する。保険業務サーバ30は、ユーザとの保険契約が完了した場合、契約完了を端末装置20に通知して、端末装置20は、図7の(c)に示すように契約完了画面U3を表示する。 The contract acceptance operation screen U2 is provided with menu items U2a that can be selected by the user, and command buttons U2ca and U2cb for executing the selected items. The menu item U2a includes, for example, an item for confirming the contract and an item for confirming the terms of use. When one of the items is selected and the command button U2ca is operated, for example, Display information. Furthermore, when the command button U2ca is operated after the information of each selection item is displayed, it is determined that the user has agreed to the insurance contract, and the insurance business server 30 is notified that the insurance contract has been agreed. When the command button U2cb is operated, it is determined that the user has not agreed to the insurance contract, and the insurance business server 30 is notified of the non-agreement of the insurance contract. When the insurance contract with the user is completed, the insurance business server 30 notifies the terminal device 20 of the completion of the contract, and the terminal device 20 displays the contract completion screen U3 as shown in FIG. 7(c).
 図8は、保険契約が締結された健康増進保険に関する画面を例示している。図8の(a)では、起動時の操作画面U4を例示している。操作画面U4では、ユーザの選択が可能なメニューボタンU4a,U4b,U4cが設けられている。メニューボタンU4aは、保険料を閲覧する場合に操作されるメニューボタンであり、メニューボタンU4bは、運動の履歴を閲覧する場合に操作されるメニューボタンである。メニューボタンU4cは、ユーザの運動状態を保険会社に通知する場合に操作されるメニューボタンである。 Fig. 8 exemplifies a screen related to health promotion insurance for which an insurance contract has been concluded. FIG. 8(a) illustrates an operation screen U4 at startup. The operation screen U4 is provided with menu buttons U4a, U4b, and U4c that can be selected by the user. The menu button U4a is a menu button operated when browsing insurance premiums, and the menu button U4b is a menu button operated when browsing exercise history. The menu button U4c is a menu button operated when notifying the insurance company of the user's exercise state.
 図8の(b)は、メニューボタンU4cが操作された場合のユーザ操作指示画面U5を例示している。ユーザ操作指示画面U5では、例えばセンシング部21と情報処理部22をペアリングさせる旨の表示U5aを行う。 (b) of FIG. 8 illustrates a user operation instruction screen U5 when the menu button U4c is operated. On the user operation instruction screen U5, for example, a display U5a to the effect that the sensing unit 21 and the information processing unit 22 are to be paired is displayed.
 端末装置20は、センシング部21と情報処理部22のペアリングが完了すると、図8の(c)に示す本人認証画面U6を表示する。本人認証画面U6は、本人認証の認証方法を通知する通知画面U6aと、本人認証の認証方法を切り替えるためのメニューボタンU6bが設けられている。情報処理部22は、メニューボタンU6bが操作されたことに応じて、本人認証で用いる固有情報の切り替えを可能とする。例えば、図8の(c)では、指紋を用いて本人認証を行うことが示されているが、他の生態情報あるいはユーザの知識情報等を固有情報として用いて本人認証を行う場合、ユーザはメニューボタンU6bを操作して、固有情報として用いる情報の切り替えを行う。 When the pairing of the sensing unit 21 and the information processing unit 22 is completed, the terminal device 20 displays the personal authentication screen U6 shown in FIG. 8(c). The personal authentication screen U6 includes a notification screen U6a for notifying the authentication method for personal authentication, and a menu button U6b for switching the authentication method for personal authentication. The information processing section 22 enables switching of the unique information used for personal authentication in response to the operation of the menu button U6b. For example, FIG. 8(c) shows that the user is authenticated using a fingerprint. By operating the menu button U6b, information to be used as unique information is switched.
 図9は、保険契約締結後の保険システムの動作例を示すシーケンス図である。なお、図9のシーケンス図では、端末装置20のセンシング部21と情報処理部22および保険業務サーバ30の保険業務処理部31を示しており、保険システムでは、センシング部21で収集されたセンシング情報を用いて本人認証を行う場合を例示している。 FIG. 9 is a sequence diagram showing an operation example of the insurance system after the conclusion of the insurance contract. The sequence diagram of FIG. 9 shows the sensing unit 21 and the information processing unit 22 of the terminal device 20 and the insurance business processing unit 31 of the insurance business server 30. In the insurance system, the sensing information collected by the sensing unit 21 is used to perform personal authentication.
 ステップST51で情報処理部22は、固有情報の要求をセンシング部21に対して行う。 In step ST51, the information processing section 22 requests the sensing section 21 for unique information.
 ステップST52でセンシング部21は固有情報を生成する。センシング部21の認証センサ部213は、例えば指紋を示す画像を固有情報として生成して情報処理部22へ出力する。 At step ST52, the sensing unit 21 generates unique information. The authentication sensor unit 213 of the sensing unit 21 generates, for example, an image representing a fingerprint as unique information and outputs the unique information to the information processing unit 22 .
 ステップST53で情報処理部22は固有情報に基づき真正性を判定する。情報処理部22の認証部224は、例えばステップST52で生成された固有情報で示された指紋と予め登録されている指紋を照合して、指紋が一致する場合は真正性が保証されており、一致しない場合は真正性が保証されていないと判定する。情報処理部22は、認証部224で真正性が保証されていると判定した場合、真正性の判定結果について電子署名を行い保険業務サーバ30へ出力する。また、情報処理部22は、真正性が保証されていないと判定した場合、ステップST51に戻り固有情報の要求を行う。 In step ST53, the information processing section 22 determines authenticity based on the unique information. The authentication unit 224 of the information processing unit 22, for example, compares the fingerprint indicated by the unique information generated in step ST52 with a pre-registered fingerprint, and if the fingerprints match, the authenticity is guaranteed. If they do not match, it is determined that the authenticity is not guaranteed. When the authentication unit 224 determines that the authenticity is guaranteed, the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
 ステップST54で保険業務処理部31は署名検証を行う。保険業務処理部31は、ステップST53で情報処理部22から供給された情報の署名検証を行い、端末装置20のユーザが被保険者であるか確認して、確認結果を情報処理部22へ出力する。情報処理部22は、保険業務処理部31で被保険者であることが確認されたことに応じて、センシング情報の収集を開始して、収集開始通知画面を表示する。図8の(d)は収集開始通知画面U7を例示しており、収集開始通知画面U7ではセンシング情報の収集が開始されたことを示す表示U7aが設けられている。 At step ST54, the insurance business processing unit 31 verifies the signature. The insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST53, confirms whether the user of the terminal device 20 is the insured person, and outputs the confirmation result to the information processing unit 22. do. When the insurance business processing unit 31 confirms that the person is an insured person, the information processing unit 22 starts collecting sensing information and displays a collection start notification screen. FIG. 8(d) exemplifies a collection start notification screen U7, and the collection start notification screen U7 is provided with a display U7a indicating that collection of sensing information has started.
 ステップST55で情報処理部22はセンシング情報の要求をセンシング部21に対して行う。なお、センシング情報の要求は、保険業務処理部31で被保険者であることが確認された場合に自動的に行う場合に限らず、センシング情報の収集が開始されたことを示す表示U7aに替えて収集開始メニューボタンを設けて、収集開始メニューボタンが操作された場合にセンシング情報の要求を行ってもよい。 At step ST55, the information processing section 22 requests the sensing section 21 for sensing information. The request for sensing information is not limited to the case where it is automatically made when the insurance business processing unit 31 confirms that the person is insured. A collection start menu button may be provided on the screen, and sensing information may be requested when the collection start menu button is operated.
 ステップST56でセンシング部21はセンシング情報の収集を開始する。センシング部21は、センシング情報の要求に応じてセンシング情報の収集を運動計測部211や測位部212で開始して、収集したセンシング情報を情報処理部22へ出力する。 At step ST56, the sensing unit 21 starts collecting sensing information. The sensing unit 21 starts collecting sensing information in the movement measuring unit 211 and the positioning unit 212 in response to a request for sensing information, and outputs the collected sensing information to the information processing unit 22 .
 ステップST57で情報処理部22は、センシング情報に基づき真正性を判定する。情報処理部22の認証部224は、センシング部21で収集されたセンシング情報によって、本人認証で真正性の保証されたユーザを対象として収集した情報である真正性の判定を行い、ユーザの変更等が行われていないか判別する。認証部224は、例えばユーザの動き情報に基づいて算出した特徴量の変化が予め設定された閾値よりも少ない場合は真正性が保証されており、変化が閾値以上である場合は真正性が保証されていないと判定する。情報処理部22は、認証部224で真正性が保証されていると判定した場合、真正性の判定結果について電子署名を行い保険業務サーバ30へ出力する。また、情報処理部22は、真正性が保証されていないと判定した場合、ステップST51に戻り固有情報の要求を行う。 In step ST57, the information processing section 22 determines authenticity based on the sensing information. The authentication unit 224 of the information processing unit 22 uses the sensing information collected by the sensing unit 21 to determine the authenticity of information collected from users whose authenticity is guaranteed by personal authentication, and to perform user change, etc. is not performed. For example, the authentication unit 224 guarantees authenticity when the change in the feature amount calculated based on the motion information of the user is less than a preset threshold value, and guarantees authenticity when the change is equal to or greater than the threshold value. It is determined that it is not. When the authentication unit 224 determines that the authenticity is guaranteed, the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
 ステップST58で保険業務処理部31は署名検証を行う。保険業務処理部31は、ステップST57で情報処理部22から供給された情報の署名検証を行い、被保険者からの情報であるか確認する。また、保険業務処理部31は、真正性の判定結果が正しく通知されていることを情報処理部22で判別できるように、署名検証の検証結果を情報処理部22へ出力する。 In step ST58, the insurance business processing unit 31 verifies the signature. The insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST57 to confirm whether the information is from the insured person. Further, the insurance business processing unit 31 outputs the verification result of the signature verification to the information processing unit 22 so that the information processing unit 22 can determine that the authenticity determination result has been correctly notified.
 ステップST57から所定期間trが経過したのち、ステップST59で情報処理部22は、ステップST」57と同様にセンシング情報に基づき真正性を判定する。認証部224は、例えばユーザの動き情報に基づいて算出した特徴量の変化が予め設定された閾値よりも少ない場合は真正性が保証されており、変化が閾値以上である場合は真正性が保証されていないと判定する。情報処理部22は、認証部224で真正性が保証されていると判定した場合、真正性の判定結果について電子署名を行い保険業務サーバ30へ出力する。また、情報処理部22は、真正性が保証されていないと判定した場合、ステップST51に戻り固有情報の要求を行う。 After a predetermined period of time tr has passed from step ST57, in step ST59 the information processing section 22 determines authenticity based on the sensing information in the same manner as in step ST57. For example, the authentication unit 224 guarantees authenticity when the change in the feature amount calculated based on the motion information of the user is less than a preset threshold value, and guarantees authenticity when the change is equal to or greater than the threshold value. It is determined that it is not. When the authentication unit 224 determines that the authenticity is guaranteed, the information processing unit 22 applies an electronic signature to the authenticity determination result and outputs the result to the insurance business server 30 . If the information processing section 22 determines that the authenticity is not guaranteed, the information processing section 22 returns to step ST51 and requests unique information.
 ステップST60で保険業務処理部31は署名検証を行う。保険業務処理部31は、ステップST59で情報処理部22から供給された情報の署名検証を行い、被保険者からの情報であるか確認する。また、保険業務処理部31は、真正性の判定結果が正しく通知されていることを情報処理部22で判別できるように、署名検証の検証結果を情報処理部22へ出力する。 In step ST60, the insurance business processing unit 31 verifies the signature. The insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST59 to confirm whether the information is from the insured person. Further, the insurance business processing unit 31 outputs the verification result of the signature verification to the information processing unit 22 so that the information processing unit 22 can determine that the authenticity determination result has been correctly notified.
 以下、所定期間が経過する毎に継続認証を行い、センシング情報が不正な情報であるか否かを判別して、センシング情報の真正性が保証されない場合は、本人認証から認証処理をやり直すことで、ユーザが被保険者である真正性が保証されたセンシング情報のみを用いるようにする。 Thereafter, continuous authentication is performed every time a predetermined period elapses to determine whether or not the sensing information is fraudulent. If the authenticity of the sensing information cannot be guaranteed, the authentication process can be redone from the personal authentication. , to use only sensing information whose authenticity is guaranteed that the user is an insured person.
 図10は、センシング情報の収集動作時の表示画面を例示している。図10の(a)は、センシング情報が収集されているときの表示画面U8を例示している。表示画面U8では、例えばセンシング情報の途中集計結果である現在時までの移動距離を示す距離表示U8aが設けられている。また、継続認証が行われている場合、直前の継続認証において算出された特徴量の変化に基づく認証精度を示す認証精度表示U8bが設けられている。さらに、表示画面U8には、運動の終了を示すコマンドボタンU8cが設けられており、コマンドボタンU8cが操作された場合、運動終了と判別する。 FIG. 10 exemplifies the display screen during the operation of collecting sensing information. (a) of FIG. 10 illustrates the display screen U8 when sensing information is being collected. On the display screen U8, for example, a distance display U8a is provided to indicate the distance traveled up to the present time, which is the result of interim tallying of the sensing information. Further, when continuous authentication is performed, an authentication accuracy display U8b is provided to indicate the authentication accuracy based on the change in the feature amount calculated in the last continuous authentication. Further, the display screen U8 is provided with a command button U8c indicating the end of exercise, and when the command button U8c is operated, it is determined that the exercise is finished.
 図10の(b)は、継続認証でセンシング情報の真正性が保証されないと判別された場合の表示画面U9を例示している。表示画面U9では、本人認証を再度行うためのコマンドボタンU9aと、運動の終了を示すコマンドボタンU9bが設けられており、コマンドボタンU9aが操作された場合に本人認証を再度行うと判別して、コマンドボタンU9bが操作された場合に運動終了と判別する。 (b) of FIG. 10 exemplifies the display screen U9 when it is determined that the authenticity of the sensing information is not guaranteed by continuous authentication. The display screen U9 is provided with a command button U9a for re-authentication and a command button U9b for indicating the end of exercise. When the command button U9b is operated, it is determined that the exercise is finished.
 次に、運動終了後の動作について説明する。図11は、運動終了後の動作を例示したシーケンス図である。なお、図11のシーケンス図では、端末装置20のセンシング部21と情報処理部22および保険業務サーバ30の保険業務処理部31と保険業務データベース部32を示している。 Next, I will explain the actions after the end of the exercise. FIG. 11 is a sequence diagram illustrating an operation after exercise. Note that the sequence diagram of FIG. 11 shows the sensing unit 21 and the information processing unit 22 of the terminal device 20 and the insurance business processing unit 31 and the insurance business database unit 32 of the insurance business server 30 .
 ステップST71で情報処理部22は、運動終了となったとき終了通知をセンシング部21へ出力する。例えば、情報処理部22は運動の終了を示すユーザ操作が行われたとき、センシング情報の収集を終了させるための終了通知をセンシング部21へ出力する。 In step ST71, the information processing section 22 outputs an end notification to the sensing section 21 when the exercise ends. For example, the information processing unit 22 outputs an end notification for ending collection of sensing information to the sensing unit 21 when a user operation indicating the end of exercise is performed.
 ステップST72でセンシング部21はセンシング情報の収集終了処理を行う。センシング部21は、運動計測部211や測位部212で行われているセンシング情報の収集を終了して、収集済みのセンシング情報を情報処理部22へ送信する。 At step ST72, the sensing unit 21 performs sensing information collection end processing. The sensing unit 21 terminates the collection of sensing information performed by the motion measurement unit 211 and the positioning unit 212 and transmits the collected sensing information to the information processing unit 22 .
 ステップST73で情報処理部22は真正性が保証されたセンシング情報の集計を行う。情報処理部22の集計部225は、本人認証と継続認証の認証結果に基づき、ユーザが被保険者である真正性が保証されている期間に収集されたセンシング情報を集計する。例えば集計部225は、運動量や移動量の合計値を算出してもよく、積算を行うや収集されたセンシング情報に基づき真正性が保証されている期間の消費カロリー等を算出してもよい。また、集計部225は、センシング情報の集計において、ユーザの運動休止期間を除外する。情報処理部22は集計部225の集計結果について電子署名を行い保険業務サーバ30へ出力する。 In step ST73, the information processing section 22 aggregates sensing information whose authenticity is guaranteed. The tallying unit 225 of the information processing unit 22 tallies the sensing information collected during the period in which the authenticity of the user as an insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication. For example, the tallying unit 225 may calculate the total value of the amount of exercise and the amount of movement, and may calculate the consumed calories during the period in which the authenticity is guaranteed based on the accumulated sensing information. In addition, the tallying unit 225 excludes the exercise rest period of the user when tallying the sensing information. The information processing unit 22 applies an electronic signature to the tally result of the tally unit 225 and outputs it to the insurance business server 30 .
 ステップST74で保険業務処理部31は署名検証を行う。保険業務処理部31は、ステップST73で情報処理部22から供給された情報の署名検証を行い、被保険者の端末装置20から提供された情報であるか確認して、確認結果を情報処理部22へ出力する。 In step ST74, the insurance business processing unit 31 verifies the signature. The insurance business processing unit 31 verifies the signature of the information supplied from the information processing unit 22 in step ST73, confirms whether the information is provided from the terminal device 20 of the insured person, and sends the confirmation result to the information processing unit. 22.
 ステップST75で保険業務処理部31は集計結果に基づいた評価を行う。保険業務処理部31は、集計結果に基づき被保険者の運動状況を判別する。また、保険業務処理部31は、運動状況の判別結果に基づき、保険リスクの評価を行い、評価結果を保険業務データベース部32へ出力する。 At step ST75, the insurance business processing unit 31 performs an evaluation based on the aggregated results. The insurance business processing unit 31 determines the exercise status of the insured person based on the aggregated result. In addition, the insurance business processing unit 31 evaluates the insurance risk based on the exercise status determination result, and outputs the evaluation result to the insurance business database unit 32 .
 ステップST76で保険業務データベース部32は評価結果を保存する。保険業務データベース部32は、保険業務処理部31で得られた評価結果を被保険者毎に保存する。 In step ST76, the insurance business database section 32 saves the evaluation results. The insurance business database unit 32 stores the evaluation results obtained by the insurance business processing unit 31 for each insured person.
 ステップST77で保険業務データベース部32は評価結果を出力する。保険業務データベース部32は、保険業務処理部31からの要求に基づき、被保険者の既に得られて保存されている評価結果を保険業務処理部31へ出力する。 At step ST77, the insurance business database unit 32 outputs the evaluation result. Based on a request from the insurance business processing unit 31 , the insurance business database unit 32 outputs the already obtained and stored evaluation result of the insured person to the insurance business processing unit 31 .
 ステップST78で保険業務処理部31はアフターフォロー処理を行う。保険業務処理部31は、端末装置20から取得したセンシング情報の集計結果に基づく被保険者の運動状況の判別結果や既に得られている保険リスクの評価結果等に基づき被保険者の保険リスクを評価する。さらに、保険業務処理部31は、保険リスクの評価結果に基づきアフターフォロー情報を生成して端末装置20へ通知する。例えば、保険業務処理部31は、被保険者の保険リスクが想定したリスク範囲よりも低い場合にはインセンティブの付与等が行われること等を被保険者に事前に通知するためのアフターフォロー情報を生成して、被保険者の保険リスクが想定したリスク範囲よりも高い場合にはユーザの不利益を招く処理が行われること等を被保険者に事前に通知するためのアフターフォロー情報を生成する。また、ステップST74で行われる署名検証で、確認結果を情報処理部22へ出力しなくとも、アフターフォロー情報に、端末装置20から取得したセンシング情報の集計結果や被保険者の運動の評価結果を含めれば、ユーザはどのような集計結果が保険業務サーバ30に提供されて、どのような運動の評価結果に基づきアフターフォロー情報が生成されたか判別できる。 In step ST78, the insurance business processing unit 31 performs follow-up processing. The insurance business processing unit 31 calculates the insurance risk of the insured person based on the result of determining the exercise status of the insured person based on the aggregated result of the sensing information acquired from the terminal device 20 and the already obtained evaluation result of the insurance risk. evaluate. Furthermore, the insurance business processing unit 31 generates follow-up information based on the insurance risk evaluation result and notifies the terminal device 20 of the follow-up information. For example, the insurance business processing unit 31 provides follow-up information for notifying the insured person in advance that an incentive will be provided if the insurance risk of the insured person is lower than the assumed risk range. Generate follow-up information for notifying the insured person in advance that if the insurance risk of the insured person is higher than the assumed risk range, a process that causes the user's disadvantage will be performed. . Further, in the signature verification performed in step ST74, even if the confirmation result is not output to the information processing unit 22, the after-follow information includes the aggregate result of the sensing information acquired from the terminal device 20 and the evaluation result of the insured's exercise. If this information is included, the user can determine what kind of aggregated result was provided to the insurance business server 30 and what kind of exercise evaluation result was used to generate the follow-up information.
 ステップST79で保険業務データベース部32はアフターフォロー情報を保存する。保険業務データベース部32は、保険業務処理部31で生成されたアフターフォロー情報を被保険者毎に保存する。このように、保険業務データベース部32は、アフターフォロー情報を保存することで、契約した保険商品に関する被保険者への通知経過を把握できるようになる。 In step ST79, the insurance business database section 32 saves the follow-up information. The insurance business database unit 32 stores the follow-up information generated by the insurance business processing unit 31 for each insured person. By storing the follow-up information in this way, the insurance business database unit 32 can grasp the progress of notifications to the insured regarding contracted insurance products.
 ステップST80で情報処理部22はアフターフォロー情報を提示する。情報処理部22は、保険業務処理部31から通知されたアフターフォロー情報をユーザに提示する。 In step ST80, the information processing section 22 presents follow-up information. The information processing section 22 presents the follow-up information notified from the insurance business processing section 31 to the user.
 図12は、アフターフォロー情報の提示画面を例示している。アフターフォロー情報の提示画面U10では、保険業務処理部31から通知されたアフターフォロー情報を示す表示U10aが設けられており、アフターフォロー情報として、例えば保険業務処理部31で判別した被保険者の移動距離、保険料の減額が行われるまでの残り移動距離等が示される。なお、アフターフォロー情報の提示は、ユーザインタフェース部228を利用して表示する場合に限らず音声等を利用してもよい。 FIG. 12 exemplifies a presentation screen for follow-up information. In the after-follow information presentation screen U10, a display U10a showing the after-follow information notified from the insurance business processing unit 31 is provided. The distance, the remaining travel distance until the insurance premium is reduced, and the like are shown. The presentation of the follow-up information is not limited to the display using the user interface unit 228, and voice or the like may be used.
 このように、本技術によれば、端末装置20は、本人認証でユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、センシング情報の真正性が保証されていない場合に本人認証を繰り返す。したがって、端末装置20は、煩雑な操作をユーザが行わなくとも、センシング情報によって本人認証で真正性の保証されたユーザを対象として収集した情報であるか判別できるので、センシング情報の不正を容易に防止できる。 In this way, according to the present technology, the terminal device 20 performs continuous authentication using sensing information for insurance risk evaluation that is collected after authenticity that the user is an insured person is guaranteed by personal authentication. , the identity authentication is repeated when the authenticity of the sensing information is not guaranteed. Therefore, even if the user does not perform complicated operations, the terminal device 20 can determine whether the information is collected from a user whose authenticity is guaranteed by personal authentication based on the sensing information. can be prevented.
 また、継続認証を端末装置20で行えば、被保険者から取得したセンシング情報を端末装置20から外部機器である保険業務サーバ30へ送信する必要がないので、センシング情報の秘匿性を高めることができる。さらに、継続認証は、保険業務サーバ30で行うようにしてもよい。この場合、端末装置20は、センシング情報に含まれている動き情報に基づき特徴量の抽出等を行う必要がないので、負荷や電力消費を軽減することが可能となる。また、保険業務サーバ30は、被保険者毎の継続認証を最適化して行うことが可能となる。 Further, if continuous authentication is performed by the terminal device 20, there is no need to transmit the sensing information acquired from the insured person from the terminal device 20 to the insurance business server 30, which is an external device, so the confidentiality of the sensing information can be enhanced. can. Furthermore, continuous authentication may be performed by the insurance business server 30 . In this case, the terminal device 20 does not need to perform feature amount extraction or the like based on the motion information included in the sensing information, so it is possible to reduce load and power consumption. In addition, the insurance business server 30 can optimize and perform continuous authentication for each insured person.
 また、本技術では、本人認証と継続認証の認証結果が保険業務サーバ30に提供されるので、保険業務サーバ30は、端末装置20のユーザが被保険者である真正性が保証されている期間を算出できるようになる。したがって、保険業務サーバ30は、認証結果に基づいて算出した期間と端末装置20から通知された集計結果で示された期間が一致することで集計結果の真正性を確認することも可能となる。 In addition, in the present technology, the authentication results of the personal authentication and the continuous authentication are provided to the insurance business server 30. Therefore, the insurance business server 30 receives the information during the period in which the authenticity of the user of the terminal device 20 as the insured person is guaranteed. can be calculated. Therefore, the insurance business server 30 can confirm the authenticity of the tally result by matching the period calculated based on the authentication result with the period indicated by the tally result notified from the terminal device 20 .
 <3.変形例>
 ところで、上述の実施の形態では保険システムの動作例として、被保険者の運動状況に応じて保険料等が変化する健康増進保険が契約されている場合を例示したが、保険商品は被保険者を対象としたセンシング情報に基づいて保険リスクの評価を行う。
被保険者を対象として収集したセンシング情報に基づいて保険リスクの評価を行う保険商品であればよく、健康増進保険に限られない。
<3. Variation>
By the way, in the above-described embodiment, as an example of the operation of the insurance system, a case was exemplified in which health promotion insurance in which the insurance premium changes according to the exercise status of the insured person is contracted. Assess insurance risk based on sensing information for
Any insurance product that evaluates the insurance risk based on the sensing information collected for the insured person is acceptable, and is not limited to health promotion insurance.
 また、本技術の認証方法は他のシステムにも適用できる。例えば、システムは、固有情報を用いた認証と、不正検知対象から収集したセンシング情報を用いた継続認証を行い、固有情報を用いた認証で真正性が保証された後に収集されたセンシング情報を用いて継続認証を繰り返す。また、システムは、継続認証でセンシング情報の真正性が保証されていない場合、固有情報を用いた認証を行うようにする。このような認証方法を用いることで、種々のシステムは、煩雑な操作をユーザが行わなくとも不正を容易に防止できるようになる。 In addition, the authentication method of this technology can also be applied to other systems. For example, the system performs authentication using unique information and continuous authentication using sensing information collected from fraud detection targets, and uses sensing information collected after authenticity is guaranteed by authentication using unique information. to repeat continuous authentication. Also, if the authenticity of the sensing information is not guaranteed by continuous authentication, the system performs authentication using unique information. By using such an authentication method, various systems can easily prevent fraud without requiring the user to perform complicated operations.
 明細書中において説明した一連の処理はハードウェア、またはソフトウェア、あるいは両者の複合構成によって実行することが可能である。ソフトウェアによる処理を実行する場合は、処理シーケンスを記録したプログラムを、専用のハードウェアに組み込まれたコンピュータ内のメモリにインストールして実行させる。または、各種処理が実行可能な汎用コンピュータにプログラムをインストールして実行させることが可能である。 A series of processes described in the specification can be executed by hardware, software, or a composite configuration of both. When executing processing by software, a program recording a processing sequence is installed in a memory within a computer incorporated in dedicated hardware and executed. Alternatively, the program can be installed and executed in a general-purpose computer capable of executing various processes.
 例えば、プログラムは記録媒体としてのハードディスクやSSD(Solid State Drive)、ROM(Read Only Memory)に予め記録しておくことができる。あるいは、プログラムはフレキシブルディスク、CD-ROM(Compact Disc Read Only Memory),MO(Magneto optical)ディスク,DVD(Digital Versatile Disc)、BD(Blu-Ray Disc(登録商標))、磁気ディスク、半導体メモリカード等のリムーバブル記録媒体に、一時的または永続的に格納(記録)しておくことができる。このようなリムーバブル記録媒体は、いわゆるパッケージソフトウェアとして提供することができる。 For example, the program can be recorded in advance on a hard disk, SSD (Solid State Drive), or ROM (Read Only Memory) as a recording medium. Alternatively, the program can be stored on flexible discs, CD-ROMs (Compact Disc Read Only Memory), MO (Magneto optical) discs, DVDs (Digital Versatile Discs), BDs (Blu-Ray Discs (registered trademark)), magnetic discs, and semiconductor memory cards. It can be temporarily or permanently stored (recorded) in a removable recording medium such as. Such removable recording media can be provided as so-called package software.
 また、プログラムは、リムーバブル記録媒体からコンピュータにインストールする他、ダウンロードサイトからセルラーに代表されるWAN(Wide Area Network)、LAN(Local Area Network)やインターネット等のネットワークを介して、コンピュータに無線または有線で転送してもよい。コンピュータでは、そのようにして転送されてくるプログラムを受信し、内蔵するハードディスク等の記録媒体にインストールすることができる。 In addition to installing the program on the computer from a removable recording medium, the program can also be downloaded from the download site via a network such as WAN (Wide Area Network), LAN (Local Area Network) such as cellular, or the Internet to the computer wirelessly or by wire. You can transfer with The computer can receive the program transferred in this way and install it in a built-in recording medium such as a hard disk.
 なお、本明細書に記載した効果はあくまで例示であって限定されるものではなく、記載されていない付加的な効果があってもよい。また、本技術は、上述した実施の形態に限定して解釈されるべきではない。本技術の実施の形態は、例示という形態で本技術を開示しており、本技術の要旨を逸脱しない範囲で当業者が実施の形態の修正や代用をなし得ることは自明である。すなわち、本技術の要旨を判断するためには、特許請求の範囲を参酌すべきである。 It should be noted that the effects described in this specification are merely examples and are not limited, and there may be additional effects that are not described. Moreover, the present technology should not be construed as being limited to the above-described embodiments. The embodiments of the present technology disclose the present technology in the form of examples, and it is obvious that those skilled in the art can modify or substitute the embodiments without departing from the gist of the present technology. That is, in order to determine the gist of the present technology, the scope of claims should be taken into consideration.
 また、本技術の端末装置は以下のような構成も取ることができる。
 (1)ユーザの固有情報を用いて本人認証を行い、前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す認証部
を備える端末装置。
 (2) 前記本人認証は、前記継続認証に比べて認証精度が高い認証方法である(1)に記載の端末装置。
 (3) 前記継続認証は、所定期間が経過する毎に行われる(1)または(2)に記載の端末装置。
 (4) 前記継続認証では、前記センシング情報に基づいて算出された特徴量の変化が予め設定された閾値よりも少ない場合に真正性が保証されているとする(1)乃至(3)のいずれかに記載の端末装置。
 (5) 前記継続認証は、前記認証部で行う(1)乃至(4)のいずれかに記載の端末装置。
 (6) 前記センシング情報を収集するセンシング部を備える(1)乃至(5)のいずれかに記載の端末装置。
 (7) 前記センシング情報は前記ユーザの運動によって変化する運動関連情報を含む(1)乃至(6)のいずれかに記載の端末装置。
 (8) 前記本人認証と前記継続認証の認証結果に基づき、前記被保険者である真正性が保証されている期間に収集された前記センシング情報を集計する集計部と、
 前記集計部の集計結果を保険業務サーバへ提供する制御部をさらに備える(1)乃至(7)のいずれかに記載の端末装置。
 (9) 前記集計部は、前記センシング情報に基づき前記ユーザの休息期間を判別して、前記休息期間に収集された前記センシング情報を前記集計結果から除外する(8)に記載の端末装置。
 (10) 前記制御部は、前記本人認証と前記継続認証の認証結果を前記保険業務サーバへ提供する(8)または(9)に記載の端末装置。
 (11) ユーザ操作の受け入れと情報提示を行うユーザインタフェース部を備え、
 前記ユーザインタフェース部は、前記センシング情報を前記保険業務サーバへ提供することに応じて、前記保険業務サーバから通知されたアフターフォロー情報を提示する(8)乃至(10)のいずれかに記載の端末装置。
 (12) 前記ユーザインタフェース部は、前記集計部の集計結果と前記継続認証の認証状況を提示する(11)に記載の端末装置。
 (13) 前記アフターフォロー情報は、保険料の増減を通知する情報を含む(12)に記載の端末装置。
In addition, the terminal device of the present technology can also have the following configuration.
(1) Personal authentication is performed using the user's unique information, and continuation using sensing information for insurance risk evaluation collected after the user's authenticity as an insured person is guaranteed by the personal authentication A terminal device comprising an authentication unit that, in authentication, repeats the identity authentication when the authenticity of information collected from the user whose authenticity is guaranteed by the identity authentication is not guaranteed by the sensing information.
(2) The terminal device according to (1), wherein the personal authentication is an authentication method with higher authentication accuracy than the continuous authentication.
(3) The terminal device according to (1) or (2), wherein the continuous authentication is performed each time a predetermined period of time elapses.
(4) In any of (1) to (3), in the continuous authentication, authenticity is guaranteed when a change in the feature amount calculated based on the sensing information is less than a preset threshold. The terminal device according to 1.
(5) The terminal device according to any one of (1) to (4), wherein the continuous authentication is performed by the authentication unit.
(6) The terminal device according to any one of (1) to (5), including a sensing unit that collects the sensing information.
(7) The terminal device according to any one of (1) to (6), wherein the sensing information includes exercise-related information that changes according to the user's exercise.
(8) an aggregating unit that aggregates the sensing information collected during a period in which the authenticity of the insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication;
The terminal device according to any one of (1) to (7), further comprising a control unit that provides a total result of the totalizing unit to an insurance business server.
(9) The terminal device according to (8), wherein the counting unit determines a rest period of the user based on the sensing information, and excludes the sensing information collected during the rest period from the counting result.
(10) The terminal device according to (8) or (9), wherein the control unit provides authentication results of the personal authentication and the continuous authentication to the insurance business server.
(11) having a user interface unit that accepts user operations and presents information;
The terminal according to any one of (8) to (10), wherein the user interface unit presents follow-up information notified from the insurance business server in response to providing the sensing information to the insurance business server. Device.
(12) The terminal device according to (11), wherein the user interface unit presents the counting result of the counting unit and the authentication status of the continuous authentication.
(13) The terminal device according to (12), wherein the follow-up information includes information for notifying an increase or decrease in insurance premiums.
 また、本技術では以下のような保険システムを含むことができる。
 ユーザの固有情報を用いて本人認証を行い、前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す認証部を備える端末装置と、
 前記ユーザが被保険者である真正性が保証されている期間に前記端末装置で前記ユーザを対象として収集されたセンシング情報に基づいて保険リスクの評価を行う保険業務処理部を備える保険業務サーバと
を有する保険システム。
In addition, the present technology can include the following insurance system.
Personal authentication is performed using the user's unique information, and in continuous authentication using sensing information for insurance risk evaluation collected after the authenticity of the user as an insured person is guaranteed in the personal authentication, a terminal device comprising an authentication unit that repeats the identity authentication when the authenticity of information collected from the sensing information for the user whose authenticity is guaranteed by the identity authentication is not guaranteed;
an insurance business server comprising an insurance business processing unit that evaluates insurance risks based on sensing information collected from the user by the terminal device during a period in which the authenticity of the user as an insured person is guaranteed; insurance system with
 10・・・保険システム
 20・・・端末装置
 21・・・センシング部
 22・・・情報処理部
 26・・・近傍通信部
 30・・・保険業務サーバ
 31・・・保険業務処理部
 32・・・保険業務データベース部
 40・・・ネットワーク
 211,221・・・運動計測部
 212,222・・・測位部
 213,223・・・認証センサ部
 214,226・・・近傍通信部
 224,314・・・認証部
 225・・・集計部
 227・・・通信部
 228・・・ユーザインタフェース部
 229・・・制御部
 311・・・通信部
 312・・・評価部
 313・・・アフターフォロー処理部
DESCRIPTION OF SYMBOLS 10... Insurance system 20... Terminal device 21... Sensing part 22... Information processing part 26... Proximity communication part 30... Insurance business server 31... Insurance business processing part 32... Insurance business database unit 40 Network 211, 221 Motion measurement unit 212, 222 Positioning unit 213, 223 Authentication sensor unit 214, 226 Near field communication unit 224, 314 - Authentication unit 225 Totaling unit 227 Communication unit 228 User interface unit 229 Control unit 311 Communication unit 312 Evaluation unit 313 After-follow processing unit

Claims (20)

  1.  ユーザの固有情報を用いて本人認証を行い、前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す認証部
    を備える端末装置。
    Personal authentication is performed using the user's unique information, and in continuous authentication using sensing information for insurance risk evaluation collected after the authenticity of the user as an insured person is guaranteed in the personal authentication, A terminal device comprising an authentication unit that repeats the personal authentication when the authenticity of information collected from the sensing information for the user whose authenticity is guaranteed by the personal authentication is not guaranteed.
  2.  前記本人認証は、前記継続認証に比べて認証精度が高い認証方法である
    請求項1に記載の端末装置。
    2. The terminal device according to claim 1, wherein the personal authentication is an authentication method with higher authentication accuracy than the continuous authentication.
  3.  前記継続認証は、所定期間が経過する毎に行われる
    請求項1に記載の端末装置。
    2. The terminal device according to claim 1, wherein said continuous authentication is performed each time a predetermined period elapses.
  4.  前記継続認証では、前記センシング情報に基づいて算出された特徴量の変化が予め設定された閾値よりも少ない場合に真正性が保証されているとする
    請求項1に記載の端末装置。
    2. The terminal device according to claim 1, wherein in said continuous authentication, authenticity is guaranteed when a change in the feature value calculated based on said sensing information is less than a preset threshold value.
  5.  前記継続認証は、前記認証部で行う
    請求項1に記載の端末装置。
    The terminal device according to claim 1, wherein the continuous authentication is performed by the authentication unit.
  6.  前記センシング情報を収集するセンシング部を備える
    請求項1に記載の端末装置。
    The terminal device according to claim 1, comprising a sensing unit that collects the sensing information.
  7.  前記センシング情報は前記ユーザの運動によって変化する運動関連情報を含む
    請求項1に記載の端末装置。
    The terminal device according to claim 1, wherein the sensing information includes exercise-related information that changes according to the user's exercise.
  8.  前記本人認証と前記継続認証の認証結果に基づき、前記被保険者である真正性が保証されている期間に収集された前記センシング情報を集計する集計部と、
     前記集計部の集計結果を保険業務サーバへ提供する制御部をさらに備える
    請求項1に記載の端末装置。
    an aggregating unit that aggregates the sensing information collected during a period in which the authenticity of the insured person is guaranteed based on the authentication results of the personal authentication and the continuous authentication;
    2. The terminal device according to claim 1, further comprising a control unit that provides a total result of said total unit to an insurance business server.
  9.  前記集計部は、前記センシング情報に基づき前記ユーザの休息期間を判別して、前記休息期間に収集された前記センシング情報を前記集計結果から除外する
    請求項8に記載の端末装置。
    The terminal device according to claim 8, wherein the tallying unit determines a rest period of the user based on the sensing information, and excludes the sensing information collected during the rest period from the tally result.
  10.  前記制御部は、前記本人認証と前記継続認証の認証結果を前記保険業務サーバへ提供する
    請求項8に記載の端末装置。
    9. The terminal device according to claim 8, wherein the control unit provides authentication results of the personal authentication and the continuous authentication to the insurance business server.
  11.  ユーザ操作の受け入れと情報提示を行うユーザインタフェース部を備え、
     前記ユーザインタフェース部は、前記センシング情報を前記保険業務サーバへ提供することに応じて、前記保険業務サーバから通知されたアフターフォロー情報を提示する
    請求項8に記載の端末装置。
    Equipped with a user interface unit that accepts user operations and presents information,
    9. The terminal device according to claim 8, wherein the user interface unit presents follow-up information notified from the insurance business server in response to providing the sensing information to the insurance business server.
  12.  前記ユーザインタフェース部は、前記集計部の集計結果と前記継続認証の認証状況を提示する
    請求項11に記載の端末装置。
    12. The terminal device according to claim 11, wherein the user interface unit presents the counting result of the counting unit and the authentication status of the continuous authentication.
  13.  前記アフターフォロー情報は、保険料の増減を示す通知を含む情報である
    請求項12に記載の端末装置。
    13. The terminal device according to claim 12, wherein the follow-up information is information including a notification indicating an increase or decrease in insurance premiums.
  14.  ユーザ固有情報を用いて本人認証を認証部で行うことと、
     前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を前記認証部で繰り返すこと
    を含む情報処理方法。
    performing personal authentication in an authenticating unit using the user-specific information;
    In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. an information processing method including repeating the personal authentication by the authentication unit when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
  15.  ユーザの真正性に関する検証をコンピュータで実行させるプログラムであって、
     ユーザ固有情報を用いて本人認証を認証部で行う手順と、
     前記本人認証で前記ユーザが被保険者である真正性が保証された後に収集された保険リスクの評価のためのセンシング情報を用いた継続認証において、前記センシング情報によって前記本人認証で真正性の保証された前記ユーザを対象として収集した情報である真正性が保証されていない場合に前記本人認証を繰り返す手順と
    を前記コンピュータで実行させるプログラム。
    A program that causes a computer to verify the authenticity of a user,
    a procedure for performing personal authentication in an authenticating unit using user-specific information;
    In continuous authentication using sensing information for insurance risk evaluation collected after authenticity that the user is an insured person is guaranteed by the personal authentication, authenticity is guaranteed by the personal authentication by the sensing information. a program for causing the computer to execute a procedure for repeating the personal authentication when the authenticity of the information collected for the user who has been authenticated is not guaranteed.
  16.  ユーザが被保険者である真正性が保証されている期間に端末装置で前記ユーザを対象として収集されたセンシング情報に基づいて保険リスクの評価を行う保険業務処理部
    を備える保険業務サーバ。
    An insurance business server comprising an insurance business processing unit that evaluates insurance risks based on sensing information collected from a user by a terminal device during a period in which the user's authenticity as an insured person is guaranteed.
  17.  前記保険業務処理部は、前記保険リスクの評価結果に基づきアフターフォロー情報を生成する
    請求項16に記載の保険業務サーバ。
    17. The insurance business server according to claim 16, wherein said insurance business processing unit generates follow-up information based on said insurance risk evaluation result.
  18.  前記アフターフォロー情報は、保険料の増減を示す通知を含む情報である
    請求項17に記載の保険業務サーバ。
    18. The insurance business server according to claim 17, wherein said follow-up information is information including a notification indicating an increase or decrease in insurance premiums.
  19.  前記保険業務処理部は、前記センシング情報に基づき前記被保険者である真正性が保証されているユーザの運動状況を判別して、判別結果に基づき前記保険リスクを評価する
    請求項17に記載の保険業務サーバ。
    18. The insurance business processing unit according to claim 17, wherein the insurance business processing unit determines the exercise status of the user who is the insured person whose authenticity is guaranteed based on the sensing information, and evaluates the insurance risk based on the determination result. Insurance business server.
  20.  前記保険業務処理部は、前記センシング情報によって前記被保険者である真正性が保証されているユーザを対象として収集した情報である真正性を検証する継続認証を行い、認証結果を前記端末装置に通知する
    請求項16に記載の保険業務サーバ。
    The insurance business processing unit performs continuous authentication for verifying the authenticity of information collected from users who are the insured persons whose authenticity is guaranteed by the sensing information, and sends the authentication result to the terminal device. 17. The insurance business server according to claim 16, which notifies.
PCT/JP2022/006984 2021-07-26 2022-02-21 Terminal device, information processing method, program, and insurance service server WO2023007786A1 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
JP2023538224A JPWO2023007786A1 (en) 2021-07-26 2022-02-21

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2021-121324 2021-07-26
JP2021121324 2021-07-26

Publications (1)

Publication Number Publication Date
WO2023007786A1 true WO2023007786A1 (en) 2023-02-02

Family

ID=85086463

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/JP2022/006984 WO2023007786A1 (en) 2021-07-26 2022-02-21 Terminal device, information processing method, program, and insurance service server

Country Status (2)

Country Link
JP (1) JPWO2023007786A1 (en)
WO (1) WO2023007786A1 (en)

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2001344424A (en) * 2000-03-28 2001-12-14 Casio Comput Co Ltd Device and method for insurance management, information processor, and insurance management program
JP2002238877A (en) * 2000-12-28 2002-08-27 Omron Corp Exercise condition monitoring device with function for identifying user and confirming user's wearing, and premium management system and information mediation system using the same
JP2017213275A (en) * 2016-06-01 2017-12-07 オムロンヘルスケア株式会社 Biological information measurement device, method for determining correctness of biological information, and program for determining correctness of biological information

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2001344424A (en) * 2000-03-28 2001-12-14 Casio Comput Co Ltd Device and method for insurance management, information processor, and insurance management program
JP2002238877A (en) * 2000-12-28 2002-08-27 Omron Corp Exercise condition monitoring device with function for identifying user and confirming user's wearing, and premium management system and information mediation system using the same
JP2017213275A (en) * 2016-06-01 2017-12-07 オムロンヘルスケア株式会社 Biological information measurement device, method for determining correctness of biological information, and program for determining correctness of biological information

Also Published As

Publication number Publication date
JPWO2023007786A1 (en) 2023-02-02

Similar Documents

Publication Publication Date Title
JP4370583B2 (en) Information mediation system using exercise status monitoring device with identification function and identification function
US10946244B2 (en) Visualization of athletic activity
AU2008353513B2 (en) Health monitoring system with biometric identification
US20150142689A1 (en) Activity monitor
US20140368336A1 (en) Method of Communicating Information through a Wearable Device
US20140067494A1 (en) Activity monitor system and method
US20110191158A1 (en) Physical activity tracking and rewards allocation system
US20140278629A1 (en) Method for employee parameter tracking
US20140172137A1 (en) System and method for promoting and tracking physical activity among a participating group of individuals
JP2015055952A (en) Settlement system, settlement method, authentication server, authentication method, and program
CN103609145A (en) Relevant content delivery
US20130073368A1 (en) Incentivizing physical activity
WO2013123190A1 (en) Multimodal physiologic data station and wellness transformation of large populations
TW201901512A (en) Smart card and method for controlling smart card
JP4160596B2 (en) Exercise data management system
JP6327376B1 (en) Game support device
CN101408993A (en) Movement recording system
Youm et al. RFID-based automatic scoring system for physical fitness testing
JP2019008355A (en) Checkout device, checkout system and program
JP6392188B2 (en) Authenticity assurance device and authenticity assurance system
WO2021097098A1 (en) Exercise recording devices and related methods
WO2023007786A1 (en) Terminal device, information processing method, program, and insurance service server
JP5409027B2 (en) Game medium saving system and game medium saving method
JP3878125B2 (en) Exercise data management server device, exercise data management program, exercise data management method, and exercise data management system
KR20130122483A (en) Method of health management

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 22848870

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 2023538224

Country of ref document: JP

NENP Non-entry into the national phase

Ref country code: DE