Avoid Password Anti-pattern. Please use OAuth or Mint.com style authorization
Sean Krulewitch
Understand you use encryption, however this is classic password anti-pattern. Only a person and their bank/financial institution should have their credentials.
Please use OAuth or Mint.com style authorization to access customer accounts. If features aren't available, push for adoption with the voices of your shared customers
M
Morgan Bowling
Unfortunately, official APIs to banks and major aggregators like Plaid have limited data and don’t provide write access. We’ve pioneered our own connector infrastructure that allows us to give you the most comprehensive view of your accounts and run automations, like auto-activating offers.
If you'd like to learn more about how we secure data in our app, you can check out this article from our CEO: https://help.maxrewards.co/en/articles/5356681-how-does-maxrewards-secure-my-credentials-and-data
Amanda Moneysaver
I wonder if there could be two options—one that’s Plaid-like for those that don’t want the Gold activating of deals, and the current version for those of us who do??
Your point is well-taken though. I wonder if it would require the cooperation of the credit card companies? I like your idea of pressuring the CC companies to make this possible!
Luis Rivas
Or like SoFi.com —- this would make this an amazing app! If they can’t because of the option to activate offers the. Use a different layer of security for those that want that feature or in Gold only. I would love to just open the app and see it all synced without additional steps.
Mathew Crogan
I reached out to them about this and they mentioned that in order to do part of their features like auto-add deals for AMEX and BofA, they are unable to use 3rd Party Auth like Plaid (which Rocket Money uses). I'm wondering if they straight up have like a puppeteer script that logins in through a banks online portal and just autoclicks all the check marks for all the deals 🙄
TJ Faber
This 'style' is called the Plaid backend