[1] Security Service Federal Credit Union
given the increasing insanity that is getting a mobile app published and updated, I'd say that this will be normal than not in the future.
you need a team devoted to keep up with the monthly threat of your app getting removed because some new requirement. the upkeep is terrible.
For now, our mobile Linux users would be “stuck” with the mobile web experience, though we tried our hardest to make it a performant PWA that you can pin to your home screen. The main thing you lose is persistent biometric login, though many privacy conscious users seem to not trust biometric unlocking of your session in the first place (they mistakenly think their Face is being uploaded to our servers, which is of course not how the technology works on iOS/Android) so that may not be an issue.
Edit: From my time trying to use a dumbphone as a daily driver a few years ago, cash apps were a bigger problem (Venmo, etc) as theres a social component to “not paying someone back until later because I dont have a smartphone”.
For me, my hesitation with biometric unlocking is due to it being legally weaker than a passcode.
https://www.biometricupdate.com/202007/another-federal-court...
I know a bank that makes you type your credit card PIN key after receiving an SMS in a mobile site... (cannot disclose which one).
Which, now that I looked it up, seem to be a German peculiarity.
https://en.wikipedia.org/wiki/Transaction_authentication_num...
Another annoyance lately is traveling. I need two apps for the car sharing services, two for public transit, maybe another handful for scooters/bike rental etc.
The banks have however decided that issuing separate security dongles is too costly, so instead they forced us all to install an app that acts as a security token. So I cannot do online banking without the mobile app.
Else your only option is to buy a cheap android phone which you only use for this login. In a way that makes your banking activities even more secure because you're only using the device for 2FA codes :)
All major banks require app-based authentication. Many also offer sms as an alternative, but this is being phased out across the board. A handful maaaay still allow you to do banking via physical cardreader verification if all else fails (and you have no record of having ever installed an app).
Uhm no... I can personally attest to at least Barclays and Natwest allowing you to use a cardreader + website, no apps needed, all online services available through website. Those are 2 of the top 4 largest banks in the UK, I wouldn't be surprised if it was a similar story for the rest. I imagine they would get in pretty deep legal trouble if they forced people to use smart phones.
Just because you don't try to use stuff without an app doesn't mean it doesn't exist anymore, I don't have a smart phone - life is good in the UK.
I'm on Natwest too, which is one of the banks I'm actually referring to. As soon as I installed the app (for unrelated reasons) it started requiring it for authentication, even though I never chose that as an option, and it persisted even after I had uninstalled it. It is not impossible to work around it, but it's definitely not a pleasant experience, especially not when dealing with payments.
My recent experience is that Natwest at least has been adding 'friction' for doing things without the app. Case in point, I needed to change my address recently. I explicitly wanted to avoid the app, because it mandated establishing a biometric password. I tried the website, the website redirected me to a telephone number. I called the number, 30 minutes later, it happily informed me that "Great. What you're trying to do is possible from the app. Why not download ...".
In the end I took half a day off from work and went to the bank in person and asked a human to update my details. But judging from other industries, and seeing how the app is being pushed, I have no expectations that "human customer support" is going to be a thing for much longer (except for the typical "Helloooo I'm here to walk you through the app via a script I cannot deviate from" annoying kind).
But $30?
~100€ is the minimum I've found. Do you have a link? Or maybe you meant non-Android...
Just don't connect it to untrusted wifi, disable bluetooth and all that. Chances are - that phone had its last OS update years ago, and could be pretty easily pwned [0]
[0] https://gist.github.com/jesux/64cf037c55c0d42196762c0ccacc73...
For what it's worth, that app isn't actually necessary, but comes with some handy features that aren't available on their Web frontend like token-based payments that can be used in ATMs or shop terminals without using a card, which is what I'm using the app for (regular payments can be easily made via the browser).
I wish I could say the answer is to find a bank that doesn't do it, but there don't seem to be any. The whole thing verges on apocalyptic.
On the Linux phone itself, you can try out Waydroid https://waydro.id (and it seems to work on regular Linux too?).
I also think there are Android Distros you can install in a VM as well (though I admit I have not tried it).
That being said, what about banks with open APIs? Wasn't there some EU legislation?
If anything EU fucked up all my bank automation, except for this one bank, by requiring 2FA just for logging in, and not only for making transactions.