What is ACH?
The Automated Clearing House (ACH) Network is an electronic payments network used by individuals, businesses, financial institutions and government organizations. It allows funds to be electronically debited or credited to a checking account, savings account, financial institution general ledger account or credited to a loan account.
The ACH Network is the backbone for the electronic movement of money and other related data, providing a safe, secure, reliable network for direct consumer, business and government payments. Large and small financial institutions of all kinds jointly govern and utilize the ACH Network, facilitating billions of payments such as Direct Deposit via ACH and Direct Payment via ACH.
The ACH Network is a same day, batch processing, store-and- forward system. Transactions are stored by financial institutions throughout the day and processed at specified times in a batch mode.
The ACH Network exchanges funds and payment-related information throughout the United States, its territories and internationally.
Who are the ACH Participants?
There are several participants that contribute to the successful completion of an ACH transaction. As each participant is discussed, the financial institution should better understand the role it plays in the system.
The Originator - this is you - is the company/business that has been authorized by the Receiver to either credit or debit an account.
The Receiver - this is your customer/vendor/etc -can be either an individual or a company that has authorized the Originator (company) to credit or debit their account.
A Third-Party Sender (TPS) - this is ACHQ- an entity that has a contractual relationship with an ODFI to transmit debits or credits to the account of a Receiver on behalf of the Originator.
The Originating Depository Financial Institution (ODFI) - this is ACHQ's bank - is the financial institution with which the TPS has a contractual relationship for ACH services and is responsible for sending ACH entries into the ACH Network on behalf of the Originator. This is ACHQ's bank.
The Receiving Depository Financial Institution (RDFI) - this is your customer's bank - is a financial institution with which the Receiver has an account relationship.
The ACH Operator - this is the Federal Reserve- is the central clearing facility for ACH transactions. There are currently two ACH Operators, the Federal Reserve Bank and EPN (Electronic Payments Network).
The Originator is the company or business that has been authorized by the Receiver to either credit or debit their account. Your company is the Originator when you are initiating credit transactions to an employee’s account for payroll or when you are initiating debit transactions to a consumer or business account for payment of goods or services. Likewise, your company could be the Originator when you convert your lockbox checks to ACH, initiate a payment to another vendor to pay an invoice or accept a phone payment from a customer to pay a bill. Anytime your company initiates an ACH payment (credit or debit), you are the Originator.
What does Nacha mean and is your business compliant?
Nacha was originally NACHA, an acronym for National Automated Clearing House Association. Though the acronym is no longer in official use (they go by ‘Nacha’ instead), it shows where the organization came from and the role they fill in the ACH ecosystem.
Back in the early 1970s, regional banking associations across the US joined forces to standardize processes around the development of “automated” clearing house solutions—the digital replacements for physical clearinghouses where paper checks were once exchanged. By 1974, the American Bankers Association had centralized all of those regional groups under a national sub-division that they named NACHA.
An independent organization since 1985, Nacha is effectively a non-profit consortium tasked with:
- Translating federal legislation and executive rules into clear guidance for member banks and ACH network participants
- Enforcing those rules for all 10,000+ member banks and network participants
- Driving development and adoption of the ACH system
- Acting as a trade organization (e.g., education, advocacy, roundtables, etc.)
What’s the difference between Nacha and ACH?
The Automated Clearing House (ACH) network is the American interbank funds-transferring system run by two national operators: The Clearing House and FedACH. Nacha is the governing body that oversees the ACH network. It ensures that member banks are aware of and compliant with related federal legislation, along with promoting development and education around ACH.
As for the operators that run the ACH network:
- The Clearing House (also referred to as TCH or PayCo) is itself another banking consortium, with a much smaller subset of the major US banks (currently 24). They run a system called Electronic Payments Network (EPN), which is the ACH operator for all private banks in the ACH network.
- FedACH is part of the Federal Reserve system, performing the same function as EPN, for government accounts and entities, rather than private ones.
When an ACH transaction involves both a government account and a private account, the two operators work together to pass the corresponding data between themselves accordingly.
Nacha translates mandates from the US government into actionable rules and standards for The Clearing House and FedACH, which then operate their respective parts of the ACH network in accordance with Nacha’s guidance. Nacha also mediates between members and acts as an advocate for the ACH ecosystem to the larger financial industry.
Who do Nacha rules apply to?
Nacha’s rulebook is a living document that outlines binding rules for all 10,000+ members that collectively represent the overwhelming majority of retail banks and credit unions in America. The rules also extend down to all ACH network participants including payment processing partners like ACHQ, businesses, and even individuals that use the ACH network.
In particular, businesses that collect payments over the ACH network have certain rules they must follow. As of 2021, businesses that originate online ACH debits must implement “‘account validation” as part of a “commercially reasonable fraudulent transaction detection system.” Essentially, this means that businesses must ensure that given account numbers are valid, the account is open, and it’s able to conduct ACH transfers—before initiating an online ACH debit. This new rule contributes to the greater goal of preventing fraud.
The intent of Nacha’s rules is to ensure that the ACH network remains an accessible and trusted part of America’s financial infrastructure.
“The Rules ensure that millions of payments occur smoothly and securely each day. The Rules direct how the ACH Network is operated, keeping it safe and efficient. The Rules standardize the roles and responsibilities of all parties using the ACH Network, ensuring that all ACH payments are handled on a level playing field.”
What are the main Nacha requirements?
The Nacha rules are a guiding framework for the ACH Network and include the basic obligations of each ACH network participant. According to Nacha, understanding the rules helps to ensure efficient payments, better risk management practices, and reduces chances of returns.
While Nacha charges a fee for its full rulebook, the driving principles behind its rules and standards are:
- Forcing standardization: Work from a shared understanding of formatting, timelines, and mutual expectations.
- Reducing fraud: Use appropriate due diligence to minimize system abuse, especially for ACH debit requests and reversals.
- Promoting data security: Safeguard all consumer data to prevent theft, internal misuse, and/or accidental leakage.
- Improving usability: Adopt new measures within the recommended timelines to ensure that core innovations are reliably and equally distributed to all users.
Some of the main requirements and rules that follow these principles include:
Member banks are prohibited from sending, receiving, or storing unencrypted information. Any necessary hard copies also have to be stored securely, with access restricted to narrowly defined legitimate business purposes. The specific details of these policies also need to be clearly documented for consumers.
Organizations initiating requests to the ACH network have to take reasonable steps to make sure they’ve both verified the identity of the customer being debited and gained explicit authorization. For debit transactions, businesses also need to securely store proof of authorization for at least two years. And if the amount of a recurring debit (e.g. automatic bill payments) changes, this must be communicated to payers with “appropriate notice” to give them a chance to rescind their authorization.
As of March 2021, organizations initiating ACH transactions over the internet (which are referred to as WEB debits) need to do what’s “commercially reasonable” to screen transactions to detect and deter fraud. At a minimum, they need to ensure that bank account details are valid before using them.
Originating Depository Financial Institutions (ODFIs/the bank initiating the ACH request) are responsible for ensuring that all recurring debits are cancelled promptly upon customer request; and that any changes to amounts or withdrawal dates are communicated transparently and with adequate notice.
Why is Nacha compliance important?
In the narrow sense, Nacha compliance is important because rule-breaking orgs will likely encounter more errors and returns in their ACH transactions and could get fined by the ACH network. In the larger sense, complying with rules and standards that are intended to ensure a safe and effective ACH network is good for all who participate in the ACH ecosystem—promoting its healthy use and sustainable growth.
There are two main drivers for staying compliant with Nacha rules and requirements:
If a business continually violates Nacha’s rules and causes high error rates, their bank may fine them and potentially discontinue their business relationship. Additionally, organizations relying on outdated processes that aren’t Nacha-compliant are also less likely to complete transactions without errors and returns; or effectively screen for fraud.
Whenever an ACH network participant falls behind on the rules and standards, there’s going to be a resulting customer service failure. Some will be getting a worse-off deal than they ought to receive, while others might experience payment failure altogether.
Every bad experience with the system sours perceptions of ACH, which is bad for the ACH ecosystem as a whole. In contrast, every positive experience improves the system’s reputation, which is good for both adoption and consumer satisfaction.
Updated 7 months ago