Home India Reserve Bank of India Draft Framework on Alternative Authentication Mechanisms fo...
Date: 2024-07-31 Category: Not Applicable State: Union Government Country: India

Draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions

Issued by Reserve Bank of India · Not Applicable

Research with AI Agent Chat with Document Generate Summary Translate Helpful Share Add to Project Create Task

Executive Summary & Key Takeaways

## Report on RBI Draft Framework on Alternative Authentication Mechanisms **1. Executive Summary:** This report analyzes the Reserve Bank of India's (RBI) newly released draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions, as announced in the press release dated July 31, 2024. The core purpose is to broaden the scope of authentication factors available for digital payments beyond the current reliance on SMS-based OTP, promoting innovation and choice within the ecosystem. The key finding is that the framework aims to enable Payment System Operators and users to adopt alternative authentication methods, reflecting technological advancements and a commitment to secure digital payments. Stakeholders are invited to provide feedback on the draft framework by September 15, 2024. **2. Introduction:** This report provides an overview of the Reserve Bank of India's (RBI) draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions based solely on the information provided in the RBI press release dated July 31, 2024. The purpose is to inform affected industries about the policy's objectives, key provisions, and potential impact. **3. Policy Overview:** * This is a *New Policy*. * **Core Objective(s):** As inferred from the provided text, the core objectives are to: * Enable the adoption of alternative authentication mechanisms for digital payment transactions. * Widen the choice of authentication factors available to Payment System Operators and users. * Maintain and enhance the security of digital payments. **4. Background and Rationale:** * As a *New Policy*, the likely problem the framework addresses is the over-reliance on SMS-based OTP as the primary Additional Factor of Authentication (AFA) for digital payments. The press release states that while OTP is working satisfactorily, "technological advancements have made available alternative authentication mechanisms". Therefore, the policy appears to encourage the adoption of these newer, potentially more secure or convenient methods, reducing dependence on a single authentication factor. **5. Key Provisions / Changes:** * As a *New Policy*, the key provision detailed in the release is the *establishment of a "draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions"*. The release doesn't detail specific mechanisms within the framework, but it implies the framework will: * Enable Payment System Operators to adopt alternative authentication mechanisms. * Offer users a wider choice of authentication factors. * The policy also includes a call for feedback and comments on the draft framework, indicating a process for refinement and potential adjustments before finalization. **6. Target Audience and Stakeholders:** Based on the provided text, the primary target audience and stakeholders are: * Payment System Operators: These entities will be responsible for implementing and offering alternative authentication mechanisms. * Digital Payment Users: Users will be directly affected by the availability and choice of alternative authentication factors. * Reserve Bank of India (RBI): Responsible for creating and implementing the framework. **7. Implementation Aspects (Inferred):** * **Responsible Agency/Bodies:** The Reserve Bank of India (RBI), specifically the Department of Payment and Settlement Systems, is the responsible body. * **Timelines:** A deadline of September 15, 2024, is set for submitting comments and feedback on the draft framework. This suggests a subsequent period for review and finalization of the framework by the RBI. * The Chief General Manager-in Charge, Department of Payment and Settlement Systems, Reserve Bank of India, Central Office, 14th Floor, Shahid Bhagat Singh Marg, Mumbai-400001 **8. Expected Outcomes / Impact of Changes:** * As a *New Policy*, the likely intended outcomes based on the stated provisions are: * Increased adoption of alternative authentication mechanisms for digital payments. * Greater flexibility and choice for users in selecting their preferred authentication methods. * Potentially enhanced security and efficiency in digital payment transactions, by reducing reliance on a single point of failure (SMS-based OTP). * Promotion of innovation in the digital payments ecosystem. **9. Conclusion:** The RBI's draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions represents a significant step towards modernizing and diversifying authentication methods in the digital payments landscape. By enabling the adoption of alternative mechanisms, the RBI aims to provide greater choice, potentially enhance security, and foster innovation. The call for stakeholder feedback highlights the importance of collaboration in shaping the final framework and ensuring its effectiveness. This framework is significant as it acknowledges the need to move beyond traditional authentication methods and embrace newer technologies in the rapidly evolving digital payments ecosystem.

Key Entities Referenced

Reserve Bank of India: The central bank of India, also referred to as RBI. www.rbi.org.in: Website of the Reserve Bank of India Department of Communication, Central Office, Shahid Bhagat Singh Marg, Fort, email : helpdocrbi.org.in Mumbai 400 001: Contact information for the Department of Communication at the Reserve Bank of India. July 31, 2024: Date of the press release. Draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions: The subject of the press release; a draft framework released by the RBI. Additional Factor of Authentication AFA: A security measure for digital payments, required by the Reserve Bank of India. SMSbased OTP: The primary form of AFA (Additional Factor of Authentication) currently used for digital payments. Statement on Developmental and Regulatory Policies dated February 08, 2024: A statement released by RBI, announcing the draft framework. Payment System Operators: Entities that operate payment systems. Chief General ManagerinCharge, Department of Payment and Settlement Systems, Reserve Bank of India, Central Office, 14th Floor, Shahid Bhagat Singh Marg, Mumbai400001: The contact person and address for providing feedback on the draft framework. September 15, 2024: Deadline for submitting feedback on the draft framework. Puneet Pancholy: Chief General Manager, as indicated by the press release. Press Release: 20242025809: Identifier for the press release.
Official Source Record View Original Source →
See Full Document Text
�ेस �काशनी PRESS RELEASE भारतीय �रज़वर् बक� RESERVE BANK OF INDIA वेबसाइट : www.rbi.org.in/hindi संचार िवभाग, क��ीय कायार्लय, शहीद भगत �संह मागर्, फोटर्, मबुं ई - 400 001 0 Website : www.rbi.org.in Department of Communication, Central Office, Shahid Bhagat Singh Marg, Fort, ई-मेल/email : helpdoc@rbi.org.in Mumbai - 400 001 फोन/Phone: 022 - 2266 0502 July 31, 2024 Draft Framework on Alternative Authentication Mechanisms for Digital Payment Transactions Over the years, the Reserve Bank of India has prioritised security of digital payments, in particular the requirement of Additional Factor of Authentication (AFA) for making payments. No specific factor was mandated for authentication, but the digital payments ecosystem has primarily adopted SMS-based OTP as AFA. While OTP is working satisfactorily, technological advancements have made available alternative authentication mechanisms. Therefore, as announced in the Statement on Developmental and Regulatory Policies dated February 08, 2024, RBI has today released a draft “Framework on Alternative Authentication Mechanisms for Digital Payment Transactions” to enable the ecosystem to adopt alternative authentication mechanisms. This will widen the choice of authentication factors available to Payment System Operators and users. Comments / feedback on the draft framework may be sent by email or by post to the Chief General Manager-in-Charge, Department of Payment and Settlement Systems, Reserve Bank of India, Central Office, 14th Floor, Shahid Bhagat Singh Marg, Mumbai-400001, on or before September 15, 2024. (Puneet Pancholy) Press Release: 2024-2025/809 Chief General Manager

Continue your research