Public attestations
Bank rule-pack attestations.
Every rule pack iso-compliant ships, with honest status. Packs marked SKELETON were built from publicly available Implementation Guides only. No bank has signed an attestation of an iso-compliant pack unless the page below carries STATUS: VERIFIED and a SHA-256 hash of the bank's signed attestation document.
Packs published
- STATUS: SKELETON
UBS Switzerland (pain.001.001.09.ch.03)
CH · Ruleset version
2026.06· 14 rulesBuilt from the SIX Swiss Payment Standards Implementation Guide for Customer Credit Transfer (the .ch.03 profile UBS accepts) plus the ISO 20022 pain.001.001.09 base and the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's UBS UAT credentials. No claim of UBS endorsement is made or implied.
Sources cited: SIX Swiss Payment Standards — Swiss IG for Customer Credit Transfer; SIX Swiss Payment Standards — Swiss IG for QR-bill; ISO 20022 pain.001.001.09 message definition (UNIFI); ISO 9362 BIC; ISO 4217 currency codes; ISO 3166-1 alpha-2 country codes; ISO 13616 IBAN; SWIFT MX / CBPR+ structured-address mandate (public bulletins) - STATUS: SKELETON
PostFinance Switzerland (pain.001.001.09.ch.03)
CH · Ruleset version
2026.06· 9 rulesBuilt from the SIX Swiss Payment Standards Implementation Guide for Customer Credit Transfer (the .ch.03 profile PostFinance accepts) plus the ISO 20022 pain.001.001.09 base and the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's PostFinance UAT credentials. No claim of PostFinance endorsement is made or implied.
- STATUS: SKELETON
Deutsche Bank (pain.001.001.09)
DE · Ruleset version
2026.06· 8 rulesBuilt from the CGI-MP MP for Customer Credit Transfer Initiation v3 (the multibank corporate-channel profile Deutsche Bank accepts), the EPC SEPA SCT Rulebook for the SEPA leg, and the ISO 20022 pain.001.001.09 base plus the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's Deutsche Bank corporate-channel credentials. No claim of Deutsche Bank endorsement is made or implied.
Sources cited: CGI-MP — Common Global Implementation Market Practice for Customer Credit Transfer Initiation v3; EPC SEPA Credit Transfer Scheme Rulebook; ISO 20022 pain.001.001.09 message definition (UNIFI); Deutsche Bank Corporate Bank — Payments & Collections (public landing); ISO 9362 BIC; ISO 4217 currency codes; ISO 3166-1 alpha-2 country codes; ISO 13616 IBAN; SWIFT MX / CBPR+ structured-address mandate (public bulletins) - STATUS: SKELETON
BNP Paribas (pain.001.001.09)
FR · Ruleset version
2026.06· 7 rulesBuilt from the EPC SEPA SCT Rulebook, the EPC SCT Inter-Bank Implementation Guidelines (EPC132-08), and the CFONB SEPA overlay French banks follow, on top of the ISO 20022 pain.001.001.09 base and the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's BNP Paribas Connexis Cash credentials. No claim of BNP Paribas endorsement is made or implied.
Sources cited: CFONB — Comité Français d'Organisation et de Normalisation Bancaires (Publications); EPC SEPA Credit Transfer Scheme Rulebook; EPC SCT Inter-Bank Implementation Guidelines (EPC132-08); ISO 20022 pain.001.001.09 message definition (UNIFI); BNP Paribas Connexis Cash (public landing); ISO 9362 BIC; ISO 4217 currency codes; ISO 3166-1 alpha-2 country codes; SWIFT MX / CBPR+ structured-address mandate (public bulletins) - STATUS: SKELETON
ING Bank (pain.001.001.09)
NL · Ruleset version
2026.06· 7 rulesBuilt from the Betaalvereniging Nederland (Dutch Payments Association) SEPA overlay, the EPC SEPA SCT Rulebook, the CGI-MP MP for Customer CT Initiation v3, and the ISO 20022 pain.001.001.09 base plus the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's ING InsideBusiness / Wholesale Banking credentials. No claim of ING endorsement is made or implied.
Sources cited: Betaalvereniging Nederland — Dutch Payments Association (SEPA documentation); EPC SEPA Credit Transfer Scheme Rulebook; EPC SCT Inter-Bank Implementation Guidelines (EPC132-08); CGI-MP — Common Global Implementation Market Practice for Customer Credit Transfer Initiation v3; ISO 20022 pain.001.001.09 message definition (UNIFI); ING Wholesale Banking — Payments & Cash Management (public landing); ISO 9362 BIC; ISO 4217 currency codes; ISO 13616 IBAN; SWIFT MX / CBPR+ structured-address mandate (public bulletins) - STATUS: SKELETON
Crédit Agricole CIB (pain.001.001.09)
FR · Ruleset version
2026.06· 8 rulesBuilt from the EPC SEPA SCT Rulebook, the EPC SCT Inter-Bank Implementation Guidelines (EPC132-08), and the CFONB SEPA overlay French banks follow, on top of the ISO 20022 pain.001.001.09 base and the SWIFT MX/CBPR+ structured-address mandate. Awaiting UAT verification through a paying customer's Crédit Agricole CIB transaction-banking credentials. No claim of Crédit Agricole endorsement is made or implied.
Sources cited: CFONB — Comité Français d'Organisation et de Normalisation Bancaires (Publications); EPC SEPA Credit Transfer Scheme Rulebook; EPC SCT Inter-Bank Implementation Guidelines (EPC132-08); ISO 20022 pain.001.001.09 message definition (UNIFI); Crédit Agricole CIB — Transaction Banking (public landing); ISO 9362 BIC; ISO 4217 currency codes; ISO 3166-1 alpha-2 country codes; ISO 13616 IBAN; SWIFT MX / CBPR+ structured-address mandate (public bulletins)
Methodology
iso-compliant publishes rule packs at three honesty tiers. The status badge on each pack tells you exactly what you are getting.
- SKELETON
- Built from publicly available Implementation Guides (SIX Swiss Payment Standards, ISO 20022 base, SWIFT public bulletins). No bank UAT or attestation. Every rule cites a verifiable public URL.
- UAT_PENDING
- Rules have been exercised against a bank UAT channel using credentials issued by the bank. The bank has not yet signed a formal attestation; results are awaiting bank-side review.
- VERIFIED
- Signed bank attestation on file. Pack page carries a SHA-256 hash of the attestation document, the bank-side reviewer name, and the date of acceptance.
Disclaimer
No bank has endorsed iso-compliant unless the relevant pack page carries STATUS: VERIFIED and a SHA-256 hash of the bank's signed attestation document. SKELETON and UAT_PENDING packs are useful engineering scaffolds built against public sources, but they are NOT an endorsement. Bank names referenced on this page point at the ISO 20022 profile (e.g. the Swiss `.ch.03` profile) that the named bank accepts — they do NOT indicate the bank has reviewed or approved iso-compliant.
Roadmap to VERIFIED
The first signed bank attestation is what turns a SKELETON pack into a VERIFIED one. Here is the current plan — it is a roadmap, not a guarantee, and this page is the single source of truth for where each pack actually stands.
- 1.
UBS Switzerland and PostFinance (both
pain.001.001.09.ch.03) are the first two UAT targets — PostFinance publishes a developer sandbox, so its fixtures can be exercised against a real test channel first. - 2.
Once a pack's fixtures are exercised against the bank's UAT channel it moves to UAT_PENDING here, with the channel results published.
- 3.
On a signed bank attestation the pack becomes VERIFIED — the pack page then carries the SHA-256 hash of the signed document, the bank-side reviewer name, and the acceptance date.
Target for the first VERIFIED pack: 2026-Q3. Enterprise customers who can lend bank UAT credentials accelerate this — see sales@iso-compliant.com.