Plaid Privacy and Security

Maton's Avatar

Maton

13 Feb, 2024 03:24 PM

In the blog post about MoneyDance+ (https://infinitekind.com/blog/moneydance-plus-privacy-subscriptions), you talk about how Plaid is a necessary evil because bank support for direct OFX connections has been waning. You also mention that you joined the Financial Data Exchange (FDX) organization to try to influence positive change. It's documented elsewhere (https://infinitekind.tenderapp.com/discussions/online-banking/12465...) how bad Plaid is with even honoring its own privacy policy.

The blog post also described the steps you've taken to encrypt information received by the Moneydance server so that Infinite Kind cannot decrypt it. It sounds like an excellent implementation. Are you able to advance a proposal to the FDX to enhance the standard to implement something similar? Plaid would be fine if the bank encrypted all of the data with the public key generated by Moneydance before letting the data leave their system. I would think that a bank like Chase that is hyper-concerned about security would love to endorse a proposal like this.

Reply to this discussion

Internal reply

Formatting help / Preview (switch to plain text) No formatting (switch to Markdown)

Attaching KB article:

»

Attached Files

You can attach files up to 10MB

If you don't have an account yet, we need to confirm you're human and not a machine trying to post spam.

Keyboard shortcuts

Generic

? Show this help
ESC Blurs the current field

Comment Form

r Focus the comment reply box
^ + ↩ Submit the comment

You can use Command ⌘ instead of Control ^ on Mac