Select Topic
Portal Terms of Use
Welcome to the Developer Portal of Bank Leumi Le Israel Ltd. ("The Bank" or "Leumi").
The portal will provide documentation, application interface protocols ("APIs"), a sandbox environment for entities seeking to operate within the open banking system, materials, and access to various work environments (the "Portal", or "Portal Services"), as they are defined from time to time.
This document defines the terms of use of the portal, and they will apply to the use of this portal, as well as any interface or information accessible through the portal, including the APIs. In addition to these terms, the portal policy and any other agreement, as far as it is signed between the user and the bank, will also apply to users registered on the portal. In addition, the use of the portal is subject to the directives of the Supervisor of Banks in Proper Banking Procedure No. 368 regarding the implementation of a standard of opening banking in Israel (hereinafter "PPB 368").
- Access and use of the portal constitutes consent on your part ("the user") to the terms of use set forth below, to the portal policy and to the privacy policy , including the cookie policy used in the portal.
- Subject to the provisions of the law applicable to it, Leumi reserves the right to change and update the services and content on the portal at any time as well as to change these terms at its sole discretion and without prior notice. Your continued entry and use of the Portal means that you agree to any such change.
- If you make use of APIs on behalf of another legal entity, you hereby declare that you have the authority to hold accountable that legal entity, that there is no impediment to your action on behalf of that legal entity and that your consent to the Terms of Use is made on behalf of that legal entity and in its name.
- To remove doubt, by logging in and using the portal, you confirm that you are acting in a business position only and not as a customer of the bank.
Registration and identification on the portal
- Access to the portal, use of the APIs and practical experience with the open banking services offered by Leumi for familiarity with the APIs offered by Leumi in the sandbox environment are open to all users and are granted to the user subject to the use of a dedicated certificate issued by the regulator. In addition to this, the bank may allow, at its discretion, access to the portal and the various services also to other parties, according to its sole discretion. In order to receive general information, receive technical support and a personal area that allows tracking of your activity on the portal, you must register on the portal.
- Without prejudice to section 5 above, practical experience in the sandbox environment requires the use of a dedicated certificate issued by the regulator. You undertake to hold a valid dedicated certificate and all the necessary permits for your activity at all times.
- It is the user's responsibility to update the contact details as well as the other details required for proper activity with Leumi. These details will be used for communication with the Bank and for various inquiries in accordance with the regulatory requirements. Please note, without pre-arranged registration and validation of the details by the bank, no technical support services will be provided for the production environment.
You hereby undertake to update the Bank immediately in any event of change in the contact details you have provided, or in any other detail that may affect the engagement. - Users are aware that they do not have a legal obligation to provide any information, but providing complete and accurate information is a prerequisite for gaining access to the portal and / or use of the portal, including APIs and the sandbox environment.Access to and use of the portal, including the API, will be done in accordance with the permissions set forth in the certificate in relation to that API and under these terms.
Licenses
- Subject to the user's compliance with the provisions of these Terms of Use, Leumi grants the user a limited, non-exclusive, non-perpetual, non-unique, non-transferable and revocable right by Leumi, to use Leumi's portal for its open banking activities only and subject to any law and the provisions of these Terms and Conditions.
Intellectual property
- All rights, of any kind and type, including and without prejudice to the aforesaid, all copyrights, any patent, trade secret, trademark and any property rights concerning the portal or the APIs and/or the systems connected to them and/or the services provided by them, are at all times under the exclusive and complete ownership of the Bank or of a third party from whom the Bank has acquired the right to use that software/system.
- The user undertakes not to infringe the rights of the bank and/or any third party, and to take all efforts to prevent such infringement by third parties. It is clarified that these Terms of Use or the use of the Portal do not grant the User any rights other than those set forth in these Terms.
Use of the portal
- In using the portal, including in the APIs, the user undertakes to act in accordance with the provisions of any law and/or agreement.
- The portal, including in APIs, may not be used except for uses and purposes expressly defined in these terms. Any use that is not expressly permitted under these Terms of Use is prohibited.
- Without derogating from the generality of the aforesaid, one shall not use the portal and/or APIs and/or develop applications and/or functionality in the following ways:
- For the purpose of encouraging or promoting illegal activity or infringement of the rights of third parties (including infringement of intellectual property rights, privacy, confidentiality and any other right of any third party);
- For the purpose of publishing and/or uploading and/or processing content that is illegal, offensive or degrading;
- For the development of applications and/or functionality that are not authorized in accordance with the provisions of law or regulation. Use that constitutes, promotes or is linked to a computer virus or malware.
- Use that may cause damage to the proper functioning of the portal or other Leumi websites and/or Leumi systems and/or Leumi's services etc.
- In violation of legal provisions and/or agreements, including in violation of intellectual property rights of the Bank and/or third parties.
- Without derogating from the generality of the aforesaid, it is clarified that the user and / or those on his behalf are not allowed to copy, adapt and/or change, create derivative works, perform back and/or reverse engineering, distribute and/or market the portal content or any part of it, including the APIs, and/or perform any action that may infringe on the Bank's property rights, in any manner and for any purpose.
- The user undertakes not to allow any party other than the user to make any use of the portal, either directly or indirectly. This includes a complete ban on granting a sub-license for the use of the portal, including APIs.
- The user undertakes to ensure that the means used by him in connection with its activities are technically appropriate and support the requested service.
- Users undertake to notify the Bank as soon as they become aware of any case of misuse of systems, and/or software and/or infrastructure and/or a security incident or the existence of a concern about it.
Liability and indemnification
- The user undertakes and bears full responsibility for all use of the portal, including APIs, applications, websites, systems and/or any other material used in connection with these Terms and that the use of the portal including APIs and application/functionality development will be done in accordance with all applicable laws and subject to third party rights. Leumi will not bear any responsibility, including for any damage caused by the user and/or due to the user's activity, violation of the rights of any third party made by the user or due to the incorrectness of the users' statements, and as such.
- The portal including the APIs are accessible for use in accordance with these Terms "as is." Access to the portal, including APIs, is accessible to users without any liability or responsibility on the part of Leumi and does not create any representation on behalf of Leumi in relation to the portal, including the services and materials contained therein, including suitability for certain operations or purposes, continuity, uninterrupted activity, availability, accuracy, their updates, their level of security, the results of their use and more.
- Leumi does not guarantee that the portal services, including the API, will be safe to use, without glitches, malfunction, bugs, availability problems or interruptions of any kind, or that these will be free of viruses, malware, worms, other harmful components or any limitations. It is also clarified that Leumi does not undertake to repair any malfunction, defect or deficiency as aforesaid. Leumi is not responsible for any malfunction, defect or deficiency originating from third parties, including the user or anyone acting on his behalf, including malfunctions arising from providers of infrastructure, Internet or telecommunications.
- Leumi makes the portal available to the user in accordance with the provisions of applicable law. To the maximum extent permitted by law, Leumi shall not be liable for any damage, direct or indirect, which may be caused to the user or any third party as a result of or in connection with the use of the portal including APIs or in connection with the inability to use them and/or in connection with the user's reliance on the content and information contained therein. The use of the portal, including APIs, is the sole responsibility of the user and the user will be responsible for any damage caused or likely to be caused to him or to third parties, including but not limited to, loss of profit, loss of revenue, damage to reputation, damage to computer systems and/or loss of information.
- Without derogating from the aforesaid generality, Leumi is not responsible for any loss, corruption or deletion of user information stored on the portal and in the various environments. The user is solely responsible for maintaining and backing up and taking all necessary measures for the protection and retention of the information including in accordance with the provisions of all applicable law.
- Without derogating from what is stated in this section above, and to the maximum extent possible under any law, the cumulative liability of Leumi or any entity on its behalf for all damages and losses arising from and/or related to access to and/or use of the portal and APIs shall not exceed US $500, for all cumulative damages.
Changing, Blocking and Termination of Services
- Without derogating from Leumi's rights under any law and/or agreement, Leumi may block and/or terminate permanently or temporarily, in whole or in part, the Services and/or restrict and/or suspend and/or refuse a user's access or use of the Portal and the services included therein, including any API, at its sole discretion including in cases arising from the Bank's need to protect portal users, its customers and/or itself and/or third parties, including in any of the following cases:
- In any case that the Bank is informed of malfunctions and exceptional events and in any other case of malfunction, disruption, destruction and/or investigation and/or existence of a concern of a security breach, cyber incident, intrusion into systems and/or misuse of them.
- In any case of suspicion of activity that deviates from the provisions of any law and/or the Terms of Use, an agreement and/or the Bank's guidelines in any of the systems.
- In any case where the Bank will be banned from providing the services for a reason related to any third party and/or for technical reasons and/or in accordance to any law and/or in accordance with the guidelines of the Bank of Israel and/or another regulator, as may be set from time to time.
- For the purpose of performing maintenance and/or upgrade work for which no prior notice will necessarily be given.
- In addition, with respect to entities authorized by the Bank to use the Portal or any part thereof, other than through a certificate issued by a regulator ("holders of an internal certificate"), the Bank may block, restrict, suspend, deny access or use, discontinue access to and/or use of the Portal and services contained therein, in its sole discretion and without prior notice.
Confidentiality
- The user undertakes that the user, the user’s people and everyone acting on behalf of the user, will keep in complete and utter confidentiality any document, information, details and data of any kind, including information transmitted orally or in any other way, about the bank and/or about entities belonging to the bank group and/or about any party who maintains relationships with the Bank and/or its employees and/or its customers and/or its potential customers, including any matter subject to a requirement of banking confidentiality and/or privacy, business and commercial matters, trade secrets, ideas, knowledge and/or techniques, procedures, rules or information regarding systems, working methods and/or work procedures, guarding arrangements, security, information security, including passwords, private and public keys and any means of access and/or security ("the information") that will become available to them and/or their knowledge in connection with the use of the portal and the services provided through it. It is clarified that this obligation will not apply to information which (1) was lawfully known to the user prior to joining the portal, and it is not obliged to maintain its confidentiality under an agreement and/or law and has evidence to that effect; (2) information that has become or will become public property without violating the obligation of confidentiality; (3) Information provided to the user by another party lawfully and without breach of obligation to the Bank and/or anyone on its behalf.
- The user undertakes that the user, the user’s people and employees and everyone acting on its behalf, will meet all the conditions required for the security of information in connection with the portal and its use, as will be updated from time to time.
- The user’s obligations set forth in this section do not derogate from the user's obligations to maintain confidentiality for which the user has signed separately and are not limited in time.
Data Security
- Leumi makes a constant effort to maintain the privacy and the confidentiality of the information by:
- Implementation of advanced measures to secure the activity of Internet users.
- Upgrading and adapting security systems according to the existing threats on the Internet.
- Strict inspections of all systems by third-party specialists.
- Not sending requests to update identification information and personal information via the website or the application.
- For your convenience, we have summarized the main rules and means for safe surfing:
- Typing the bank's URL and avoiding entering the site through links or through e-mails received from an unknown or unreliable source (to prevent phishing).
- Verifying that the letters https appear at the beginning of the address, indicating encrypted communication.
- If you have identification information, do not save the identification information in a visible place where it will be accessible to others, or on the computer, for fear of being exposed by Trojans or file-sharing software, which allow access to files on the computer.
- While browsing the portal, it is recommended to prevent physical access by other parties to the workstation from which the browsing is taking place.
- When finishing using the portal, disconnect through an exit or sign-out operation.
- Avoid browsing via computers whose level of security is unknown.
- General precautions to be taken when using a personal computer:
- Use of software and tools to protect information and cybersecurity, such as: Personal Firewall software, anti-virus software and anti-spyware software. Update this software regularly.
- Updating the operating system, browser and other off-the-shelf software for periodic patches related to information security.
- Avoid clicking on links, sending details, installing unknown software and downloading files from an unknown/unverified source from the Internet on to your computer.
- If you have received a message that looks suspicious, or you have doubts about the source of the message, do not reply to it or click on the links that appear in it. Instead, this must be reported immediately to Leumi's cybersecurity center by emailing abuse@bll.co.il. Please note that Bank Leumi sends inquiries in the Hebrew language, via email or SMS, with a link leading to a URL containing a Leumi ID - bankleumi.co.il / leumi.co.il.
- Without derogating from what is stated in this section, holders of an internal certificate will be subject to information security requirements as defined by the Bank from time to time.
Addenda
- These conditions will apply to any entity that operates and / or has been given the option to operate/access the portal, including holders of an internal certificate, whom the Bank has authorized to use the portal and/or a part thereof, at its sole discretion.
- The user's rights under these Terms of Use are not transferable or transmissible.
- The method to send messages regarding the portal, including the API, is by contacting us via our mailbox at "contact@finteka.co.il".
- These Terms of Use will apply in addition to any other agreement and/or Terms of Use that the Bank will apply in connection with the Portal and APIs, including the privacy policy, the portal policy, legal aspects integrated into Leumi websites, etc.
- These Terms of Use are subject to the laws of the State of Israel and any legal proceeding in connection with these Terms or arising therefrom shall be conducted exclusively in the authorized courts in Tel Aviv, the sole jurisdiction of which the parties agree.
Portal Privacy Policy
- The Bank respects the privacy of users of its services, and the users of the portal (hereinafter "the users"). The Bank makes efforts and takes advanced measures to properly maintain the information collected or provided as part of the use of the portal. This Privacy Policy will detail the uses that the Bank may make of the personal information about users that will be collected in connection with browsing or using the portal services, and your use of the portal in any form constitutes your agreement to the terms of this policy as follows. If you do not agree to the terms of the policy, you are asked to refrain from using the portal, and feel free to contact us by one of the means listed at the bottom of this policy.
- All information or data provided by you in connection with the use of the portal, or data collected about you as part of the use, including identification information as collected and documentation of your actions on the portal (hereinafter "the information"), will be stored and secured in the bank's databases and/or on its behalf. The information provided or collected about you is required for the purpose of managing the portal, providing services on it, monitoring or identifying actions and processes required of the Bank by virtue of any applicable law and in particular the regulation applicable to it and the use of the portal (including PPB 368 as defined above). According to any law, the user is not required to provide any information, However, its submission, voluntarily and with your consent above and below, is required in order to provide the portal services legally and properly.
- You know and agree that the Bank will use the information for the purpose of operating the portal, securing it, complying with the legal provisions applicable to the bank in connection with the operation of the portal and its use and/or making decisions and risk management, including transferring it to a third party as required for these purposes. You also agree and certify that the Bank will use the information for the purpose of monitoring and/or statistical analysis of the information for its own purposes and/or to prevent fraud and/or illegal activity and/or 'for additional services' in accordance with all applicable law.
- Without derogating from the above, let it be known that the Bank may keep all automated records related to inquiries and responses on the Portal for a period of seven years or more, as required by the Bank.
- You declare and undertake that you comply with all the requirements and obligations that have been established or are applicable to you regarding your use of the portal according to any law and/or regulation, in relation to your activity on the portal and your relationship with the Bank and/or its customers.
- The Bank may use or operate software that collects and/or characterizes information about all your activities with the Bank and/or the portal, and analyzes this activity for the purpose of optimizing the provision of its services, within the portal or in general, and to better tailor the services to your needs or characteristics or for its customers.
- The Bank may use, among other things, various software and technologies based on cookies, tags, pixels, web beacons, and other storage technologies (hereinafter collectively "Cookies"), for the purpose of collecting or receiving information in online services or for marketing, displaying or accessing targeted information on them or other websites, for the purpose of maintaining continual service, for the purpose of verifying your details and/or verifying your identity, as well as in order to collect and characterize various statistics about you and about how the services and/or portal are used, preferences for use, and for information protection and cybersecurity purposes. Among other things, the Bank uses Cookies services originating from third parties, including Google Analytics and Google Tag Manager; as well as Google Ads, Google DV, ReCaptcha AppsFlyer, Firebase, Facebook Pixels, LinkedIn, Taboola, and OutBrain. These tools are used to characterize and monitor events, to target ads for users and populations, to perform transactions on digital channels and to identify usage patterns, hashed or encrypted, or in an aggregated, nonidentifying method.
- Cookies are actually text files (or lines of code), created in your browser and/or mobile device, as has been delineated in the device/computer settings, and collect relevant information, such as the length of your stay on the website/webpage/screen, how you browse and the actions performed, including use from your IP address, domain name and access point to the service, device location, connection dates, and other digital identifiers. Cross-referencing such data and it stated uses are required for the Bank, inter alia, also for the security of the portal, the information of its customers and those who use the portal and protection of access to information about you, as well as to prevent fraud, spoofing, unauthorized or prohibited use of the portal or misuse of the portal and different Bank services.
- For more information about the use of relevant Cookies, view directly at these addresses:
www.google.com/policies/technologies/types
or
https://www.google.com/policies/privacy
https://www.facebook.com/policy/cookies/
https://www.appsflyer.com/product/data-privacy
https://www.linkedin.com/legal/cookie-policy
https://www.taboola.com/policies/cookie-policy
https://www.outbrain.com/privacy/cookies/ - You may at any time update or change the settings of your device/computer and completely or partially block the use of various cookies and/or other permissions requested by the online and digital services you use. In this case, some or all of the services may not work properly (for example, auto-detection, usage preferences, or sample language may not be maintained). Changing the settings of your device as stated is your sole responsibility. You may also use automated tools accessible for free use, such as http://www.aboutads.info/choices or https://youradchoices.com/control to remove Cookies files for you at your choice, including using the tools offered by Google at https://tools.google.com/dlpage/gaoptout and https://adssettings.google.com
- Without derogating from what is stated in this policy, the Bank may act in relation to your information in accordance with the directives of the Supervisor of Banks and/or other regulations in the Bank's business and/or information security requirements of any kind, which will apply to the use of the portal and for regulating the "Open Banking" activity.
- For any question, request or inquiry regarding the privacy policy and the use of information about you in connection with the portal, you are welcome to contact us at "contact@finteka.co.il"