๐ KYC, AML, KYB, & ACCREDITED INVESTOR VERIFICATION PROCEDURES
OTCM Protocol Compliance Operations Manual
โ SEC CATEGORY 1 COMPLIANT | Issuer-Sponsored Tokenized Securities pursuant to SEC Division of Corporation Finance, Division of Investment Management, and Division of Trading and Markets Joint Statement dated January 28, 2026
I. EXECUTIVE SUMMARY
๐ Document Purpose
This document establishes the comprehensive compliance procedures for OTCM Protocol's verification and screening requirements under SEC Category 1 framework, federal securities laws, and anti-money laundering regulations.
๐ Verification Framework Overview
Verification Type | Applicability | Regulatory Basis |
|---|---|---|
๐ชช KYC (Know Your Customer) | All platform users | Bank Secrecy Act, FinCEN |
๐ข KYB (Know Your Business) | Entity investors & issuers | BSA, SEC regulations |
๐ต AML (Anti-Money Laundering) | All transactions | Bank Secrecy Act, USA PATRIOT Act |
๐๏ธ Accredited Investor | ST22 purchasers only | SEC Rule 501, Regulation D 506(c) |
๐ซ OFAC Screening | All users & transactions | U.S. Treasury OFAC regulations |
๐ฏ Compliance Objectives
Objective | Description |
|---|---|
โ๏ธ Regulatory Compliance | Meet all federal and state compliance requirements |
๐ก๏ธ Investor Protection | Ensure only qualified investors access ST22 securities |
๐ซ Crime Prevention | Prevent money laundering, terrorist financing, sanctions evasion |
๐ Record Keeping | Maintain complete audit trail for regulatory review |
๐ Transfer Hook Integration | Enable real-time compliance verification on every transaction |
II. KNOW YOUR CUSTOMER (KYC) PROCEDURES
A. ๐ชช Individual Customer Identification Program (CIP)
Required Information Collection
All individual users must provide the following information before accessing platform services:
Data Element | Requirement | Verification Method |
|---|---|---|
๐ Full Legal Name | Required | Government ID match |
๐ Date of Birth | Required | Government ID match |
๐ Residential Address | Required | Document verification |
๐ข SSN/TIN | Required (US) / Passport (Non-US) | Database verification |
๐ง Email Address | Required | Email confirmation |
๐ฑ Phone Number | Required | SMS verification |
๐ Country of Citizenship | Required | Government ID |
๐ณ๏ธ Country of Residence | Required | Address verification |
Identity Verification Tiers
Tier | Access Level | Requirements | Verification |
|---|---|---|---|
Tier 1: Basic | Platform browsing only | Email, phone | Automated |
Tier 2: Standard | OTCM Utility Token only | Tier 1 + ID document | Automated + manual review |
Tier 3: Enhanced | ST22 Securities access | Tier 2 + accreditation | Manual verification required |
Acceptable Identity Documents
Primary Documents (One Required)
Document Type | Requirements | Validity |
|---|---|---|
๐ชช Government-Issued Photo ID | Current, unexpired | Must be valid |
๐ Passport | Machine-readable zone | Must be valid |
๐ Driver's License | State/government issued | Must be valid |
๐ชช National ID Card | Government issued with photo | Must be valid |
Secondary Documents (One Required for Enhanced)
Document Type | Requirements | Age Limit |
|---|---|---|
๐ Utility Bill | Shows name and address | < 90 days |
๐ฆ Bank Statement | Shows name and address | < 90 days |
๐ Government Correspondence | Tax document, official letter | < 12 months |
๐ Mortgage Statement | Shows name and property address | < 90 days |
Verification Process Flow
โโโโโโโโโโโโโโโโโโโ
โ User Registration โ
โโโโโโโโโโฌโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโ
โ Collect Basic Info โ
โ (Name, DOB, Email) โ
โโโโโโโโโโฌโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโ
โ Document Upload โ
โ (ID + Selfie) โ
โโโโโโโโโโฌโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโ
โ Automated Check โ
โ โข Document validityโ
โ โข Face match โ
โ โข Liveness check โ
โโโโโโโโโโฌโโโโโโโโโ
โ
โโโโโโดโโโโโ
โ โ
Pass Fail
โ โ
โผ โผ
โโโโโโโโโ โโโโโโโโโ
โ OFAC โ โManual โ
โScreen โ โReview โ
โโโโโฌโโโโ โโโโโฌโโโโ
โ โ
โผ โผ
โโโโโโโโโโโโโโโโโโโ
โ Final Decision โ
โ Approve/Reject โ
โโโโโโโโโโโโโโโโโโโ
Document Verification Standards
Check | Standard | Action on Failure |
|---|---|---|
๐ท Image Quality | Minimum 300 DPI, all text readable | Request re-upload |
โ Document Authenticity | Security features verified | Manual review |
๐ค Face Match | >95% confidence score | Manual review |
๐ญ Liveness Detection | Anti-spoofing verification | Reject or video verification |
๐ Expiration Check | Document must be current | Reject, request valid document |
๐ Tampering Detection | No signs of alteration | Reject, flag for review |
B. ๐ Ongoing KYC Monitoring
Periodic Review Schedule
Risk Level | Review Frequency | Trigger Events |
|---|---|---|
๐ข Low Risk | Every 24 months | Address change, large transaction |
๐ก Medium Risk | Every 12 months | Unusual activity, country change |
๐ด High Risk | Every 6 months | Watchlist proximity, PEP status |
Continuous Monitoring Triggers
Trigger | Action Required |
|---|---|
๐ Address Change | Re-verify with new proof of address |
๐ Country Change | Full re-verification + jurisdiction check |
๐ Unusual Transaction Pattern | Enhanced due diligence review |
๐จ Watchlist Match | Immediate account freeze + investigation |
๐ Document Expiration | Request updated documentation |
๐ฐ Large Transaction | Enhanced verification for transactions >$10,000 |
III. KNOW YOUR BUSINESS (KYB) PROCEDURES
A. ๐ข Entity Verification Requirements
Entity Types and Requirements
Entity Type | Required Documents | Beneficial Owner Threshold |
|---|---|---|
๐ข Corporation | Articles of Incorporation, Certificate of Good Standing | 25%+ ownership |
๐ค LLC | Operating Agreement, Articles of Organization | 25%+ ownership |
๐ฆ Trust | Trust Agreement, Trustee identification | All trustees |
๐ผ Partnership | Partnership Agreement, GP identification | 25%+ ownership |
๐๏ธ Fund/Investment Vehicle | Formation documents, Manager identification | 25%+ ownership or control |
Required Entity Documentation
Formation Documents
Document | Purpose | Verification |
|---|---|---|
๐ Articles of Incorporation/Organization | Verify legal formation | Secretary of State records |
โ Certificate of Good Standing | Verify current status | < 90 days old |
๐ Operating Agreement/Bylaws | Verify governance structure | Manual review |
๐ข EIN/Tax ID Documentation | Verify tax status | IRS verification |
Ownership Documents
Document | Purpose | Requirement |
|---|---|---|
๐ Ownership Chart | Identify beneficial owners | All levels until individuals identified |
๐ Shareholder Registry | Verify ownership percentages | Current as of verification date |
๐๏ธ Board Resolution | Authorize account opening | Signed by authorized officers |
โ๏ธ Authorized Signers List | Identify who can transact | With specimen signatures |
Beneficial Owner Identification
Definition (FinCEN CDD Rule)
Category | Definition |
|---|---|
๐ค Ownership Prong | Each individual who owns 25% or more of the entity |
๐๏ธ Control Prong | One individual with significant responsibility to control the entity |
Required Information for Each Beneficial Owner
Data Element | Requirement |
|---|---|
๐ Full Legal Name | Required |
๐ Date of Birth | Required |
๐ Residential Address | Required |
๐ข SSN/TIN or Passport | Required |
๐ Ownership Percentage | Required |
๐๏ธ Control Role | If applicable |
Entity Verification Process
โโโโโโโโโโโโโโโโโโโโโโโ
โ Entity Application โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Document Collection โ
โ โข Formation docs โ
โ โข Ownership docs โ
โ โข Authorization โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Entity Verification โ
โ โข State records check โ
โ โข EIN verification โ
โ โข Good standing โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Beneficial Owner ID โ
โ โข Identify all 25%+ โ
โ โข Identify controller โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Individual KYC โ
โ (Each beneficial owner)โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ OFAC Screening โ
โ โข Entity name โ
โ โข All beneficial ownersโ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Final Approval โ
โโโโโโโโโโโโโโโโโโโโโโโ
B. ๐ญ Issuer KYB Requirements (Enhanced)
Issuers seeking to tokenize securities on OTCM Protocol must complete enhanced KYB verification:
Issuer-Specific Requirements
Requirement | Description | Verification |
|---|---|---|
๐ Corporate Formation | Full formation documents | Secretary of State |
๐ Cap Table | Complete ownership structure | Manual review |
๐ฅ Officer/Director List | All C-suite and board members | Individual KYC each |
๐ผ Business Description | Nature of business operations | Due diligence review |
๐ Financial Statements | Recent financial information | CPA review if available |
โ๏ธ Litigation History | Pending or recent litigation | Legal database search |
๐๏ธ Regulatory Status | Any regulatory actions | FINRA/SEC/State check |
๐ 15c2-11 Status | OTC Markets status | OTC Markets verification |
Issuer Due Diligence Checklist
Category | Items | Status |
|---|---|---|
Corporate | Articles, Bylaws, Good Standing, EIN | โ |
Ownership | Cap table, Beneficial owners (all levels), Control persons | โ |
Management | Officer bios, Director bios, KYC on each | โ |
Financial | Recent financials, Material liabilities, Pending litigation | โ |
Regulatory | SEC filings history, State registrations, FINRA/regulatory actions | โ |
Operational | Business description, Material contracts, Key customers | โ |
Series M Specific | Board resolution, Certificate of Designation draft | โ |
IV. ANTI-MONEY LAUNDERING (AML) PROCEDURES
A. ๐ต AML Program Overview
Program Components (BSA Requirements)
Component | Description | Responsible Party |
|---|---|---|
๐ Written Policies | Documented AML procedures | Compliance Officer |
๐ค Compliance Officer | Designated BSA/AML officer | Named individual |
๐ Training Program | Staff training on AML | Compliance Department |
๐ Independent Testing | Annual independent audit | External auditor |
๐ Monitoring System | Transaction monitoring | Automated + manual |
BSA/AML Compliance Officer
Responsibility | Description |
|---|---|
๐ Program Oversight | Overall AML program management |
๐ SAR Filing | Suspicious Activity Report decisions |
๐ Training | Ensure staff training completion |
๐ Testing Oversight | Coordinate independent testing |
๐ Regulatory Liaison | Point of contact for FinCEN, examiners |
๐ Policy Updates | Keep policies current with regulations |
Designated Compliance Officer: [Name]
Contact: compliance@otcm.io
B. ๐ Transaction Monitoring
Monitoring Parameters
Parameter | Threshold | Action |
|---|---|---|
๐ฐ Large Transaction | >$10,000 | Enhanced review |
๐ Structuring Pattern | Multiple transactions near $10,000 | SAR consideration |
๐ Unusual Volume | >300% of normal activity | Enhanced review |
๐ High-Risk Jurisdiction | FATF grey/blacklist countries | Enhanced due diligence |
โก Rapid Movement | In-out within 24 hours | Enhanced review |
๐ Chain Transactions | Multiple rapid transfers | Pattern analysis |
Red Flag Indicators
Identity Red Flags
Red Flag | Risk Level | Action |
|---|---|---|
๐ญ Inconsistent Information | High | Verification hold |
๐ Reluctance to Provide Info | High | Account suspension |
๐ Frequent Info Changes | Medium | Enhanced monitoring |
๐ High-Risk Country Connection | High | Enhanced due diligence |
๐ฅ Multiple Accounts | Medium | Investigation |
Transaction Red Flags
Red Flag | Risk Level | Action |
|---|---|---|
๐ฐ Structuring | High | SAR filing |
๐ Layering | High | SAR filing |
โก Rapid In-Out | High | Enhanced review |
๐ No Economic Purpose | High | Investigation |
๐ High-Risk Jurisdiction | High | Enhanced due diligence |
๐ฑ Currency Conversion Patterns | Medium | Enhanced monitoring |
Behavioral Red Flags
Red Flag | Risk Level | Action |
|---|---|---|
๐ค Unusually Secretive | Medium | Enhanced monitoring |
๐ Third-Party Instructions | High | Verification required |
๐ผ Inconsistent with Profile | High | Investigation |
๐จ Urgency Without Explanation | Medium | Enhanced review |
C. ๐ Suspicious Activity Reporting (SAR)
SAR Filing Requirements
Requirement | Standard |
|---|---|
๐ฐ Dollar Threshold | $5,000+ involving suspicious activity |
โฐ Filing Deadline | 30 days from detection (60 days if no suspect identified) |
๐ Form | FinCEN Form 111 (BSA E-Filing) |
๐ Confidentiality | SAR existence cannot be disclosed to subject |
SAR Decision Matrix
Suspicious Activity Type | Amount | Filing Required |
|---|---|---|
๐ญ Identity Fraud | Any | Yes |
๐ฐ Structuring | Any pattern | Yes |
๐งน Money Laundering | $5,000+ | Yes |
๐ด Terrorist Financing | Any | Yes, expedited |
๐ Market Manipulation | $5,000+ | Yes |
๐คฅ Misrepresentation | $5,000+ | Yes |
SAR Filing Process
โโโโโโโโโโโโโโโโโโโโโโโ
โ Suspicious Activity โ
โ Detected โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Initial Assessment โ
โ (Within 24 hours) โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Investigation โ
โ โข Transaction review โ
โ โข Customer history โ
โ โข Pattern analysis โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Compliance Review โ
โ (SAR decision) โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โโโโโโดโโโโโ
โ โ
File No File
โ โ
โผ โผ
โโโโโโโโโโโ โโโโโโโโโโโ
โFinCEN โ โDocument โ
โFiling โ โDecision โ
โโโโโโฌโโโโโ โโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Ongoing Monitoring โ
โ (90 days minimum) โ
โโโโโโโโโโโโโโโโโโโโโโโ
D. ๐ต Currency Transaction Reporting (CTR)
CTR Requirements
Requirement | Standard |
|---|---|
๐ฐ Threshold | Cash transactions >$10,000 |
โฐ Filing Deadline | 15 days from transaction |
๐ Form | FinCEN Form 112 |
๐ Aggregation | Multiple transactions same day same person |
Note: Most OTCM Protocol transactions are crypto-based, not cash. CTR requirements apply when fiat currency is involved in onboarding/offboarding.
E. ๐ Record Retention Requirements
AML Records Retention
Record Type | Retention Period | Format |
|---|---|---|
๐ชช Customer Identification | 5 years after account closure | Electronic |
๐ฐ Transaction Records | 5 years | Electronic |
๐ SAR Filings | 5 years | Electronic |
๐ต CTR Filings | 5 years | Electronic |
๐ง Correspondence | 5 years | Electronic |
๐ Training Records | 5 years | Electronic |
๐ Audit Reports | 5 years | Electronic |
V. ACCREDITED INVESTOR VERIFICATION
A. ๐๏ธ Regulatory Framework
Applicable Regulations
Regulation | Requirement |
|---|---|
๐ SEC Rule 501 | Defines accredited investor categories |
๐ Regulation D 506(c) | Requires verification for general solicitation offerings |
โ๏ธ JOBS Act | Expanded accredited investor definition |
๐๏ธ SEC 2020 Amendments | Added professional certifications |
Why Verification Is Required
Factor | Explanation |
|---|---|
๐ Regulation D 506(c) | ST22 offerings use general solicitation (public marketing) |
โ๏ธ Issuer Liability | Issuers must take "reasonable steps" to verify |
๐ก๏ธ Investor Protection | Ensures investors can bear investment risk |
๐๏ธ SEC Enforcement | Non-compliance risks securities violations |
โ ๏ธ Critical: ST22 Tokenized Securities are offered under Regulation D Rule 506(c), which requires verification of accredited investor statusโself-certification alone is NOT sufficient.
B. ๐ Accredited Investor Categories
Individual Investors (Natural Persons)
Category | Qualification Criteria | Verification Method |
|---|---|---|
๐ฐ Income Test | $200,000+ individual income in each of past 2 years, with reasonable expectation of same in current year | Tax returns, W-2s, pay stubs |
๐ซ Joint Income Test | $300,000+ joint income with spouse in each of past 2 years | Joint tax returns |
๐ฆ Net Worth Test | $1,000,000+ net worth (excluding primary residence) | Asset statements, liability disclosure |
๐ Professional Certification | Series 7, 65, or 82 license in good standing | FINRA BrokerCheck |
๐ข Knowledgeable Employee | Executive officer, director, GP, or knowledgeable employee of fund issuer | Employment verification |
Entity Investors
Category | Qualification Criteria | Verification Method |
|---|---|---|
๐ฆ Institutional Investors | Banks, insurance companies, registered investment companies, BDCs, SBICs | Registration verification |
๐ผ Broker-Dealers | SEC-registered broker-dealers | FINRA registration |
๐ Investment Advisers | SEC or state-registered RIAs | SEC/State registration |
๐๏ธ Entity Assets | Entity with $5,000,000+ in assets not formed to acquire securities | Financial statements |
๐ฅ All Accredited Owners | Entity where all equity owners are accredited investors | Verify each owner |
๐ฐ Family Office | Family office with $5,000,000+ AUM and sophisticated investor | Documentation + assessment |
๐ข Family Client | Family client of qualifying family office | Family office verification |
C. โ Verification Methods
Income Verification
Method | Documents Required | Verification Steps |
|---|---|---|
๐ Tax Returns | IRS Form 1040 (2 years) | Review AGI or taxable income lines |
๐ W-2 Forms | W-2s from past 2 years | Verify employer, income amounts |
๐ต Pay Stubs | Recent pay stubs + written confirmation | Calculate annualized income |
๐ CPA Letter | Written verification from licensed CPA | Verify CPA credentials |
๐ผ Attorney Letter | Written verification from licensed attorney | Verify bar membership |
๐ฆ Broker Letter | Written verification from broker-dealer, RIA, or bank | Verify firm registration |
Income Verification Process
โโโโโโโโโโโโโโโโโโโโโโโ
โ Income Verification โ
โ Selected โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Document Upload โ
โ โข Tax returns OR โ
โ โข W-2s + pay stubs OR โ
โ โข Third-party letter โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Verification Review โ
โ โข Calculate income โ
โ โข Verify authenticity โ
โ โข Check 2-year historyโ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Reasonable Expectationโ
โ Assessment โ
โ (Current year income) โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Approval/Rejection โ
โโโโโโโโโโโโโโโโโโโโโโโ
Net Worth Verification
Method | Documents Required | Verification Steps |
|---|---|---|
๐ฆ Bank Statements | Recent statements (< 90 days) | Sum liquid assets |
๐ Brokerage Statements | Recent statements (< 90 days) | Sum investment assets |
๐ Real Estate Appraisals | Licensed appraisal (< 12 months) | Exclude primary residence value |
๐ฐ Retirement Accounts | 401(k), IRA statements | Include in asset total |
๐ Liability Disclosure | Written disclosure of liabilities | Subtract from assets |
๐ Third-Party Letter | CPA, attorney, broker letter | Verify credentials |
Net Worth Calculation
Assets (Include) | Liabilities (Subtract) |
|---|---|
โ Cash and bank accounts | โ Mortgages (except primary residence) |
โ Brokerage accounts | โ Auto loans |
โ Retirement accounts | โ Student loans |
โ Real estate (except primary residence) | โ Credit card debt |
โ Business interests | โ Personal loans |
โ Other investments | โ Other liabilities |
โ Primary residence (EXCLUDE) | โ Primary residence mortgage (EXCLUDE)* |
*Primary residence mortgage is excluded UNLESS it exceeds home value or was increased in past 60 days.
Professional Certification Verification
Certification | Verification Source | Process |
|---|---|---|
๐ Series 7 | FINRA BrokerCheck | Automated lookup |
๐ Series 65 | FINRA BrokerCheck | Automated lookup |
๐ Series 82 | FINRA BrokerCheck | Automated lookup |
Verification Process
- Investor provides name and CRD number
- System queries FINRA BrokerCheck API
- Verify license is current and in good standing
- Confirm no disciplinary actions affecting status
- Approve if license verified
Entity Verification
Entity Type | Verification Method |
|---|---|
๐ฆ Bank | Federal/State charter verification |
๐ RIA | SEC IARD or state registration |
๐ผ Broker-Dealer | FINRA BrokerCheck |
๐ข $5M+ Entity | Audited financial statements or third-party verification |
๐ฅ All Accredited Owners | Individual verification of each equity owner |
D. ๐ Verification Documentation Requirements
Document Retention
Document Type | Retention Period | Format |
|---|---|---|
๐ชช Identity Documents | 5 years after account closure | Secure electronic |
๐ฐ Income Documentation | 5 years | Secure electronic |
๐ฆ Net Worth Documentation | 5 years | Secure electronic |
๐ Third-Party Letters | 5 years | Secure electronic |
โ Verification Decision | 5 years | Secure electronic |
๐ง Correspondence | 5 years | Secure electronic |
Verification Record Contents
Each accredited investor file must contain:
Element | Requirement |
|---|---|
โ Verification Method Used | Document which category and method |
๐ Documents Reviewed | List all documents reviewed |
๐ Verification Date | Date verification completed |
๐ค Reviewer Identity | Who performed verification |
๐ Decision Rationale | Basis for approval/rejection |
๐ Re-verification Date | When next verification due |
E. ๐ Re-verification Requirements
Re-verification Schedule
Transaction Type | Re-verification Requirement |
|---|---|
๐ New Purchase | Verify if >90 days since last verification |
๐ฐ Large Purchase | >$250,000 in single transaction requires current verification |
๐ Annual | Annual re-verification for active investors |
๐ Material Change | Re-verify if investor reports material change |
Material Changes Requiring Re-verification
Change Type | Action |
|---|---|
๐ผ Employment Change | Re-verify if income-based qualification |
๐ Address Change | Update records, no re-verification unless jurisdiction change |
๐ฐ Financial Change | Re-verify if investor reports significant financial change |
๐ License Expiration | Re-verify if certification-based qualification |
VI. OFAC SANCTIONS SCREENING
A. ๐ซ Screening Requirements
Screening Obligations
Requirement | Implementation |
|---|---|
๐ Onboarding | Screen all new users against OFAC lists |
๐ Ongoing | Screen against updated lists (daily updates) |
๐ฐ Transactional | Screen counterparties on every transaction |
๐ Transfer Hook Integration | Real-time OFAC check on every ST22 transfer |
OFAC Lists Screened
List | Abbreviation | Update Frequency |
|---|---|---|
๐ซ Specially Designated Nationals | SDN | Daily |
๐ Consolidated Sanctions List | Non-SDN | Daily |
๐ Sectoral Sanctions | SSI | As updated |
๐๏ธ Foreign Sanctions Evaders | FSE | As updated |
๐ญ Palestinian Legislative Council | NS-PLC | As updated |
Screening Data Points
Data Point | Screening Method |
|---|---|
๐ Full Name | Exact and fuzzy matching |
๐ Date of Birth | Exact matching |
๐ Country | Country-based sanctions |
๐ Address | Address matching |
๐ข ID Numbers | Passport, national ID matching |
๐ข Entity Name | Entity and alias matching |
๐ Wallet Address | Blockchain address screening |
B. โ ๏ธ Hit Handling Procedures
Match Classification
Match Type | Confidence | Action |
|---|---|---|
๐ด Exact Match | >95% | Immediate block, compliance review |
๐ก Potential Match | 75-95% | Hold, manual review required |
๐ข False Positive | <75% | Document and clear |
Hit Resolution Process
โโโโโโโโโโโโโโโโโโโโโโโ
โ OFAC Screening โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Match Detected โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Automatic Block โ
โ (Transaction/Account) โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Compliance Review โ
โ โข Verify match data โ
โ โข Additional docs โ
โ โข OFAC SDN details โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โโโโโโดโโโโโ
โ โ
True False
Match Positive
โ โ
โผ โผ
โโโโโโโโโโโ โโโโโโโโโโโ
โPermanentโ โClear & โ
โBlock + โ โDocument โ
โReport โ โ โ
โโโโโโโโโโโ โโโโโโโโโโโ
True Match Procedures
Step | Action | Timeline |
|---|---|---|
1 | Immediate Block | Automatic |
2 | Freeze Assets | Within 1 hour |
3 | Notify Compliance Officer | Within 1 hour |
4 | OFAC Report | Within 10 business days |
5 | Maintain Block | Until OFAC guidance |
C. ๐ Prohibited Jurisdictions
Comprehensively Sanctioned Countries
Country | Program | Restriction Level |
|---|---|---|
๐ฐ๐ต North Korea | North Korea Sanctions | Complete prohibition |
๐ฎ๐ท Iran | Iran Sanctions | Complete prohibition |
๐ธ๐พ Syria | Syria Sanctions | Complete prohibition |
๐จ๐บ Cuba | Cuba Sanctions | Complete prohibition |
๐ท๐บ Crimea Region | Ukraine Sanctions | Complete prohibition |
Restricted Jurisdictions (Enhanced Due Diligence)
Region | Restriction | Action |
|---|---|---|
๐ท๐บ Russia | Sectoral sanctions | Case-by-case review |
๐ง๐พ Belarus | Targeted sanctions | Enhanced screening |
๐ป๐ช Venezuela | Sectoral sanctions | Enhanced screening |
๐ฒ๐ฒ Myanmar | Targeted sanctions | Enhanced screening |
VII. TRANSFER HOOK INTEGRATION
A. ๐ Real-Time Compliance Verification
Compliance Checks on Every Transaction
Check | Verification | Action on Failure |
|---|---|---|
๐ชช KYC Status | Verify sender/receiver KYC complete | Block transaction |
๐๏ธ Accreditation | Verify ST22 buyer is accredited | Block transaction |
๐ซ OFAC | Screen both parties against sanctions | Block transaction |
๐ Wallet Limits | Verify receiver won't exceed 4.99% | Block transaction |
๐ฆ Custody | Verify 1:1 backing exists | Block transaction |
โฐ Vesting | Verify sender's tokens are vested | Block transaction |
Transfer Hook Compliance Flow
โโโโโโโโโโโโโโโโโโโโโโโ
โ Transfer Initiated โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ KYC Verification โ
โ โข Sender verified? โ
โ โข Receiver verified? โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
Pass? โโโโ No โโโ BLOCK
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Accreditation Check โ
โ (ST22 only) โ
โ โข Buyer accredited? โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
Pass? โโโโ No โโโ BLOCK
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ OFAC Screening โ
โ โข Sender screened โ
โ โข Receiver screened โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
Pass? โโโโ No โโโ BLOCK
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Wallet Limit Check โ
โ โข Will receiver โ
โ exceed 4.99%? โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
Pass? โโโโ No โโโ BLOCK
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ Custody Verification โ
โ โข 1:1 backing exists? โ
โโโโโโโโโโโโฌโโโโโโโโโโโ
โ
Pass? โโโโ No โโโ BLOCK
โ
โผ
โโโโโโโโโโโโโโโโโโโโโโโ
โ TRANSACTION โ
โ APPROVED โ
โโโโโโโโโโโโโโโโโโโโโโโ
B. ๐ Compliance Status Codes
Status Codes Stored On-Chain
Code | Status | Trading Allowed |
|---|---|---|
| Not verified | โ No |
| KYC pending | โ No |
| KYC complete, not accredited | OTCM only |
| KYC complete, accredited | โ ST22 + OTCM |
| KYC expired | โ No |
| OFAC blocked | โ No |
| Account suspended | โ No |
| Account closed | โ No |
VIII. TRAINING REQUIREMENTS
A. ๐ Staff Training Program
Required Training by Role
Role | Training Modules | Frequency |
|---|---|---|
๐ค All Staff | AML Awareness, OFAC Basics | Annual |
๐ KYC Analysts | CIP, Document Verification, EDD | Annual + updates |
๐๏ธ Accreditation Analysts | Rule 501, 506(c), Verification Methods | Annual + updates |
๐ต Transaction Monitoring | Red Flags, SAR Filing, Investigation | Annual + updates |
๐จโ๐ผ Compliance Officers | Full program, regulatory updates | Quarterly |
Training Documentation
Element | Requirement |
|---|---|
๐ Attendance Records | Document all attendees |
โ Completion Verification | Test or acknowledgment |
๐ Date Records | Training dates documented |
๐ Materials Retention | Keep training materials |
๐ Update Training | When regulations change |
IX. AUDIT AND TESTING
A. ๐ Independent Testing Requirements
Annual Independent Audit
Component | Testing Scope |
|---|---|
๐ชช KYC/CIP | Sample customer files for completeness |
๐๏ธ Accreditation | Sample verification files |
๐ซ OFAC | Screening effectiveness testing |
๐ Transaction Monitoring | Alert generation and disposition |
๐ SAR Process | Filing timeliness and quality |
๐ Record Keeping | Retention compliance |
๐ Training | Training program effectiveness |
Testing Schedule
Test Type | Frequency | Performed By |
|---|---|---|
๐ Independent Audit | Annual | External auditor |
๐ Internal Testing | Quarterly | Compliance team |
๐ซ OFAC Testing | Monthly | Automated + manual |
๐ Transfer Hook Testing | Continuous | Automated |
X. RECORD RETENTION SUMMARY
๐ Retention Requirements by Category
Record Type | Retention Period | Regulatory Basis |
|---|---|---|
๐ชช KYC Records | 5 years after account closure | BSA |
๐ข KYB Records | 5 years after relationship ends | BSA |
๐ต Transaction Records | 7 years | Securities laws |
๐๏ธ Accreditation Records | 5 years | SEC Rule 506(c) |
๐ซ OFAC Screening | 5 years | OFAC |
๐ SAR Filings | 5 years | BSA |
๐ต CTR Filings | 5 years | BSA |
๐ง Correspondence | 5 years | BSA |
๐ Training Records | 5 years | BSA |
๐ Audit Reports | 5 years | BSA |
XI. CONTACT INFORMATION
๐ Compliance Contacts
Contact | Responsibility | |
|---|---|---|
๐ก๏ธ Compliance Officer | compliance@otcm.io | Overall compliance program |
๐ชช KYC Team | kyc@otcm.io | Customer verification |
๐๏ธ Accreditation Team | accreditation@otcm.io | Accredited investor verification |
๐ต AML Team | aml@otcm.io | Transaction monitoring, SAR |
โ๏ธ Legal Department | legal@otcm.io | Legal questions |
๐ Document Information
Field | Value |
|---|---|
๐ Document Version | 1.0 |
๐ Effective Date | January 2026 |
๐ Jurisdiction | Federal (United States) |
๐๏ธ Regulatory Framework | BSA, FinCEN, SEC, OFAC |
๐ Review Frequency | Annual (or upon regulatory change) |
โ ๏ธ Disclaimers
Disclaimer | Description |
|---|---|
๐ Internal Use | This document is for internal compliance operations |
๐ Subject to Change | Procedures may be updated as regulations change |
๐จโโ๏ธ Not Legal Advice | Consult counsel for specific legal questions |
โ๏ธ Regulatory Compliance | Designed to meet but not exceed regulatory requirements |
ยฉ 2026 OTCM Protocol, Inc. | All Rights Reserved
This document establishes compliance procedures for KYC, AML, KYB, and Accredited Investor verification pursuant to SEC Category 1 framework, Bank Secrecy Act, and OFAC requirements.