SlideShare ist ein Scribd-Unternehmen logo
1 von 3
Downloaden Sie, um offline zu lesen
White Paper
A Blueprint For Open Banking
Standards In The United Kingdom
http://streamdata.io
Prepared by:
Kin Lane
API Evangelist
New York, NY
kin.lane@streamdata.io
There has been a lot of chatter regarding the Payment
Services Directive2 (PSD2) in Europe this year, as
the January 2018 deadline rolled around. While many
banks are still trying to put an API strategy in place, an
organization in the UK has been rolling out APIs for
their top banks. While the results of the effort won’t be
known for some time, the work out of the Open Banking
ImplementationEntity,providesthetechnicallystrongest
strategy for delivering APIs across Europe, and for that
matter, anywhere in the world to date.
As we work to map out the progress of PSD2 across
Europe, we wanted to pause for a moment and highlight
the traction regulators are getting in the UK, and break
down their approach into a blueprint that regulators in
France, Germany, and other EU countries can consider
as they work to get their banking industries up to speed
with APIs, and the PSD2 regulations. Up until now,
there has been a lot of talk around APIs in banking,
and FinTech innovation, but the UK provides us with a
real world example of how APIs can get done from the
top down. Providing a blueprint for not just banking,
but potentially any industry looking to increase the
competitive balance within an industry, and open up
data, content, algorithms, and other digital resources
to better service individuals, businesses, and even the
government sector.
The Open Banking Implementation Entity
When studying banking APIs in the UK, one advantage
is clear. They have a dedicated entity overseeing the
progress made by banks, when it comes to APIs. “The
Open Banking Implementation Entity was created by
the UK’s Competition and Markets Authority (CMA) to
create software standards and industry guidelines that
drive competition and innovation in UK retail banking.”
After publishing a report in 2016, which found that older,
larger banks do not have to compete hard enough for
customers business, and that small banks were finding
it difficult to compete in the market, the CMA proposed
a number of remenedies which included the Open
Banking entity, to help enable individual and business
customers to securely share their account information
with 3rd party providers.
We hear a lot about the PSD2 Open Banking standard coming out of the European Union (EU), however in response
to it, and getting out ahead of the regulation, the Open Banking effort in the UK is significantly pushing forward the
banking API conversation, and establishing a blueprint for doing API banking that other countries should consider.
The Open Banking Implementation Entity is governed
by the CMA, and funded by the UK’s nine largest banks,
including Allied Irish Bank, Bank of Ireland, Barclays,
Danske, HSBC, Lloyds Banking Group, Nationwide,
RBS Group and Santander. Open Banking is setup to
design and evolve the specifications for APIs which
banks can use to operate, and support secure, third
party access to account and payment data on behalf of
personal and business customers. Providing guidelines
for participation in the banking ecosystem, oversee the
management of the directory, and handle the process for
managing disputes and complaints.
Bringing Standards To The Banking API Space
Open Banking brings a standard set of banking API
specifications and data standards to the table, providing a
common interface which banks can implement to ensure
customers account and payment data is available in web
and mobile applications.When 3rd party developers are
building these applications, they don’t have customize
each integration with an individual banks, as they all
speak the same language, helping ensure applications
work with many banks, and customers can easily
migrate, switch, and sync their data between providers,
with the assistance of 3rd party application developers.
Read Or Write Account And Payment APIs
Open Banking gets right to the heart of the conversation,
andprovidesasetofAPIstandardsanddataspecifications
for interacting with personal and business accounts, and
allows for the initiation of payment transactions. The
set ofAPI standards allow banks to develop and provide
API endpoints that meet an agreed upon standard, which
enablesAccount Information Service Providers (AISPs)
A Blueprint For Open Banking Standards in the UK !
and Payment Initiation Service Providers (PISPs) to
build meaningful applications that customers can put to
use, augmentig the services that banks already offer.
The accounts API specification provides detailed
guidance on delivering the following API paths:
•	 Account Requests - Requesting a new account.
•	 Account Details - Information, and management of
account.
•	 Account Transactions - Working with specific
transactions.
•	 Account Beneficiaries - Understanding the
beneficiaries.
•	 Account Balances - Getting the balance of accounts.
•	 Account Direct Debits - Managing direct account
debits.
•	 Account Standing Orders - Working with account
standing orders.
•	 Account Product - Get details of the account
product.
The payments API specification provides detailed
guidance on delivering the following API paths:
•	 Payments - Working with payments that have
occurred.
•	 Payment Submissions - Submitting new payments
for accounts.
Open Banking provides detailed documentation for the
accounts and payment APis, with machine readable
OpenAPI definitions containing all the technical details
ofthesurfaceareaoftheAPI,andtheunderlyingschema.
Providing the centerpiece of any banking API, and
delivers on the vision of the PSD2
guidance. Allowing read and write
access to customers data, through
a secure, standardized set of APIs
across the banking industry.
This Open Banking guidance
provides access and observability
at the heart of the banking industry.
Leveling the playing field between large and small
banks, while also standardizing the way we describe
an account and payments across all banks. Following
through on banking regulations guidance in the UK,
through the adoption of open API specifications and
schema standards, and ensuring they are not just read
only, and actually allowing the writing to accounts, and
intiating actual real world payments.
Open Banking Security Profile
To secure the accounts and payments APIs, Open
Banking has employed the OAuth standard, which
requires all registered and approved 3rd party developers
to obtain secure tokens from each banking customer
before they can access their accounts, and initiate
payments. OAuth 2.0 is the foundational framework for
API security in Open Banking,
applied in conjunction with the
Financial API (FAPI), a working
in the OpenID foundation which
has created a draft standard for
configuration of financial grade
API security practices. Providing
asecuritystandardfortheplatform
that enjoys wider adoption and
usage beyond just the banking sector, allow applications
to reach a wider audience, and provide a diverse set of
banking soluton.
The usage of OpenID provides full accountability for
all participants, enabling service providers to prove
that they received the original request from the banking
API, but the banking API can also prove that the access
token that comes back was the token that was indeed
associated this specific payment. The combination
of OpenID and OAuth provides a complete identity
and access management solution, ensuring that banks
interests are protected, as well as the security and privacy
of the end customer, while still allowing trusted 3rd
party developers to access accounts, initiate payments,
and develope applications around data made available
via Open Banking APIs.
Open Data API Specifications
In addition to the read and write APIs for accounts and
payments, secured by OAuth and OpenID, the Open
Banking specification provides guidance on public
banking data assets that should be made available.
Providing up to date information about the latest
products and services provided banks, allowing 3rd
party developers to provide applications that go beyond
just end customer account and payment data.
Here are the five areas of public data API guidance
provided by Open Banking:
•	 ATMs - Details on the types and locations of ATMS
for each bank.
•	 Branches - The locaton and detials of all bank
branches.
•	 Personal Accounts - Details about the personal
account products from each bank.
•	 Business Accounts - Details about the business
account products from each bank.
•	 Unsecured SME Loans - Details about the
unsecured loan products from each bank.
•	 Commercial Credit Cards - Details about the
commercial credit card products from each bank.
Open Banking provides detailed documentation for
all six of the public API specifications, with machine
readable OpenAPI definitions containing all the
technical details of the surface area of the APIs, and
the underlying schema. Historically, this data is scraped
from banking websites, opening up all kinds of security

Weitere ähnliche Inhalte

Was ist angesagt?

PSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in EuropePSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in Europe
TransUnion
 
Accenture-Banking-Opportunities-EU-PSD2-v2
Accenture-Banking-Opportunities-EU-PSD2-v2Accenture-Banking-Opportunities-EU-PSD2-v2
Accenture-Banking-Opportunities-EU-PSD2-v2
Petri Syvänne
 
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
Ilkka Ruotsila
 
Unified Payment Interface
Unified Payment InterfaceUnified Payment Interface
Unified Payment Interface
Akash Chandra
 

Was ist angesagt? (19)

PSD2 e Instant payments: l’evoluzione attesa dei pagamenti online, in store e...
PSD2 e Instant payments: l’evoluzione attesa dei pagamenti online, in store e...PSD2 e Instant payments: l’evoluzione attesa dei pagamenti online, in store e...
PSD2 e Instant payments: l’evoluzione attesa dei pagamenti online, in store e...
 
INTERFACE, by apidays - The future is a graph by Martin Buhr, Tyk
INTERFACE, by apidays  - The future is a graph by Martin Buhr, TykINTERFACE, by apidays  - The future is a graph by Martin Buhr, Tyk
INTERFACE, by apidays - The future is a graph by Martin Buhr, Tyk
 
DBX Open Banking
DBX Open BankingDBX Open Banking
DBX Open Banking
 
PSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in EuropePSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in Europe
 
apidays LIVE Australia 2021 - Empowering the fintech ecosystem with APIs by D...
apidays LIVE Australia 2021 - Empowering the fintech ecosystem with APIs by D...apidays LIVE Australia 2021 - Empowering the fintech ecosystem with APIs by D...
apidays LIVE Australia 2021 - Empowering the fintech ecosystem with APIs by D...
 
Accenture-Banking-Opportunities-EU-PSD2-v2
Accenture-Banking-Opportunities-EU-PSD2-v2Accenture-Banking-Opportunities-EU-PSD2-v2
Accenture-Banking-Opportunities-EU-PSD2-v2
 
FABRIC - Open Banking Teaser
FABRIC - Open Banking TeaserFABRIC - Open Banking Teaser
FABRIC - Open Banking Teaser
 
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
PSD2 Strategic options for banks_Accenture Strategy and Accenture Payment Ser...
 
Traditional Banks, Credit Unions Compete Against Digital-Only Banks
Traditional Banks, Credit Unions Compete Against Digital-Only BanksTraditional Banks, Credit Unions Compete Against Digital-Only Banks
Traditional Banks, Credit Unions Compete Against Digital-Only Banks
 
apidays LIVE Australia 2021 - Open Banking: Successful Implementation Strateg...
apidays LIVE Australia 2021 - Open Banking: Successful Implementation Strateg...apidays LIVE Australia 2021 - Open Banking: Successful Implementation Strateg...
apidays LIVE Australia 2021 - Open Banking: Successful Implementation Strateg...
 
Beyond Open Banking : Uncovering The Opportunities Ahead- 21st april 2021 - N...
Beyond Open Banking : Uncovering The Opportunities Ahead- 21st april 2021 - N...Beyond Open Banking : Uncovering The Opportunities Ahead- 21st april 2021 - N...
Beyond Open Banking : Uncovering The Opportunities Ahead- 21st april 2021 - N...
 
Psd2 brochure
Psd2 brochurePsd2 brochure
Psd2 brochure
 
Implementing Open Banking with ForgeRock
Implementing Open Banking with ForgeRockImplementing Open Banking with ForgeRock
Implementing Open Banking with ForgeRock
 
Mobile Wallet Services
Mobile Wallet ServicesMobile Wallet Services
Mobile Wallet Services
 
2016 Feb 17th Berlin - MPE2016 - PSD2 merchants impact
2016 Feb 17th Berlin - MPE2016 - PSD2 merchants impact2016 Feb 17th Berlin - MPE2016 - PSD2 merchants impact
2016 Feb 17th Berlin - MPE2016 - PSD2 merchants impact
 
Unified Payment Interface
Unified Payment InterfaceUnified Payment Interface
Unified Payment Interface
 
BANQ Services
BANQ ServicesBANQ Services
BANQ Services
 
Unified payment interface
Unified payment interfaceUnified payment interface
Unified payment interface
 
Upi training
Upi trainingUpi training
Upi training
 

Ähnlich wie A blueprint for open banking standards in the United Kingdom

Oracle-Financial-Services.pdf
Oracle-Financial-Services.pdfOracle-Financial-Services.pdf
Oracle-Financial-Services.pdf
mario boxing
 
The Emergence of Open Banking and COVID-19
The Emergence of Open Banking and COVID-19The Emergence of Open Banking and COVID-19
The Emergence of Open Banking and COVID-19
Sam Ghosh
 

Ähnlich wie A blueprint for open banking standards in the United Kingdom (20)

Api testing for open banking operations
Api testing for open banking operationsApi testing for open banking operations
Api testing for open banking operations
 
The Benefits and Challenges of Open Banking API for Fintech.pdf
The Benefits and Challenges of Open Banking API for Fintech.pdfThe Benefits and Challenges of Open Banking API for Fintech.pdf
The Benefits and Challenges of Open Banking API for Fintech.pdf
 
MTBiz January 2018
MTBiz January 2018MTBiz January 2018
MTBiz January 2018
 
Big Data Helsinki v 3 | "What you should know about PSD2 APIs?" - Joonas Tomperi
Big Data Helsinki v 3 | "What you should know about PSD2 APIs?" - Joonas TomperiBig Data Helsinki v 3 | "What you should know about PSD2 APIs?" - Joonas Tomperi
Big Data Helsinki v 3 | "What you should know about PSD2 APIs?" - Joonas Tomperi
 
Oracle-Financial-Services.pdf
Oracle-Financial-Services.pdfOracle-Financial-Services.pdf
Oracle-Financial-Services.pdf
 
aplonAPI Product Presentation
aplonAPI Product PresentationaplonAPI Product Presentation
aplonAPI Product Presentation
 
2022 apidays LIVE Helsinki & North_Open Banking and Companies Data
2022 apidays LIVE Helsinki & North_Open Banking and Companies Data2022 apidays LIVE Helsinki & North_Open Banking and Companies Data
2022 apidays LIVE Helsinki & North_Open Banking and Companies Data
 
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
 
Global Open Banking Landscape
Global Open Banking LandscapeGlobal Open Banking Landscape
Global Open Banking Landscape
 
Open Banking Report Executive Summary
Open Banking Report Executive SummaryOpen Banking Report Executive Summary
Open Banking Report Executive Summary
 
The Emergence of Open Banking and COVID-19
The Emergence of Open Banking and COVID-19The Emergence of Open Banking and COVID-19
The Emergence of Open Banking and COVID-19
 
Open banking standards: The future of banks?
Open banking standards: The future of banks?Open banking standards: The future of banks?
Open banking standards: The future of banks?
 
Le monde des paiements à l'ère de PSD2 - Défis et opportunités
Le monde des paiements à l'ère de PSD2 - Défis et opportunitésLe monde des paiements à l'ère de PSD2 - Défis et opportunités
Le monde des paiements à l'ère de PSD2 - Défis et opportunités
 
Open Banking via APIc 2018
Open Banking via APIc 2018Open Banking via APIc 2018
Open Banking via APIc 2018
 
Deploying Open Banking APIs on AWS
Deploying Open Banking APIs on AWSDeploying Open Banking APIs on AWS
Deploying Open Banking APIs on AWS
 
Open Banking via API Connect & DataPower
Open Banking via API Connect & DataPowerOpen Banking via API Connect & DataPower
Open Banking via API Connect & DataPower
 
Navigating-the-API-Ecosystem-Strategies-for-Effective-Management-in-the-Banki...
Navigating-the-API-Ecosystem-Strategies-for-Effective-Management-in-the-Banki...Navigating-the-API-Ecosystem-Strategies-for-Effective-Management-in-the-Banki...
Navigating-the-API-Ecosystem-Strategies-for-Effective-Management-in-the-Banki...
 
Enough talking - it's time to start doing
Enough talking - it's time to start doingEnough talking - it's time to start doing
Enough talking - it's time to start doing
 
Open banking-Future of Banking
Open banking-Future of BankingOpen banking-Future of Banking
Open banking-Future of Banking
 
Άσπα Παλημέρη, 5th Digital Banking Forum
Άσπα Παλημέρη, 5th Digital Banking ForumΆσπα Παλημέρη, 5th Digital Banking Forum
Άσπα Παλημέρη, 5th Digital Banking Forum
 

Mehr von Eric Horesnyi

Mehr von Eric Horesnyi (7)

Evolution of Banks in the Digital Age - Apidays.io London 2019
Evolution of Banks in the Digital Age - Apidays.io London 2019Evolution of Banks in the Digital Age - Apidays.io London 2019
Evolution of Banks in the Digital Age - Apidays.io London 2019
 
2018 12-10 apidays.io eric horesnyi streamdata.io event-driven ap is
2018 12-10 apidays.io eric horesnyi streamdata.io event-driven ap is2018 12-10 apidays.io eric horesnyi streamdata.io event-driven ap is
2018 12-10 apidays.io eric horesnyi streamdata.io event-driven ap is
 
Laplace Daemon: from a math theory to AI practice
Laplace Daemon: from a math theory to AI practiceLaplace Daemon: from a math theory to AI practice
Laplace Daemon: from a math theory to AI practice
 
A Modern API Toolbox
A Modern API ToolboxA Modern API Toolbox
A Modern API Toolbox
 
Elements of the Fintech revolution - JAX Finance Keynote - April 2016
Elements of the Fintech revolution - JAX Finance Keynote - April 2016Elements of the Fintech revolution - JAX Finance Keynote - April 2016
Elements of the Fintech revolution - JAX Finance Keynote - April 2016
 
Real-time API consumption / API streaming: why? what? how?
Real-time API consumption / API streaming: why? what? how?Real-time API consumption / API streaming: why? what? how?
Real-time API consumption / API streaming: why? what? how?
 
Network-Based Architectures : Haussmann Fielding Fowler
Network-Based Architectures : Haussmann Fielding FowlerNetwork-Based Architectures : Haussmann Fielding Fowler
Network-Based Architectures : Haussmann Fielding Fowler
 

Kürzlich hochgeladen

Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get CytotecAbortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Riyadh +966572737505 get cytotec
 
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
shivangimorya083
 
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in Kishangarh
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in  KishangarhDelhi 99530 vip 56974 Genuine Escort Service Call Girls in  Kishangarh
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in Kishangarh
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
shivangimorya083
 
Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...
shambhavirathore45
 
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
shivangimorya083
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
Lars Albertsson
 

Kürzlich hochgeladen (20)

Zuja dropshipping via API with DroFx.pptx
Zuja dropshipping via API with DroFx.pptxZuja dropshipping via API with DroFx.pptx
Zuja dropshipping via API with DroFx.pptx
 
Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get CytotecAbortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
 
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls Punjabi Bagh 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
Invezz.com - Grow your wealth with trading signals
Invezz.com - Grow your wealth with trading signalsInvezz.com - Grow your wealth with trading signals
Invezz.com - Grow your wealth with trading signals
 
BDSM⚡Call Girls in Mandawali Delhi >༒8448380779 Escort Service
BDSM⚡Call Girls in Mandawali Delhi >༒8448380779 Escort ServiceBDSM⚡Call Girls in Mandawali Delhi >༒8448380779 Escort Service
BDSM⚡Call Girls in Mandawali Delhi >༒8448380779 Escort Service
 
Discover Why Less is More in B2B Research
Discover Why Less is More in B2B ResearchDiscover Why Less is More in B2B Research
Discover Why Less is More in B2B Research
 
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
 
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdfMarket Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
 
Data-Analysis for Chicago Crime Data 2023
Data-Analysis for Chicago Crime Data  2023Data-Analysis for Chicago Crime Data  2023
Data-Analysis for Chicago Crime Data 2023
 
CebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptxCebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptx
 
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
 
Cheap Rate Call girls Sarita Vihar Delhi 9205541914 shot 1500 night
Cheap Rate Call girls Sarita Vihar Delhi 9205541914 shot 1500 nightCheap Rate Call girls Sarita Vihar Delhi 9205541914 shot 1500 night
Cheap Rate Call girls Sarita Vihar Delhi 9205541914 shot 1500 night
 
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in Kishangarh
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in  KishangarhDelhi 99530 vip 56974 Genuine Escort Service Call Girls in  Kishangarh
Delhi 99530 vip 56974 Genuine Escort Service Call Girls in Kishangarh
 
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
 
Smarteg dropshipping via API with DroFx.pptx
Smarteg dropshipping via API with DroFx.pptxSmarteg dropshipping via API with DroFx.pptx
Smarteg dropshipping via API with DroFx.pptx
 
Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...
 
Carero dropshipping via API with DroFx.pptx
Carero dropshipping via API with DroFx.pptxCarero dropshipping via API with DroFx.pptx
Carero dropshipping via API with DroFx.pptx
 
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip CallDelhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
Delhi Call Girls CP 9711199171 ☎✔👌✔ Whatsapp Hard And Sexy Vip Call
 
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
 

A blueprint for open banking standards in the United Kingdom

  • 1. White Paper A Blueprint For Open Banking Standards In The United Kingdom http://streamdata.io Prepared by: Kin Lane API Evangelist New York, NY kin.lane@streamdata.io
  • 2. There has been a lot of chatter regarding the Payment Services Directive2 (PSD2) in Europe this year, as the January 2018 deadline rolled around. While many banks are still trying to put an API strategy in place, an organization in the UK has been rolling out APIs for their top banks. While the results of the effort won’t be known for some time, the work out of the Open Banking ImplementationEntity,providesthetechnicallystrongest strategy for delivering APIs across Europe, and for that matter, anywhere in the world to date. As we work to map out the progress of PSD2 across Europe, we wanted to pause for a moment and highlight the traction regulators are getting in the UK, and break down their approach into a blueprint that regulators in France, Germany, and other EU countries can consider as they work to get their banking industries up to speed with APIs, and the PSD2 regulations. Up until now, there has been a lot of talk around APIs in banking, and FinTech innovation, but the UK provides us with a real world example of how APIs can get done from the top down. Providing a blueprint for not just banking, but potentially any industry looking to increase the competitive balance within an industry, and open up data, content, algorithms, and other digital resources to better service individuals, businesses, and even the government sector. The Open Banking Implementation Entity When studying banking APIs in the UK, one advantage is clear. They have a dedicated entity overseeing the progress made by banks, when it comes to APIs. “The Open Banking Implementation Entity was created by the UK’s Competition and Markets Authority (CMA) to create software standards and industry guidelines that drive competition and innovation in UK retail banking.” After publishing a report in 2016, which found that older, larger banks do not have to compete hard enough for customers business, and that small banks were finding it difficult to compete in the market, the CMA proposed a number of remenedies which included the Open Banking entity, to help enable individual and business customers to securely share their account information with 3rd party providers. We hear a lot about the PSD2 Open Banking standard coming out of the European Union (EU), however in response to it, and getting out ahead of the regulation, the Open Banking effort in the UK is significantly pushing forward the banking API conversation, and establishing a blueprint for doing API banking that other countries should consider. The Open Banking Implementation Entity is governed by the CMA, and funded by the UK’s nine largest banks, including Allied Irish Bank, Bank of Ireland, Barclays, Danske, HSBC, Lloyds Banking Group, Nationwide, RBS Group and Santander. Open Banking is setup to design and evolve the specifications for APIs which banks can use to operate, and support secure, third party access to account and payment data on behalf of personal and business customers. Providing guidelines for participation in the banking ecosystem, oversee the management of the directory, and handle the process for managing disputes and complaints. Bringing Standards To The Banking API Space Open Banking brings a standard set of banking API specifications and data standards to the table, providing a common interface which banks can implement to ensure customers account and payment data is available in web and mobile applications.When 3rd party developers are building these applications, they don’t have customize each integration with an individual banks, as they all speak the same language, helping ensure applications work with many banks, and customers can easily migrate, switch, and sync their data between providers, with the assistance of 3rd party application developers. Read Or Write Account And Payment APIs Open Banking gets right to the heart of the conversation, andprovidesasetofAPIstandardsanddataspecifications for interacting with personal and business accounts, and allows for the initiation of payment transactions. The set ofAPI standards allow banks to develop and provide API endpoints that meet an agreed upon standard, which enablesAccount Information Service Providers (AISPs) A Blueprint For Open Banking Standards in the UK !
  • 3. and Payment Initiation Service Providers (PISPs) to build meaningful applications that customers can put to use, augmentig the services that banks already offer. The accounts API specification provides detailed guidance on delivering the following API paths: • Account Requests - Requesting a new account. • Account Details - Information, and management of account. • Account Transactions - Working with specific transactions. • Account Beneficiaries - Understanding the beneficiaries. • Account Balances - Getting the balance of accounts. • Account Direct Debits - Managing direct account debits. • Account Standing Orders - Working with account standing orders. • Account Product - Get details of the account product. The payments API specification provides detailed guidance on delivering the following API paths: • Payments - Working with payments that have occurred. • Payment Submissions - Submitting new payments for accounts. Open Banking provides detailed documentation for the accounts and payment APis, with machine readable OpenAPI definitions containing all the technical details ofthesurfaceareaoftheAPI,andtheunderlyingschema. Providing the centerpiece of any banking API, and delivers on the vision of the PSD2 guidance. Allowing read and write access to customers data, through a secure, standardized set of APIs across the banking industry. This Open Banking guidance provides access and observability at the heart of the banking industry. Leveling the playing field between large and small banks, while also standardizing the way we describe an account and payments across all banks. Following through on banking regulations guidance in the UK, through the adoption of open API specifications and schema standards, and ensuring they are not just read only, and actually allowing the writing to accounts, and intiating actual real world payments. Open Banking Security Profile To secure the accounts and payments APIs, Open Banking has employed the OAuth standard, which requires all registered and approved 3rd party developers to obtain secure tokens from each banking customer before they can access their accounts, and initiate payments. OAuth 2.0 is the foundational framework for API security in Open Banking, applied in conjunction with the Financial API (FAPI), a working in the OpenID foundation which has created a draft standard for configuration of financial grade API security practices. Providing asecuritystandardfortheplatform that enjoys wider adoption and usage beyond just the banking sector, allow applications to reach a wider audience, and provide a diverse set of banking soluton. The usage of OpenID provides full accountability for all participants, enabling service providers to prove that they received the original request from the banking API, but the banking API can also prove that the access token that comes back was the token that was indeed associated this specific payment. The combination of OpenID and OAuth provides a complete identity and access management solution, ensuring that banks interests are protected, as well as the security and privacy of the end customer, while still allowing trusted 3rd party developers to access accounts, initiate payments, and develope applications around data made available via Open Banking APIs. Open Data API Specifications In addition to the read and write APIs for accounts and payments, secured by OAuth and OpenID, the Open Banking specification provides guidance on public banking data assets that should be made available. Providing up to date information about the latest products and services provided banks, allowing 3rd party developers to provide applications that go beyond just end customer account and payment data. Here are the five areas of public data API guidance provided by Open Banking: • ATMs - Details on the types and locations of ATMS for each bank. • Branches - The locaton and detials of all bank branches. • Personal Accounts - Details about the personal account products from each bank. • Business Accounts - Details about the business account products from each bank. • Unsecured SME Loans - Details about the unsecured loan products from each bank. • Commercial Credit Cards - Details about the commercial credit card products from each bank. Open Banking provides detailed documentation for all six of the public API specifications, with machine readable OpenAPI definitions containing all the technical details of the surface area of the APIs, and the underlying schema. Historically, this data is scraped from banking websites, opening up all kinds of security