RBI Guidelines on Regulation of Payment Aggregators and Payment Gateways

[dropcap]P[/dropcap]ayment Gateways (PGs)and Payment Aggregators (PAs) are intermediaries playing an important role in facilitating payments in the online space.

The Central bank formally introduced new guidelines for regulation of PGs and PAs. The guidelines specify that all payment aggregators need to be authorised by the Reserve Bank of India (RBI) and need an operating license.

The Reserve Bank of India, vide its circular in March’ 2020, had issued the guidelines on Regulation of Payment Aggregators and Payment Gateways. The deadline to apply for authorisation for the non-bank entities was extended till Sep 30th, 2021

Background

Earlier, RBI had in Sep 2019 released a discussion paper on the aforesaid guidelines. Based on the feedback received and considering the important functions of these intermediaries in the online payments space, as also keeping in view their role vis-à-vis handling funds, RBI has decided to

  • Regulate in entirety the activities of PA
  • Provide baseline technology related recommendations to PGs

Definition

PAs are entities that facilitate e-commerce sites and merchants to accept various payment instruments from the customers for completion of their payment obligations without the need for merchants to create a separate payment integration of their own. In the process they receive payments from customers, pool and transfer them to merchants after a time period.

PGs are entities that provide technology infrastructure to route and facilitate processing of an online payment transaction without any involvement in handling of funds

Key Aspects of the Guidelines

  1. Non-Bank PAs will be required to have a minimum net worth of ₹ 15 Crs to be increased to ₹ 25 Crs by the end of third financial year
  2. E commerce marketplaces with PA business would need to segregate PA business into a separate entity
  3. Board Approved policy for Merchant Onboarding
  4. Safeguards against Money Laundering (KYC/AML/CFT) provisions
  5. Settlement and Escrow Account Management
  6. Customer Grievance Redressal and Dispute Management Framework
  7. Baseline Technology Related Guidelines

Why the need to Regulate and what’s the Impact?

With the Indian online payments market anticipated to reach $1 trillion by 2023 (Credit Suisse AG Report) , I believe it is no surprise that the RBI has opted to act and chosen full and direct regulatory supervision of payment intermediaries

With the RBI’s continuous focus on improving consumer safety and confidence, it has seen the necessity for clearly defined roles for all intermediaries as well as the implementation of a uniform grievance redressal procedure.

As a result of these rules, standardization, accountability, and transparency will be introduced into the operation of online payment intermediaries.

Reference:
https://rbidocs.rbi.org.in/rdocs/notification/PDFs/NT17460E0944781414C47951B6D79AE4B211C.PDF

Disclaimer: The opinions expressed here are those of the author and do not reflect the views of FrankBanker.com

Related Essays

  • |

    Basel Norms: A Banker’s Guide

    Basel norms are more than a capital adequacy exercise. They define how banks measure risk, what counts as capital, how much liquidity they must hold, and how regulators can impose additional requirements beyond the published minimums. This guide covers the full framework — Basel I through III, the three pillars, India’s specific calibration, and the gaps that Basel III still does not resolve.

  • RBI Monetary Policy Instruments: A Banker’s Guide

    The RBI’s monetary policy toolkit is wider than most practitioners realise. The repo rate gets the headlines, but the real work happens across the LAF corridor, the SDF floor, the CRR and SLR requirements, and the structural tools like OMO and forex swaps. This guide maps all of them — definitions from RBI’s own language, current rates as of February 2026, and what each instrument actually does to liquidity.

  • India’s Digital Personal Data Protection Rules: Game-Changer or Growth Killer for FinTech?

    Digital Personal Data Protection (DPDP) Rules 2025 can be a double-edged sword for FinTechs in India. Global experience with GDPR’s in Europe showed us the high costs and steep learning curve of compliance but also proved that businesses emerge stronger when they adapt proactively. For Indian FinTechs, DPDP rules offer opportunities to enhance trust and global competitiveness. But the time to act is now!

  • Why MSME Bank is a Bad Idea: Better Banking over More Banks

    The idea to establish an MSME-focused bank in India seeks to address the long-standing credit gap faced by nano, micro, small, and medium enterprises. While the idea has merit, it also presents significant challenges, including operational complexities and potential overlaps. Piyush Singh explains why a dedicated MSME bank is not the right path

  • Payments in Quantum world

    Global payment systems rely on encryption powered by mathematical formulas that classical computers cannot solve, keeping stored and transmitted data secure. But the rise of quantum computing threatens to unravel this security, with the potential to compromise payment systems entirely. Sunil Landge delves into the looming quantum challenge and how financial institutions can safeguard themselves for a secure future.