Open Banking for Developers #fapisum - Japan/UK Open Banking and APIs Summit 2018 - July 24, 2018

FinTechLabs.io
FinTechLabs.ioFinTechLabs.io
© Open Banking Limited 2018
Open Banking Financial API Workshop
July 2018
Ralph Bragg, Ecosystem Architect
© Open Banking Limited 2018 2
OPEN BANKING UPDATE
Tasked with delivering the Open Banking API standards and security architecture
The CMA9 are the UK’s nine largest current account providers: AIBG, Bank of Ireland, Barclays, Danske, HSBC, Lloyds
Banking Group, Nationwide, RBS and Santander
The Open Banking Implementation Entity (OBIE)
OBIE was set up
by the CMA
in September
2016
A world leader in
the implementation
of the Open
Banking Remedies,
assisting in the
delivery of the first
APIs
A private body
whose
governance,
composition and
budget was
determined by the
CMA
Funded by the
CMA9 and
overseen by the
CMA, the Financial
Conduct Authority
(FCA) and Her
Majesty’s Treasury
© Open Banking Limited 2018 3
INTRODUCTION
Four broad categories of standards and information necessary for the API economy
OBIE Creating Banking Standards
IDENTITY
A “WHITE LIST”
OF TRUSTED
PARTICIPANTS
AND CUSTOMER
RELEVENT
OFFERINGS
REFERENCE DATA
”OPEN DATA”
API
BANK PRODUCT
DESCRIPTIONS
ATM LOCATIONS
USERS DATA
“READ WRITE”
API
ACCOUNT
INFORMATION
PAYMENTS
OPEN BANKING UK OPEN BANKING UK
SECURITY
“MATURE OPEN
SECURITY
STANDARD”
INCLUDING
CONSENT AND
AUTHORIZATION
OPEN BANKING UK, STET,
BERLIN GROUP, ISO 22022
OPEN BANKING UK
© Open Banking Limited 2018 4
INTRODUCTION
The only body in Europe mandated to ensuring nationally consistent implementation to realize an ecosystem not
just enable participant compliance
OBIE Building an Ecosystem!
IDENTITY
A “WHITE LIST”
OF TRUSTED
PARTICIPANTS
AND CUSTOMER
RELEVENT
OFFERINGS
REFERENCE DATA
”OPEN DATA”
API
BANK PRODUCT
DESCRIPTIONS
ATM LOCATIONS
USERS DATA
“READ WRITE”
API
ACCOUNT
INFORMATION
PAYMENTS
SECURITY
“MATURE OPEN
SECURITY
STANDARD”
INCLUDING
CONSENT AND
AUTHORIZATION
ENSURE CONSISTENT IMPLEMENTATIONS FOR ALL CMA9 and THIRD PARTIES
© Open Banking Limited 2018 5
INTRODUCTION
Time to onboard to new providers is the biggest barrier for new entrants followed very closely by consistency of
offering.
OBIE An ecosystem for developers
IDENTITY
OB Onboarding (1 API Call)
Application Registration (1 API Call)
Provider Bank Discovery (1 API Call)
Provider Onboarding (1 API Call)
Swagger (Open API) Fully Specified
OPEN BANKING UK
SECURITY
A Common Security Framework
(70million accounts)
A Common Consent and Authorization
Model
Standard Designed to Protect Third-
Parties and Banks
OPEN BANKING UK
© Open Banking Limited 2018
Yolt – Starling demo – What does it look like?
6
OPEN BANKING UPDATE
© Open Banking Limited 2018
© Open Banking Limited 2018
What’s in each version
OPEN BANKING UPDATE
V1 (Jan 18)
• AIS (Account &
Transaction Data)
• PIS (Single Immediate
Payments only)
• PCA/BCA accounts in
GBP
V2 (Aug 18)
• Extended AIS all PSD2
accounts (e.g. cards,
savings, mortgages)
• Still only GBP
V3 (Mar-Sep 19)
• AIS and PIS for all
PSD2 accounts and all
currencies
• PIS for multi-auth,
FDP, SO, bulk/batch,
international/FX
• CBPII fund check API
• Decoupled flows
• Enhanced CX
guidelines and
checklists
V4 (Sep 19)
• Notification of
revocation
• TB and SCA
exemptions (inc
Variable Recurring
Payments)
• Other TBC…
OB Directory (eIDAS compliant) + Support + Dispute Management
© Open Banking Limited 2018
The Open Banking Timeline
9
OPEN BANKING UPDATE
PSD2 Comes
into force
Mar
2017
Jan
2018
Aug
2018
Mar
2018
Mar
2019
Sep
2019
Open Data v1
Sep
2016
OBIE
created
RTS application dateRTS published RTS testing
Open Data v2
Jul
2017
Read/Write v1
Read/Write v2
Read/Write v3
Read/Write v4
© Open Banking Limited 2018
How does it work?
© Open Banking Limited 2018
Problem statement
11
OPEN BANKING IDENTITY CHALLENGE
Secure
Understood
by developers
+
Supported by
vendors
Can be
implemented
in time
© Open Banking Limited 2018
API Flow (Account and Transaction)
12
OPEN BANKING IDENTITY CHALLENGE
© Open Banking Limited 2018
Security – striking the balance
13
OPEN BANKING IDENTITY CHALLENGE
2017
© Open Banking Limited 2018
Security – striking the balance
14
OPEN BANKING IDENTITY CHALLENGE
2017
© Open Banking Limited 2018
Security – striking the balance
15
OPEN BANKING UPDATE
© Open Banking Limited 2018
Conformance and certification
16
OPEN BANKING IDENTITY CHALLENGE
© Open Banking Limited 2018
Where are the specifications?
© Open Banking Limited 2018
The API Specifications
18
OPEN BANKING IDENTITY CHALLENGE
Open Banking Developer Zone:
https://openbanking.atlassian.net/
wiki/spaces/DZ/overview
• Security Specifications
• API Definitions
• Swagger Files
• Sequence Diagrams
© Open Banking Limited 2018
How can I test my applications?
© Open Banking Limited 2018
Test Facilities
20
OPEN BANKING IDENTITY CHALLENGE
Reference Banks:
• Provides Test Payment and API Services
Conformance Harness:
• Security Profile Testing
© Open Banking Limited 2018
Thank you
www.openbanking.org.uk
ralph.bragg@openbanking.org.uk
1 of 21

Recommended

The Great British API Client Bake Off #fapisum - Japan/UK Open Banking and AP... by
The Great British API Client Bake Off #fapisum - Japan/UK Open Banking and AP...The Great British API Client Bake Off #fapisum - Japan/UK Open Banking and AP...
The Great British API Client Bake Off #fapisum - Japan/UK Open Banking and AP...FinTechLabs.io
2.7K views17 slides
Open Banking UK “Identity Product” Internals #fapisum - Japan/UK Open Banking... by
Open Banking UK “Identity Product” Internals #fapisum - Japan/UK Open Banking...Open Banking UK “Identity Product” Internals #fapisum - Japan/UK Open Banking...
Open Banking UK “Identity Product” Internals #fapisum - Japan/UK Open Banking...FinTechLabs.io
2.9K views17 slides
FAPI / Open Banking Conformance #fapisum - Japan/UK Open Banking and APIs Sum... by
FAPI / Open Banking Conformance #fapisum - Japan/UK Open Banking and APIs Sum...FAPI / Open Banking Conformance #fapisum - Japan/UK Open Banking and APIs Sum...
FAPI / Open Banking Conformance #fapisum - Japan/UK Open Banking and APIs Sum...FinTechLabs.io
2.9K views18 slides
Authlete FAPI Implementation Part 1 #fapisum - Japan/UK Open Banking and APIs... by
Authlete FAPI Implementation Part 1 #fapisum - Japan/UK Open Banking and APIs...Authlete FAPI Implementation Part 1 #fapisum - Japan/UK Open Banking and APIs...
Authlete FAPI Implementation Part 1 #fapisum - Japan/UK Open Banking and APIs...FinTechLabs.io
11.2K views15 slides
Issues towards Open Banking ecosystem and how OpenID Foundation tackles them ... by
Issues towards Open Banking ecosystem and how OpenID Foundation tackles them ...Issues towards Open Banking ecosystem and how OpenID Foundation tackles them ...
Issues towards Open Banking ecosystem and how OpenID Foundation tackles them ...FinTechLabs.io
181 views30 slides
UKCCC: Open Banking Introduction by
UKCCC: Open Banking IntroductionUKCCC: Open Banking Introduction
UKCCC: Open Banking IntroductionFreddy Kelly
246 views12 slides

More Related Content

What's hot

Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryx by
Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryxFintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryx
Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryxFinTech Belgium
835 views7 slides
NETS by
NETSNETS
NETSOslo Business Region
1.1K views10 slides
Trends in Banking APIs by
Trends in Banking APIsTrends in Banking APIs
Trends in Banking APIsTatsuo Kudo
1.1K views20 slides
Bitdharma slideshow (3) by
Bitdharma slideshow (3)Bitdharma slideshow (3)
Bitdharma slideshow (3)Julio García
253 views10 slides
figo at FinTech Startups MeetUp in Hamburg by
figo at FinTech Startups MeetUp in Hamburgfigo at FinTech Startups MeetUp in Hamburg
figo at FinTech Startups MeetUp in HamburgLars Markull
1.8K views18 slides
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- Neterium by
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- NeteriumFintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- Neterium
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- NeteriumFinTech Belgium
1.1K views5 slides

What's hot(20)

Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryx by FinTech Belgium
Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryxFintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryx
Fintech Belgium - Meetup on Compliance / KYC - Olivier Roucloux - finoryx
FinTech Belgium835 views
Trends in Banking APIs by Tatsuo Kudo
Trends in Banking APIsTrends in Banking APIs
Trends in Banking APIs
Tatsuo Kudo1.1K views
figo at FinTech Startups MeetUp in Hamburg by Lars Markull
figo at FinTech Startups MeetUp in Hamburgfigo at FinTech Startups MeetUp in Hamburg
figo at FinTech Startups MeetUp in Hamburg
Lars Markull1.8K views
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- Neterium by FinTech Belgium
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- NeteriumFintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- Neterium
Fintech Belgium - Meetup on Compliance / KYC - Thomas Gilbert- Neterium
FinTech Belgium1.1K views
Corda Powered Gateway for Sukuk Capital Markets by R3
Corda Powered Gateway for Sukuk Capital MarketsCorda Powered Gateway for Sukuk Capital Markets
Corda Powered Gateway for Sukuk Capital Markets
R3220 views
銀行APIのトレンド #fapisum by Tatsuo Kudo
銀行APIのトレンド #fapisum銀行APIのトレンド #fapisum
銀行APIのトレンド #fapisum
Tatsuo Kudo3.6K views
Bfc swift lab_presentation_2017 by SWIFT
Bfc swift lab_presentation_2017Bfc swift lab_presentation_2017
Bfc swift lab_presentation_2017
SWIFT1.1K views
Global Payments Innovation Initiatives by SWIFT
Global Payments Innovation InitiativesGlobal Payments Innovation Initiatives
Global Payments Innovation Initiatives
SWIFT1.6K views
Fintech Belgium - Meetup on Compliance / KYC - Willem Lambrechts - Drebbel Te... by FinTech Belgium
Fintech Belgium - Meetup on Compliance / KYC - Willem Lambrechts - Drebbel Te...Fintech Belgium - Meetup on Compliance / KYC - Willem Lambrechts - Drebbel Te...
Fintech Belgium - Meetup on Compliance / KYC - Willem Lambrechts - Drebbel Te...
FinTech Belgium828 views
SWIFT gpi: linking SWIFT gpi with trade platforms -- The first results by R3
SWIFT gpi: linking SWIFT gpi with trade platforms -- The first resultsSWIFT gpi: linking SWIFT gpi with trade platforms -- The first results
SWIFT gpi: linking SWIFT gpi with trade platforms -- The first results
R31.8K views
The Digital Community for Syndicated Lending, Finastra by R3
The Digital Community for Syndicated Lending, FinastraThe Digital Community for Syndicated Lending, Finastra
The Digital Community for Syndicated Lending, Finastra
R3463 views
Business Development Through SWIFT Business Intelligence by SWIFT
Business Development Through SWIFT Business IntelligenceBusiness Development Through SWIFT Business Intelligence
Business Development Through SWIFT Business Intelligence
SWIFT510 views
BizDay: Using Tokens for Payment and Instant Settlement, R3 by R3
BizDay: Using Tokens for Payment and Instant Settlement, R3BizDay: Using Tokens for Payment and Instant Settlement, R3
BizDay: Using Tokens for Payment and Instant Settlement, R3
R3444 views
Standards Forum SG Powerpoint Deck (Part II) by SWIFT
Standards Forum SG Powerpoint Deck (Part II)Standards Forum SG Powerpoint Deck (Part II)
Standards Forum SG Powerpoint Deck (Part II)
SWIFT874 views
RTP - Worksession by SWIFT
RTP - WorksessionRTP - Worksession
RTP - Worksession
SWIFT692 views
DevDay: Cerberus A Corda DLT Monitorin and Alerting System, CryptoBLK by R3
DevDay: Cerberus A Corda DLT Monitorin and Alerting System, CryptoBLKDevDay: Cerberus A Corda DLT Monitorin and Alerting System, CryptoBLK
DevDay: Cerberus A Corda DLT Monitorin and Alerting System, CryptoBLK
R3730 views
DevDay: LenderComm Financial Industry Corda First Steps, JC Jollant by R3
DevDay: LenderComm Financial Industry Corda First Steps, JC JollantDevDay: LenderComm Financial Industry Corda First Steps, JC Jollant
DevDay: LenderComm Financial Industry Corda First Steps, JC Jollant
R3386 views

Similar to Open Banking for Developers #fapisum - Japan/UK Open Banking and APIs Summit 2018 - July 24, 2018

Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S... by
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...FinTechLabs.io
947 views24 slides
Initio digital innovation digest #13 q1 2019 by
Initio digital innovation digest #13 q1 2019Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019Initio
474 views18 slides
Banking is Now More Open: Open Banking Update by
Banking is Now More Open: Open Banking UpdateBanking is Now More Open: Open Banking Update
Banking is Now More Open: Open Banking UpdateMikeLeszcz
2.7K views12 slides
A blueprint for open banking standards in the United Kingdom by
A blueprint for open banking standards in the United KingdomA blueprint for open banking standards in the United Kingdom
A blueprint for open banking standards in the United KingdomEric Horesnyi
5.2K views3 slides
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha... by
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...apidays
56 views14 slides
11h00 icc trade register - krishnan ramadurai (1) by
11h00    icc trade register - krishnan ramadurai (1)11h00    icc trade register - krishnan ramadurai (1)
11h00 icc trade register - krishnan ramadurai (1)International Chamber of Commerce - ICC
237 views16 slides

Similar to Open Banking for Developers #fapisum - Japan/UK Open Banking and APIs Summit 2018 - July 24, 2018(20)

Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S... by FinTechLabs.io
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
Open Banking: Lessons from the UK #fapisum - Japan/UK Open Banking and APIs S...
FinTechLabs.io947 views
Initio digital innovation digest #13 q1 2019 by Initio
Initio digital innovation digest #13 q1 2019Initio digital innovation digest #13 q1 2019
Initio digital innovation digest #13 q1 2019
Initio474 views
Banking is Now More Open: Open Banking Update by MikeLeszcz
Banking is Now More Open: Open Banking UpdateBanking is Now More Open: Open Banking Update
Banking is Now More Open: Open Banking Update
MikeLeszcz2.7K views
A blueprint for open banking standards in the United Kingdom by Eric Horesnyi
A blueprint for open banking standards in the United KingdomA blueprint for open banking standards in the United Kingdom
A blueprint for open banking standards in the United Kingdom
Eric Horesnyi5.2K views
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha... by apidays
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...
apidays Hong Kong - Open Banking Ecosystem – Development, Opportunities & Cha...
apidays56 views
INTERFACE, by apidays - The UK Open Banking Story by apidays
INTERFACE, by apidays -  The UK Open Banking StoryINTERFACE, by apidays -  The UK Open Banking Story
INTERFACE, by apidays - The UK Open Banking Story
apidays955 views
APIdays London 2019 - Open Banking two months on from the RTS deadline with C... by apidays
APIdays London 2019 - Open Banking two months on from the RTS deadline with C...APIdays London 2019 - Open Banking two months on from the RTS deadline with C...
APIdays London 2019 - Open Banking two months on from the RTS deadline with C...
apidays126 views
Overview of the UK Open Banking Initiative by Gary Farrow
Overview of the UK Open Banking InitiativeOverview of the UK Open Banking Initiative
Overview of the UK Open Banking Initiative
Gary Farrow404 views
SWIFT Welcome Address - Alain Raes by SWIFT
SWIFT Welcome Address - Alain RaesSWIFT Welcome Address - Alain Raes
SWIFT Welcome Address - Alain Raes
SWIFT600 views
DFS22_Main Stage_Laurent Bailly_Visa_041022 by FinTech Belgium
DFS22_Main Stage_Laurent Bailly_Visa_041022DFS22_Main Stage_Laurent Bailly_Visa_041022
DFS22_Main Stage_Laurent Bailly_Visa_041022
FinTech Belgium309 views
Open Banking and Payment Service Directive by Lac Vuong
Open Banking and Payment Service DirectiveOpen Banking and Payment Service Directive
Open Banking and Payment Service Directive
Lac Vuong210 views
apidays London 2022 - The State of Banking APIs 2022, Mark Boyd, Platformable by apidays
apidays London 2022 - The State of Banking APIs 2022, Mark Boyd, Platformableapidays London 2022 - The State of Banking APIs 2022, Mark Boyd, Platformable
apidays London 2022 - The State of Banking APIs 2022, Mark Boyd, Platformable
apidays176 views
HKCS FinTech opportunities and challenges by Stephen Langley
HKCS FinTech opportunities and challengesHKCS FinTech opportunities and challenges
HKCS FinTech opportunities and challenges
Stephen Langley310 views
SWIFT Initiatives - Worksession by SWIFT
SWIFT Initiatives - WorksessionSWIFT Initiatives - Worksession
SWIFT Initiatives - Worksession
SWIFT624 views
Global Open Banking Landscape by Biao Hao
Global Open Banking LandscapeGlobal Open Banking Landscape
Global Open Banking Landscape
Biao Hao5.3K views
apidays LIVE LONDON - How APIs are changing the fintech world by Chirine Ben... by apidays
apidays LIVE LONDON - How APIs are changing the fintech world  by Chirine Ben...apidays LIVE LONDON - How APIs are changing the fintech world  by Chirine Ben...
apidays LIVE LONDON - How APIs are changing the fintech world by Chirine Ben...
apidays179 views

More from FinTechLabs.io

Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK... by
Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...
Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...FinTechLabs.io
746 views22 slides
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ... by
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...FinTechLabs.io
291 views36 slides
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S... by
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...FinTechLabs.io
333 views17 slides
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ... by
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...FinTechLabs.io
410 views41 slides
FAPI and Beyond: From an specification author's point of view #fapisum - Japa... by
FAPI and Beyond: From an specification author's point of view #fapisum - Japa...FAPI and Beyond: From an specification author's point of view #fapisum - Japa...
FAPI and Beyond: From an specification author's point of view #fapisum - Japa...FinTechLabs.io
3.1K views44 slides
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su... by
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...FinTechLabs.io
3.1K views76 slides

More from FinTechLabs.io(7)

Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK... by FinTechLabs.io
Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...
Open Banking: The View from a Japanese Startup (Authlete) #fapisum - Japan/UK...
FinTechLabs.io746 views
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ... by FinTechLabs.io
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...
FAPI / Open Banking Test Suite #fapisum - Japan/UK Open Banking and APIs Summ...
FinTechLabs.io291 views
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S... by FinTechLabs.io
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
FinTechLabs.io333 views
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ... by FinTechLabs.io
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...
Banking API Trends in Japan #fapisum - Japan/UK Open Banking and APIs Summit ...
FinTechLabs.io410 views
FAPI and Beyond: From an specification author's point of view #fapisum - Japa... by FinTechLabs.io
FAPI and Beyond: From an specification author's point of view #fapisum - Japa...FAPI and Beyond: From an specification author's point of view #fapisum - Japa...
FAPI and Beyond: From an specification author's point of view #fapisum - Japa...
FinTechLabs.io3.1K views
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su... by FinTechLabs.io
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...
Basics: OAuth and OpenID Connect #fapisum - Japan/UK Open Banking and APIs Su...
FinTechLabs.io3.1K views
Trends in Banking APIs #fapisum - Japan/UK Open Banking and APIs Summit 2018 ... by FinTechLabs.io
Trends in Banking APIs #fapisum - Japan/UK Open Banking and APIs Summit 2018 ...Trends in Banking APIs #fapisum - Japan/UK Open Banking and APIs Summit 2018 ...
Trends in Banking APIs #fapisum - Japan/UK Open Banking and APIs Summit 2018 ...
FinTechLabs.io3K views

Recently uploaded

Is Entireweb better than Google by
Is Entireweb better than GoogleIs Entireweb better than Google
Is Entireweb better than Googlesebastianthomasbejan
10 views1 slide
zotabet.pdf by
zotabet.pdfzotabet.pdf
zotabet.pdfzotabetcasino
6 views1 slide
We see everywhere that many people are talking about technology.docx by
We see everywhere that many people are talking about technology.docxWe see everywhere that many people are talking about technology.docx
We see everywhere that many people are talking about technology.docxssuserc5935b
6 views2 slides
UiPath Document Understanding_Day 3.pptx by
UiPath Document Understanding_Day 3.pptxUiPath Document Understanding_Day 3.pptx
UiPath Document Understanding_Day 3.pptxUiPathCommunity
95 views25 slides
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdf by
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdfIGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdf
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdfRIPE NCC
15 views11 slides
Building trust in our information ecosystem: who do we trust in an emergency by
Building trust in our information ecosystem: who do we trust in an emergencyBuilding trust in our information ecosystem: who do we trust in an emergency
Building trust in our information ecosystem: who do we trust in an emergencyTina Purnat
85 views18 slides

Recently uploaded(20)

We see everywhere that many people are talking about technology.docx by ssuserc5935b
We see everywhere that many people are talking about technology.docxWe see everywhere that many people are talking about technology.docx
We see everywhere that many people are talking about technology.docx
ssuserc5935b6 views
UiPath Document Understanding_Day 3.pptx by UiPathCommunity
UiPath Document Understanding_Day 3.pptxUiPath Document Understanding_Day 3.pptx
UiPath Document Understanding_Day 3.pptx
UiPathCommunity95 views
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdf by RIPE NCC
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdfIGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdf
IGF UA - Dialog with I_ organisations - Alena Muavska RIPE NCC.pdf
RIPE NCC15 views
Building trust in our information ecosystem: who do we trust in an emergency by Tina Purnat
Building trust in our information ecosystem: who do we trust in an emergencyBuilding trust in our information ecosystem: who do we trust in an emergency
Building trust in our information ecosystem: who do we trust in an emergency
Tina Purnat85 views
𝐒𝐨𝐥𝐚𝐫𝐖𝐢𝐧𝐝𝐬 𝐂𝐚𝐬𝐞 𝐒𝐭𝐮𝐝𝐲 by Infosec train
𝐒𝐨𝐥𝐚𝐫𝐖𝐢𝐧𝐝𝐬 𝐂𝐚𝐬𝐞 𝐒𝐭𝐮𝐝𝐲𝐒𝐨𝐥𝐚𝐫𝐖𝐢𝐧𝐝𝐬 𝐂𝐚𝐬𝐞 𝐒𝐭𝐮𝐝𝐲
𝐒𝐨𝐥𝐚𝐫𝐖𝐢𝐧𝐝𝐬 𝐂𝐚𝐬𝐞 𝐒𝐭𝐮𝐝𝐲
Infosec train7 views
IETF 118: Starlink Protocol Performance by APNIC
IETF 118: Starlink Protocol PerformanceIETF 118: Starlink Protocol Performance
IETF 118: Starlink Protocol Performance
APNIC124 views
Existing documentaries (1).docx by MollyBrown86
Existing documentaries (1).docxExisting documentaries (1).docx
Existing documentaries (1).docx
MollyBrown8613 views
PORTFOLIO 1 (Bret Michael Pepito).pdf by brejess0410
PORTFOLIO 1 (Bret Michael Pepito).pdfPORTFOLIO 1 (Bret Michael Pepito).pdf
PORTFOLIO 1 (Bret Michael Pepito).pdf
brejess04107 views
AI Powered event-driven translation bot by Jimmy Dahlqvist
AI Powered event-driven translation botAI Powered event-driven translation bot
AI Powered event-driven translation bot
Jimmy Dahlqvist16 views
google forms survey (1).pptx by MollyBrown86
google forms survey (1).pptxgoogle forms survey (1).pptx
google forms survey (1).pptx
MollyBrown8614 views
Opportunities for Youth in IG - Alena Muravska RIPE NCC.pdf by RIPE NCC
Opportunities for Youth in IG - Alena Muravska RIPE NCC.pdfOpportunities for Youth in IG - Alena Muravska RIPE NCC.pdf
Opportunities for Youth in IG - Alena Muravska RIPE NCC.pdf
RIPE NCC9 views

Open Banking for Developers #fapisum - Japan/UK Open Banking and APIs Summit 2018 - July 24, 2018

  • 1. © Open Banking Limited 2018 Open Banking Financial API Workshop July 2018 Ralph Bragg, Ecosystem Architect
  • 2. © Open Banking Limited 2018 2 OPEN BANKING UPDATE Tasked with delivering the Open Banking API standards and security architecture The CMA9 are the UK’s nine largest current account providers: AIBG, Bank of Ireland, Barclays, Danske, HSBC, Lloyds Banking Group, Nationwide, RBS and Santander The Open Banking Implementation Entity (OBIE) OBIE was set up by the CMA in September 2016 A world leader in the implementation of the Open Banking Remedies, assisting in the delivery of the first APIs A private body whose governance, composition and budget was determined by the CMA Funded by the CMA9 and overseen by the CMA, the Financial Conduct Authority (FCA) and Her Majesty’s Treasury
  • 3. © Open Banking Limited 2018 3 INTRODUCTION Four broad categories of standards and information necessary for the API economy OBIE Creating Banking Standards IDENTITY A “WHITE LIST” OF TRUSTED PARTICIPANTS AND CUSTOMER RELEVENT OFFERINGS REFERENCE DATA ”OPEN DATA” API BANK PRODUCT DESCRIPTIONS ATM LOCATIONS USERS DATA “READ WRITE” API ACCOUNT INFORMATION PAYMENTS OPEN BANKING UK OPEN BANKING UK SECURITY “MATURE OPEN SECURITY STANDARD” INCLUDING CONSENT AND AUTHORIZATION OPEN BANKING UK, STET, BERLIN GROUP, ISO 22022 OPEN BANKING UK
  • 4. © Open Banking Limited 2018 4 INTRODUCTION The only body in Europe mandated to ensuring nationally consistent implementation to realize an ecosystem not just enable participant compliance OBIE Building an Ecosystem! IDENTITY A “WHITE LIST” OF TRUSTED PARTICIPANTS AND CUSTOMER RELEVENT OFFERINGS REFERENCE DATA ”OPEN DATA” API BANK PRODUCT DESCRIPTIONS ATM LOCATIONS USERS DATA “READ WRITE” API ACCOUNT INFORMATION PAYMENTS SECURITY “MATURE OPEN SECURITY STANDARD” INCLUDING CONSENT AND AUTHORIZATION ENSURE CONSISTENT IMPLEMENTATIONS FOR ALL CMA9 and THIRD PARTIES
  • 5. © Open Banking Limited 2018 5 INTRODUCTION Time to onboard to new providers is the biggest barrier for new entrants followed very closely by consistency of offering. OBIE An ecosystem for developers IDENTITY OB Onboarding (1 API Call) Application Registration (1 API Call) Provider Bank Discovery (1 API Call) Provider Onboarding (1 API Call) Swagger (Open API) Fully Specified OPEN BANKING UK SECURITY A Common Security Framework (70million accounts) A Common Consent and Authorization Model Standard Designed to Protect Third- Parties and Banks OPEN BANKING UK
  • 6. © Open Banking Limited 2018 Yolt – Starling demo – What does it look like? 6 OPEN BANKING UPDATE
  • 7. © Open Banking Limited 2018
  • 8. © Open Banking Limited 2018 What’s in each version OPEN BANKING UPDATE V1 (Jan 18) • AIS (Account & Transaction Data) • PIS (Single Immediate Payments only) • PCA/BCA accounts in GBP V2 (Aug 18) • Extended AIS all PSD2 accounts (e.g. cards, savings, mortgages) • Still only GBP V3 (Mar-Sep 19) • AIS and PIS for all PSD2 accounts and all currencies • PIS for multi-auth, FDP, SO, bulk/batch, international/FX • CBPII fund check API • Decoupled flows • Enhanced CX guidelines and checklists V4 (Sep 19) • Notification of revocation • TB and SCA exemptions (inc Variable Recurring Payments) • Other TBC… OB Directory (eIDAS compliant) + Support + Dispute Management
  • 9. © Open Banking Limited 2018 The Open Banking Timeline 9 OPEN BANKING UPDATE PSD2 Comes into force Mar 2017 Jan 2018 Aug 2018 Mar 2018 Mar 2019 Sep 2019 Open Data v1 Sep 2016 OBIE created RTS application dateRTS published RTS testing Open Data v2 Jul 2017 Read/Write v1 Read/Write v2 Read/Write v3 Read/Write v4
  • 10. © Open Banking Limited 2018 How does it work?
  • 11. © Open Banking Limited 2018 Problem statement 11 OPEN BANKING IDENTITY CHALLENGE Secure Understood by developers + Supported by vendors Can be implemented in time
  • 12. © Open Banking Limited 2018 API Flow (Account and Transaction) 12 OPEN BANKING IDENTITY CHALLENGE
  • 13. © Open Banking Limited 2018 Security – striking the balance 13 OPEN BANKING IDENTITY CHALLENGE 2017
  • 14. © Open Banking Limited 2018 Security – striking the balance 14 OPEN BANKING IDENTITY CHALLENGE 2017
  • 15. © Open Banking Limited 2018 Security – striking the balance 15 OPEN BANKING UPDATE
  • 16. © Open Banking Limited 2018 Conformance and certification 16 OPEN BANKING IDENTITY CHALLENGE
  • 17. © Open Banking Limited 2018 Where are the specifications?
  • 18. © Open Banking Limited 2018 The API Specifications 18 OPEN BANKING IDENTITY CHALLENGE Open Banking Developer Zone: https://openbanking.atlassian.net/ wiki/spaces/DZ/overview • Security Specifications • API Definitions • Swagger Files • Sequence Diagrams
  • 19. © Open Banking Limited 2018 How can I test my applications?
  • 20. © Open Banking Limited 2018 Test Facilities 20 OPEN BANKING IDENTITY CHALLENGE Reference Banks: • Provides Test Payment and API Services Conformance Harness: • Security Profile Testing
  • 21. © Open Banking Limited 2018 Thank you www.openbanking.org.uk ralph.bragg@openbanking.org.uk