Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

3.2 Customer Experience Checklist and Customer Experience Considerations

Considerations

S.No.

Customer Experience Checklist and Customer Experience

Considerations 

 Participant

Implementation Requirements

1

ASPSP selection

  • AISPs must ask the user/customer to identify their ASPSP before requesting consent so that the consent request can be constructed in line with the ASPSP’s data capabilities (which the ASPSP must make available to all AISPs)

AISP

Required

 

2

Data Selection

  • The AISP must provide the user/customer with a description of the data being requested using the structure and language recommended by Bahrain OBF (refer section ‘Permission and Data Cluster Structure’ below) and ensure that this request is specific to only the information required for the provision of their account information service to the user/customer

  • The AISP must present the data at a Data Cluster level and allow the user/customer to expand the level of detail to show each Data Permission. The AISP should only present those data clusters relevant for the product type in question. Where the request is for multiple product types then the detail shown in the data cluster should explain to the user/customer the product types to which it applies or state that it is shared across multiple product types

  • AISPs must allow the user/customers to choose the type of data to be collected and used by the AISP. AISPs must provide user/customers with sufficient information to enable user/customers to make an informed decision, for example, detail the purpose for which the data will be used (including whether any other parties will have access to the information) the period over which it has been requested and when the consent for the account information will expire

  • AISP must allow user/consumer to choose the period over which data will be collected and used by actively selecting or otherwise clearly indicating the period of that collection and use*

AISP details

  • AISPs must display the company’s trading name/brand name (i.e. the Client Name) to the user/customer during the setup and revocation of consent. If the AISP is only trading with its registered company name then it must display that name to the user/customer

  • For examples of what names should be displayed, please refer the section “Sample displays by AISP” below

CX Considerations:

  • AISP may consider the use of various consent capture design patterns such as checkboxes, toggles, scales, and binary yes/no choices to enhance user/consumer experience

AISP

Required

3

User/Customer consent

  • Once users/customer has consented, the user/customer will be directed to their ASPSP. Please refer section Effective use of redirection screens for relevant messaging

CX Considerations:

  • AISP should make the user/customer aware on the inbound redirection screen that they will be taken to their ASPSP for authentication for account access. AISPs should provide messaging to inform the user/customer that they will be taken to their ASPSPs to complete the process. Example wording: "You will be securely transferred to your ASPSP to authenticate and choose the account for accessing information"

  • Generic AISP to ASPSP redirection screen and message

AISP

Required

4

CX Considerations:

  • Generic AISP to ASPSP redirection screen and message

SCA - Strong Customer Authentication

  • ASPSP must allow users/customers to perform a SCA Authentication. The ASPSP authentication must have no more than the number of steps that the user/customer would experience when directly accessing the ASPSP channel

ASPSP

Required

5

Information summary

  • ASPSPs must display the AISPs’ trading name/brand name (i.e. the Client Name) to the user/customer during authentication screens and on any Access Dashboards. They do not need to display the registered company name of the AISP even if it is different

  • ASPSPs must allow user/customers to select the account for data sharing with AISP

  • ASPSPs must not seek confirmation of the consent that has already been provided by the user/customer to the AISP

  • Once the user/customer has selected the account(s), refer to section Effective use of redirection screens for redirection messaging

For examples of what names should be displayed, please refer the section “Sample displays by AISP

CX consideration:

  • If the ASPSP provides an option for the user/customer to view the data they have consented to share with the AISP as supplementary information, this must be done using the structure and language recommended by Bahrain OBF (see Data Cluster Structure & Language below). Display of such information must not be provided to the user/customer as a default

  • Generic ASPSP to AISP redirection screen and message

 

 

 

 

ASPSP

 

 

 

 

Required

 6

AISP confirmation

  • The AISP must confirm the successful completion of the account information request to the user/customer

AISP

Required

*A maximum of one year “rolling requirement” for sharing historical data Or the “maximum duration of data available in ASPSPs online channel" (i.e., the amount of historical data (in months/years) that should be provided from the date of a data request). If the user/customer choose to share <12 months historical data then ASPSPs has to send only the data for the requested period. For Example: If a user/customer request data on 1st June 2020 then the rolling data would include the data from 1st June 2019 till 31st May 2020.

Sample displays by AISP:

Customer-facing entity name /Trading Name (Client Name in Software Statement)

Registered Legal Entity Name (Company Name/ Organization Name)

What to display

XYZ Trades

XYZ Company Ltd.

XYZ Trades

XYZ Company Ltd.

XYZ Company Ltd.

XYZ Company Ltd.

...

The following table describes how permissions should be grouped into Data Clusters and the language that must be used to describe the data at each of these levels. Both AISPs and ASPSPs must describe the data being shared at a Data Cluster level and allow the user/customer to “drill-down” to see the detail at Permission level using the permission language set-out in the table below. Where both Basic and Detail permissions are available from the same API end point, the Detail permission contains all data elements of the Basic permission plus the additional elements described in the table.

S. No.

Data Cluster Language

API End Points

Permissions

Description of the field

Information Available

 

 

1

Your Account Details

Accounts

Accounts Basic

Any other name by which you refer to this account and/or the currency of the account

Currency of the account, Nickname of account (E.g. ‘Abdulla's Household account’)

Accounts Detail

Your account name and account number

Account Name, Account Number (IBAN) (plus all data provided in Accounts Basic)

Balances

Balances

Your account balance

Amount, Currency, Credit/Debit, Type of Balance, Date/Time

All where PAN is available

PAN

Your card number

PAN in masked or unmasked form as currently  displayed on the ASPSP’s online channel

Note: Masking of PAN must be as per existing regulations in Bahrain

2

Your Regular Payments

Beneficiaries

Beneficiaries Basic

Payee agreements you have set up

List of Beneficiaries

Beneficiaries Detail

Details of Payee agreements you have set up

Details of Beneficiaries account information (Name, Account) (plus all data provided in Beneficiaries Basic)

Standing Orders

Standing Order Basic

Your Standing Orders

Standing Order Info, Frequency, Creditor Reference Info, First/Next/Final Payment info

Standing Order Detail

Details of your Standing Orders

Details of Creditor Account Information (Name, Account) (plus all data provided in Standing Order Basic)

Direct Debits

Direct Debits

Your Direct Debits

Mandate info, Status, Name, Previous payment information

Future Dated Payments

Future Dated Payments Basic

Recurring and future dated payments

Scheduled dates, amount, reference. Does not include information about the beneficiary

Future Dated Payments Detail

Details of recurring and future dated payments

Scheduled dates, amount, reference. Includes information about the beneficiary

3

Your Account Transactions

Transactions

Transactions Basic Credits

Your incoming transactions

Transaction Information on payments made into the user’s/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Does not include information about the entity that made the payment

Transactions Basic Debits

Your outgoing transactions

Same as above, but for debits

Transactions Detail Credits

Details of your incoming transactions

Transaction Information on payments made into the user’s/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Includes information about the entity that made the payment such as merchant code, merchant address, etc.

Transactions Detailed Debits

Details of your outgoing transactions

Same as above but for debits

Transactions Basic

Your transactions

Transaction Information on payments for both credits in and debits out of the user’s/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Does not include information about the payer/payee

Transactions Detail

Details of your transactions

Transaction Information on payments made both credits in and debits out of the user’s/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Includes information about the payer/payee such as code/ID, address, etc.

4

Your Statements

Statements

Statements Basic

Information contained in your statement

All statement information excluding specific amounts related to various balance types, payments due etc.

Statements Detail

Details of information contained in your statement

All statement information including specific amounts related to various balance types, payments due etc.

5

Your Account Features and Benefits

Supplementary Account Information

Supplementary Account Info

Product details – fees, charges, interest

Refers to Section supplementary Info below (the fees, charges, interest)

Offers

Offers available on your account

Balance transfer, promotional rates, limit increases, start & end dates

6

Contact and party details

Account specific:

·    Parties

·    Party

Party

The full legal name(s) of account holder(s)

Address(es), telephone number(s) and email address(es)

The name of the account. Full Legal Name(s), Account Role(s), Beneficial Ownership, Legal Structure, Address or addresses, telephone numbers and email address as held by the bank/card issuer and party type (sole/joint etc.)

...