Earlier quoted context omitted.
There should be a law for this. The EU as an open banking API law, that requires banks to make this data available electronically over an API. The US needs an open banking law. This should not be an optional feature for banks to offer. It should be an absolute requirement. I think it's insane to enter your credentials into Plaid. Almost every banking agreement I've ever seen disclaims liability if your account is bre…
[I work at Plaid] Not to get into too much of this, but the Consumer Financial Protection Bureau has issued guidance that banks are still required to comply with the consumer protection measures provided by Reg E (and thus cannot fully disclaim liability) even when a fraudulent transfer is the result of password sharing. More info at https://www.consumerfinance.gov/compliance/compliance-resour... Though this is still…
I reviewed the register https://www.federalregister.gov/documents/2011/12/27/2011-31... and the link you provided.
I don't see anything that would extend the coverage to a service that is providing a read-only view into the account, or anything that mentions password sharing. I _think_ I could see what you're describing in maybe the description of the transitive nature of Regulation E to cover "non-bank payment providers", but I don't see anything that would protect me if I shared my bank password with Mint via Plaid?
I'd love to know more, and as a lay person I'm having a hard time working my way through all the language of Regulation E.