Account Information Service Providers (AISPs) can access account information from online payment accounts held at Account Service Payment Service Providers (ASPSPs), in order to provide account information services to a Payment Service User (PSU).
Other pages in this section Get Started Authentication Methods Account Information Services Payment Initiation Services CBPIIs / Card Based Payment Instrument Issuers Dashboards Customer Experience Checklist Appendices Change Log
AIS Core Journeys Account Information Consent In this journey the AISP presents to the PSU a description of the data that it requires in order to support its service proposition. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021 AIS Access for PSUs from Corporate Entities PSUs, with delegated user authority on behalf of corporates who are authorised to receive corporate account information via AISPs, will be able to provide consent to the AISPs using the standard AIS journey shown in section Account Information Consent. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021 90-Days Re-authentication The PSRs require Strong Customer Authentication (SCA) to be performed each time the PSU accesses its online payment account, either directly or using the services of an AISP. The frequency of authentication can be reduced if an ASPSP applies the exemption relevant to account information access. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021 Permissions & Data Clusters for AIS journeys Permissions In the Open Banking API design, data elements are logically grouped together into “permissions”. It is at this level that AISPs request data access. If they request access to a specific permission they will have access to all the data elements in the permission. This provides a pragmatic approach, allowing AISPs to be selective… View journey This version was published 3 Years & 1 Month ago 21 Oct 2021
Account Information Consent In this journey the AISP presents to the PSU a description of the data that it requires in order to support its service proposition. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021
AIS Access for PSUs from Corporate Entities PSUs, with delegated user authority on behalf of corporates who are authorised to receive corporate account information via AISPs, will be able to provide consent to the AISPs using the standard AIS journey shown in section Account Information Consent. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021
90-Days Re-authentication The PSRs require Strong Customer Authentication (SCA) to be performed each time the PSU accesses its online payment account, either directly or using the services of an AISP. The frequency of authentication can be reduced if an ASPSP applies the exemption relevant to account information access. View journey This version was published 3 Years & 1 Month ago 21 Oct 2021
Permissions & Data Clusters for AIS journeys Permissions In the Open Banking API design, data elements are logically grouped together into “permissions”. It is at this level that AISPs request data access. If they request access to a specific permission they will have access to all the data elements in the permission. This provides a pragmatic approach, allowing AISPs to be selective… View journey This version was published 3 Years & 1 Month ago 21 Oct 2021