logoalt Hacker News

elrictoday at 8:39 AM1 replyview on HN

I've never used a banking app on my phone, and I have no desire to. It's the least secure device I own (in spite of running Graphene). It's the most likely device to get lost or stolen.

I currently have accounts with 3 different banks in Belgium. They all offer an app which I ignore. Online banking works just fine, heck, better than fine, it's excellent. One bank uses auth derived from my debit card (which I have to insert into a card reader to sign transactions). The other two use hardware tokens. The hardware token for my business account has a built in camera which scans QR codes displayed by the website. When signing a payment, I scan the code and the token asks "Confirm payment of 123eur to XYZ?".

It's plenty convenient for my needs.


Replies

jbstacktoday at 9:10 AM

That's fine when you're lucky enough to be able to avoid a banking app, but for many banks its essentially compulsory. I can't login to internet banking without entering a 2FA code from the app. I'm even forced to have my Android settings a certain way, otherwise the app detects that my phone is "insecure" and refuses to run.