UBIDAC
- Adam Pretlove (Unlicensed)
- Praveen Ponnumony
- Gemma Vidal Cruells (Unlicensed)
This Section applies to ASPSPs that have implemented OB Standards
-Have you Implemented OB Standards? |
| |
---|---|---|
Open Data - Which version have you Implemented? |
| |
Read/Write API Specification Implemented or planning to implement (Lowest version = Current, Highest version = Planned) |
| |
Read/Write API - Which date are you planning to implement your latest version? | ||
Have you implemented v4.0 information flows, if not date planned to Implement? |
| |
Dynamic Client Registration - Which version have you Implemented or planning to implement? (Lowest version = Current, Highest version = Planned) |
| |
DCR - Which date are you planning to implement your latest version? | ||
Have you implemented Trusted beneficiaries, if not date planned to Implement? |
| |
Have you implemented Reverse Payments, if not date planned to Implement? |
| |
Have you implemented ECA Standard? |
| |
ECA Implementation details | Contact: [enter contact details for the relevant person(s) at your organisation] [You can use this space to provide your status with respect to the Standard] | |
Have you implemented Bulk/File Payments? |
| |
Have you implemented VRP – Sweeping, if not date planned to Implement? |
| |
Have you implemented VRP non-Sweeping, if not date planned to Implement? |
| Contact: [enter contact details for the relevant person(s) at your organisation] [You can use this space to provide implementation details relevant to VRP] |
PISP - Single Payment Limit | £ | |
PISP - Daily Payment Limit | £ | |
How many months of transaction do you provide? | ||
Have you implemented TRIs (Transactional Risk Indicators), if not, date planned to Implement? | ||
What is your approach to Implementing TRIs? |
|
Which date are you planning on implementing the SCA reauthentication exemption? | Ulster Bank Ireland DAC serves only Ireland domiciled accounts, hence it will implement the EBA rules in re. SCA instead of FCA rules. This means that it will extend the current 90-day re-authentication period to 180-days. We are planning to deliver this change by | |
---|---|---|
What is your approach to token management to enable application of the reauthentication exemption? (see link to FCA guidance) | Not Applicable for UBIDAC.
[Please use this space to provide more details on your approach] | |
Article 10A - Endpoints exempt of SCA-RTS |
| |
Article 10A - Endpoints not exempt of SCA-RTS |
| |
Article 10A - Maximum time period after authentication | Please specify the time period in minutes | |
SCA-RTS implementation status (updated by OBL PS team only) | EBA SCA RTS implementation: In-progress |
-Which Security profile have you Implemented or planning to implement? (Lowest version = Current, Highest version = Planned) |
| |
---|---|---|
Security Profile - Next Planned Version Implementation Date | ||
CIBA Profile - Implemented or planning to implement (Lowest version = Current, Highest version = Planned) |
| |
CIBA Profile - Next Planned Version Implementation Date | ||
Security Profile Certification date? | ||
Token Endpoint Authentication Methods Supported |
| |
Planned date to Cease support for client id and client secret token endpoint authentication | ||
POST-BREXIT POST TRANSITION - Certificates Accepted (from 1st Jul 2021) |
|
-What is your approach to Implementing OBL Customer Experience Guidelines (CEG)? (tick all that apply) |
| |
---|---|---|
Which version have you implemented or planning to implement? (Lowest version = Current, Highest version = Planned) |
| |
Which date are you planning to implement your latest CEG version? | TBC | |
Redirection Model |
| Journeys are specific to RBSG / UBIDAC but align with CEG |
-Which Directory are you using as your Trust Framework? | Open Banking | |
---|---|---|
Are you caching the Directory? | No | Directory Caching will be delivered by 24 February 2020 as part of PSD2 onboarding |
Transaction IDs Supported | Yes - August 2019 | Transaction id's are provided against each booked transaction that are returned on the transactions endpoint |
Are you Seeking Fallback Exemption? |
| |
Article 10 - Maximum time period after authentication | N/A | RBSG / UBIDAC are adopting Article 10 Exemption for 90 day reauthentication, no further restrictions are being applied under Article 10 |
Article 10 - Endpoints exempt of SCA | N/A | RBSG / UBIDAC are adopting Article 10 Exemption for 90 day reauthentication, no further restrictions are being applied under Article 10 |
Major Milestones | V1.1 deprecation International Payments for Commercial Banking Customers - Q1 2020 SEPA MTS Bulk / Batch Payments - Q1 2020 P2 Two Way Notice of Revocation - Q1 2020 P8 SCA Exemptions - Q1 2020 API specification v3.1.4 & CEG v3.1.4 - Q1 2020 Uplift to PS256 encryption standard - Q2 2020 P15 Access Dashboards - Q2 2020 | |
Brand(s) |
Location of Well Known Endpoints | OB Technical Directory | |
---|---|---|
Modified Customer Interface URL (if applicable) | ||
Dev Portal URL | https://www.bankofapis.com/ | |
Test Facility URL | ||
Brand Landing Pages URL | [You can use this space to explain your guidance on using Brand logos] | |
ASPSP Support Desk Email or Phone Number (including queries about consent success rates) | ~APIServiceDesk@rbs.com |
High Cost Credit | UBIDAC - HCC.xlsx |
---|
Deliveries of these SCA solutions will continue across the rest of 2019 will some delivered in Q1 2020
Customer Journey stage | Mobile (Direct Channel) | E-banking (Direct Channel) | Bankline (Direct Channel & Open Banking) | Open Banking Browser | Open Banking App to App |
---|---|---|---|---|---|
Logging in to identify themselves as a customer and gain access to in scope accounts | SCA @ Login Steps: Customers can use biometrics (as per the setup Device binding will run in the background during | SCA @ Login Steps: Customer ID Plus Partial PIN Password Plus Device Profiling | SCA @ Login Steps: | SCA @ Login Steps: Customer IDs Plus Partial PIN Password AND Device Profiling | SCA @ Login Steps: Customers can use biometrics (as per the setup of their device/customer preference) or passcode Device binding will run in the background |
Making a payment from in scope accounts | No further SCA required for payments to trusted beneficiaries. SCA via card and reader required for payments | SCA for payments to non-trusted beneficiaries | Further SCA required for Payments using Card and PIN for Challenge and Response | Step up to One Time Passcode or Card & Reader for payments | No further SCA required for payment |
LIVE | LIVE | Q1 2020 | November 2020 | LIVE |