Simple Content

Mobile Banking

HDFC Bank MobileBanking App is your intuitive, secure, user-friendly tool for everyday banking. It gives you all your banking, financial, and investing needs at your fingertips. At HDFC Bank, we have the highest levels of security to protect all your sensitive accounts and transactional information.

Find out how HDFC Bank MobileBanking App maintains industry-best security measures in its mobile application - by integrating in-app security layers, cutting-edge authentication systems, and perennial in-house monitoring.

Application Level Controls

true

Trusted Device Registration

We link your account to a specific device, eliminating unauthorised access from other devices.
  • Your customer ID is linked to your device ID, allowing transactions from the trusted device only
  • You can link up to 3 customer IDs onto your trusted device
  • Device/ SIM binding will restrict access to your account from unknown devices

Login Checks

HDFC Bank MobileBanking app login can be enabled through a 4-Digit Login PIN and fingerprint/face ID.
  • Logging in to the HDFC Bank MobileBanking App requires a personal PIN and fingerprint verification seamlessly or via entering your Password/ IPIN
  • These additional authentication form factor eliminates unauthorised use of your registered device
  • You can create your 4-digit login PIN & enable biometrics for a faster and more seamless banking experience

RASP Controls (Runtime Application Self-Protection)

RASP is a combination of security features which encapsulates our Mobile banking App and is the latest technology for real-time detection and reporting of cyber threats.
  • RASP is embedded in the app, with no reliance on external security systems It monitors your HDFC Bank MobileBanking App for abnormalities and against advanced security threats
  • Protects you from screen sharing frauds, cyber-attacks through remote control applications and extracting information

Protection against unsecured and Open Wi-Fi

While using unsecured and open Wi-Fi, our App alerts customers on the risk to customers.

Adaptive Authentication Solution

We use this risk-based adaptive authentication solution for fraud risk monitoring backed by AI/ML modelling.

IPIN/ 4 Digit Login PIN change policy

Your IPIN is beyond anyone’s control and reach except you.
  • IPIN of an HDFC Bank account holder is encrypted and is not accessible to anyone in the bank
  • To further ensure this, IPIN change is mandatory after your first login. You can change it at any time thereafter
  • Leaving nothing to chance, we make sure that you change IPIN every 180 days

Transaction Level Controls

false

Two-Factor Authentication

An additional layer of security to protect your account.
  • SMS and/or email OTP is in place as an additional factor of authentication
  • It applies to selected financial and non-financial transactions of a critical nature
  • This will protect your account from cybercrimes even if the device is compromised

New beneficiary waiting period

A pause between new beneficiary addition and transfers.
  • We have a 30-minute cooling-off period for every beneficiary addition
  • This makes sure that unauthorised additions don’t result in third-party transfers immediately
  • During the cooling-off period, SMS and email alerts are sent out to customers, informing them about the beneficiary addition

The daily limit on new beneficiaries’ addition

A limit for new beneficiary addition per day is in place for security purposes.
  • Only 4 beneficiaries can be added to your account in 24 hours
  • This limits the chances of unauthorised third-party transfers in your account

Cooling off period for new enrolments

Ensuring authentic use of third-party transfer in new enrolments.
  • A 24-hour cooling-off period is in place for third-party transactions
  • This applies to customers who have newly enrolled for third-party transactions
  • Monetary limits are applicable for different third-party transactions for the next 24 hours

Day 1 limits on transfers to new beneficiaries

Restricting the misuse of third-party transactions on NEFT and IMPS-P2A for newly added beneficiaries.
  • Up to ₹50,000 can be added to new beneficiaries from your account on the first day
  • This is applicable for NEFT and IMPS-P2A transactions

Instant SMS and Email Alerts for Transactions

Real time alerts on SMS and email for transactions which are done using MobileBanking App.

Transaction Monitoring

false

The last line of defence in risk management.

  • Transaction Monitoring solutions adds certified expertise in monitoring alerts, reports, interfaces, etc.
  • Keeping an eye on transactions, night and day.
  • HDFC Bank has a 24x7 monitoring team that reviews and analyses the alerts generated
  • You receive a transaction confirmation when an initiated transaction appears to be suspicious

Secure And Safe New Mobile Banking App

Security features of the app:
  • Instant login via 4- Digit Login PIN
  • Secure access to your account through Customer ID & Password
  • Your account information is protected in case of a theft/lost phone.
  • An advanced security feature, Runtime Application Self Protection (RASP), protects your App against fraud via screen sharing applications.
  • Device Binding ensures login only via a trusted device