DSB Maintenance Iteration 14: Agenda & Minutes (22 March 2023) - ConsumerDataStandardsAustralia/standards GitHub Wiki

Date and time: 22/03/2023, 2:00pm – 4:00pm AEDT

Location: Microsoft Teams Meeting

Dial-in details:

Chair: Hemang Rathod, DSB

Maintenance overview: Further information

Maintenance project board: See here

Decision Proposal: This maintenance iteration is being consulted on under Decision Proposal 281: Maintenance Iteration 14

Housekeeping

Recording

The Maintenance Iteration Calls are recorded for note taking purposes only. All recordings are kept securely, as are the transcripts which may be made from them. No identifying material will be provided without the participant's consent. Participants may email [email protected] should they have any further questions or wish to have any material redacted from the record.

Acknowledgement of Country

We acknowledge the Traditional Custodians of the various lands on which we work today and the Aboriginal and Torres Strait Islander people participating in this call.

We pay our respects to Elders past, present and emerging, and recognise and celebrate the diversity of Aboriginal peoples and their ongoing cultures and connections to the lands and waters of Australia.

Minor adjustment to Agenda

Outstanding Actions has been moved to occur before Maintenance Iteration 14 Issues to keep related discussions together.

Agenda

  • Introductions
  • Release plan
  • Open Consultations
  • Future Plan
  • Outstanding Actions
  • Maintenance Iteration 14 Issues
  • Change Request Status
  • Any other business

Meeting notes

Introductions

The purpose of this meeting is to:

  • Present proposals on each issue for further discussion before finalising solutions and commence staging changes to the Standards.

Release plan

  • Current version of the standards is 1.22.1 published on 22nd March 2023. It incorporates changes to the draft Telco standards along with minor fixes. Refer to the release notes for details
  • Version 1.23.0 release of the standards is in progress. This will incorporate the URGENT change request Issue #576
  • Changes for MI14 will be published in version 1.24.0 release of the standards

Open Consultations

The following Consultations are open for community feedback

Consultation Closing date
Decision Proposal 229 - CDR Participant Representation Placeholder: no close date Link to consultation
Decision Proposal 267 - Telco Data Language TBD Link to consultation
Decision Proposal 275 - Holistic Feedback on Telco Standards TBD Link to consultation
Noting Paper 276 - Proposed V5 Rules: Standards Impacts TBD Link to consultation
Noting Paper 292 - Approach to developing standards for the Non-Bank Lending Sector 24 March 2023 Link to consultation
Decision Proposal 288 - Non-Functional Requirements Revision 31 March 2023 Link to consultation
Noting Paper 296 - Offline Customer Authentication 17 April 2023 Link to consultation

Future Plan

Review of January-March Quarter and new changes: https://github.com/ConsumerDataStandardsAustralia/future-plan/projects/1

Outstanding Actions

NOTE: Where a :bulb: appears it indicates the Action will be discussed later in the Agenda under Maintenance Iteration 14 Issues.

CX

  • DSB to contact participants for examples of existing account selection processes for Issue #574 :bulb:

InfoSec

Energy

  • DSB to review seasonality aspect of Issue #520 and discuss with interested parties, AER and DELWP. :bulb:
  • DSB to modify the FDO and post on Issue #520 for the community to consider. :bulb:
  • DSB to post justification of the recommendation to not proceed with Issue #572 :bulb:

Register

Banking

  • DSB to create holistic CR for issues related to Get Account Detail and Get Product Detail APIs. 💡

Other

  • DSB to look at ways to use OAS3 spec to better manage API versioning.

Maintenance Iteration 14 Issues

All open change requests can be found here: Standards Maintenance Issues.

The standards maintenance backlog can be found here: Data Standards Maintenance

The change requests proposed for this iteration are:

CX

InfoSec

Energy

Banking

Register

Schema

Documentation

Other

Watching Brief

The following change requests are not related to DSBs remit to change the Standards however they are of significant interest to the community from a standards perspective. A watching brief will be kept on them throughout this iteration.

Change Request Status and Proposal

Domain # Issue Proposal Status Change Proposed Standards Staging link
MI 14 565 Iteration 14 Holistic Feedback
CX 574 Additional functionality to support multiple account selection Under discussion
InfoSec 522 OpenID Provider Configuration End Point parameter requirements Under discussion
InfoSec 535 Standard appears to redefine requirements for private_key_jwt authentication Under discussion
InfoSec 576 Change id token encryption documentation to allow for use in Hybrid flow and ACF URGENT change approved
Energy 520 Stepped solar feed in tariffs in Energy Option 2 Recommended
Energy 572 Ergon Energy's fixed quarterly GreenPower amounts are not supported by the spec Recommended to NOT PROCEED
Banking 567 BankingProductLendingRateV2 - Lending Rates - FIXED/INTEREST_ONLY period end date cannot be determined Under discussion
Banking 569 Home Loan Revert rate and product is not available Under discussion
Banking 580 Maintenance backlog summary - Banking sector
Register 508 Provide APIs to automate onboarding of software products and provisioning of certificates Under discussion
Register 577 Updates to Certificate Management Under discussion
Doco 532 Update x-fapi-auth-date description for Customer APIs Documentation Fix
Doco 483 Large payload tier description error Documentation Fix
Schema 538 Payload conventions; optional fields with null values aren't defined in schemas Change Recommended
Schema 496 Unauthenticated energy routes have unclear header documentation Change Recommended

Any Other Business

Next Steps

Meeting Minutes

Outstanding Actions

CX

  • DSB to contact participants for examples of existing account selection processes for Issue #574

InfoSec

Energy

  • DSB to review seasonality aspect of Issue #520 and discuss with interested parties, AER and DELWP.
  • DSB to modify the FDO and post on Issue #520 for the community to consider.
  • DSB to post justification of the recommendation to not proceed with Issue #572

Register

Banking

Other

  • DSB to look at ways to use OAS3 spec to better manage API versioning.
    • Nothing specific to report on at this time.

Maintenance Iteration 14 Issues

The following candidates were discussed:

CX

  • Issue #574 Additional functionality to support multiple account selection
    • A definition for 'unwarranted friction' and revised wording for the consumer experience standards has been drafted for community review, see comment. The DSB has reached out to retailers for examples and had discussions with Biza.
    • With regard to comments on using the term 'accounts', DSB has invited suggestions for alternatives. At this stage none have been proposed and therefore retaining 'accounts' is recommended to remain aligned with the standards.

InfoSec

Energy

Banking

Register

  • Issue #508 Provide APIs to automate onboarding of software products and provisioning of certificates

    • As indicated earlier this issue will be addressed in a Decision Proposal (refer placeholder DP #289). ACCC has yet to provide input on the strategic direction for the Register Standards Revision.
  • Issue #577 Updates to Certificate Management

    • DSB has discussed this issue with the ACCC. Initial intention to remove content and leave to ACCC guidance has been changed based on requests from the community to retain it because it is helpful. The standards will be updated based on the proposed solution to align with current operational practice with a permalink to ACCC guidance on how to undertake the process.
    • Related comments on the emerging issue of 'Certificate Authority (CA) purpose' will not be addressed in this issue but will be deferred to the Register Standards Revision DP.
    • DSB to post an update reflecting this approach on issue #577

Change Request Status and Proposal

Domain # Issue Proposal Status Change Proposed Standards Staging link
MI 14 565 Iteration 14 Holistic Feedback
CX 574 Additional functionality to support multiple account selection Proposal made
InfoSec 522 OpenID Provider Configuration End Point parameter requirements Under discussion
InfoSec 535 Standard appears to redefine requirements for private_key_jwt authentication Under discussion
InfoSec 576 Change id token encryption documentation to allow for use in Hybrid flow and ACF URGENT change approved Proposal made
Energy 520 Stepped solar feed in tariffs in Energy Proposal made Option 2 Recommended
Energy 572 Ergon Energy's fixed quarterly GreenPower amounts are not supported by the spec Proposal made Recommendation to not proceed
Banking 567 BankingProductLendingRateV2 - Lending Rates - FIXED/INTEREST_ONLY period end date cannot be determined Under discussion
Banking 569 Home Loan Revert rate and product is not available Under discussion
Register 508 Provide APIs to automate onboarding of software products and provisioning of certificates Defer This item will be deferred to the consultations flowing from the https://github.com/ConsumerDataStandardsAustralia/standards/issues/289
Register 577 Updates to Certificate Management Proposal Made See comment for details
Doco 532 Update x-fapi-auth-date description for Customer APIs Non-breaking change Documentation Fix
Doco 483 Large payload tier description error Non-breaking change Change Large Payload tier to states 'Any calls to the following end points:'
Schema 538 Payload conventions; optional fields with null values aren't defined in schemas Under discussion
Schema 496 Unauthenticated energy routes have unclear header documentation Proposal made Update public Energy endpoints ensuring that x-fapi-interaction-id is not required in request or response headers

Watching Brief

The following change requests were not discussed however are recorded here for completeness as a watching brief will be kept on them throughout this iteration.

Other Business

None.

New Actions

Register

  • DSB to post an update reflecting the proposed approach on issue #577

Next Steps

DSB to either finalise the Proposed solutions for each candidate in the MI or recommend it be carried into MI15 if there is insufficient information available to complete it in MI14. The community is encouraged to review DSBs Proposed Solutions and post comments to either support or propose an alternative.