Consent here is explicit and it expires — that is the rule these rails run under, and it is a good rule, so you can see the day you granted it and the day it lapses on every link below.
We never hold a card number. The provider gives us a token, and a token is all we can ever see.
We never ask for a bank password. Every link is approved on the provider’s own page.
Maya wallet
Maya · Connected · •••• 4821
You signed in at the provider · reads transactions · can send payments
GCash
GCash · Consent expired · •••• 0917
You approved it on the provider’s page · no transaction history · can send payments · production only, so we test it against the mock
BPI savings
BPI · Needs attention · •••• 3390
You signed in at the provider · reads transactions · production only, so we test it against the mock
Amex Platinum
Amex card · Waiting on the provider · •••• 1007
You approved it on the provider’s page · reads transactions · production only, so we test it against the mock