---
title: "RBI Proposes Card-on-File Tokenisation at Issuer-Bank Level"  
description: "he Reserve Bank of India (RBI) governor Shaktikanta Das recently proposed the introduction of card-on-file tokenisation (CoFT) facility at the issuer-"  
author: "Saumya Mishra"  
published: 2023-10-09  
updated: 2023-10-09  
canonical: https://www.mindstick.com/news/3392/rbi-proposes-card-on-file-tokenisation-at-issuer-bank-level  
category: "technology"  
tags: ["e-commerce"]  
reading_time: 2 minutes  

---

# RBI Proposes Card-on-File Tokenisation at Issuer-Bank Level

## RBI Proposes Card-on-File Tokenisation at Issuer-Bank Level

The [Reserve Bank of India](https://answers.mindstick.com/qa/34758/the-reserve-bank-of-india-rbi-has-recently-launched-the-ombudsman-scheme-for-nbfcs-the-nbfc-ombudsman-will-have-an-office-in-which-city) (RBI) governor Shaktikanta Das recently proposed the introduction of card-on-file tokenisation (CoFT) facility at the issuer-bank level. This means that credit/debit [card](https://www.mindstick.com/news/3388/shopping-on-a-foreign-website-with-a-failed-debit-credit-card-transaction-reasons-why) users will be able to generate card tokens on their bank’s [website or app](https://answers.mindstick.com/qa/112302/how-do-i-implement-dark-mode-in-my-website-or-app) instead of e-commerce websites/apps while shopping online.

This move is aimed at improving [data security](https://www.mindstick.com/articles/43788/data-security-tips-you-need-to-know-about) and giving customers [greater control](https://answers.mindstick.com/qa/38386/people-of-which-country-has-voted-to-leave-the-european-union-eu-after-a-historic-referendum-to-take-greater-control-of-its-economy-and-its-borders) over managing their card tokens.

## What is tokenisation?

Tokenisation is the process of replacing a card's 16-digit number with a unique token that is specific to the user's card and specific for one merchant at a time. The token hides the true details of your card, so that in case a data leak happens from the merchant website, the hackers cannot misuse the card.

## Benefits of issuer-bank level tokenisation

- **Increased security:** Issuer-bank level tokenisation will eliminate the need for merchants to store sensitive card data, which will [reduce the risk](https://answers.mindstick.com/qa/105419/how-to-reduce-the-risk-of-osteoporosis) of [data breaches](https://www.mindstick.com/articles/12484/data-breaches-could-cost-indian-firms-more-this-year-ibm).
- **Convenience:** Customers will be able to create and manage their tokens in one place, on their bank's website or app. This will save them time and effort.
- **Control:** Customers will have greater control over their tokens, including the ability to disable or [delete them](https://answers.mindstick.com/qa/95117/why-do-my-scanned-pdf-files-keep-reappearing-even-after-i-delete-them-from-my-windows-10-computer) at any time.

## How it will work

Once the RBI proposal is implemented, customers will be able to generate card tokens on their bank's website or app. They will then be able to use these tokens to make [online payments](https://answers.mindstick.com/qa/102133/how-does-software-contribute-to-the-security-of-online-payments) at any merchant that supports tokenisation.

When a customer makes a payment with a token, the merchant will send the token to the customer's bank for authorisation. The bank will then verify the token and process the payment.

---

Original Source: https://www.mindstick.com/news/3392/rbi-proposes-card-on-file-tokenisation-at-issuer-bank-level

Copyright © MindStick Software Pvt. Ltd. This Markdown version is provided for developers, AI systems, and offline reading.
