Internet-Draft | DataRight+: Banking Resource Set | April 2024 |
Low | Expires 3 October 2024 | [Page] |
This is the resource set profile outlining the banking sector related endpoints.¶
The keywords "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in [RFC2119].¶
This Internet-Draft is submitted in full conformance with the provisions of BCP 78 and BCP 79.¶
Internet-Drafts are working documents of the Internet Engineering Task Force (IETF). Note that other groups may also distribute working documents as Internet-Drafts. The list of current Internet-Drafts is at https://datatracker.ietf.org/drafts/current/.¶
Internet-Drafts are draft documents valid for a maximum of six months and may be updated, replaced, or obsoleted by other documents at any time. It is inappropriate to use Internet-Drafts as reference material or to cite them other than as "work in progress."¶
This Internet-Draft will expire on 3 October 2024.¶
Copyright (c) 2024 IETF Trust and the persons identified as the document authors. All rights reserved.¶
This document is subject to BCP 78 and the IETF Trust's Legal Provisions Relating to IETF Documents (https://trustee.ietf.org/license-info) in effect on the date of publication of this document. Please review these documents carefully, as they describe your rights and restrictions with respect to this document.¶
The scope of this document is intended to be limited to the resource server endpoints related to banking, and their associated authorisation contexts.¶
This specification utilises the various terms outlined within [DATARIGHTPLUS-ROSETTA].¶
Providers which providing banking services are expected to deliver a number of resource server end points.¶
Alternative Data Cluster Language SHALL be used when pairs of scope
value are used as follows:¶
scope pairing |
Data Set Language |
---|---|
bank:accounts.basic:read and |
Account balance and details |
bank:accounts.detail:read
|
Name of account; |
Type of account; | |
Account balance; | |
Account number; | |
Interest rates; | |
Fees; | |
Discounts; | |
Account terms; | |
Account mail address; |
The Provider SHALL make available, as described further in [DATARIGHTPLUS-REDOCLY-ID1] endpoints, the following endpoints where the token is granted the bank:accounts.basic:read
scope value:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/accounts
|
1 and 2
|
GET /banking/accounts/balances
|
1
|
POST /banking/accounts/balances
|
1
|
GET /banking/accounts/{accountId}/balance
|
1
|
The Provider SHALL make available, as described further in [DATARIGHTPLUS-REDOCLY-ID1] endpoints, the following endpoints where the token is granted the bank:accounts.detail:read
scope value:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/accounts/{accountId}
|
1 , 2 and 3
|
The Provider SHALL make available, as described further in [DATARIGHTPLUS-REDOCLY-ID1] endpoints, the following endpoints where the token is granted the bank:regular_payments:read
scope value:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/accounts/direct-debits
|
1
|
POST /banking/accounts/direct-debits
|
1
|
GET /banking/accounts/{accountId}/direct-debits
|
1
|
GET /banking/accounts/{accountId}/payments/scheduled
|
1
|
POST /banking/payments/scheduled
|
1
|
GET /banking/payments/scheduled
|
1
|
The Provider SHALL make available, as described further in [DATARIGHTPLUS-REDOCLY-ID1] endpoints, the following endpoints where the token is granted the bank:payees:read
scope value:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/payees
|
2
|
GET /banking/payees/{payeeId}
|
1 and 2
|
The Provider SHALL make available, as described further in [DATARIGHTPLUS-REDOCLY-ID1] endpoints, the following endpoints where the token is granted the bank:transactions:read
scope value:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/accounts/{accountId}/transactions
|
1
|
GET /banking/accounts/{accountId}/transactions/{transactionId}
|
1
|
In addition, the Provider SHALL deliver the following unauthenticated and generally available endpoints, in accordance with [DATARIGHTPLUS-REDOCLY-ID1]:¶
Resource Server Endpoint |
x-v
|
---|---|
GET /banking/products
|
2
|
GET /banking/products/{productId}
|
3 and 4
|
Initiators SHALL describe the requested scope
values using the same Data Set Language as Providers, as outlined in Authorisation Scopes.¶
The following people contributed to this document:¶
We acknowledge the contribution to the [CDS] of the following individuals:¶