Hacker News new | ask | show | jobs
by TRiG_Ireland 6 days ago
I'm Irish, but I've built a website for an Australian client and they integrated something which did that. In the checkout, you could choose to pay with a system which would log you into your bank's website, where you could approve a payment, then return to the site on which you'd made your purchase, where it would instantly be marked as paid. I think that it may have taken a few days for the money to actually arrive in their bank account, but the payment was authorised instantly.
2 comments

This stuff is very popular in the Baltics, there are many payment options and banks provide the necessary connections to be able to complete payments for the users using 2fa auth. Not to mention crypto. e.g. check out varle.lt as an example of an online retailer, the options are sort of normal and expected.
This is POLi and it's a massive security risk that they have everyone's bank passwords.
It could also be something PSD2 based. You should be able to create payment using PSD2, but the client still has to approve it inside their bank app.
They said Australian - it's POLi.
It was indeed POLi. Strange that it's using actual bank passwords!