Adam Pretlove (Unlicensed)
Praveen Ponnumony
Aug 14, 2019
Sept 05, 2024
This Section applies to ASPSPs that have implemented OB Standards
Read/Write API Specification Implemented or planning to implement
(Lowest version = Current, Highest version = Planned)
Have you implemented v4.0 information flows, if not date planned to Implement?
Dynamic Client Registration - Which version have you Implemented or planning to implement?
Have you implemented Trusted beneficiaries, if not date planned to Implement?
Have you implemented Reverse Payments, if not date planned to Implement?
Have you implemented ECA Standard?
ECA Implementation details
Contact: [enter contact details for the relevant person(s) at your organisation]
Have you implemented Bulk/File Payments?
Have you implemented VRP – Sweeping, if not date planned to Implement?
Have you implemented VRP non-Sweeping, if not date planned to Implement?
Which date are you planning on implementing the SCA reauthentication exemption?
What is your approach to token management to enable application of the reauthentication exemption? (see link to FCA guidance)
Example approach:Issue a long-lived refresh token during one final SCA, with refresh token rotation implemented.
[Please use this space to provide more details on your approach]
Accounts
Transactions (90days)
Balances
Standing orders
Direct debits
Beneficiaries
Products
Offers
Parties
Scheduled Payments
Statements
Transactions (more than 90days)
Commence support for OBIE QWAC-like certificates
-Which Security profile have you Implemented or planning to implement?
Directory?
Location of Well Known Endpoints?
API Standard Implemented?
Name of Account Holder Implementation Date?
-What is your approach to Implementing OBL Customer Experience Guidelines (CEG)?
(tick all that apply)
Which version have you implemented or planning to implement?
Are you Seeking Fallback Exemption?
If 90 days has elapsed since SCA was applied, the customer will need to re-authenticate.
The 90 day period is specific to each AISP and must be distinguished to the 90 day period which applies to customers.
Application of SCA to initiate a payment (via a PISP or customer) does not restart the 90 day period.
No
Testing interface Open Banking API standard v3.0 13
Mar 2019 Wide usage interface Open Banking API Standard v3.0 13
Mar 2019 Stress testing (Open Banking API standard v3.0) 30
Jun 2019 Open Banking API standard v3.1.1
FAPI Compliant?
Yes
CIBA
29 Feb 2020 Infrastructure upgrade 29 Feb 2020
eIDAS 29 Feb 2020
Implementing Customer Experience Guidelines?
Implementing Bespoke User Journeys?
Implementing App to App?
Options on 90 day re-authentication?
Support Embedded Flow?
Dispute Management System?
Seeking Fallback Exemption?
Adjusted or Fallback Interface?
Location of Well Known Endpoints
Open Banking technical directory and Cynergy Bank Developer Portal
https://openbanking.cynergybank.co.uk/API/.well-known/openid-configuration
Modified Customer Interface URL (if applicable)
Authentication Method - Open Banking Channel (Browser)?
Authentication Method - Open Banking Channel (APP)?
Authentication Method - Private Channel (Browser)?
Authentication Method - Private Channel (APP)?
Authentication Method Implementation Date (Open Banking Channel)?
Authentication Method Implementation Date (Private Channel)?
SCA Implementation Date?
SCA Scope? (will it inhibit non PSD2 accounts)
ASPSP Support Desk Email or Phone Number
(including queries about consent success rates)
High Cost Credit