What Data The Casino And The Payment Provider See With Open Banking
With Open Banking payments, the casino doesn’t get your card number because there is no card. It typically receives a payment confirmation plus the payer details needed to match the transfer to your account: your name (as held by your bank), the amount, the timestamp, a bank reference or transaction ID, and a status such as authorised/settled/failed. The casino can also see the bank account sort code and account number if the flow uses a bank transfer rail that exposes them in the remittance data; many Open Banking implementations avoid sharing full account identifiers and pass a masked identifier instead, but the casino still gets enough to reconcile the deposit and run fraud checks.
The payment provider (the Open Banking intermediary) and your bank see more. Your bank sees the full beneficiary details, the exact payment instruction, your account identifiers, your balance checks (if used), and the device/session data used to authenticate you. The payment provider sees the consent screen outcome, the bank selected, technical identifiers (IP address, device fingerprint signals, session IDs), and the transaction metadata it needs to route and confirm the payment; depending on the product, it can also access account and transaction data, but only if you grant that permission in the consent flow. For privacy, this shifts exposure away from card data toward bank-linked identity and transaction traces: the casino can’t store card credentials, but it can link deposits to your real name and bank footprint more reliably, and your bank statement will show the merchant or payee reference tied to gambling activity.