2026-08-20

Added · Updated

Mitigating risks in receiving deposits through simplified eDDA arrangements

Licensed corporations, SFC-licensed virtual asset service providers, and associated entities must assess and mitigate risks associated with simplified Electronic Direct Debit Authorisation (eDDA) arrangements used for receiving client deposits. Firms are required to verify that eDDA setup requests are authorized by the bank account owner, either through payer bank confirmation or by requiring a one-off small-value fund transfer to verify account ownership. Additionally, firms must ensure identification information is properly verified, decline requests where red flags of fraud or unauthorized access are detected, and implement supplementary measures such as transaction limits or step-up authentication commensurate with their risk profile.

Securities and Futures Commission Hong Kong logo

Hong Kong

Securities and Futures Commission Hong Kong

Scan of the document's first page
Share

SFC published 3 documents in the last 30 days — get each new one by email the day it lands.

Read the rest free

Source: Securities and Futures Commission Hong Kong — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from SFC

SFC published 3 documents in the last 30 days. We email you each new one the day it's published.