...
S. No. | Requirements and Considerations | Participant | Implementation Requirements |
1 | ASPSP selection AISPs must ask the PSU to identify their ASPSP before requesting consent so that the consent request can be constructed in line with the ASPSP’s data capabilities (which the ASPSP must make available to all TPPs). ASPSP Implementation guides, which are located on the Open Banking Developer Zone will have information about the ASPSP’s data capabilities. |
AISP |
Required |
2 | AISPs must provide PSUs with sufficient information to enable PSUs to make an informed decision, for example, detail the purpose for which the data will be used (including whether any other parties will have access to the information) the period over which it has been requested and when the consent for the account information will expire (consent could be on-going or one-off) AISPs must display the company’s trading name/brand name (i.e. the Client Name) to the PSU during the setup and revocation of consent. If the AISP is only trading with its registered company name then it must display that name to the PSU If the AISP is not the user/customer-facing entity and there is an Agent who is acting on behalf of the AISP, then the Agent must make the PSU aware that they are acting as an agent on behalf of the AISP and must also, display the AISP’s full trading name/brand name or registered company name whichever is the user/customer-facing brand of the AISP AISPs must also, populate the Agent company name in the ‘On behalf of’ field of the software statement, in order to inform the ASPSP about the agency relationship and allow the ASPSP to be able to display this information to the PSU (please refer to item #5). Only in instances where there is an Agent acting on behalf of the AISP, the ‘On Behalf of’ name must be displayed to the PSU. AISPs must not populate the ‘On behalf of’ field with the details of their TSP For examples of what names should be displayed, please refer the section “Sample displays by TPP” below |
AISP |
Required |
3 | The AISP must provide the PSU with a description of the data being requested using the structure and language recommended by BOBF (see Data Cluster Structure & Language below) and ensure that this request is specific to only the information required for the provision of their account information service to the PSU The AISP must present the data at a Data Cluster level and allow the PSU to expand the level of detail to show each Data Permission. The AISP should only present those data clusters relevant for the product type in question. Where the request is for multiple product types then the detail shown in the data cluster should explain to the user/customer the product types to which it applies or state that it is shared across multiple product types. AISPs must allow the PSUs to choose the type of data to be collected and used by the AISP. Once PSU has consented, the PSU will be directed to their ASPSP. Please refer section Effective use of redirection screens for relevant messaging CX Considerations: Take points from ACCC document |
AISP |
Required |
4 | CX consideration: AISP should make the PSU aware on the inbound redirection screen that they will be taken to their ASPSP for authentication for account access ASPSP allows PSUs to perform a SCA Authentication (including dynamic linking). The ASPSP authentication must have no more than the number of steps that the PSU would experience when directly accessing the ASPSP channel CX consideration: ASPs should provide messaging to inform PSUs that they will be taken to their ASPSPs to complete the process Example wording: "You will be securely transferred to YOUR ASPSP to authenticate and choose the account for accessing information" |
AISP |
Required |
5 | Information summary
For examples of what names should be displayed, please refer the section “Sample displays by TPP” below CX consideration: If the ASPSP provides an option for the PSU to view the data they have consented to share with the AISP as supplementary information, this must be done using the structure and language recommended by BOBF (see Data Cluster Structure & Language below). Display of such information must not be provided to the PSU as a default |
ASPSP |
Required |
6 | The AISP should confirm the successful completion of the account information request to the PSU | AISP | Required |
...
S. No. | Data Cluster Language | API End Points | Permissions | Description of the field | Information Available |
1 | Your Account Details | Accounts | Accounts Basic | Any other name by which you refer to this account and/or the currency of the account | Currency of the account, Nickname of account (E.g. ‘Jakes Household account’) |
Accounts Detail | Your account name, number and sort-code | Account Name, Sort Code, Account Number, IBAN, Roll Number (used for Building Society) (plus all data provided in Accounts Basic) | |||
Balances | Balances | Your account balance | Amount, Currency, Credit/Debit, Type of Balance, Date/Time | ||
All where IBAN is available | IBAN | Your card number | IBAN masked or unmasked depending on how ASPSP displays online currently | ||
2 | Your Regular Payments | Beneficiaries | Beneficiaries Basic | Payee agreements you have set up | List of Beneficiaries |
Beneficiaries Detail | Details of Payee agreements you have set up | Details of Beneficiaries account information (Name, Sort Code, Account) (plus all data provided in Beneficiaries Basic) | |||
Standing Orders | Standing Order Basic | Your Standing Orders | SO Info, Frequency, Creditor Reference Info, First/Next/Final Payment info | ||
Standing Order Detail | Details of your Standing Orders | Details of Creditor Account Information (Name, Sort Code, Account) (plus all data provided in Standing Order Basic) | |||
Direct Debits | Direct Debits | Your Direct Debits | Mandate info, Status, Name, Previous payment information | ||
Scheduled Payments | Scheduled Payments Basic | Recurring and future dated payments | Scheduled dates, amount, reference. Does not include information about the beneficiary | ||
Scheduled Payments Detail | Details of recurring and future dated payments | Scheduled dates, amount, reference. Includes information about the beneficiary | |||
3 | Your Account Transactions | Transactions | Transactions Basic Credits | Your incoming transactions | Transaction Information on payments made into the user/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code(-M7] ). Does not include information about the entity that made the payment |
Transactions Basic Debits | Your outgoing transactions | Same as above, but for debits | |||
Transactions Detail Credits | Details of your incoming transactions | Transaction Information on payments made into the user/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Includes information about the entity that made the payment | |||
Transactions Detailed Debits | Details of your outgoing transactions | Same as above but for debits | |||
Transactions Basic | Your transactions | Transaction Information on payments for both credits in and debits out of the user/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Does not include information about the payer/payee | |||
Transactions Detail | Details of your transactions | Transaction Information on payments made both credits in and debits out of the user/customer’s account (Reference, Amount, Status, Booking Data Info, Value Date info, Transaction Code). Includes information about the payer/payee | |||
4 | Your Statements | Statements | Statements Basic | Information contained in your statement | All statement information excluding specific amounts related to various balance types, payments due etc. |
Statements Detail | Details of information contained in your statement | All statement information including specific amounts related to various balance types, payments due etc. | |||
5 | Your Account Features and Benefits | Products | Product | Product details – fees, charges, interest, benefits/rewards | Refers to Section Product details below (the fees, charges, interest, benefits/rewards). Applicable to PCA and BCA |
Offers | Offers available on your account | Balance transfer, promotional rates, limit increases, start & end dates | |||
6 | Contact and party details | Account specific:
| Party | The full legal name(s) of account holder(s) Address(es), telephone number(s) and email address(es) | The name of the account. Full Legal Name(s), Account Role(s), Beneficial Ownership, Legal Structure, Address or addresses, telephone numbers and email address as held by the bank/card issuer and party type (sole/joint etc.) |
...
For the purpose of Bahrain’s open banking the following list of products and services to be shared by the ASPSPs (Banks) to the AISP upon users/customers consent and Authorisation.
...