The Co-operative Bank website screenshot

The Co-operative Bank

The Co-operative Bank plc is a UK high-street retail and commercial bank, headquartered in Manchester and long known for its customer-led ethical banking policy. Following its 2013-2017 recapitalisation it was owned by institutional bondholders, and in January 2025 it completed its acquisition by Coventry Building Society, becoming part of the member-owned Coventry Building Society Group; it also operates the online-only "smile" brand. Authorised by the PRA and regulated by the FCA and PRA, it is an FCA-authorised ASPSP under PSD2 and the UK Open Banking regime. While it is not one of the nine CMA-mandated banks (CMA9), it implements the Open Banking Implementation Entity (OBIE) Read/Write API Standard (v3.1) and publishes a public developer portal at developer.co-operativebank.co.uk exposing Account Information (AIS), Payment Initiation (PIS), and Confirmation of Funds (CBPII) APIs for both the Co-operative Bank and smile brands, secured with FAPI-grade OAuth2/OIDC, mutual-TLS client authentication using Open Banking directory certificates, and PSD2 strong customer authentication, with a manual TPP onboarding process and a sandbox for testing before production.

The Co-operative Bank publishes 1 API on the APIs.io network: Open Data API (OBIE standard). Tagged areas include Financial Services, Banking, Open Banking, PSD2, and OBIE.

The Co-operative Bank’s developer surface includes documentation, getting-started guide, authentication, sandbox, support, signup flow, and 21 more developer resources.

44.0/100 thin ▬ flat Agent 64/100 agent native Full breakdown ↓
scored 2026-07-27 · rubric v0.5
4 APIs
Financial ServicesBankingOpen BankingPSD2OBIEUnited KingdomPaymentsAccount InformationConfirmation of FundsFintech

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 44.0/100 · thin
Contract Quality 9.4 / 25
Developer Ergonomics 10.0 / 20
Commercial Clarity 4.7 / 20
Operational Transparency 3.4 / 13
Governance 0.0 / 12
Discoverability 10.0 / 10
Agent readiness — 64/100 · agent native
Machine-Readable Contract 18 / 18
Agentic Access Contract 15 / 15
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 9 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 4 / 4
Consent & Bot Identity 3 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/co-operative-bank: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 4

Individual APIs this provider publishes, each with its own machine-readable definition.

The Co-operative Bank Account Information API (AIS)

OBIE Read/Write Account & Transaction Information (AISP) API for The Co-operative Bank and smile brands — account-access consents, accounts, balances, transactions, direct debit...

The Co-operative Bank Payment Initiation API (PIS)

OBIE Read/Write Payment Initiation (PISP) API for The Co-operative Bank and smile brands — domestic payments, domestic scheduled payments and domestic standing orders, with thei...

The Co-operative Bank Confirmation of Funds API (CBPII)

OBIE Read/Write Confirmation of Funds (CBPII / Card-Based Payment Instrument) API — funds-confirmation consent and funds-confirmation checks for The Co-operative Bank and smile ...

The Co-operative Bank Open Data API (OBIE standard)

Public, unauthenticated OBIE Open Data reference data (ATMs, Branches, Personal & Business Current Accounts, Unsecured SME Loans, Commercial Credit Cards). Represented here agai...

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Co Operative Bank Authentication

oauth2/openIdConnect/mutualTLS · 3 schemes

SECURITY

Co Operative Bank Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Co Operative Bank Vulnerability Disclosure

security.txt · contact published

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Co Operative Bank Scopes

6 scopes · authorizationCode

6 scopes

SCOPES

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Co Operative Bank Agentic Access

12 operations

12 operations · 0 acting

AGENTIC

Resources

Get Started 5

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 3

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 5

Pagination, idempotency, versioning, errors, and events

Access & Security 7

Authentication, authorization, and security posture

Scroll for all 7

Operate 2

Status, limits, changes, and where to get help

Commercial 1

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: co-operative-bank
url: https://raw.githubusercontent.com/api-evangelist/co-operative-bank/refs/heads/main/apis.yml
name: The Co-operative Bank
kind: company
description: The Co-operative Bank plc is a UK high-street retail and commercial bank, headquartered in Manchester and long
  known for its customer-led ethical banking policy. Following its 2013-2017 recapitalisation it was owned by institutional
  bondholders, and in January 2025 it completed its acquisition by Coventry Building Society, becoming part of the member-owned
  Coventry Building Society Group; it also operates the online-only "smile" brand. Authorised by the PRA and regulated by
  the FCA and PRA, it is an FCA-authorised ASPSP under PSD2 and the UK Open Banking regime. While it is not one of the nine
  CMA-mandated banks (CMA9), it implements the Open Banking Implementation Entity (OBIE) Read/Write API Standard (v3.1) and
  publishes a public developer portal at developer.co-operativebank.co.uk exposing Account Information (AIS), Payment Initiation
  (PIS), and Confirmation of Funds (CBPII) APIs for both the Co-operative Bank and smile brands, secured with FAPI-grade OAuth2/OIDC,
  mutual-TLS client authentication using Open Banking directory certificates, and PSD2 strong customer authentication, with
  a manual TPP onboarding process and a sandbox for testing before production.
accessModel:
  pricing: unknown
  onboarding: request
  trial: false
  try_now: false
  public: false
  label: TPP onboarding (manual)
  confidence: medium
  source:
  - authentication
  - documentation
  generated: '2026-07-23'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
tags:
- Financial Services
- Banking
- Open Banking
- PSD2
- OBIE
- United Kingdom
- Payments
- Account Information
- Confirmation of Funds
- Fintech
created: '2026-07-23'
modified: '2026-07-23'
specificationVersion: '0.19'
apis:
- aid: co-operative-bank:account-information-api
  name: The Co-operative Bank Account Information API (AIS)
  description: OBIE Read/Write Account & Transaction Information (AISP) API for The Co-operative Bank and smile brands — account-access
    consents, accounts, balances, transactions, direct debits, standing orders and scheduled payments. FAPI-secured (OAuth2/OIDC,
    mTLS, PSD2 SCA); requires TPP onboarding.
  humanURL: https://www.developer.co-operativebank.co.uk/apis/aisp/
  baseURL: https://openbanking-retail.apis.co-operativebank.co.uk/apis/retail/open-banking/v3.1/aisp
  tags:
  - Account Information
  - AISP
  - Open Banking
  properties:
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/aisp/
  - type: APIReference
    url: https://www.developer.co-operativebank.co.uk/apis/aisp/endpoints-and-errors/
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/general-specifications/
- aid: co-operative-bank:payment-initiation-api
  name: The Co-operative Bank Payment Initiation API (PIS)
  description: OBIE Read/Write Payment Initiation (PISP) API for The Co-operative Bank and smile brands — domestic payments,
    domestic scheduled payments and domestic standing orders, with their associated consents. FAPI-secured (OAuth2/OIDC, mTLS,
    PSD2 SCA); requires TPP onboarding.
  humanURL: https://www.developer.co-operativebank.co.uk/apis/pisp/
  baseURL: https://openbanking-retail.apis.co-operativebank.co.uk/apis/retail/open-banking/v3.1/pisp
  tags:
  - Payment Initiation
  - PISP
  - Payments
  - Open Banking
  properties:
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/pisp/
  - type: APIReference
    url: https://www.developer.co-operativebank.co.uk/apis/pisp/endpoints-and-errors/
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/general-specifications/
- aid: co-operative-bank:confirmation-of-funds-api
  name: The Co-operative Bank Confirmation of Funds API (CBPII)
  description: OBIE Read/Write Confirmation of Funds (CBPII / Card-Based Payment Instrument) API — funds-confirmation consent
    and funds-confirmation checks for The Co-operative Bank and smile brands. FAPI-secured (OAuth2/OIDC, mTLS, PSD2 SCA);
    requires TPP onboarding.
  humanURL: https://www.developer.co-operativebank.co.uk/apis/cbpii/
  baseURL: https://openbanking-retail.apis.co-operativebank.co.uk/apis/retail/open-banking/v3.1/cbpii
  tags:
  - Confirmation of Funds
  - CBPII
  - Open Banking
  properties:
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/cbpii/
  - type: APIReference
    url: https://www.developer.co-operativebank.co.uk/apis/cbpii/endpoints-and-errors/
  - type: Documentation
    url: https://www.developer.co-operativebank.co.uk/apis/general-specifications/
- aid: co-operative-bank:open-data-api
  name: The Co-operative Bank Open Data API (OBIE standard)
  description: Public, unauthenticated OBIE Open Data reference data (ATMs, Branches, Personal & Business Current Accounts,
    Unsecured SME Loans, Commercial Credit Cards). Represented here against the shared OBIE Open Data API Standard — a live
    Co-operative Bank Open Data host was NOT confirmed during this bootstrap, so no bank-specific base URL is asserted. The
    attached OpenAPI is the OBIE shared standard, not a Co-operative Bank contract.
  humanURL: https://openbankinguk.github.io/opendata-api-docs-pub/v2.4.0/
  baseURL: ''
  tags:
  - Open Data
  - ATM Locator
  - Branch Locator
  - Products
  properties:
  - type: OpenAPI
    url: openapi/obie-open-data-api-standard-swagger.json
  - type: Documentation
    url: https://openbankinguk.github.io/opendata-api-docs-pub/v2.4.0/
  - type: APIReference
    url: https://openbankinguk.github.io/opendata-api-docs-pub/v2.4.0/atmlocator/atm-locator.html
common:
- type: VulnerabilityDisclosure
  url: security/co-operative-bank-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/co-operative-bank-domain-security.yml
- type: AgenticAccess
  url: agentic-access/co-operative-bank-agentic-access.yml
- type: Website
  url: https://www.co-operativebank.co.uk/
- type: DeveloperPortal
  url: https://www.developer.co-operativebank.co.uk/
- type: Documentation
  url: https://www.developer.co-operativebank.co.uk/apis/
- type: GettingStarted
  url: https://www.developer.co-operativebank.co.uk/get-started/
- type: Authentication
  url: https://www.developer.co-operativebank.co.uk/apis/general-specifications/
- type: Sandbox
  url: https://www.developer.co-operativebank.co.uk/help-and-support/sandbox-environment/
- type: StatusPage
  url: https://www.developer.co-operativebank.co.uk/help-and-support/service-status/
- type: Support
  url: https://www.developer.co-operativebank.co.uk/help-and-support/frequently-asked-questions/
- type: PrivacyPolicy
  url: https://www.developer.co-operativebank.co.uk/help-and-support/privacy-cookie-policies/
- type: LinkedIn
  url: https://www.linkedin.com/company/the-co-operative-bank
- type: SignUp
  url: https://www.developer.co-operativebank.co.uk/get-started/
- type: Authentication
  url: authentication/co-operative-bank-authentication.yml
- type: OAuthScopes
  url: scopes/co-operative-bank-scopes.yml
- type: Conventions
  url: conventions/co-operative-bank-conventions.yml
- type: Idempotency
  url: conventions/co-operative-bank-conventions.yml
- type: ErrorCatalog
  url: errors/co-operative-bank-problem-types.yml
- type: Lifecycle
  url: lifecycle/co-operative-bank-lifecycle.yml
- type: Conformance
  url: conformance/co-operative-bank-conformance.yml
- type: Sandbox
  url: sandbox/co-operative-bank-sandbox.yml
- type: WellKnown
  url: well-known/co-operative-bank-well-known.yml
- type: SecurityTxt
  url: well-known/co-operative-bank-security.txt
- type: Security
  url: https://www.co-operativebank.co.uk/help-and-support/fraud-and-security/responsible-security-disclosure/
- type: LLMsTxt
  url: llms/co-operative-bank-llms.txt
- type: Overlay
  url: overlays/co-operative-bank-open-data-overlay.yaml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com