01
Programme Framework
CFPB Section 1033 · Personal Financial Data Rights · roles
02
Role Test Calculator
Live JS · data provider vs authorised TP vs both
03
Data Provider Obligations
Provide data on request · format · scope · timeliness
04
Authorised Third Party
Authorisation · scope · purpose limits · re-authorisation
05
Consumer Authorisation
Granular consent · revocation · plain-language disclosure
06
Technical Standards
API · FAPI / OAuth · data formats · uptime
07
Security Standards
Authentication · encryption · MFA · breach notification
08
Fee Restrictions
No fees on consumer · limited cost-recovery · UDAAP
09
Complaint Resolution
CFPB portal · response SLAs · investigation
10
Aggregator Co-ordination
Plaid · MX · Finicity · contractual oversight
11
Use Limitations
Permissible uses · prohibited targeted advertising · data minimisation
12
Examination Readiness
CFPB exam · API logs · authorisation records · uptime
13
Committee Charter
CCO chair · CISO · CTO · Product · cadence · authority