Home / Companies / Plaid / Blog / Post Details
Content Deep Dive

Misconceptions of authentication and authorisation: why 90-day reauthentication does not work

Blog post from Plaid

Post Details
Company
Date Published
Author
Kat Cloud
Word Count
346
Company Posts That Month
12
Language
English
Hacker News Points
-
Post removed?
No
Summary

The concepts of authorisation and authentication under PSD2 are legally captured by access and consent, but only work as intended when a consumer first connects their payment account to a Third Party Provider. The 90-day "reauthentication" requirement is problematic because it conflates reauthorisation with reauthentication, involving financial institutions in a way that harms consumers and the ecosystem. A new proposal by the FCA aims to remove this requirement and replace it with 90-day reauthorisation, which would benefit TPPs and ensure open banking works as intended for all parties involved.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.