ABA Banking Journal
No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
SUBSCRIBE
ABA Banking Journal
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
No Result
View All Result
No Result
View All Result
Home Compliance and Risk

Are Banks Required to Post Privacy Notices on Their Websites?

February 15, 2019
Reading Time: 2 mins read

By Leslie Callaway, CRCM, CAFP; Mark Kruhm, CRCM, CAFP; and Rhonda Castaneda, CRCM

Q Are banks required to post their privacy notices on their websites?

 

A No. Until recently, banks could post their privacy notices as the “alternative delivery method” to mailing or otherwise providing the annual privacy notice.

In late 2015, Congress amended the Gramm-Leach-Bliley Act to eliminate the requirement to provide an annual privacy notice as long as (1) the bank only shares information on the limited basis as delineated in the statutory and regulatory exceptions (e.g., for processing consumer requested transactions, complying with a consumer’s request, protecting against fraud etc.), and (2) there were no changes in the bank’s privacy notice since it provided the last notice.
As a result, the Consumer Financial Protection Bureau revised Regulation P and eliminated the alternative delivery method for providing the annual privacy notice, thus eliminating the need to post that notice on the bank’s website.

However, while banks are not required to post their privacy notice on their website, they are encouraged to do so. Moreover, where the bank has agreed with certain customers to provide statements and other information through the bank’s website, posting the privacy notice is one way to deliver the privacy notice to those customers. (Response provided Nov. 2018.)

• • •

Q The Military Lending Act regulation §232.8(e) prohibits using postdated checks or generating remotely created checks. If a servicemember borrower has forgotten to make a payment and calls the bank to authorize a one-time payment, may the bank create a remotely created check?

A No. The answer to Question 18 of the December 2017 revised interpretive rule provides that lenders may not create remotely created checks to collect payments on covered credit. The Department of Defense rejected ABA’s request in its comment letter to allow servicemembers that option.
However, servicemember borrowers may authorize electronic payments, both one-time and recurring, provided that the lender complies with other laws, including the Electronic Fund Transfer Act and Regulation E. (Response provided Nov. 2018.)

• • •

Q What are the Home Mortgage Disclosure Act lobby signage requirements for a bank located in a metropolitan statistical area but not required to report because it did not originate enough covered loans?

A The bank is not obligated to post the HMDA notice under these circumstances. Section 1003.5(e) of Regulation C provides that a “financial institution” must post the HMDA notice in the home office and each branch located within a MSA (or metropolitan division). The term “financial institution” is limited to institutions that originated at least 25 non-excluded closed-end mortgage loans and at least 500 non-excluded open-end lines of credit in each of the two preceding calendar years. Therefore, if a bank does not meet the definition of “financial institution” due, for example, to the origination test, it is not required to post the notice. However, it appears that there is no prohibition against posting the HMDA notice even though it is not technically required. (Response provided Nov. 2018.)

Answers are provided by Leslie Callaway, CRCM, CAFP, director of compliance outreach and development; Mark Kruhm, CRCM, CAFP, senior compliance analyst; and Rhonda Castaneda, CRCM, senior compliance analyst, ABA Center for Regulatory Compliance. Answers do not provide, nor are they intended to substitute for, professional legal advice. Answers were current as of the response date shown at the end of each item.

Tags: HMDAMilitary bankingMilitary Lending ActPrivacy notice
ShareTweetPin

Related Posts

OCC to merge community bank, large bank supervision departments

OCC publishes draft reporting forms for stablecoin issuers

Compliance and Risk
June 11, 2026

The OCC has released for public review draft forms that will be used to collect information from payment stablecoin issuers under its jurisdiction.

With AI threats, CISA offers agencies guidelines for patching software vulnerabilities

With AI threats, CISA offers agencies guidelines for patching software vulnerabilities

Compliance and Risk
June 11, 2026

CISA released a new framework for federal civilian agencies in determining how quickly to patch software vulnerabilities, noting that artificial intelligence is “vastly increasing” the pace at which such vulnerabilities are discovered.

CFPB claims ‘complex’ pricing drives up cost of financial products

Trump nominates Johnson to lead CFPB

Compliance and Risk
June 10, 2026

President Trump nominated bank executive Brian Johnson to lead the CFPB, which has been without a full-time leader since the firing of Rohit Chopra last year.

ABA, BPI urge cross-regulator ‘no-action’ letters for AML/BSA innovations

ABA backs proposed overhaul of BSA program rule

Compliance and Risk
June 10, 2026

ABA said it strongly supports the shift toward risk-based compliance in a proposed overhaul of the Bank Secrecy Act program rule.

Survey: Banks boosting cybersecurity due to AI while also investing in technology

Financial Stability Board releases ‘sound practices’ for AI adoption

Compliance and Risk
June 10, 2026

The Financial Stability Board has released a draft list of 12 sound practices to guide the adoption of artificial intelligence by banks and other financial institutions.

FATF updates list of jurisdictions with anti-money laundering deficiencies

ABA urges regulators to uphold AML/CFT, sanctions requirements for all stablecoin issuers

Compliance and Risk
June 10, 2026

As federal regulators draft anti-money laundering and sanctions regulations for payment stablecoin issuers, they need to address the financial crime risks posed by secondary market payment stablecoin activities, ABA said.

NEWSBYTES

Producer prices rose 1.1% in May

June 11, 2026

OCC publishes draft reporting forms for stablecoin issuers

June 11, 2026

With AI threats, CISA offers agencies guidelines for patching software vulnerabilities

June 11, 2026

SPONSORED CONTENT

Why Your Systems Keep Slowing Down — and What to Do About It

Examiners Are Now Looking at Your Non-Core Systems

June 11, 2026
Your Floorplan Audit and Your Credit Decision Are Weeks Apart. That Gap Has a Price.

Your Floorplan Audit and Your Credit Decision Are Weeks Apart. That Gap Has a Price.

June 1, 2026
A Modern Blueprint for Serving High-Net-Worth Families

A Modern Blueprint for Serving High-Net-Worth Families

May 28, 2026
Why Your Systems Keep Slowing Down — and What to Do About It

AI Is in Your Bank. Is Your Cloud Contract Governing It?

May 20, 2026

PODCASTS

Podcast: Creating a feeling of welcome, for customers and new bankers

May 28, 2026

Podcast: How consumer deposits drive full relationship banking

May 14, 2026

Podcast: How an Ohio banker talks with policymakers about stablecoin issues

May 6, 2026

American Bankers Association
1333 New Hampshire Ave NW
Washington, DC 20036
1-800-BANKERS (800-226-5377)
www.aba.com
About ABA
Privacy Policy
Contact ABA

ABA Banking Journal
About ABA Banking Journal
Media Kit
Advertising
Subscribe

© 2026 American Bankers Association. All rights reserved.

No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive

© 2026 American Bankers Association. All rights reserved.