India Account Aggregator Framework (RBI)
RBI AA Industry Standards + Coordination

India Account Aggregator Framework (RBI) RBI-AA-Sahamati-SRO-IndustryStandards-DPDPAct-RBI-CSF-Coord-DPI-IndiaStack: RBI AA Sahamati SRO + Industry Standards + DPDP Act 2023 + RBI Cyber Security Framework + Coordination with DPI India Stack + Cross-Sector + International AA Equivalents

Industry standards + coordination position the RBI AA Framework within the broader regulatory and technical ecosystem. (1) Sahamati Self-Regulatory Organisation (SRO): DigiSahamati Foundation acts as the not-for-profit SRO for the AA ecosystem + Sahamati Code of Conduct + Sahamati Technical Standards (Consent Artefact + FI API + APIs for consent management + token-based authentication) + Sahamati Technical Working Group + Sahamati Ecosystem Working Group + AA Onboarding Tracker + Sahamati AA Day events + capacity building + dispute resolution + ecosystem performance KPIs + monthly transaction volume reports. (2) ReBIT Specifications: Reserve Bank Information Technology Pvt Ltd (ReBIT, wholly-owned RBI subsidiary) issues technical specifications - ReBIT FI API v1.1 + token-based authentication + JSON Web Signature (JWS) + JSON Web Encryption (JWE) + protocol versioning + ReBIT-Sahamati alignment. (3) DPDP Act 2023 Compliance: Digital Personal Data Protection Act passed 11 August 2023 + Rules 2025 + Significant Data Fiduciary (SDF) determination where applicable + Data Protection Officer + DPIA + breach notification 72 hours + Cross-Border Transfer restrictions + Consent Manager registration under Sec 6(9) + customer rights per Sec 11-14. (4) RBI Cyber Security Framework: RBI Cyber Security Framework for Banks + RBI Cyber Resilience Framework for NBFCs + RBI Guidelines on Information Security + Master Direction on IT Outsourcing + Cyber Security Maturity Assessment Tool + Threat Intel sharing. (5) DPI India Stack Coordination: Aadhaar (UIDAI) + UPI (NPCI) + DigiLocker (NeGD) + ONDC + AA + OCEN Open Credit Enablement Network + Bharat Bill Payment System (BBPS) + India Stack Open APIs + integration patterns. (6) Cross-Sector Regulators: SEBI Account Aggregator Regulations (for securities FIPs/FIUs) + IRDAI Information and Cyber Security Guidelines (for insurance) + PFRDA (for pension) + cross-regulator coordination per India FinTech Department of Ministry of Finance. (7) International AA Equivalents: UK Open Banking (CMA-9 + Open Banking Implementation Entity OBIE + Open Finance) + EU PSD2/PSD3 + Open Finance Framework + Australia Consumer Data Right (CDR) + Singapore SGFinDex + Brazil Open Banking/Open Finance + US CFPB Section 1033 Personal Financial Data Rights Final Rule 2024 + Hong Kong Open API Framework + Korea Open Banking. (8) RBI Regulatory Sandbox + Innovation Hub: AA used cases tested through RBI Regulatory Sandbox + Innovation Hub partnerships + Hackathons. Coordinates with Sahamati SRO + ReBIT + DPDP Act 2023 + Rules 2025 + RBI Cyber Framework + DPI India Stack + UPI + Aadhaar + DigiLocker + ONDC + OCEN + BBPS + International Open Banking/Finance frameworks. RBI AA Sahamati + SRO + Standards + Coord applies.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.