{"title":"Open Banking: Gordian Legal Knots in the Uncomfortable Cohabitation between the PSD2 and the GDPR","authors":"Federico Ferretti","doi":"10.54648/erpl2022004","DOIUrl":null,"url":null,"abstract":"This work analyses problems in the legal framework of Open Banking enabled by the Payment Services Directive 2 (PSD2). It goes through the role of EU law in the regulation of payment services up to their transition towards digitalization and fintech, to show the scale of the changes brought by the PSD2 in a territory unfamiliar to traditional banking. The resulting conflation between banking and the data economy reveal a brand-new market. The normative intersection between the PSD2 and the General Data Protection Regulation (GDPR) expose not only poor coordination but also a growing entanglement of legal knots. The legal inconsistencies, loopholes, and interpretative difficulties are examined to expose operational risks beyond difficulties of legal technicism. A rethinking, or at least a correction, of the European regime of Open Banking is necessary to reconcile the needs of an emerging market and the protection of its users.","PeriodicalId":43736,"journal":{"name":"European Review of Private Law","volume":" ","pages":""},"PeriodicalIF":0.2000,"publicationDate":"2022-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"European Review of Private Law","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.54648/erpl2022004","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q4","JCRName":"LAW","Score":null,"Total":0}
引用次数: 0
Abstract
This work analyses problems in the legal framework of Open Banking enabled by the Payment Services Directive 2 (PSD2). It goes through the role of EU law in the regulation of payment services up to their transition towards digitalization and fintech, to show the scale of the changes brought by the PSD2 in a territory unfamiliar to traditional banking. The resulting conflation between banking and the data economy reveal a brand-new market. The normative intersection between the PSD2 and the General Data Protection Regulation (GDPR) expose not only poor coordination but also a growing entanglement of legal knots. The legal inconsistencies, loopholes, and interpretative difficulties are examined to expose operational risks beyond difficulties of legal technicism. A rethinking, or at least a correction, of the European regime of Open Banking is necessary to reconcile the needs of an emerging market and the protection of its users.