# BMO Financial Group

**Canonical:** https://apis.io/providers/bank-of-montreal/  
**Website:** https://www.bmo.com/  
**APIs profiled:** 6

BMO Financial Group (Bank of Montreal) is one of Canada's Big Six banks and a Schedule I domestic chartered bank, founded in Montreal in 1817 as Canada's oldest bank. It is a diversified North American financial-services provider serving personal, commercial, wealth, and capital-markets clients across Canada and the United States (where it operates as the separately chartered BMO Bank N.A.). BMO runs a first-party, bilingual (EN/FR) commercial developer portal at developer.bmo.com for Online Banking for Business customers, publishing OAuth 2.0-secured Account Information, Account Validation, Image Retrieval, Payment (domestic and international / embedded finance), Authorize, and Encryption APIs on an IBM API Connect platform with a free sandbox and pre-production environment. Documentation and OpenAPI/API Explorer specs sit behind an approved organization account, so the surface is partner-gated rather than openly downloadable. Canada has no operational open-banking mandate yet — the federal Consumer-Driven Banking framework (Budget 2024 / Fall Economic Statement 2024, overseen by the FCAC) is legislated but not live — so consumer data access today remains voluntary and largely aggregator-based (Flinks, Plaid), while BMO's own public program is a commercial treasury/ payments API offering.

## Kin Score — 32.1 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 32.1).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 0.0 |
| Governance | 4.5 |
| Contract Governance | 4.5 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 64.3 |
| Commercial Clarity | 34.2 |
| Access Clarity | 34.2 |

Regulatory layer — **Banking & Open Finance**: 39.2 (matched via tags).

## Agent readiness — 8.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (6)

- **BMO Account Information API** — Real-time access to BMO Online Banking for Business account data — current balances; day-end, month-end and year-end balances; and transaction histories that can replace BAI fil...
- **BMO Account Validation API** — Validates third-party accounts before a transaction is created, reducing failed or misdirected payments. Selected fields shared via the Account Validation API must be protected ...
- **BMO Image Retrieval API** — Retrieves images of deposited cheques and other items associated with BMO Online Banking for Business accounts, so clients can pull supporting item images without signing in to ...
- **BMO Payment API** — Sends and collects domestic and international payments directly from a client's application, with account validation before payment creation and real-time payment-status updates...
- **BMO Authorize API** — Authenticates and authorizes applications to access BMO APIs using the industry-standard OAuth 2.0 framework, issuing the access tokens required to call the Account Information,...
- **BMO Encryption API** — Protects data by encrypting all requests to and responses from BMO APIs. Encryption is required for all Payment APIs as well as for fields shared via the Account Validation API.

## Security (3)

- **Bank Of Montreal Authentication** — oauth2/openIdConnect · 3 schemes
- **Bank Of Montreal Domain Security** — TLSv1.3 · DMARC
- **Bank Of Montreal Vulnerability Disclosure** — Hackerone · contact published

## Tags

Financial-Services, Banking, Canada, Big Six, Commercial Banking, Payments, Treasury, Open Banking, Consumer-Driven Banking

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/bank-of-montreal/). Scores are computed from the provider's own public artifacts under a published rubric.
