Skip to content

Commit

Permalink
Standards Maintenance Issue #574: Added new Authorisation CX Standard…
Browse files Browse the repository at this point in the history
… for additional account selection functionality in the authorisation flow
  • Loading branch information
HemangCDR committed May 5, 2023
1 parent c1ec67e commit 615e59f
Show file tree
Hide file tree
Showing 2 changed files with 8 additions and 1 deletion.
5 changes: 5 additions & 0 deletions slate/source/includes/cx_standards/authorisation.md
Original file line number Diff line number Diff line change
@@ -1,9 +1,14 @@
## Authorisation Standards

```diff
Added new Authorisation CX Standard:
+ Authorisation: Account selection functionality
```

|Area|CX Standard|
|-------------------|------------------------------|
|**Authorisation:**<br/> Account selection |Data holders **MUST** allow the consumer to select which of their accounts to share data from if the data request includes account-specific data and if there are multiple accounts available. The Data holder **MAY** omit this step if none of the data being requested is specific to an account (e.g. Saved Payees).|
|**Authorisation:**<br/> Account selection functionality |<p>Data holders **MAY** include additional functionality to support account discovery and selection where further navigation or interaction is required to view all accounts. This may, for example, include search, sort, filter, scroll, grouping, and pagination, or other controls in line with existing consumer experiences. Any such functionality **MUST NOT** introduce unwarranted friction.</p><p>**Note:** Unwarranted friction should have regard to CDR Rule 4.24 and is considered to include the addition of any requirements beyond normal data holder practices for an equivalent account selection process.</p>|
|**Authorisation:**<br/>Profile selection |<p>Data holders **MAY** add a 'profile selection' step or equivalent prior to the account selection step if a single identifier provides access to different customer accounts. For example, one customer ID may give access to business customer and individual customer accounts.</p><p>The 'profile selection' step **SHOULD** only be considered if it is an existing customer experience, and **SHOULD** be as minimal as possible to avoid introducing unwarranted friction (having regard to CDR Rule 4.24).</p>|
|**Authorisation:**<br>Account confirm|Data holders **MUST** show which accounts the data is being shared from prior to confirming authorisation if the data request includes account-specific data. The data holder **MAY** omit this information if none of the data being requested is specific to an account (e.g. Saved Payees).|
|**Authorisation:**<br>Pending status|<p>Where an account requires further actions or approvals before data can be disclosed, data holders **MUST** indicate this to the user visually and **MUST** provide an explanation of what is required or expected.</p><p>This **MAY**, for example, be achieved with a visual icon to indicate that the account is 'pending'. This indication **MUST** be accompanied by an in-context explanation to describe what the status means. This explanation **SHOULD** include any required actions and any specified time frames.</p>|
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -48,7 +48,9 @@ No Change

## Consumer Experience

No Change
|Change|Description|Link|
|------|-----------|----|
| New Authorisation CX Standard | [**Standards Maintenance #574**](https://github.com/ConsumerDataStandardsAustralia/standards-maintenance/issues/574): Added new Authorisation CX Standard for additional account selection functionality in the authorisation flow. | [Authorisation Standards](../../#authorisation-standards) |

## Known Issues

Expand Down

0 comments on commit 615e59f

Please sign in to comment.