Prosecution Insights
Last updated: October 01, 2026
Application No. 19/386,220

Two-Phase Biometric Access Control System (TBACS)

Final Rejection §103
Filed
Nov 11, 2025
Priority
Apr 23, 2021 — CIP of 11/874,909 +1 more
Examiner
REZA, MOHAMMAD W
Art Unit
2407
Tech Center
2400 — Computer Networks
Assignee
P4 X Group Inc.
OA Round
2 (Final)
88%
Grant Probability
Favorable
3-4
OA Rounds
1y 10m
Est. Remaining
99%
With Interview

Examiner Intelligence

Grants 88% — above average
88%
Career Allowance Rate
839 granted / 959 resolved
+29.5% vs TC avg
Moderate +11% lift
Without
With
+11.2%
Interview Lift
resolved cases with interview
Typical timeline
2y 8m
Avg Prosecution
10 currently pending
Career history
974
Total Applications
across all art units

Statute-Specific Performance

§101
17.5%
-22.5% vs TC avg
§103
46.0%
+6.0% vs TC avg
§102
6.7%
-33.3% vs TC avg
§112
12.6%
-27.4% vs TC avg
Black line = Tech Center average estimate • Based on career data from 959 resolved cases

Office Action

§103
Notice of Pre-AIA or AIA Status The present application, filed on or after March 16, 2013, is being examined under the first inventor to file provisions of the AIA . DETAILED ACTION 1. This is in response to the arguments filed on 07/24/2026. 2. Claims 11-20 are pending in the application. 3. Claims 11-20 have been rejected. Response to Arguments 4. Applicant's arguments with respect to claims 11-20 have been considered but are moot in view of the new ground(s) of rejection. Claim Rejections - 35 USC § 103 In the event the determination of the status of the application as subject to AIA 35 U.S.C. 102 and 103 (or as subject to pre-AIA 35 U.S.C. 102 and 103) is incorrect, any correction of the statutory basis for the rejection will not be considered a new ground of rejection if the prior art relied upon, and the rationale supporting the rejection, would be the same under either status. The following is a quotation of 35 U.S.C. 103 which forms the basis for all obviousness rejections set forth in this Office action: A patent for a claimed invention may not be obtained, notwithstanding that the claimed invention is not identically disclosed as set forth in section 102, if the differences between the claimed invention and the prior art are such that the claimed invention as a whole would have been obvious before the effective filing date of the claimed invention to a person having ordinary skill in the art to which the claimed invention pertains. Patentability shall not be negated by the manner in which the invention was made. 4. Claims 11-20 are rejected under 35 U.S.C. 103 as being unpatentable over Avetisov et al hereafter Avetisov (US pat. 9648015) and in view of WOLF (US pat. App. Pub. 20170324735) and in further view of Kocher et al hereafter Kocher (US pat. 10957136). 5. As per claims 11, 18, and 20, Avetisov discloses a system and a method for controlling user access of an access control point of a location, the system comprising: a personal communication device comprising an input device configured to receive a user personal identification number (PIN), a device code, and a biometric capture device configured to capture user biometric data, the personal communication device further configured to assemble comprising the user PIN, the device code and the user biometric data and transmit the location specific access request to a remote authentication server (paragraphs: 1: 32-45, 2:21-29, wherein a user computing platform associated with the authentication device receive and accumulate a user personal identification number (PIN), a device code, and a biometric capture device configured to capture user biometric data and communicate with the remote server), the remote authentication server configured to receive request from the personal communication device, process the user PIN and the device code to determine any matching user authentication information from stored authentication information, process, with a biometric matching algorithm, the user biometric data to determine any matching user biometric authentication information from the stored authentication information (2:1-5, 2: 36-42, wherein it elaborates all those authentication data (user PIN, device code and biometric data) will be verified by the authentication device in association with the server), determine, one of confirm or deny the request based on the any matching user authentication information, the any matching user biometric authentication information, and compliance with the at least one entry criterion, and transmit one of an confirmation message or an denial message based on the one of confirming or denying the location specific access request (2: 44-47, 3: 29-46, 6:4-28, 9:1-10, wherein it discusses that based on the successfully verifying of the biometric data, the server generates and transfers the transitory password or time based one-time password (TOTP) which acts as confirmation message to the user platform); and an control point sub-system comprising an control point computer configured to receive and store one of the confirmation message or the denial message from the remote authentication server, a unique signature detection device configured to read, at the control point, and communicate, to the control point computer, a unique user signature configured to enable the control point computer to retrieve any corresponding stored confirmation message or denial message previous transmitted by the remote authentication server, and control point equipment in communication with the control point computer configured to one of enable or disable user access at the access control point of the location based on one of the confirmation message or the denial message (1: 46-64, 6:30-39, 8: 28-46, wherein it describes the transaction device receives the transitory password (confirmation message) from the server and this transitory password will be used to verify the confirmation of the transaction). Avetisov does not specifically disclose a location specific access request, request complies with at least one entry criterion of entry criteria, and an access control point sub-system comprising an access control point computer configured to receive and store one of the access confirmation message. However, in the same field of endeavor, WOLF discloses a location specific access request, request complies with at least one entry criterion (paragraphs: 17-18, 33, and 38, wherein it deliberates that a system with location specific access control system for receiving a request to enter in the secured area with an entry criteria), and an access control point sub-system comprising an access control point computer configured to receive and store one of location specific access request, request complies with at least one entry criterion the access confirmation message (15, 0-21). Accordingly, it would been obvious to one of ordinary skill in the network security art before the effective filing date of the claimed invention to have incorporated WOLF’s teachings of location specific access request complies with entry criterion and the access confirmation message with the teachings of Avetisov, for the purpose of effectively protecting location specific access request from any unauthorized intruders. Avetisov-WOLF does not specifically disclose transmit access request to a remote authentication server prior to the personal communication device arriving at the access control point of the location. However, in the same field of endeavor, Kocher discloses transmit access request to a remote authentication server prior to the personal communication device arriving at the access control point of the location (2:35-67, and 6:15-67) and a personal communication device comprising an input device configured to receive a user personal identification number (PIN), and a device code and a unique user-provided signature detection device configured to read, at the access control point, and communicate, to the access control point computer, a unique user-provided signature configured to enable the access control point computer (7:1-67, and 8:1-20). Accordingly, it would been obvious to one of ordinary skill in the network security art before the effective filing date of the claimed invention to have incorporated Kocher’s teachings of transmit access request to a remote authentication server prior to the personal communication device arriving at the access control point of the location with the teachings of Avetisov-WOLF, for the purpose of effectively allowing to access the control point without any delay. 6. As per claim 12, Avetisov and in view of WOLF discloses the system, wherein the unique user signature is a license plate and the unique signature detection device is a license plate reader (Avetisov: 1:47-65, 2:36-55). 7. As per claim 13, Avetisov and in view of WOLF discloses the system wherein the unique user signature is an electronic signal of the personal communication device and the unique signature detection device is an electronic signal reception device configured to receive the electronic signal from the personal communication device (Avetisov, 3: 8-27, 4:7-27). 8. As per claim 14, Avetisov and in view of WOLF discloses the system wherein the unique user signature is a message sent from an application on the personal communication device and the unique signature detection device is the access control point computer at the access control point (Avetisov, 5:13-35, 6:5-29). 9. As per claim 15, Avetisov and in view of WOLF discloses the system wherein the unique user signature includes a plurality of unique user signatures which are unique to the user (Avetisov, 3: 35-52, and 6:40-62). 10. As per claim 16, Avetisov and in view of WOLF discloses the system, wherein the user biometric data includes at least one of face, fingerprint, iris, or voice biometric data (Avetisov, 4:40-63, 5:41-63). 11. As per claim 17, Avetisov and in view of WOLF discloses the system, wherein the biometric capture device includes at least one of an image capture device and an audio capture device (Avetisov, 3: 25-41, 4: 40-55). 12. As per claim 19, Avetisov and in view of WOLF discloses the system of claim 18, whereby the access control point computer receives the unique user signature from the remote authentication server in one of the access confirmation message or the access denial message before the unique signature detection device reads the unique user signature at the access control point (Avetisov, 2: 26-46, 4: 26-44). Citation of References 13. The prior art made of record and not relied upon is considered pertinent to applicant's disclosure. The following references are cited but not been replied upon for this office action: Khalid (US pat. app. Pub. 20210407237): discusses directed to intelligent secure keyless keypad transmitter entry system mounted outside property integrated into an existing motorized garage door opening system or any motorized gate system for secure entry and package delivery using a barcode scanner. The invention uses package tracking codes stored in advance to open a door or gate with a delivery notification to the owner. Motion detection and facial recognition biometric cameras allow invited persons to enter property. The camera and microphone/speaker allow video communication via external devices. The keypad may be used in conjunction with the LED screen to program the console device with temporary or permanent PIN codes for entry code allowing owners to verify access and exit of service providers. The console device offers complete remote control of device functions and all activity on the device to be transmitted electronically to the owner's mobile device. AlZahrani et al (US pat. App. Pub. 20210097153): elaborates that registering and activating an application downloaded to a user device, the application being provided from an application server of an enterprise. The method comprises generating an activation code for activating downloaded applications which are pending activation, storing the generated activation code on the application server, the first server not being accessible to the user and only being accessible to a jump server, enabling an administrator to access the jump server using two-factor authentication, accessing the first sever via the jump server, responding to a command by the administrator, provided through a remote connection between the jump server and the application server, by electronically communicating to the administrator activation codes associated with applications pending activation, and completing registration and activation of the application by providing a manually transferred code into the user device. The activation code is manually transferred from the administrator to the user. Conclusion 14. Applicant's amendment necessitated the new ground(s) of rejection presented in this Office action. Accordingly, THIS ACTION IS MADE FINAL. See MPEP § 706.07(a). Applicant is reminded of the extension of time policy as set forth in 37 CFR 1.136(a). A shortened statutory period for reply to this final action is set to expire THREE MONTHS from the mailing date of this action. In the event a first reply is filed within TWO MONTHS of the mailing date of this final action and the advisory action is not mailed until after the end of the THREE-MONTH shortened statutory period, then the shortened statutory period will expire on the date the advisory action is mailed, and any extension fee pursuant to 37 CFR 1.136(a) will be calculated from the mailing date of the advisory action. In no event, however, will the statutory period for reply expire later than SIX MONTHS from the date of this final action. Any inquiry concerning this communication or earlier communications from the examiner should be directed to Mohammad W. Reza whose telephone number is 571-272-6590. The examiner can normally be reached on M-F (9:00-5:00). If attempts to reach the examiner by telephone are unsuccessful, the examiner’s supervisor, Cathy Thiaw can be reached on 571-270-1138. The fax phone number for the organization where this application or proceeding is assigned is 571-273-8300. Information regarding the status of an application may be obtained from the Patent Application Information Retrieval (PAIR) system. Status information for published applications may be obtained from either Private PAIR or Public PAIR. Status information for unpublished applications is available through Private PAIR only. For more information about the PAIR system, see http://pair-direct.uspto.gov. Should you have questions on access to the Private PAIR system, contact the Electronic Business Center (EBC) at 866-217-9197 (toll-free). /MOHAMMAD W REZA/Primary Examiner, Art Unit 2407
Read full office action

Prosecution Timeline

Nov 11, 2025
Application Filed
Apr 24, 2026
Non-Final Rejection mailed — §103
Jul 21, 2026
Applicant Interview (Telephonic)
Jul 24, 2026
Response Filed
Jul 25, 2026
Examiner Interview Summary
Sep 16, 2026
Final Rejection mailed — §103 (current)

Precedent Cases

Applications granted by this same examiner with similar technology

Patent 12732386
STATEMENT PROOF AND VERIFICATION
1y 11m to grant Granted Sep 08, 2026
Patent 12717938
ACCESS CONTROL SYSTEM FOR AUTOMATICALLY ADJUSTING ACCESS TO RESOURCES IN RESPONSE TO DETECTING A ROLE CHANGE
2y 9m to grant Granted Aug 25, 2026
Patent 12711268
A SYSTEM AND METHOD FOR DATA MANAGEMENT IN A VEHICLE
2y 7m to grant Granted Aug 18, 2026
Patent 12699799
CONTROLLED ACCESS PROVISION FOR DATA EXPLORATION IN MANAGED COMPUTE DATASETS
2y 2m to grant Granted Aug 04, 2026
Patent 12699800
ENCRYPTED FILE SEARCH
2y 2m to grant Granted Aug 04, 2026
Study what changed to get past this examiner. Based on 5 most recent grants.

Strategy Recommendation AI-generated — please review before filing

Get a prosecution strategy drawn from examiner precedents, rejection analysis, and claim mapping.
Typically takes 5-10 seconds — AI-generated, attorney review required before filing

Prosecution Projections

3-4
Expected OA Rounds
88%
Grant Probability
99%
With Interview (+11.2%)
2y 8m (~1y 10m remaining)
Median Time to Grant
Moderate
PTA Risk
Based on 959 resolved cases by this examiner. Grant probability derived from career allowance rate.

Sign in with your work email

Enter your email to receive a magic link. No password needed.

Personal email addresses (Gmail, Yahoo, etc.) are not accepted.

Free tier: 3 strategy analyses per month