Skip to main content

๐Ÿ” KYC, AML, KYB, & ACCREDITED INVESTOR VERIFICATION PROCEDURES

OTCM Protocol Compliance Operations Manual


โœ… SEC CATEGORY 1 COMPLIANT | Issuer-Sponsored Tokenized Securities pursuant to SEC Division of Corporation Finance, Division of Investment Management, and Division of Trading and Markets Joint Statement dated January 28, 2026


I. EXECUTIVE SUMMARY

๐Ÿ“‹ Document Purpose

This document establishes the comprehensive compliance procedures for OTCM Protocol's verification and screening requirements under SEC Category 1 framework, federal securities laws, and anti-money laundering regulations.


๐Ÿ” Verification Framework Overview

Verification Type

Applicability

Regulatory Basis

๐Ÿชช

KYC

(Know Your Customer)

All platform users

Bank Secrecy Act, FinCEN

๐Ÿข

KYB

(Know Your Business)

Entity investors & issuers

BSA, SEC regulations

๐Ÿ’ต

AML

(Anti-Money Laundering)

All transactions

Bank Secrecy Act, USA PATRIOT Act

๐ŸŽ–๏ธ

Accredited Investor

ST22 purchasers only

SEC Rule 501, Regulation D 506(c)

๐Ÿšซ

OFAC Screening

All users & transactions

U.S. Treasury OFAC regulations


๐ŸŽฏ Compliance Objectives

Objective

Description

โš–๏ธ

Regulatory Compliance

Meet all federal and state compliance requirements

๐Ÿ›ก๏ธ

Investor Protection

Ensure only qualified investors access ST22 securities

๐Ÿšซ

Crime Prevention

Prevent money laundering, terrorist financing, sanctions evasion

๐Ÿ“‹

Record Keeping

Maintain complete audit trail for regulatory review

๐Ÿ”—

Transfer Hook Integration

Enable real-time compliance verification on every transaction


II. KNOW YOUR CUSTOMER (KYC) PROCEDURES

A. ๐Ÿชช Individual Customer Identification Program (CIP)

Required Information Collection

All individual users must provide the following information before accessing platform services:

Data Element

Requirement

Verification Method

๐Ÿ“

Full Legal Name

Required

Government ID match

๐Ÿ“…

Date of Birth

Required

Government ID match

๐Ÿ 

Residential Address

Required

Document verification

๐Ÿ”ข

SSN/TIN

Required (US) / Passport (Non-US)

Database verification

๐Ÿ“ง

Email Address

Required

Email confirmation

๐Ÿ“ฑ

Phone Number

Required

SMS verification

๐ŸŒ

Country of Citizenship

Required

Government ID

๐Ÿณ๏ธ

Country of Residence

Required

Address verification


Identity Verification Tiers

Tier

Access Level

Requirements

Verification

Tier 1: Basic

Platform browsing only

Email, phone

Automated

Tier 2: Standard

OTCM Utility Token only

Tier 1 + ID document

Automated + manual review

Tier 3: Enhanced

ST22 Securities access

Tier 2 + accreditation

Manual verification required


Acceptable Identity Documents

Primary Documents (One Required)

Document Type

Requirements

Validity

๐Ÿชช

Government-Issued Photo ID

Current, unexpired

Must be valid

๐Ÿ›‚

Passport

Machine-readable zone

Must be valid

๐Ÿš—

Driver's License

State/government issued

Must be valid

๐Ÿชช

National ID Card

Government issued with photo

Must be valid

Secondary Documents (One Required for Enhanced)

Document Type

Requirements

Age Limit

๐Ÿ“„

Utility Bill

Shows name and address

< 90 days

๐Ÿฆ

Bank Statement

Shows name and address

< 90 days

๐Ÿ“‹

Government Correspondence

Tax document, official letter

< 12 months

๐Ÿ 

Mortgage Statement

Shows name and property address

< 90 days


Verification Process Flow

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  User Registration  โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
         โ”‚
         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Collect Basic Info  โ”‚
โ”‚  (Name, DOB, Email)  โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
         โ”‚
         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Document Upload    โ”‚
โ”‚  (ID + Selfie)      โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
         โ”‚
         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Automated Check    โ”‚
โ”‚  โ€ข Document validityโ”‚
โ”‚  โ€ข Face match       โ”‚
โ”‚  โ€ข Liveness check   โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
         โ”‚
    โ”Œโ”€โ”€โ”€โ”€โ”ดโ”€โ”€โ”€โ”€โ”
    โ”‚         โ”‚
   Pass      Fail
    โ”‚         โ”‚
    โ–ผ         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”  โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚ OFAC  โ”‚  โ”‚Manual โ”‚
โ”‚Screen โ”‚  โ”‚Review โ”‚
โ””โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”˜  โ””โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”˜
    โ”‚          โ”‚
    โ–ผ          โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Final Decision    โ”‚
โ”‚  Approve/Reject    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

Document Verification Standards

Check

Standard

Action on Failure

๐Ÿ“ท

Image Quality

Minimum 300 DPI, all text readable

Request re-upload

โœ…

Document Authenticity

Security features verified

Manual review

๐Ÿ‘ค

Face Match

>95% confidence score

Manual review

๐ŸŽญ

Liveness Detection

Anti-spoofing verification

Reject or video verification

๐Ÿ“…

Expiration Check

Document must be current

Reject, request valid document

๐Ÿ”

Tampering Detection

No signs of alteration

Reject, flag for review


B. ๐Ÿ”„ Ongoing KYC Monitoring

Periodic Review Schedule

Risk Level

Review Frequency

Trigger Events

๐ŸŸข

Low Risk

Every 24 months

Address change, large transaction

๐ŸŸก

Medium Risk

Every 12 months

Unusual activity, country change

๐Ÿ”ด

High Risk

Every 6 months

Watchlist proximity, PEP status

Continuous Monitoring Triggers

Trigger

Action Required

๐Ÿ“

Address Change

Re-verify with new proof of address

๐ŸŒ

Country Change

Full re-verification + jurisdiction check

๐Ÿ“Š

Unusual Transaction Pattern

Enhanced due diligence review

๐Ÿšจ

Watchlist Match

Immediate account freeze + investigation

๐Ÿ“…

Document Expiration

Request updated documentation

๐Ÿ’ฐ

Large Transaction

Enhanced verification for transactions >$10,000


III. KNOW YOUR BUSINESS (KYB) PROCEDURES

A. ๐Ÿข Entity Verification Requirements

Entity Types and Requirements

Entity Type

Required Documents

Beneficial Owner Threshold

๐Ÿข

Corporation

Articles of Incorporation, Certificate of Good Standing

25%+ ownership

๐Ÿค

LLC

Operating Agreement, Articles of Organization

25%+ ownership

๐Ÿฆ

Trust

Trust Agreement, Trustee identification

All trustees

๐Ÿ’ผ

Partnership

Partnership Agreement, GP identification

25%+ ownership

๐Ÿ›๏ธ

Fund/Investment Vehicle

Formation documents, Manager identification

25%+ ownership or control


Required Entity Documentation

Formation Documents

Document

Purpose

Verification

๐Ÿ“œ

Articles of Incorporation/Organization

Verify legal formation

Secretary of State records

โœ…

Certificate of Good Standing

Verify current status

< 90 days old

๐Ÿ“‹

Operating Agreement/Bylaws

Verify governance structure

Manual review

๐Ÿ”ข

EIN/Tax ID Documentation

Verify tax status

IRS verification

Ownership Documents

Document

Purpose

Requirement

๐Ÿ“Š

Ownership Chart

Identify beneficial owners

All levels until individuals identified

๐Ÿ“‹

Shareholder Registry

Verify ownership percentages

Current as of verification date

๐Ÿ›๏ธ

Board Resolution

Authorize account opening

Signed by authorized officers

โœ๏ธ

Authorized Signers List

Identify who can transact

With specimen signatures


Beneficial Owner Identification

Definition (FinCEN CDD Rule)

Category

Definition

๐Ÿ‘ค

Ownership Prong

Each individual who owns 25% or more of the entity

๐ŸŽ›๏ธ

Control Prong

One individual with significant responsibility to control the entity

Required Information for Each Beneficial Owner

Data Element

Requirement

๐Ÿ“

Full Legal Name

Required

๐Ÿ“…

Date of Birth

Required

๐Ÿ 

Residential Address

Required

๐Ÿ”ข

SSN/TIN or Passport

Required

๐Ÿ“Š

Ownership Percentage

Required

๐ŸŽ›๏ธ

Control Role

If applicable


Entity Verification Process

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Entity Application    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Document Collection   โ”‚
โ”‚  โ€ข Formation docs      โ”‚
โ”‚  โ€ข Ownership docs      โ”‚
โ”‚  โ€ข Authorization       โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Entity Verification   โ”‚
โ”‚  โ€ข State records check โ”‚
โ”‚  โ€ข EIN verification    โ”‚
โ”‚  โ€ข Good standing       โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Beneficial Owner ID   โ”‚
โ”‚  โ€ข Identify all 25%+   โ”‚
โ”‚  โ€ข Identify controller โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Individual KYC        โ”‚
โ”‚  (Each beneficial owner)โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  OFAC Screening        โ”‚
โ”‚  โ€ข Entity name         โ”‚
โ”‚  โ€ข All beneficial ownersโ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Final Approval        โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

B. ๐Ÿญ Issuer KYB Requirements (Enhanced)

Issuers seeking to tokenize securities on OTCM Protocol must complete enhanced KYB verification:

Issuer-Specific Requirements

Requirement

Description

Verification

๐Ÿ“œ

Corporate Formation

Full formation documents

Secretary of State

๐Ÿ“Š

Cap Table

Complete ownership structure

Manual review

๐Ÿ‘ฅ

Officer/Director List

All C-suite and board members

Individual KYC each

๐Ÿ’ผ

Business Description

Nature of business operations

Due diligence review

๐Ÿ“‹

Financial Statements

Recent financial information

CPA review if available

โš–๏ธ

Litigation History

Pending or recent litigation

Legal database search

๐Ÿ›๏ธ

Regulatory Status

Any regulatory actions

FINRA/SEC/State check

๐Ÿ“ˆ

15c2-11 Status

OTC Markets status

OTC Markets verification

Issuer Due Diligence Checklist

Category

Items

Status

Corporate

Articles, Bylaws, Good Standing, EIN

โ˜

Ownership

Cap table, Beneficial owners (all levels), Control persons

โ˜

Management

Officer bios, Director bios, KYC on each

โ˜

Financial

Recent financials, Material liabilities, Pending litigation

โ˜

Regulatory

SEC filings history, State registrations, FINRA/regulatory actions

โ˜

Operational

Business description, Material contracts, Key customers

โ˜

Series M Specific

Board resolution, Certificate of Designation draft

โ˜


IV. ANTI-MONEY LAUNDERING (AML) PROCEDURES

A. ๐Ÿ’ต AML Program Overview

Program Components (BSA Requirements)

Component

Description

Responsible Party

๐Ÿ“‹

Written Policies

Documented AML procedures

Compliance Officer

๐Ÿ‘ค

Compliance Officer

Designated BSA/AML officer

Named individual

๐ŸŽ“

Training Program

Staff training on AML

Compliance Department

๐Ÿ”

Independent Testing

Annual independent audit

External auditor

๐Ÿ“Š

Monitoring System

Transaction monitoring

Automated + manual


BSA/AML Compliance Officer

Responsibility

Description

๐Ÿ“‹

Program Oversight

Overall AML program management

๐Ÿ“Š

SAR Filing

Suspicious Activity Report decisions

๐ŸŽ“

Training

Ensure staff training completion

๐Ÿ”

Testing Oversight

Coordinate independent testing

๐Ÿ“ž

Regulatory Liaison

Point of contact for FinCEN, examiners

๐Ÿ“

Policy Updates

Keep policies current with regulations

Designated Compliance Officer: [Name]
Contact: compliance@otcm.io


B. ๐Ÿ“Š Transaction Monitoring

Monitoring Parameters

Parameter

Threshold

Action

๐Ÿ’ฐ

Large Transaction

>$10,000

Enhanced review

๐Ÿ”„

Structuring Pattern

Multiple transactions near $10,000

SAR consideration

๐Ÿ“ˆ

Unusual Volume

>300% of normal activity

Enhanced review

๐ŸŒ

High-Risk Jurisdiction

FATF grey/blacklist countries

Enhanced due diligence

โšก

Rapid Movement

In-out within 24 hours

Enhanced review

๐Ÿ”—

Chain Transactions

Multiple rapid transfers

Pattern analysis


Red Flag Indicators

Identity Red Flags

Red Flag

Risk Level

Action

๐ŸŽญ

Inconsistent Information

High

Verification hold

๐Ÿ“‹

Reluctance to Provide Info

High

Account suspension

๐Ÿ”„

Frequent Info Changes

Medium

Enhanced monitoring

๐Ÿ“

High-Risk Country Connection

High

Enhanced due diligence

๐Ÿ‘ฅ

Multiple Accounts

Medium

Investigation

Transaction Red Flags

Red Flag

Risk Level

Action

๐Ÿ’ฐ

Structuring

High

SAR filing

๐Ÿ”„

Layering

High

SAR filing

โšก

Rapid In-Out

High

Enhanced review

๐Ÿ“Š

No Economic Purpose

High

Investigation

๐ŸŒ

High-Risk Jurisdiction

High

Enhanced due diligence

๐Ÿ’ฑ

Currency Conversion Patterns

Medium

Enhanced monitoring

Behavioral Red Flags

Red Flag

Risk Level

Action

๐Ÿค

Unusually Secretive

Medium

Enhanced monitoring

๐Ÿ“ž

Third-Party Instructions

High

Verification required

๐Ÿ’ผ

Inconsistent with Profile

High

Investigation

๐Ÿšจ

Urgency Without Explanation

Medium

Enhanced review


C. ๐Ÿ“ Suspicious Activity Reporting (SAR)

SAR Filing Requirements

Requirement

Standard

๐Ÿ’ฐ

Dollar Threshold

$5,000+ involving suspicious activity

โฐ

Filing Deadline

30 days from detection (60 days if no suspect identified)

๐Ÿ“‹

Form

FinCEN Form 111 (BSA E-Filing)

๐Ÿ”’

Confidentiality

SAR existence cannot be disclosed to subject

SAR Decision Matrix

Suspicious Activity Type

Amount

Filing Required

๐ŸŽญ

Identity Fraud

Any

Yes

๐Ÿ’ฐ

Structuring

Any pattern

Yes

๐Ÿงน

Money Laundering

$5,000+

Yes

๐Ÿด

Terrorist Financing

Any

Yes, expedited

๐Ÿ“Š

Market Manipulation

$5,000+

Yes

๐Ÿคฅ

Misrepresentation

$5,000+

Yes

SAR Filing Process

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Suspicious Activity   โ”‚
โ”‚  Detected              โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Initial Assessment    โ”‚
โ”‚  (Within 24 hours)     โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Investigation         โ”‚
โ”‚  โ€ข Transaction review  โ”‚
โ”‚  โ€ข Customer history    โ”‚
โ”‚  โ€ข Pattern analysis    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Compliance Review     โ”‚
โ”‚  (SAR decision)        โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
      โ”Œโ”€โ”€โ”€โ”€โ”ดโ”€โ”€โ”€โ”€โ”
      โ”‚         โ”‚
    File      No File
      โ”‚         โ”‚
      โ–ผ         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”  โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚FinCEN  โ”‚  โ”‚Document โ”‚
โ”‚Filing  โ”‚  โ”‚Decision โ”‚
โ””โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”˜  โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
     โ”‚
     โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Ongoing Monitoring    โ”‚
โ”‚  (90 days minimum)     โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

D. ๐Ÿ’ต Currency Transaction Reporting (CTR)

CTR Requirements

Requirement

Standard

๐Ÿ’ฐ

Threshold

Cash transactions >$10,000

โฐ

Filing Deadline

15 days from transaction

๐Ÿ“‹

Form

FinCEN Form 112

๐Ÿ”—

Aggregation

Multiple transactions same day same person

Note: Most OTCM Protocol transactions are crypto-based, not cash. CTR requirements apply when fiat currency is involved in onboarding/offboarding.


E. ๐Ÿ“‹ Record Retention Requirements

AML Records Retention

Record Type

Retention Period

Format

๐Ÿชช

Customer Identification

5 years after account closure

Electronic

๐Ÿ’ฐ

Transaction Records

5 years

Electronic

๐Ÿ“

SAR Filings

5 years

Electronic

๐Ÿ’ต

CTR Filings

5 years

Electronic

๐Ÿ“ง

Correspondence

5 years

Electronic

๐ŸŽ“

Training Records

5 years

Electronic

๐Ÿ”

Audit Reports

5 years

Electronic


V. ACCREDITED INVESTOR VERIFICATION

A. ๐ŸŽ–๏ธ Regulatory Framework

Applicable Regulations

Regulation

Requirement

๐Ÿ“œ

SEC Rule 501

Defines accredited investor categories

๐Ÿ“‹

Regulation D 506(c)

Requires verification for general solicitation offerings

โš–๏ธ

JOBS Act

Expanded accredited investor definition

๐Ÿ›๏ธ

SEC 2020 Amendments

Added professional certifications


Why Verification Is Required

Factor

Explanation

๐Ÿ“œ

Regulation D 506(c)

ST22 offerings use general solicitation (public marketing)

โš–๏ธ

Issuer Liability

Issuers must take "reasonable steps" to verify

๐Ÿ›ก๏ธ

Investor Protection

Ensures investors can bear investment risk

๐Ÿ›๏ธ

SEC Enforcement

Non-compliance risks securities violations

โš ๏ธ Critical: ST22 Tokenized Securities are offered under Regulation D Rule 506(c), which requires verification of accredited investor statusโ€”self-certification alone is NOT sufficient.


B. ๐Ÿ“‹ Accredited Investor Categories

Individual Investors (Natural Persons)

Category

Qualification Criteria

Verification Method

๐Ÿ’ฐ

Income Test

$200,000+ individual income in each of past 2 years, with reasonable expectation of same in current year

Tax returns, W-2s, pay stubs

๐Ÿ‘ซ

Joint Income Test

$300,000+ joint income with spouse in each of past 2 years

Joint tax returns

๐Ÿฆ

Net Worth Test

$1,000,000+ net worth (excluding primary residence)

Asset statements, liability disclosure

๐Ÿ“œ

Professional Certification

Series 7, 65, or 82 license in good standing

FINRA BrokerCheck

๐Ÿข

Knowledgeable Employee

Executive officer, director, GP, or knowledgeable employee of fund issuer

Employment verification

Entity Investors

Category

Qualification Criteria

Verification Method

๐Ÿฆ

Institutional Investors

Banks, insurance companies, registered investment companies, BDCs, SBICs

Registration verification

๐Ÿ’ผ

Broker-Dealers

SEC-registered broker-dealers

FINRA registration

๐Ÿ“Š

Investment Advisers

SEC or state-registered RIAs

SEC/State registration

๐Ÿ›๏ธ

Entity Assets

Entity with $5,000,000+ in assets not formed to acquire securities

Financial statements

๐Ÿ‘ฅ

All Accredited Owners

Entity where all equity owners are accredited investors

Verify each owner

๐Ÿ’ฐ

Family Office

Family office with $5,000,000+ AUM and sophisticated investor

Documentation + assessment

๐Ÿข

Family Client

Family client of qualifying family office

Family office verification


C. โœ… Verification Methods

Income Verification

Method

Documents Required

Verification Steps

๐Ÿ“„

Tax Returns

IRS Form 1040 (2 years)

Review AGI or taxable income lines

๐Ÿ“‹

W-2 Forms

W-2s from past 2 years

Verify employer, income amounts

๐Ÿ’ต

Pay Stubs

Recent pay stubs + written confirmation

Calculate annualized income

๐Ÿ“

CPA Letter

Written verification from licensed CPA

Verify CPA credentials

๐Ÿ’ผ

Attorney Letter

Written verification from licensed attorney

Verify bar membership

๐Ÿฆ

Broker Letter

Written verification from broker-dealer, RIA, or bank

Verify firm registration

Income Verification Process

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Income Verification   โ”‚
โ”‚  Selected              โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Document Upload       โ”‚
โ”‚  โ€ข Tax returns OR      โ”‚
โ”‚  โ€ข W-2s + pay stubs OR โ”‚
โ”‚  โ€ข Third-party letter  โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Verification Review   โ”‚
โ”‚  โ€ข Calculate income    โ”‚
โ”‚  โ€ข Verify authenticity โ”‚
โ”‚  โ€ข Check 2-year historyโ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Reasonable Expectationโ”‚
โ”‚  Assessment            โ”‚
โ”‚  (Current year income) โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Approval/Rejection    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

Net Worth Verification

Method

Documents Required

Verification Steps

๐Ÿฆ

Bank Statements

Recent statements (< 90 days)

Sum liquid assets

๐Ÿ“ˆ

Brokerage Statements

Recent statements (< 90 days)

Sum investment assets

๐Ÿ 

Real Estate Appraisals

Licensed appraisal (< 12 months)

Exclude primary residence value

๐Ÿ’ฐ

Retirement Accounts

401(k), IRA statements

Include in asset total

๐Ÿ“‹

Liability Disclosure

Written disclosure of liabilities

Subtract from assets

๐Ÿ“

Third-Party Letter

CPA, attorney, broker letter

Verify credentials

Net Worth Calculation

Assets (Include)

Liabilities (Subtract)

โœ… Cash and bank accounts

โž– Mortgages (except primary residence)

โœ… Brokerage accounts

โž– Auto loans

โœ… Retirement accounts

โž– Student loans

โœ… Real estate (except primary residence)

โž– Credit card debt

โœ… Business interests

โž– Personal loans

โœ… Other investments

โž– Other liabilities

โŒ Primary residence (EXCLUDE)

โŒ Primary residence mortgage (EXCLUDE)*

*Primary residence mortgage is excluded UNLESS it exceeds home value or was increased in past 60 days.


Professional Certification Verification

Certification

Verification Source

Process

๐Ÿ“œ

Series 7

FINRA BrokerCheck

Automated lookup

๐Ÿ“œ

Series 65

FINRA BrokerCheck

Automated lookup

๐Ÿ“œ

Series 82

FINRA BrokerCheck

Automated lookup

Verification Process

  1. Investor provides name and CRD number
  2. System queries FINRA BrokerCheck API
  3. Verify license is current and in good standing
  4. Confirm no disciplinary actions affecting status
  5. Approve if license verified

Entity Verification

Entity Type

Verification Method

๐Ÿฆ

Bank

Federal/State charter verification

๐Ÿ“Š

RIA

SEC IARD or state registration

๐Ÿ’ผ

Broker-Dealer

FINRA BrokerCheck

๐Ÿข

$5M+ Entity

Audited financial statements or third-party verification

๐Ÿ‘ฅ

All Accredited Owners

Individual verification of each equity owner


D. ๐Ÿ“‹ Verification Documentation Requirements

Document Retention

Document Type

Retention Period

Format

๐Ÿชช

Identity Documents

5 years after account closure

Secure electronic

๐Ÿ’ฐ

Income Documentation

5 years

Secure electronic

๐Ÿฆ

Net Worth Documentation

5 years

Secure electronic

๐Ÿ“œ

Third-Party Letters

5 years

Secure electronic

โœ…

Verification Decision

5 years

Secure electronic

๐Ÿ“ง

Correspondence

5 years

Secure electronic

Verification Record Contents

Each accredited investor file must contain:

Element

Requirement

โœ…

Verification Method Used

Document which category and method

๐Ÿ“‹

Documents Reviewed

List all documents reviewed

๐Ÿ“…

Verification Date

Date verification completed

๐Ÿ‘ค

Reviewer Identity

Who performed verification

๐Ÿ“

Decision Rationale

Basis for approval/rejection

๐Ÿ”„

Re-verification Date

When next verification due


E. ๐Ÿ”„ Re-verification Requirements

Re-verification Schedule

Transaction Type

Re-verification Requirement

๐Ÿ†•

New Purchase

Verify if >90 days since last verification

๐Ÿ’ฐ

Large Purchase

>$250,000 in single transaction requires current verification

๐Ÿ“…

Annual

Annual re-verification for active investors

๐Ÿ”„

Material Change

Re-verify if investor reports material change

Material Changes Requiring Re-verification

Change Type

Action

๐Ÿ’ผ

Employment Change

Re-verify if income-based qualification

๐Ÿ 

Address Change

Update records, no re-verification unless jurisdiction change

๐Ÿ’ฐ

Financial Change

Re-verify if investor reports significant financial change

๐Ÿ“œ

License Expiration

Re-verify if certification-based qualification


VI. OFAC SANCTIONS SCREENING

A. ๐Ÿšซ Screening Requirements

Screening Obligations

Requirement

Implementation

๐Ÿ†•

Onboarding

Screen all new users against OFAC lists

๐Ÿ”„

Ongoing

Screen against updated lists (daily updates)

๐Ÿ’ฐ

Transactional

Screen counterparties on every transaction

๐Ÿ”—

Transfer Hook Integration

Real-time OFAC check on every ST22 transfer


OFAC Lists Screened

List

Abbreviation

Update Frequency

๐Ÿšซ

Specially Designated Nationals

SDN

Daily

๐Ÿ“‹

Consolidated Sanctions List

Non-SDN

Daily

๐ŸŒ

Sectoral Sanctions

SSI

As updated

๐Ÿ›๏ธ

Foreign Sanctions Evaders

FSE

As updated

๐ŸŽญ

Palestinian Legislative Council

NS-PLC

As updated


Screening Data Points

Data Point

Screening Method

๐Ÿ“

Full Name

Exact and fuzzy matching

๐Ÿ“…

Date of Birth

Exact matching

๐ŸŒ

Country

Country-based sanctions

๐Ÿ 

Address

Address matching

๐Ÿ”ข

ID Numbers

Passport, national ID matching

๐Ÿข

Entity Name

Entity and alias matching

๐Ÿ‘›

Wallet Address

Blockchain address screening


B. โš ๏ธ Hit Handling Procedures

Match Classification

Match Type

Confidence

Action

๐Ÿ”ด

Exact Match

>95%

Immediate block, compliance review

๐ŸŸก

Potential Match

75-95%

Hold, manual review required

๐ŸŸข

False Positive

<75%

Document and clear

Hit Resolution Process

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  OFAC Screening        โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Match Detected        โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Automatic Block       โ”‚
โ”‚  (Transaction/Account) โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Compliance Review     โ”‚
โ”‚  โ€ข Verify match data   โ”‚
โ”‚  โ€ข Additional docs     โ”‚
โ”‚  โ€ข OFAC SDN details    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
      โ”Œโ”€โ”€โ”€โ”€โ”ดโ”€โ”€โ”€โ”€โ”
      โ”‚         โ”‚
   True      False
   Match     Positive
      โ”‚         โ”‚
      โ–ผ         โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”  โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚Permanentโ”‚  โ”‚Clear &  โ”‚
โ”‚Block +  โ”‚  โ”‚Document โ”‚
โ”‚Report   โ”‚  โ”‚         โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜  โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

True Match Procedures

Step

Action

Timeline

1

Immediate Block

Automatic

2

Freeze Assets

Within 1 hour

3

Notify Compliance Officer

Within 1 hour

4

OFAC Report

Within 10 business days

5

Maintain Block

Until OFAC guidance


C. ๐ŸŒ Prohibited Jurisdictions

Comprehensively Sanctioned Countries

Country

Program

Restriction Level

๐Ÿ‡ฐ๐Ÿ‡ต

North Korea

North Korea Sanctions

Complete prohibition

๐Ÿ‡ฎ๐Ÿ‡ท

Iran

Iran Sanctions

Complete prohibition

๐Ÿ‡ธ๐Ÿ‡พ

Syria

Syria Sanctions

Complete prohibition

๐Ÿ‡จ๐Ÿ‡บ

Cuba

Cuba Sanctions

Complete prohibition

๐Ÿ‡ท๐Ÿ‡บ

Crimea Region

Ukraine Sanctions

Complete prohibition

Restricted Jurisdictions (Enhanced Due Diligence)

Region

Restriction

Action

๐Ÿ‡ท๐Ÿ‡บ

Russia

Sectoral sanctions

Case-by-case review

๐Ÿ‡ง๐Ÿ‡พ

Belarus

Targeted sanctions

Enhanced screening

๐Ÿ‡ป๐Ÿ‡ช

Venezuela

Sectoral sanctions

Enhanced screening

๐Ÿ‡ฒ๐Ÿ‡ฒ

Myanmar

Targeted sanctions

Enhanced screening


VII. TRANSFER HOOK INTEGRATION

A. ๐Ÿ”— Real-Time Compliance Verification

Compliance Checks on Every Transaction

Check

Verification

Action on Failure

๐Ÿชช

KYC Status

Verify sender/receiver KYC complete

Block transaction

๐ŸŽ–๏ธ

Accreditation

Verify ST22 buyer is accredited

Block transaction

๐Ÿšซ

OFAC

Screen both parties against sanctions

Block transaction

๐Ÿ“Š

Wallet Limits

Verify receiver won't exceed 4.99%

Block transaction

๐Ÿฆ

Custody

Verify 1:1 backing exists

Block transaction

โฐ

Vesting

Verify sender's tokens are vested

Block transaction


Transfer Hook Compliance Flow

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Transfer Initiated    โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  KYC Verification      โ”‚
โ”‚  โ€ข Sender verified?    โ”‚
โ”‚  โ€ข Receiver verified?  โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
     Pass? โ”œโ”€โ”€โ”€ No โ”€โ”€โ†’ BLOCK
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Accreditation Check   โ”‚
โ”‚  (ST22 only)           โ”‚
โ”‚  โ€ข Buyer accredited?   โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
     Pass? โ”œโ”€โ”€โ”€ No โ”€โ”€โ†’ BLOCK
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  OFAC Screening        โ”‚
โ”‚  โ€ข Sender screened     โ”‚
โ”‚  โ€ข Receiver screened   โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
     Pass? โ”œโ”€โ”€โ”€ No โ”€โ”€โ†’ BLOCK
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Wallet Limit Check    โ”‚
โ”‚  โ€ข Will receiver       โ”‚
โ”‚    exceed 4.99%?       โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
     Pass? โ”œโ”€โ”€โ”€ No โ”€โ”€โ†’ BLOCK
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  Custody Verification  โ”‚
โ”‚  โ€ข 1:1 backing exists? โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ฌโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
           โ”‚
     Pass? โ”œโ”€โ”€โ”€ No โ”€โ”€โ†’ BLOCK
           โ”‚
           โ–ผ
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  TRANSACTION           โ”‚
โ”‚  APPROVED              โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

B. ๐Ÿ“Š Compliance Status Codes

Status Codes Stored On-Chain

Code

Status

Trading Allowed

0x00

Not verified

โŒ No

0x01

KYC pending

โŒ No

0x02

KYC complete, not accredited

OTCM only

0x03

KYC complete, accredited

โœ… ST22 + OTCM

0x04

KYC expired

โŒ No

0x05

OFAC blocked

โŒ No

0x06

Account suspended

โŒ No

0x07

Account closed

โŒ No


VIII. TRAINING REQUIREMENTS

A. ๐ŸŽ“ Staff Training Program

Required Training by Role

Role

Training Modules

Frequency

๐Ÿ‘ค

All Staff

AML Awareness, OFAC Basics

Annual

๐Ÿ”

KYC Analysts

CIP, Document Verification, EDD

Annual + updates

๐ŸŽ–๏ธ

Accreditation Analysts

Rule 501, 506(c), Verification Methods

Annual + updates

๐Ÿ’ต

Transaction Monitoring

Red Flags, SAR Filing, Investigation

Annual + updates

๐Ÿ‘จโ€๐Ÿ’ผ

Compliance Officers

Full program, regulatory updates

Quarterly

Training Documentation

Element

Requirement

๐Ÿ“‹

Attendance Records

Document all attendees

โœ…

Completion Verification

Test or acknowledgment

๐Ÿ“…

Date Records

Training dates documented

๐Ÿ“

Materials Retention

Keep training materials

๐Ÿ”„

Update Training

When regulations change


IX. AUDIT AND TESTING

A. ๐Ÿ” Independent Testing Requirements

Annual Independent Audit

Component

Testing Scope

๐Ÿชช

KYC/CIP

Sample customer files for completeness

๐ŸŽ–๏ธ

Accreditation

Sample verification files

๐Ÿšซ

OFAC

Screening effectiveness testing

๐Ÿ“Š

Transaction Monitoring

Alert generation and disposition

๐Ÿ“

SAR Process

Filing timeliness and quality

๐Ÿ“‹

Record Keeping

Retention compliance

๐ŸŽ“

Training

Training program effectiveness

Testing Schedule

Test Type

Frequency

Performed By

๐Ÿ”

Independent Audit

Annual

External auditor

๐Ÿ“Š

Internal Testing

Quarterly

Compliance team

๐Ÿšซ

OFAC Testing

Monthly

Automated + manual

๐Ÿ”—

Transfer Hook Testing

Continuous

Automated


X. RECORD RETENTION SUMMARY

๐Ÿ“‹ Retention Requirements by Category

Record Type

Retention Period

Regulatory Basis

๐Ÿชช

KYC Records

5 years after account closure

BSA

๐Ÿข

KYB Records

5 years after relationship ends

BSA

๐Ÿ’ต

Transaction Records

7 years

Securities laws

๐ŸŽ–๏ธ

Accreditation Records

5 years

SEC Rule 506(c)

๐Ÿšซ

OFAC Screening

5 years

OFAC

๐Ÿ“

SAR Filings

5 years

BSA

๐Ÿ’ต

CTR Filings

5 years

BSA

๐Ÿ“ง

Correspondence

5 years

BSA

๐ŸŽ“

Training Records

5 years

BSA

๐Ÿ”

Audit Reports

5 years

BSA


XI. CONTACT INFORMATION

๐Ÿ“ž Compliance Contacts

Contact

Email

Responsibility

๐Ÿ›ก๏ธ

Compliance Officer

compliance@otcm.io

Overall compliance program

๐Ÿชช

KYC Team

kyc@otcm.io

Customer verification

๐ŸŽ–๏ธ

Accreditation Team

accreditation@otcm.io

Accredited investor verification

๐Ÿ’ต

AML Team

aml@otcm.io

Transaction monitoring, SAR

โš–๏ธ

Legal Department

legal@otcm.io

Legal questions


๐Ÿ“‹ Document Information

Field

Value

๐Ÿ“„

Document Version

1.0

๐Ÿ“…

Effective Date

January 2026

๐Ÿ“

Jurisdiction

Federal (United States)

๐Ÿ›๏ธ

Regulatory Framework

BSA, FinCEN, SEC, OFAC

๐Ÿ”„

Review Frequency

Annual (or upon regulatory change)


โš ๏ธ Disclaimers

Disclaimer

Description

๐Ÿ“‹

Internal Use

This document is for internal compliance operations

๐Ÿ”„

Subject to Change

Procedures may be updated as regulations change

๐Ÿ‘จโ€โš–๏ธ

Not Legal Advice

Consult counsel for specific legal questions

โš–๏ธ

Regulatory Compliance

Designed to meet but not exceed regulatory requirements


ยฉ 2026 OTCM Protocol, Inc. | All Rights Reserved

This document establishes compliance procedures for KYC, AML, KYB, and Accredited Investor verification pursuant to SEC Category 1 framework, Bank Secrecy Act, and OFAC requirements.