My understanding of the situation is that no government agency actually requested data at all, just that someone impersonated a government email address and this was enough for Revolut to reply with the requested data.
That's a dangerous kind of threat to be making, and to act upon. for information that should remain private let alone owned by the bank itself.
What's your source?
That is not what the news says.
Also, you know you can easily impersonate any email? That's a flaw of the email protocol.
So when a company is requested to hand over sensitive data, they do. For sure when the origin of the request is the government itself (pawned email in this case)