# Tink (slim) > Tink is a European open banking platform owned by Visa. Its REST API and hosted Tink Link flow read accounts, balances and transactions with the account holder's consent, and start bank payments. - Full: https://www.anchorterminal.com/tools/tink.md (~6,700 tokens) · this version ~1,680 tokens · JSON https://www.anchorterminal.com/tools/tink.json · canonical https://www.anchorterminal.com/tools/tink - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-08 **B · 62.5/100 · rank #337 of 722 · #4 in Bank data & open banking · not agent-ready · confidence medium** Assessment: OAuth client credentials with per-endpoint scopes, token-paged data endpoints and a published MSA, DPA, SLA and sub-processor list. No price is public, live access needs a sales contract, and the API reference has no downloadable spec or published rate-limit numbers. ## Facts - Kind: HTTP API · vendor: Tink AB (Visa) · category: Bank data & open banking · legal entity: Tink AB · provenance 100/100 - Endpoint: `https://api.tink.com` (HTTP) - Auth: OAuth · pricing: Paid · x402: no · licence: Proprietary service under Tink's Master Service Agreement. The Tink Link SDKs for iOS and Android on GitHub are MIT - Probe metrics: not measured yet (probes haven't run) - API: REST at https://api.tink.com, paths under /api/v1, /data/v2, /connectivity/v2, /payment and /events/v2. 205 operations in the reference, 87 of them without an ENTERPRISE, BETA or REGION.US tag - Data endpoints: GET /data/v2/accounts, /data/v2/accounts/{id}/balances (BETA), /data/v2/transactions, /data/v2/identities (BETA), plus investment and loan accounts - Consent: The account holder consents in Tink Link at link.tink.com. One-time access data is deleted after 24 hours. Continuous access lasts up to 90 days. GET /api/v1/provider-consents lists consents and DELETE /api/v1/credentials/{id} removes one - Tokens: Client token 30 minutes, user token two hours, scopes named per endpoint such as `accounts:read` and `transactions:read` - Pagination: `pageSize` and `pageToken` on 20 operations, at most 100 transactions a page, with `bookedDateGte`, `bookedDateLte`, `accountIdIn` and `statusIn` filters - Rate limits: Checked per app ID. HTTP 429 when exceeded. No numbers published - Idempotency: Idempotency-Key header, keys kept 24 hours, listed on 7 write operations (consents, mandates, mandate payments, payouts) - Sandbox: Free Console account, sandbox app and Demo Bank test users in 18 countries - Coverage: Tink's FAQ says 3,000+ bank connections in 18 countries. The home page title says 6000 connections - Webhooks: Events v2 webhooks signed with HMAC-SHA256 in an X-Tink-Signature header - SLA: Basic Support 99.7 per cent monthly uptime as a target. Service levels 1 to 3 commit to 99.7 per cent and add response and resolution times - Sub-processors: Amazon Web Services EMEA Sarl and Google Cloud EMEA Limited, both processing in the EEA, plus Tink Germany GmbH and Tink Financial Services Ltd (list dated 1 October 2025) - SDKs: Tink Link for iOS 5.1.0 (6 May 2026) and Android 3.0.1 (13 March 2025), both MIT. No server-side SDK found - Scores: Reliability 62, Performance pending, Schema & documentation 73, Agent ergonomics 74, Security & auth 63, Payments & pricing 10, Task success pending, Maintenance & community 69, Transparency & trust 90 · total over the 7 assessed categories - Why: Reliability, Graded with the hosted lines. · Schema & documentation, The API reference holds Swagger definitions for 205 operations, but only inside the docs app's JavaScript bundle. · Agent ergonomics, Transactions return at most 100 a page and take date, account and status filters. · Security & auth, OAuth 2.0 client credentials sent in the POST body, scopes named per endpoint, 30-minute client tokens, two-hour user tokens and mutual TLS… · Payments & pricing, No x402, MPP or L402 (0). · Maintenance & community, The newest changelog entry is 15 September 2026, 23 days before the check (30). · Transparency & trust, Closed service with a public Master Service Agreement dated 9 December 2025, governed by Swedish law. - Sources: 20, open questions: 7, both in the full twin - Capabilities: bank.accounts, bank.transactions, bank.consent, bank.payments, bank.identity - JSON: https://www.anchorterminal.com/api/v1/tools/tink.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/tink.svg` or a link to https://www.anchorterminal.com/tools/tink from a page on tink.com or one of its subdomains, or the README of github.com/tink-ab/tink-link-ios, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Request a client token at https://api.tink.com/api/v1/oauth/token, create a user, request an authorisation grant for that user, then exchange the code for a user token. 2. Renew tokens on a timer. Client tokens last 30 minutes and user tokens two hours, and the client credentials flow returns no refresh token. 3. Send the account holder through Tink Link in a browser. Bank consent cannot be completed by API calls alone. 4. Read transactions from /data/v2/transactions with `pageSize` up to 100 and follow `nextPageToken`. 5. Send an Idempotency-Key header on consent and payment writes. Keys are kept for 24 hours. ## Connect ```bash curl -X POST https://api.tink.com/api/v1/oauth/token \ -d "client_id=$TINK_CLIENT_ID" \ -d "client_secret=$TINK_CLIENT_SECRET" \ -d "grant_type=client_credentials" \ -d "scope=authorization:grant,user:create" ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/tink ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Plaid | B | 69.8 | bank.accounts, bank.transactions, bank.identity, bank.payments, bank.consent | https://www.anchorterminal.com/tools/plaid.min.md | | Belvo | B | 63.5 | bank.accounts, bank.transactions, bank.identity, bank.payments, bank.consent | https://www.anchorterminal.com/tools/belvo.min.md | | TrueLayer | B | 62.1 | bank.accounts, bank.transactions, bank.identity, bank.payments, bank.consent | https://www.anchorterminal.com/tools/truelayer.min.md | | Yapily | C | 57.6 | bank.accounts, bank.transactions, bank.identity, bank.payments, bank.consent | https://www.anchorterminal.com/tools/yapily.min.md | | Flinks | D | 52.7 | bank.accounts, bank.transactions, bank.identity, bank.payments, bank.consent | https://www.anchorterminal.com/tools/flinks.min.md | ## Panel reviews (0, desk reviews from public material, no calls made)