Free to get started. No card charged today.
Browse 8,265 companies freeA deep investigation into Plaid's data collection, privacy violations, and surveillance practices. Founded 2013 in San Francisco, California.
Upgrade to SeekerPro for deep-dive reports on every company that touches your data. Members get breach timelines, violation histories, privacy risk scores, and executive contact data before anyone else.
Try SeekerPro →Plaid is the financial data infrastructure company that connects over 12,000 financial institutions to thousands of fintech applications, acting as the invisible middleware through which millions of Americans share their bank account credentials, transaction histories, and financial data with third-party apps. When you link a bank account to Venmo, Robinhood, Coinbase, or hundreds of other financial apps, Plaid is almost always the intermediary handling that connection. In 2020, Visa attempted to acquire Plaid for $5.3 billion before the DOJ blocked the deal on antitrust grounds, arguing Plaid was a potential competitive threat to Visa payment network. A class-action lawsuit settled in 2022 for $58 million alleged that Plaid collected more financial data than necessary, retained it longer than disclosed, and used it for purposes beyond what users authorized, including building consumer spending profiles sold to financial institutions. The lawsuit revealed that Plaid displayed bank login screens designed to look like the user own bank interface, obscuring that credentials were being shared with Plaid rather than sent directly to the bank. This design pattern captured bank usernames and passwords through what critics called a phishing-like interface. Plaid has access to real-time transaction data, account balances, recurring payment patterns, income verification, and investment holdings for millions of Americans, making it one of the most comprehensive financial surveillance intermediaries in existence.
The following is a documented list of data points that Plaid collects from users, customers, and in some cases non-users. This data powers their business model, fuels targeted advertising, and in many cases is shared with or sold to third parties including government agencies.
Upgrade to SeekerPro for deep-dive reports on every company that touches your data. Members get breach timelines, violat...
Try SeekerPro →Run a free privacy and compliance scan on any website in 60 seconds. NexusBro checks cookie consent, hidden trackers, th...
Try NexusBro →Stop spending hours filing DSAR requests and opt-out forms manually. BliniBot automates data deletion requests, cookie c...
Try BliniBot →Below is a timeline of documented privacy violations, regulatory fines, lawsuits, and enforcement actions against Plaid. These events represent only the violations that became public. The true scope of data misuse at any major company is almost certainly larger than what regulators and journalists have uncovered.
DOJ blocks Visa $5.3B acquisition on antitrust grounds
Deal terminated
Class-action settlement for excessive data collection and deceptive login screens
$58 million
CFPB investigation into data broker-like practices for financial data
Ongoing
Scrutiny over data retention beyond stated purposes
Under review
You do not have to accept Plaid's data practices. These alternatives offer comparable functionality with significantly better privacy protections. Switching reduces the volume of personal data flowing into commercial surveillance systems and sends a market signal that privacy matters.
Run a free privacy and compliance scan on any website in 60 seconds. NexusBro checks cookie consent, hidden trackers, th...
Try NexusBro →Stop spending hours filing DSAR requests and opt-out forms manually. BliniBot automates data deletion requests, cookie c...
Try BliniBot →Build compliant marketing campaigns that convert without invasive tracking. ContentMation generates privacy-respecting f...
Try ContentMation →Start by understanding what data Plaid already has on you. Check your account settings, download your data archive if available, and review what permissions you have granted. Use OpenPublicHub to research the full scope of Plaid's data practices and compare them against industry standards.
Disable unnecessary data collection settings, revoke app permissions you do not actively need, and opt out of personalized advertising where possible. Review connected third-party apps and remove any that you no longer use. Every permission you revoke reduces your attack surface and limits the data available for profiling.
Under GDPR, CCPA, and other privacy laws, you have the right to request access to, correction of, and deletion of your personal data. File a Data Subject Access Request (DSAR) to see what Plaid holds about you. Use BliniBot to automate the process across multiple companies simultaneously.
The most effective protection is to stop using privacy-invasive services entirely. The alternatives listed above offer comparable functionality without the surveillance. Start with the service you use most frequently and work through the list. Every user who switches sends a market signal that privacy is a competitive advantage.
Privacy threats evolve constantly. Follow this expose and related reports on OpenPublicHub to stay updated on Plaid's practices. Share this page with friends and colleagues so they can protect themselves too. Collective action and informed consumers are the most powerful force for changing corporate behavior.
In its earlier implementation, Plaid captured bank usernames and passwords through login screens designed to resemble your bank interface. A class-action lawsuit alleged this was deceptive. Plaid has since moved toward OAuth connections that do not require sharing credentials, but legacy connections still exist for many financial institutions.
Plaid collects transaction histories, account balances, income data, investment holdings, and spending patterns. The 2022 class-action settlement alleged Plaid retained data longer than necessary and used it to build spending profiles beyond what users authorized when linking accounts.
Visit my.plaid.com/connected-apps to see which apps are connected through Plaid and disconnect them. You should also revoke access within each individual app and check with your bank to ensure third-party access is removed. Disconnecting does not delete data Plaid has already collected.
Upgrade to SeekerPro for deep-dive reports on every company that touches your data. Members get breach timelines, violat...
Try SeekerPro →Run a free privacy and compliance scan on any website in 60 seconds. NexusBro checks cookie consent, hidden trackers, th...
Try NexusBro →Stop spending hours filing DSAR requests and opt-out forms manually. BliniBot automates data deletion requests, cookie c...
Try BliniBot →Tools trusted by thousands of privacy-conscious professionals worldwide
No card charged today. Cancel anytime.
Want unlimited access? Explore SeekerPro