Hacker News new | ask | show | jobs
by justusthane 1404 days ago
Plaid is a disaster waiting to happen—they store your banking username and password, and then use them to log in to your online banking on your behalf where they scrape the info they need.

I’m amazed banks put up with it.

2 comments

The Plaid disaster hasn't waited- it's already started. They've already had to settle at least one class action lawsuit for deceptive practices

https://www.plaidsettlement.com/

It'll use app-specific passwords or OAuth with banks that support that, and both of those can be secured well enough.