{"id":53682,"date":"2025-12-12T15:35:42","date_gmt":"2025-12-12T15:35:42","guid":{"rendered":"https:\/\/my.legal500.com\/developments\/?post_type=legal_developments&#038;p=53682"},"modified":"2025-12-12T15:35:42","modified_gmt":"2025-12-12T15:35:42","slug":"amlas-new-bar-for-crypto-what-eu-facing-casps-must-build-now-and-how-liechtenstein-can-lead","status":"publish","type":"legal_developments","link":"https:\/\/my.legal500.com\/developments\/thought-leadership\/amlas-new-bar-for-crypto-what-eu-facing-casps-must-build-now-and-how-liechtenstein-can-lead\/","title":{"rendered":"AMLA\u2019s New Bar for Crypto: What EU-Facing CASPs Must Build Now (and How Liechtenstein Can Lead)"},"content":{"rendered":"<p><strong>The European Union\u2019s new Anti-Money Laundering Authority (AMLA) is not simply another acronym in the alphabet soup of financial regulation; it is the linchpin of a redesigned supervisory architecture which, taken together with the Single Rulebook Anti-Money Laundering Regulation (AMLR), the Sixth AML Directive (6AMLD), the Funds\/crypto \u201ctravel rule\u201d, and MiCA\u2019s prudential and conduct regime for crypto-asset service providers (CASPs), will raise the standard of AML\/CFT controls from a fragmented, member-state-by-member-state patchwork to a consistently enforceable baseline\u2014and will do so in a manner that expects crypto businesses to be \u201cday-one ready\u201d, not aspirationally compliant at some indefinite future milestone.<\/strong><\/p>\n<p><!--more--><\/p>\n<p>On 1 July 2025, AMLA\u2019s powers came into force, and within days the Authority underscored\u2014in a dedicated crypto press note\u2014that firms active in crypto-asset activities must operate with \u201cstrong protections\u201d against money laundering and terrorist financing; the message, which dovetails with MiCA\u2019s hand-off to national competent authorities (NCAs) for licensing and day-to-day oversight, is that supervisory convergence will be driven from Frankfurt and measured against a risk-based methodology that AMLA is mandated to develop and hard-wire into binding technical standards.<\/p>\n<p>This is not theory: Regulation (EU) 2024\/1620 (the AMLA Regulation) fixes Frankfurt am Main as the Authority\u2019s seat and equips AMLA to draft regulatory\/implementing technical standards, issue guidelines, and, where appropriate, step in directly with selected high-risk obliged entities; it also tasks AMLA with coordinating FIUs through joint analyses and hosting FIU.net, thereby linking supervisory expectations to operational data flows that CASPs will increasingly have to produce on demand. <a href=\"https:\/\/eur-lex.europa.eu\/eli\/reg\/2024\/1620\/oj\/eng\">EUR-Lex<\/a><\/p>\n<p>Running in parallel is the Single Rulebook AML Regulation (EU) 2024\/1624, which\u2014unlike prior directives\u2014will apply directly across the Union and, crucially for crypto, expressly brings CASPs into the list of \u201cobliged entities\u201d; application is set for 10 July 2027 (with certain sectoral deferrals), leaving a finite window for firms to redesign frameworks, automate controls, and evidence effectiveness before the regulation bites.<\/p>\n<p><strong>What this means for CASPs under MiCA\u2014substance over slogans<\/strong><\/p>\n<p>MiCA (Regulation (EU) 2023\/1114) standardises authorisation and ongoing conduct for CASPs, with ESMA publishing supervisory briefing to drive consistent authorisation practices across NCAs; however, MiCA is not an AML rulebook, and AMLA has made clear that convergence on AML\/CFT must accompany MiCA licensing from day one, not after-the-fact, which in practice requires an integrated controls architecture that maps MiCA obligations (governance, conflict management, safeguarding of client crypto-assets, ICT resilience) to AML\/CFT duties (risk assessment, KYC\/KYB, monitoring, sanctions, reporting) with traceable accountability at senior management level.<\/p>\n<p>Two further pillars tighten the screws. First, the recast Funds Transfer Regulation (Regulation (EU) 2023\/1113) extends the \u201ctravel rule\u201d to crypto-asset transfers; the EBA\u2019s final guidelines specify the information that must accompany such transfers and set concrete application\/compliance dates, meaning CASPs need interoperable data pipelines\u2014both inbound and outbound\u2014to avoid settlement friction and regulatory findings. Second, FATF has reiterated, repeatedly, that jurisdictions and VASPs are expected to operationalise Recommendation 15 (including the travel rule), with particular attention to DeFi touchpoints and stablecoin use cases\u2014benchmarks that EU supervisors increasingly reference.<\/p>\n<p><strong>Liechtenstein\u2019s position: already strong, now strategically advantageous<\/strong><\/p>\n<p>Liechtenstein, as an EEA\/EFTA jurisdiction with a mature token framework (the TVTG\u2014Token and TT Service Provider Act\u2014effective since 1 January 2020), has long implemented FATF standards and placed VT-service providers under FMA registration and ad-hoc supervision; that alignment, coupled with EEA-relevant EU instruments (including the travel rule regulation), positions Liechtenstein-based providers to build AMLA-grade systems that interoperate with EU supervisory expectations.<\/p>\n<p><strong>A pragmatic build plan for \u201cAMLA-ready\u201d crypto compliance<\/strong><\/p>\n<ul>\n<li><strong>Risk taxonomy and enterprise-wide ML\/TF assessment,<\/strong> refreshed at least annually, tying business model, asset types (including e-money tokens and asset-referenced tokens where relevant), customer profiles, and geographies to specific mitigating controls, with explicit treatment of sanctions-evasion risk as a predicate concern highlighted by EU legislators.<\/li>\n<li><strong>Travel-rule implementation without \u201csunrise gaps\u201d:<\/strong> end-to-end testing with counterparties, automated lookup\/handshake for originator\/beneficiary information, exception handling for unhosted wallets, and evidence that transfers are blocked\/flagged when mandatory data are unavailable\u2014documented against the EBA guidelines.<\/li>\n<li><strong>MiCA<\/strong><strong>\u2194<\/strong><strong>AML control mapping,<\/strong> so that authorisation artefacts (organisation, internal control functions, safeguarding arrangements) align with AMLR obligations (KYC, monitoring, STR\/SAR reporting, record-keeping), producing a single supervisory narrative for NCAs and, ultimately, AMLA peer comparisons.<\/li>\n<li><strong>Data governance ready for FIU.net-driven expectations:<\/strong> standardised schemas for transactions, counterparties, and screening results; lineage mapping from source systems to regulatory reports; reproducible analytics supporting STRs and thematic reviews.<\/li>\n<li><strong>Board accountability and \u201cfit-and-proper\u201d coherence:<\/strong> minutes and MI packs that show risk appetite, model validation, and remediation tracking; documented training and role clarity for AMLRO\/MLRO, with escalation channels into executive and board committees.<\/li>\n<\/ul>\n<p><em>Sources: European Anti-Money Laundering Authority. (2025, July 23). AMLA expects high standards against financial crime in the crypto sector.<\/em><\/p>\n<p><strong>Key findings &amp; core statements (executive bullets)<\/strong><\/p>\n<ul>\n<li><strong>AMLA is live and crypto-focused:<\/strong> since <strong>1 July 2025<\/strong>, AMLA has signalled high expectations for crypto firms and will drive supervisory convergence from Frankfurt.<\/li>\n<li><strong>The Single Rulebook (AMLR) brings CASPs squarely into scope<\/strong> and <strong>applies from 10 July 2027<\/strong>, replacing divergent, directive-led implementation with directly applicable rules.<\/li>\n<li><strong>Travel-rule obligations already apply to crypto transfers,<\/strong> with EBA guidelines specifying required data and processes; supervisors expect working solutions now.<\/li>\n<li><strong>MiCA licensing must be \u201cAML-complete\u201d from day one,<\/strong> with ESMA pushing consistent authorisation practices and AMLA expecting effective systems at authorisation\u2014not later.<\/li>\n<li><strong>Liechtenstein\u2019s TVTG offers a strong, FATF-aligned foundation<\/strong> for EU-facing CASPs, but AMLA\/AMLR promotes a new level-playing field.<\/li>\n<\/ul>\n","protected":false},"featured_media":0,"template":"","class_list":["post-53682","legal_developments","type-legal_developments","status-publish","hentry"],"acf":[],"_links":{"self":[{"href":"https:\/\/my.legal500.com\/developments\/wp-json\/wp\/v2\/legal_developments\/53682","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/my.legal500.com\/developments\/wp-json\/wp\/v2\/legal_developments"}],"about":[{"href":"https:\/\/my.legal500.com\/developments\/wp-json\/wp\/v2\/types\/legal_developments"}],"wp:attachment":[{"href":"https:\/\/my.legal500.com\/developments\/wp-json\/wp\/v2\/media?parent=53682"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}