Canada Consumer-Driven Banking Framework (open banking) · vConsumer-Driven Banking Fra…
Canada Consumer-Driven Banking Framework (open banking)
Canada Consumer-Driven Banking Framework (open banking) — 100% covered.
4 requirements · 4 enforced · 0 designed · 0 advisory · 0 deferred.
Source: Consumer-Driven Banking Act, enacted through the Budget Implementation Act, 2024, No. 1 (Bill C-69), establishing Canada's consumer-driven banking (open banking) framework. Accreditation of participating entities, consumer consent + control over data sharing, a common technical/security standard, and the senior-officer / FCAC oversight role. The framework's detailed rules are being developed by the Financial Consumer Agency of Canada; this mapping anchors the statutory pillars.
By category
| Category | Reqs | Enforced | Designed | Advisory | Deferred | Coverage |
|---|---|---|---|---|---|---|
| Accreditation of participants | 1 | 1 | 0 | 0 | 0 | 100% |
| Consumer consent + data-sharing control | 1 | 1 | 0 | 0 | 0 | 100% |
| Common technical + security standard | 1 | 1 | 0 | 0 | 0 | 100% |
| Oversight + accountability | 1 | 1 | 0 | 0 | 0 | 100% |
Every requirement → the KYE™ artefact that enforces it
| ID | Title | Status | KYE™ enforcement |
|---|---|---|---|
canada-cdb.accreditation |
Accreditation: only accredited entities may participate in the consumer-driven banking framework, subject to ongoing eligibility and governance criteria | enforced | audit_events: kye.risk.authority_register.v1, kye.compliance.attestation.v1engines: internal, internalconstitution_refs: constitution/51-NO-SPOF.md, constitution/10-PARTNER.md |
canada-cdb.consent |
Consumer consent + control: data may be shared only with the consumer's express, informed, revocable consent, scoped to the data and purpose the consumer authorises | enforced | audit_events: kye.purpose.request.v1, kye.purpose.admissibility.v1engines: internal, internalconstitution_refs: constitution/12-PURPOSE-PERMISSION.md |
canada-cdb.technical-standard |
Common technical + security standard: participants must share data through a common, secure technical interface meeting the prescribed security standard | enforced | audit_events: kye.purpose.admissibility.v1, kye.evidence.tool_call.v1engines: internalconstitution_refs: constitution/12-PURPOSE-PERMISSION.md, constitution/30-AUDIT-WORM-RETENTION.md |
canada-cdb.oversight |
Oversight + accountability: participants must maintain accountability for data shared under the framework and submit to FCAC oversight | enforced | audit_events: kye.compliance.attestation.v1, kye.evidence.decision_map.v1engines: internal, internalconstitution_refs: constitution/21-DELEGATED-AUDITABILITY.md |