Repair Design Furniture

Should I refuse and how to issue a refusal to obtain a biometric passport? No biometrics - no service How to refuse cookies

In the Russian Federation, biometric passports have appeared recently, but their number is constantly growing. It has certain advantages over the old-style document, but not everyone knows about the features. This becomes the cause of problems and the desire to abandon the use of a biometric passport. We will talk about how to file a refusal and what arguments to give.

A biometric passport is a new version of a document that has not yet become widespread. It differs from the old model in that all data on it is stored on a special microchip, thus reducing the risk of counterfeiting to a minimum. This is the main reason why many people want this type of document. Moreover, unlike the old-style passport, this version is issued for 10 years.

List of documents

To obtain a biometric passport, you need to prepare certain documents. Their list is standard, but has certain features. So, the issuance is carried out upon the submission of the following documents:

  • Application form in 2 copies. All items must be filled in in capital letters. You can do this on a computer and print 2 forms.
  • A set of photos in 3.5 by 4.5 format. Moreover, they can be either color or black and white. The only condition concerns the type of paper - it must be matte.
  • A copy of the internal passport. It is necessary to copy the first 2, 18-19 pages, registration and the last spread.
  • A copy of the page with a photo of the previous passport and the original (if any).
  • Labor book and its copy. It is necessary to present the first page and information about the work for 10 years. In this case, the copy must be certified by the company that is the last workplace. The unemployed only need the document itself without a certified copy.
  • Extract from their military registration and enlistment office for people aged 18-27 or military ID.

This is a list of documents that must be submitted to an adult citizen of the Russian Federation. For children, the order is somewhat different, but it will not stop there.

Design features

In order to obtain a biometric passport, you need to follow the standard procedure. By the way, it is practically no different from the design of an old-style document. It is necessary to collect all the forms, photographs and other documents described above. They are submitted to the nearest branch of the Federal Migration Service.

Special attention should be paid to filling out the application. On the one hand, there is nothing difficult in this, but on the other hand, any mistake can cause a refusal to issue a biometric passport. Recall that the main requirement for filling out the questionnaire is the accuracy of the information entered.

A feature of a biometric passport is that children cannot be entered into it. As you know, the old sample had a specially designated space for these purposes, so if you are traveling with children, then you will need to draw up a separate document for each child. Such a passport can be obtained simply, as for adults, by collecting the necessary package of documents (application, birth certificate, parents' passports, etc.). In general, the procedure for obtaining a passport is clear and does not require any additional steps.

It should be noted that obtaining a biometric passport is much easier if you turn to professionals for help. These are companies that draw up documents, speed up the process of obtaining various certificates, and so on. They usually have connections and agreements, which helps them to significantly simplify the process of obtaining a passport for the applicant.

As for the timing, it can take from a week to a month to complete the paperwork and consider the case. In some cases, this may take 1-2 days, but the cost in this case will increase and can be hundreds of thousands of rubles.

Some people make a positive decision about obtaining a biometric passport. However, due to various circumstances, they may change their minds and refuse this type of document. To do this, you need to submit an application with a clear explanation of the reason. Next, we will tell you what arguments will help you to issue a refusal in 2020 without any problems. This makes sense in some cases where the protection of personal information is a priority, which we will discuss next.

Reasons for refusal

Biometric passports have a special built-in microchip, which includes all personal information: name, date of birth, fingerprints, etc. As a rule, this part was created using RFID technology, which is the main problem. The fact is that the data of the passport holder can be read using a special scanner and laptop, so you should refuse it.

  • RFID reader.
  • Antenna of the desired frequency.
  • Notebook.

You will also need software that searches for the desired tags. Of course, you cannot download it, but programmers can develop it for a fee. When a person with a biometric passport enters the scanner's coverage area, his data is transferred to a laptop. As for the coverage area, it all depends on the equipment. Information can be read from both a few and 200-300 meters. The cost can range from a few hundred to $ 3,000.

Identity thefts are more common today. Biometric passports are very attractive for cybercriminals due to insufficient encryption and information security. Thus, it is impossible to say that the data of the owner of the document cannot be reliably protected, and no one wants to share their information without legal grounds and extreme necessity.

Another reason people move away from biometric passports is traceability. The RFID technology used makes it possible to track the coordinates of a person, wherever he is. Microchips work using low frequency radio waves. It is a passive structure, and therefore it is necessary to create some kind of external signal for it to work. The chip's response will depend on which signal was applied. The correct set of commands for any microchip will allow you to get all personal information, the location of a person, fingerprints, etc. Of course, this is only available to special services, since it requires the use of satellites. If you do not want to give in to risk, then you should abandon the idea of ​​designing this type of document.

Conclusion

Given the above arguments, it can be argued that old-style passports are safer in terms of protecting personal information. The only way to get a person's data is to steal the document. Biometric passports are easily readable using special equipment. In addition, built-in chips allow tracing the location of a person. How ethical it is, everyone decides for himself. However, we have described the reasons that are quite weighty to formalize the refusal of a modern biometric passport.

Sberbank actively offers biometrics to all clients. The bank explains that it should simplify the receipt of services, increase security when using remote service channels, terminals and ATMs. But many clients do not know how it works in 2019-2020, what advantages and dangers are fraught with the delivery of biometric data and use.

When applying for banking and many other services, a person needs to be identified. Traditionally, paper documents were used for this - a passport or other identity cards. But this approach is not very convenient. It is easy to forget the documents, their verification requires the participation of a specialist and takes time.

Gradually, paper identity cards fade into the background. They are being replaced by biometrics. This word denotes a system for identifying a person based on unique characteristics (fingerprints, facial images, voices, etc.). To reduce the likelihood of errors, a comparison of several features characteristic of a particular individual is often used. For example, face and voice biometrics can be used simultaneously.

Sberbank joined the project Unified Biometric System (UBS)... The initiators of its creation were the Central Bank and Rostelecom. In it, a person's biometric data is tied to a profile on the State Service portal. After connecting to it, the user will be able to use the services of various banks and government agencies without personal presence.

In addition, Sberbank collects biometric data for its own internal system. The bank cardholders are connected to it, and it is designed to make it easier to receive Sberbank's services.

What is biometrics for at Sberbank?

The biometric identification service is designed to enhance security when using online self-service services. In addition, with the help of biometrics, the largest bank in the Russian Federation promises to reduce the time required to identify a client in the office.

Additionally, it is suggested to use biometrics in the following cases:

  • in self-service devices;
  • when paying for purchases;
  • when contacting the call-center.

If a client has passed biometrics not only for the internal system of Sberbank, but also for the EBS, then he will also be able to remotely receive various services not only in the largest bank of the Russian Federation, but also in other institutions (government agencies, banks).

Is it obligatory to submit your data

The connection of biometrics is carried out exclusively at the request of the client... These rules are established by law. Clients always have access to the classic way of identification - by passport. In addition, Federal Law allows you to revoke consent to the processing of such information at any time. They have no right to refuse service to a client who does not want to submit biometric data.

Alas, Sberbank often imposes the delivery of biometrics for its internal system. He hides behind explanations about the increase in the speed of service, security, etc. But in practice, this often leads to the fact that the receipt of data is carried out forcibly. Most clients do not even know that they were not required to take them.

Is there a danger?

The dangers of registering your data must always be assessed before giving consent. Biometrics systems were originally conceived to improve security. It is almost impossible to deceive them. In respect of security of the Unified Biometric System itself created by Rostelecom and the Central Bank of the Russian Federation, everything is also more or less clear:

  • data is stored centrally in encrypted form in a special storage;
  • all data is transmitted in encrypted form in accordance with the requirements of GOST;
  • two-factor identification is applied using the account data of the State Service portal;
  • a person can delete biometrics at any time;
  • in fact, the organizations using the system do not have access to the biometric data, but only receive an answer from it whether the identification is passed or not.

But the situation is completely different with the internal system of the largest Russian bank. Consider the danger of biometrics at Sberbank:

  • The data is at the disposal of the bank, and no one excludes that in the future he will begin to provide access to them for a fee. Of course, the Law significantly limits such actions, but it’s even difficult to predict where they will be used.
  • The collection of personal data is subject to numerous violations. Often a person does not even know that he has given consent to biometrics.
  • Data leaks are possible. Sberbank often finds itself in the center of scandals over the theft of card data. No one will rule out that biometric data can be stolen from it. In theory, profile snapshots can help fraudsters commit various crimes.
  • Many people don't know how to revoke biometrics. This is again due to the fact that the country's largest bank is imposing it "on the sly". This approach also compromises the security of the system.

Registration process

Registration in the biometric data system takes no more than 10 minutes if the procedure is going on as usual. The client needs to select in advance an office where Sberbank's biometrics service is available. When contacting him, you will need to have a passport, SNILS and a bank card, if it was received earlier.

The data logging procedure can be divided into 4 steps

  1. Contacting an employee and passing identification on a paper document. You will need to present your passport and SNILS.
  2. Signing an application for the delivery of data and consent to their processing. He may be asked to sign on paper or by entering a PIN code in the terminal, it is advisable to carefully read the document.
  3. Photographing. The photo will be taken by the office staff using the equipment available in it.
  4. Submitting a sample of the vote. Usually they ask you to name the numbers from 1 to 9 in order and in reverse order.

The user's data is loaded into the system and it processes them. If everything went well, the registration will be successful and you can enjoy all the benefits of the biometric service.

Connecting biometrics via Sberbank-Online

In the Sberbank Online application, you can connect biometrics. The template is created directly from the client's phone and uploaded to the database of Sberbank itself. It must be confirmed through the contact center before using it.

The created template is used to confirm transfers through the application without contacting the call center. The presence of biometric data in the system also increases the security when receiving services through offices.

Pros and cons of biometrics service

Everything Benefits biometrics come down to saving time. Among the advantages of this technology are the following:

  • you can receive banking and some government services via the Internet;
  • the ability to pay for purchases, withdraw cash even if you do not have a card with you;
  • convenient banking service by phone without answering many questions about personal data.

The main disadvantage of the Sberbank system is the inability to predict whether biometrics is safe in the internal systems of a credit institution. And usually the largest Russian bank accepts data into its internal system, and not in the EBS. Naturally, the bank's representatives assure that the data is 100% protected in the internal system, but there are practically no guarantees in this case.

Other limitations biometrics are less important. Of these, the following can be noted:

  • the need to waste time on registration, which does not always complete successfully the first time;
  • there are few opportunities to actually use biometrics for remote banking services (they are just emerging);
  • there is a small chance that fraudsters in the future will still be able to reproduce a person's biometric data.

How to use biometrics at Sberbank?

Any new technology raises many questions about its use. There are also many myths about biometrics. For example, there even appeared fake information about the glow of a barcode on the forehead of those who passed biometrics at Sberbank. In practice, there is nothing like that.

So far, the largest bank in the Russian Federation offers to use biometrics when using some ATMs, paying for purchases or when calling a call center. In the future, it is planned that the capabilities of the system will become much wider. For example, it will be possible to make real estate transactions directly from home, open accounts in any banks, etc.

ATM with biometrics

Back in 2017, new Sberbank ATMs with biometrics began to appear. They can carry out services without using a card. To do this, you first need to activate the service at the bank's office.

To perform an operation, the user just needs to press the "Biometrics Service" button on the device. After that, the ATM identifies the user by the face image and it will be possible to make transactions.

So far, Sberbank is not actively installing ATMs with biometrics. Everything works in test mode.

Voice biometrics

Voice biometrics is used when contacting the Sberbank call center. When making a call, you will not need to provide a code word, passport data. The system will automatically determine that it is the client who is addressing, comparing his voice with the sample in the database.

Sberbank is especially active in working with biometric data when contacting the call center. This allows you to significantly increase the safety of operations through specialists and the voice menu. At the same time, the maintenance time is reduced.

To do biometrics or not?

Whether or not to pass biometrics, each client must decide independently. The use of this technology in Russia is still very limited. Sberbank widely uses it only for identification in the call center, as well as to reduce the likelihood of fraudulent transactions using a fake passport.

Shopping, operations in self-service devices using biometrics are still very limited. Such projects are exclusively pilot projects. Before registering your data, you must not forget about the disadvantages of the technology.

How to opt out of biometrics at Sberbank?

Sberbank collects biometric data and takes consent from the client to process them for 50 years. You won't be able to disable biometrics in the app or online banking. Such functionality is not available in these services.

At the same time, the legislation allows you to refuse to take biometrics. If the data was nevertheless submitted, then you can always write an application to refuse biometrics by contacting the office. There will be no sanctions for this from the bank. But employees are reluctant to accept such documents.

Balashov, 01.03.2019


Served in the same branch of the Savings Bank. During the last service in January-February, I was asked whether I gave my consent to biometrics, then they demanded to enter the PIN code from the card three times, without explaining why it was necessary.


Today I call the call center at 900.

Me: - Does Sberbank have my consent to the processing of biometric personal data?

Call center operator: - Yes, there is.

Me: - How did the bank receive it?

Call center operator: - You have confirmed it through the mobile application.

Me: I didn't (because I carefully read everything I poke at). How can I revoke consent to this OTP?

Call center operator: ... You need to go to the nearest bank branch and write an application.

Me: In whose name should I write it?

Call center operator: A form will be printed for you and you will fill it out.

I go to the very department in which I serve.

In the department, the operator (say, operator # 1) makes round eyes and asks my request again. I repeat that we need a form to revoke consent to the processing of biometric data. Calls someone, figuring out how to do it. There is a slight revival among the staff.


The administrator comes up and asks what happened to me. In a nutshell, I explain that the bank has consent to the OPD, which I did not give him. The administrator assures that it is enough to write a statement, and everything will be decided.

ATTEMPT ONE: Operator No. 1 asks to insert a card and enter a pin code. The mini-terminal screen displays a text stating that I refuse biometric OPD. I check the data and indicate to the operator No. 1 that the passport data is entered incorrectly. The operator corrects the data in the system and prints a notification about it for me to sign. Then he says that my application has been accepted and satisfied.


I demand to provide me with confirmation of her words, operator # 1 makes a helpless gesture and says that this is impossible, because such things are not provided by the system.

ATTEMPT TWO: I demand that I submit an application form to prohibit the bank from collecting and using my biometric personal data from now on. Operator # 1 calls someone again for information.


At this moment (the most interesting for the readers) operator # 2 appears (well, let's say), approaches operator # 3 and outputs: “What's the problem? I silently issue (consent to biometrics) to everyone, should I ask everyone?How did she even know about it? " Operator # 3 nudges Operator # 2 with his elbow and points at me with his eyes. Operator # 2 silently retreats.


Operator # 1 prints out a document that does not clearly state my desire to give up biometrics. At the end of the document for 3 paragraphs in small print - “I, full name, by signing this document, I consent to the processing of ALL my personal data .... etc.".


Me: - That is, by signing the waiver of the OPD, I give my consent to the OPD?

Operator # 1: - This is a standard application form.

Me: - She does not suit me. I cannot sign it.

Operator # 1: - Wait, please. Calls someone.

ATTEMPT THREE: The administrator comes up to me again and invites me to his office. Clarifies the nuances of my request, tries to convince that biometrics can only be submitted voluntarily. To my question: "If the bank received my consent without my knowledge, what prevents it from also receiving a scan of the face and a sample of the vote?" does not find an answer. And after the phrase that I worked in the banking system and do not need clarification, he offers to write a statement by hand and send my request in the form of a scan.

I am writing, indicating the passport data, date of birth, full name, and I forbid from now on even offering me biometrics. At my request, the administrator gives me a copy of the application with a note of admission, apologizes, promises to punish the guilty (yeah, this is not the instruction of the management). Operator No. 1 scans the application, passport, the document that I refused to sign. I receive an SMS from number 900 that my request has been accepted and will be considered until 03/14/2019. They promised to send the answer by mail.

1. General information

PJSC Sberbank (Russia, Moscow, 117997, Vavilova str., 19) (hereinafter referred to as the Bank / PJSC Sberbank) informs the subjects of personal data located in the European Union or personal data obtained from the territory of the European Union in relation to the proposed goods and services of the Bank or whose behavioral activity in the European Union may be monitored by the Bank (hereinafter - Data Subjects) on their rights, as well as on the conditions and principles of personal data processing applied at Sberbank in accordance with the requirements of Regulation No. 2016/679 of the European Parliament and the Council of the European Union "On the Protection of Individuals in the Processing of Personal Data and on the Free Circulation of such Data" General Data Protection Regulation (hereinafter referred to as the GDPR).

2. What personal data we process

As part of the provision of banking services, interaction with customers, counterparties and government bodies of the Russian Federation, as well as the employment of employees, the Bank may process various categories of personal data of individuals, subject to compliance with the processing requirements established by law. The list of processed personal data may contain the following categories:

  • Basic information about the subject (such as name, contact details, passport details, etc.);
  • Financial position (such as banking history, income, assets held, etc.);
  • Social status (such as work, education, family composition, etc.);
  • Information collected and accumulated by the Bank in the process of providing services to the data subject, including information about the history of using the services, products and services of the Bank;
  • Photographic and / or video images;
  • Information about actions performed on the Bank's websites and mobile applications, as well as information about the devices used (such as geolocation, IP addresses, cookies, transaction data, etc.);
  • Special categories 1 of personal data (race, nationality, political opinion, religious or philosophical beliefs, health status), as well as biometric data.

3. Where we collect personal data from and for what purpose we process it

The personal data of subjects enter the Bank strictly to fulfill predetermined goals or legal requirements in various ways, including:

  • Directly from potential or existing customers of the Bank, their representatives, intermediaries, related parties, guarantors or through third parties for the purpose of concluding agreements, subsequent communication, informing and providing banking services;
  • Directly from employees of the Sberbank group of companies, their close relatives, individuals who have entered into a civil law agreement with the Bank or who are part of the Bank's management bodies, in order to maintain personnel records and / or to attract and select candidates for vacant positions and / or conduct corporate telephone directory and / or administrative and business activities;
  • Directly from candidates for vacancies or from external recruiting agencies in order to attract and select candidates for vacant positions;
  • From government agencies and organizations in order to comply with legal requirements;
  • By collecting and accumulating new personal data in the course of interaction with the subject (history of products, transactions, requests), during the use of the Bank's websites and mobile applications by the subjects of personal data (data on location, IP addresses, actions on websites and in applications) or when obtaining the above personal data from third parties on a legal basis in order to improve the quality of services provided, advise potential and current customers and form marketing proposals;
  • From publicly available sources to gain knowledge about the subject in order to generate personalized offers.

The processing by the Bank of the subject's personal data is carried out only if one of the following conditions is applied:

  • The data subject has given his consent to the processing of his personal data for one or more specific purposes;
  • Processing is necessary for the execution of a contract in which the data subject is one of the parties, or for taking measures at the request of the data subject prior to the conclusion of the contract;
  • Processing is necessary to fulfill the legal obligations of the Bank;
  • The processing is necessary to protect the vital interests of the data subject or another natural person;
  • Processing is necessary for the performance of tasks carried out in the interests of the state;
  • The processing is necessary for the purpose of ensuring the legitimate interests of the Bank or a third party, unless such interests conflict with the interests or fundamental rights and freedoms of the data subject, which require the protection of personal data, in particular if the data subject is a child.

With the written consent of the subject, the Bank can use the received personal data to make decisions based on exclusively automated processing.

4. How long do we keep your data

The storage of personal data is carried out no longer than the purpose of processing personal data requires, unless the storage period for personal data is established by federal law, an agreement to which the subject of personal data is a party, beneficiary or guarantor.

5. What rights do you have

Each subject whose personal data is processed by the Bank has a number of rights and freedoms regarding their personal data.

Table 1. Rights of the subject of personal data


Right

Description

Access to personal data

The subject has the right to request confirmation of the fact of the processing of his personal data. In the event of such processing, the subject has the right to familiarize himself with the processed personal data, as well as information about the purposes of processing, the category of the processed data, actions with data, recipients of data and guarantees when transferring data to third parties, processing times, sources of data, the presence of an exclusively automated process decision making. The subject also has the right to receive a list of processed personal data.

Correction of personal data

The subject has the right to demand that his personal data be corrected in case of inaccuracies in the composition of personal data processed by the Bank. Taking into account the purposes of the processing, the data subject has the right to make additions to the personal data, including by submitting an additional statement.

Restriction of the processing of personal data

The subject has the right to initiate the restriction of the processing of all or part of his personal data if one of the following conditions applies:

  • the accuracy of personal data is disputed by the data subject (limitation on the period necessary for the Bank to confirm the correctness of personal data);
  • unlawful processing of personal data has been identified, the data subject objects to the deletion of his personal data and instead demands to restrict their use;
  • The bank no longer requires personal data for the purposes of processing, but it is required by the data subject for justification, execution or in the course of legal proceedings;
  • the data subject objects to the processing of his personal data (limitation on the period necessary for the Bank to establish the fact whether the Bank's legal grounds for processing his personal data prevail over the legal requirements of the data subject).

Deletion of personal data

The subject has the right to demand that his personal data be deleted from the systems of the Bank and / or other available material sources, if one of the following conditions applies:

  • personal data are no longer required for the purposes for which they were obtained;
  • the data subject revokes his consent on the basis of which the processing was carried out, unless there is another legal basis for the processing;
  • the data subject objects to the processing of his personal data (if there is no overriding legal basis for the processing of his data);
  • personal data is processed unlawfully;
  • personal data must be destroyed in order to comply with a legal obligation in accordance with legal requirements;
  • at the time of collecting personal data, the subject of personal data is a minor, and the personal data was obtained on the basis of the consent of the legal representative for the provision of services using remote service channels (information society services) directly to the minor himself.

Data portability

The subject has the right to request a list of his personal data provided to the Bank for processing in a structured, universal and machine-readable format, and instruct the Bank to transfer his personal data to a third party if the Bank has the appropriate technical capability. In this case, the Bank is not responsible for the actions of a third party committed in the future with personal data.

Objection to the processing of personal data

The data subject has the right to object to the processing of part or the full list of his personal data for the purposes specified when submitting his personal data to the Bank, unless the legal grounds for processing prevail over the interests, rights and freedoms of the data subject or processing is necessary to justify, fulfill or defense in legal claims.

Refusal from marketing activities

The subject has the right to demand the restriction of the processing of his personal data for the purposes of the Bank's marketing activities.

Filing a complaint with the national supervisory authority at the place of permanent residence in the EU

The subject has the right to lodge a complaint with the supervisory authority if the Bank in any way violates his rights in the field of personal data processing.

In the event of a request from a subject that is a potential client of the Bank, a request to restrict processing, delete personal data or an objection to their processing, the Bank has the right to refuse to provide the subject with personal data of banking services.
In the event of a request from an entity that is a party to the agreement with the Bank, or a beneficiary / guarantor under this agreement, a request to restrict or delete personal data, an objection to their processing or revocation of the previously provided consent, the Bank has the right to continue processing its personal data until the conditions of the existing agreements are fulfilled and compliance with legal requirements.

6. To whom we may transfer your personal data (including cross-border)

In accordance with predetermined goals and legal requirements, the Bank may transfer personal data to the following categories of third parties:

  • Subsidiary banks and companies within the Bank's group of companies;
  • External counterparties;
  • To state or other authorities in order to comply with the requirements of the law.

Cross-border transfer of personal data on the territory of foreign states that do not provide adequate protection of the rights of subjects of personal data is carried out strictly with the consent of the subject and / or in order to fulfill the contract and / or to comply with legal requirements.
For the transfer of personal data to third parties located outside the territory of countries that are parties to the Council of Europe Convention for the Protection of Individuals with regard to Automatic Processing of Personal Data, as well as outside the territory of countries that ensure an adequate level of protection of personal data, with the relevant third parties (when applicable in accordance with applicable legislation on the protection of personal data) contracts are concluded containing "Standard Clauses of Contracts" (SCC), which guarantee the observance of the rights and freedoms of personal data subjects. The list of third parties and the personal data transferred to them can be requested from the person in charge of organizing the processing and protection of personal data of the Bank.

7. Use of cookies

Definition and terminology

A cookie is a small piece of data that a website requests from the browser used on your computer or mobile device. Cookies reflect your actions or preferences. Cookies are stored locally on your computer or mobile device. Users can delete stored cookies as they wish.

Table 2. Description of cookies


Types of cookies

Description

Session

User-website interaction details: Typically store a session ID that allows the user to navigate from page to page without having to re-authenticate with the website. Browsers usually delete session cookies after the user closes the browser window.
Session cookies help us improve our products and make your experience on our website more user-friendly.

Permanent

Cookies that are stored on the user's computer and are not deleted when the browser is closed. Persistent cookies can store user preferences for a specific website, allowing these preferences to be used in future browsing sessions.
Persistent cookies can be used by a website to analyze user behavior on the website, as well as to provide information about the number of visitors, the average time spent on a particular page, and generally the performance of the website.

Purpose of collecting cookies

Cookies, information about the user's actions on the website, information about the user's equipment, the date and time of the session are processed by the Bank (including using the metric programs Yandex.Metrica, Google Analytics, Firebas Google, Tune, Amplitude, Segmento) in order to improve the operation of the website, information about the actions of users are processed to improve the products and services of the Bank, determine the user's preferences, provide targeted information on the products and services of the Bank and the Bank's partners.

How to refuse the use of cookies

After disabling the function of using cookies in the web browser, the user may find that some sections of the Bank's website do not work properly.
Instructions on how to manage cookies in a browser can usually be found in the browser's help service (Help function).

8. How to contact us regarding the processing of personal data

In the event of any questions, suggestions or intentions to exercise one or more of the subject's rights regarding the processing of personal data, the subject has the right to contact the Bank using the following contact information:

More details with contact information can be found on the Bank's website.

The All-Russian biometric data collection campaign started in 2018. A year after its start, credit organizations entered information on only a few thousand citizens into the database. Customers do not want to hand over their data because of the long registration procedure and the unreliability of the equipment, bank employees complain. Why does a bank need a digital profile of every Russian, "360" figured out.

Russian banks have encountered difficulties in collecting biometric data from Russians. Rostelecom told Izvestia about the problems with entering the digital profile of clients into the database. The department acts as the operator of the unified biometric system (UBS) and is responsible for storing information.

Crashes and fear of hackers

Among the reasons for the failure of data collection are defects that arise due to incorrect equipment settings, they say in Rostelecom. In particular, banks complain about the quality of the face and voice samples they receive. For example, an improperly adjusted microphone can overload it. As a result, poor quality biometric data is sent to the EBS, which then cannot be used by banks.

In addition, misconfigured equipment can seriously increase the time it takes to collect information, which makes customers nervous and reduces the number of people willing to leave their digital profile, 360 sources in the market told "360".

So, there were cases when the collection of information took about an hour, although with serviceable equipment, the procedure lasts no more than 10 minutes. “As a result, the clients themselves are not happy that they have agreed to the delivery, which is why the overall percentage of collection of biometrics is falling. Plus, sometimes the microphone and cameras record voice poorly and take low-quality pictures. As a result, then this data cannot be used, "- notes one of the bank employees.

Also, clients are confused by the fact that they do not understand where their data goes, and are afraid that personal information may fall into the hands of hackers. “Now the system is still non-transparent, and the clients themselves do not understand why this is needed, and prefer to apply for a loan or receive any service at a bank branch,” the source said to “360”.

A large-scale campaign to collect data from Russians began in January last year. Then the Central Bank actively began to urge banks to register customers and send their digital profile to the database. However, the process went on with difficulty: in the first eight months of 2018, only 1.2 thousand photographs, prints and votes of Russians were collected.

As “360” was told at Otkritie Bank, since the launch of the industrial stage of the project (1.5 months), several dozen clients have submitted biometric data through the bank. “In our opinion, the service has not yet been popularized enough among customers and the general population. When banks begin to provide services remotely, when the cost of providing such services is formed, when additional services appear, people will feel the convenience and benefits, then we can expect massive interest from citizens, "- explained to" 360 "spokesman for the press service Andrei Bocharov.

Credit via smartphone


Photo source: RIA Novosti

The Unified Biometric System (UBS) is a digital platform for identifying citizens by voice and facial image. The Ministry of Telecom and Mass Communications and other departments have been creating the system since mid-2016, and financial organizations were the pioneers in this area. The client needs to come to the bank only once in order to form his “digital cast”, which includes a voice sample and a full-size photograph. Also, some banks may request fingerprints at their discretion. This should be enough so that a person can then remotely remain a client of the bank and receive services. At the same time, other banks can also use the data, and not only the one to whose branch the client handed over his biometrics.

To get a loan or get a card remotely, a Russian will only need to make a call to the bank, bring his face to the camera of the phone and say a certain password phrase, which changes with each client's request. Then the database will independently verify the authenticity of the data, and if the information matches, the client will have access to the bank's services remotely. In this case, you will not need to name passport data or code words.

In theory, such a system gives a lot of advantages to bank clients, but in reality, staff errors can lead to leakage of personal information of citizens, say experts interviewed by "360".

According to Konstantin Novikov, Commercial Director for Biometric Security Systems at EkeyRus, if the bank's software is configured incorrectly, the collection procedure will be long and not always safe for the consumer.

“Biometrics itself is an extremely useful service for a client, as it allows him, for example, to get a loan without leaving home. It's another matter if the bank's software is not well-regulated and the system malfunctions, then there is a possibility that your data may fall into the hands of fraudsters, ”the source said to“ 360 ”.

However, in order to avoid unexpected leaks and expand the circle of clients, some implement their own projects based on biometrics. As Ksenia Andreeva, head of the department for the development of debit cards, service packages and loyalty programs of Raiffeisenbank, told 360, the institution collects and uses data to provide services in regions where it does not have branches.

“Biometrics allows us to make customer service easier, as well as provide services in regions where we do not have branches. At the same time, Russians in the most remote corners of the country will be able to use the services of different banks, which will have a positive effect on competition in the banking market, ”the source said to“ 360 ”.

Also, from July 1 of last year, Rosbank began to actively collect data from citizens, told "360" in the organization's press service. “Now clients can submit their biometric data at 107 Rosbank offices located in 70 constituent entities of the Russian Federation, and by the end of the year the service will be available in absolutely all offices in the country. She has no problems with collecting biometric data, all data collection and transmission operations are carried out as usual, ”said Marina Frolova, Deputy Director for Operations at Rosbank. At the same time, the bank is going to introduce the use of remote biometric identification when issuing a cash loan this year.

people shared the article