Totally fair and reasonable! Too many banks here in the US too that both make it against TOS to get external access to your data and also refuse to offer anything secure like OAuth — extremely frustrating :/ At best you can try to pressure your bank to support OAuth but... we're just small fries.
Yeah banking is stuck in decade old technology in north america. Heck I'd settle for TOTP (or any 2FA in some cases) or getting rid of those harmful security images.