

Ah, makes sense it would be targeted twards banking and financial businesses specifically. Better pinch point than some random commerce. In that case audits would be less problematic, though I’m not sure why outsourcing this data is even an option with the current rules. It’s not like a business can be completely hands off in the acquisition or processing of that info.


There’s still valid concern about this being a foot in the door tactic. Once an OS complies with this request what will the next one be? Why should this even be allowed?
Either way though, the reddit citation is a bit unnerving.