My Accounts Privacy Promise for Consumers

Privacy / Security Policy
Convenience, control and privacy are what My Accounts is all about. With My Accounts, Citibank's Account Aggregation service, you can view all your designated accounts on a single page - be they with Citigroup, another financial institution or other service provider - without the hassle of logging onto multiple sites, remembering and entering multiple passwords.

One site and one password is all you need to see and manage all your financial information, plus enjoy access to your e-mail accounts, review the status of your reward programs, and even shop and view your favorite news and information sites.

To provide this service to you, Citibank is working with Yodlee, a world-class company that provides personalized account information services that meet Citigroup's high standards of security and privacy.

Safeguarding Your Privacy
Clearly, the information stored on My Accounts - the accounts you own and their average balances, types of transactions, average monthly carrying balances, your reward program status - is private and personal. Safeguarding this information is Citibank's utmost priority, a non-negotiable promise from us to you.

So, to maintain this commitment to your privacy, Citibank and Yodlee adhere strictly to the Citigroup Privacy Promise for Consumers. In essence, the My Accounts Privacy Promise means:

  • We will not reveal your personal information on My Accounts to other organizations unless we are authorized by you to do so, or required by law.
  • We will not sell such information under any circumstances.
  • Your user names and passwords are secured at this site and cannot be accessed by anyone, including any Citigroup employee without your my Accounts log-in and password.
Citibank will, however, use information about the accounts you aggregate in order to serve you better. We may use this information to present marketing messages targeted to your personal needs and interests. This information may also be included in the aggregate data used to conduct internal analysis of site usage.

Securing Your My Accounts Experience
Citibank and Yodlee use state-of-the-art network, data, and physical security practices for My Accounts.

Auto Log-In Feature
My Accounts does not provide transactional capability to your financial services accounts from our site. When you use our auto log-in feature we (1) open up a new browser window to directly connect you to your third party service provider (2) submit the user name and password you have provided to allow further access to the site. Any transactional or informational activities initiated at the third party site are directly between you and that site and do not involve the use of My Accounts.

Physical Security
My Accounts has retained the most secure environment available at a third-party site, where security personnel monitor the system 24 hours a day. Access to servers requires multiple levels of authentication, including biometric (hand print scan).

My Accounts' secure network infrastructure includes the following components:
  • Firewalls
  • Intrusion detection
  • Private addressing
  • Sanitized systems
  • SSL
Firewalls
All access to the application network must go through these firewalls. Additional firewalls are used to secure access to the My Accounts database from the application servers.

Intrusion Detection
My Accounts' entire production network is monitored and policed for intrusion attempts 24x7.

Private Addressing
My Accounts' application network uses private IP addressing, which protects servers that do not require access to the Internet.

Sanitized Systems
The machines on the My Accounts network run only the minimum set of services required to operate the My Accounts application.

SSL
All information we send or receive is transmitted through Secure Socket Layer (SSL), which creates an encrypted connection between your browser and the My Accounts Web servers. My Accounts employs VeriSign technology to provide this service, and is recognized as a VeriSign Secure Site.

Audits and Inspections
My Accounts security infrastructure is regularly audited and inspected by industry-leading firms that specialize in security processes and technologies.

Click here to read about the My Accounts Privacy Notice.