Hacker News new | ask | show | jobs
by dfox 3047 days ago
American (and thus international) banking seems to work on the somehow backwads principle of allowing allmost any transaction without any real authorization (eg. credits cards, direct debits, checks and such, where only thing you really need to know for the transaction to happen is some semi-public number) and dealing with possible issues after the fact On the other hand the system is pretty good at finding the party responsible, or in other words whose insurance will be billed for the missing money (for example when you look at it from this PoV the EMV protocols and cryptography used make sense). But for that to work someone has to be actually looking for the issues.
1 comments

Somewhat tangential but relevant: As I'm currently moving I spent some part of the afternoon by changing periodic payments setup on my bank account and was somehow amused by the "create transaction" menu in my (european) banks' web application. There is menu item which essentially says "Direct debit (this is probably not what you want)".
This problem has long been a "what-if-cuz-that-would-be-nice" service:

Think of a last-pass for all your varied accounts, where the service allows you to update your core information and then select which of your accounts who have subscribed to your profile info should just be updated by the service.

So if you move - with one click, update all your linked account details for zip/billing/shipping/etc...

Obviously provide a diff review opportunity and a MFA heavy confirmation process - but with an easily revertible process as well.

as well as monitoring of logins to all, and alerts for any changes to any...