DORA

Digital Operational Resilience Act

ActiveOperational ResilienceEurope

DORA establishes uniform requirements for ICT security in the EU financial sector. It impacts Open Banking by setting standards for API security, incident reporting, and third-party risk management. Use this page as a working reference when you compare banks, products, and regulatory timelines.

๐ŸŒ
Jurisdiction
European Union
๐Ÿ“…
Effective Date
2023
Jan 16, 2023
โœ…
Full Compliance
2025
Jan 17, 2025
๐Ÿ›๏ธ
Regulator
EBA

Overview

DORA establishes uniform requirements for ICT security in the EU financial sector. It impacts Open Banking by setting standards for API security, incident reporting, and third-party risk management.

Scope & Coverage

ICT Risk ManagementIncident ReportingThird-Party Risk

Key Requirements

1
ICT risk management framework
2
Incident reporting
3
Digital resilience testing
4
Third-party risk oversight

Key Notes

Full compliance required by January 2025. Impacts all TPPs and banks.

Official Resources

Related Regulations

Other open banking frameworks in Europe:

Need to comply with DORA?

Explore API aggregators that support European Union compliance.

Want to integrate Accounting & ERP data?

Connect to 30+ accounting platforms and ERPs through a single unified API with Apideck.