Hong Kong SFC authority has unveiled new guidelines for how licensed crypto platforms handle customer funds, warning that recent failures overseas show the risks of weak custody controls. A new circular issued on August 15 by the Hong Kong SFC…Hong Kong SFC authority has unveiled new guidelines for how licensed crypto platforms handle customer funds, warning that recent failures overseas show the risks of weak custody controls. A new circular issued on August 15 by the Hong Kong SFC…

Hong Kong SFC rolls out new custody standards for crypto platforms

Hong Kong SFC authority has unveiled new guidelines for how licensed crypto platforms handle customer funds, warning that recent failures overseas show the risks of weak custody controls.

Summary
  • The Hong Kong Securities and Futures Commission has issued new mandatory custody standards for crypto.
  • Service providers must apply stringent governance and security measures to safeguard customer funds.
  • The new rules require secure cold wallet infrastructure, robust withdrawal controls, and real-time cybersecurity threat monitoring.

A new circular issued on August 15 by the Hong Kong SFC set out mandatory standards for licensed virtual asset trading platform (VATP) operators in the region. 

The measures cover cold wallet infrastructure, transaction controls, third-party wallet oversight, and real-time threat monitoring, in direct response to the trend of industry hacks and scams, which have led to multi-million dollar losses in recent months. 

Recent reviews of local operators by the commission found that the majority only had “fundamental” measures in place, with gaps that could leave client assets exposed. In light of the discovery, the SFC’s new framework now lays down minimum standards all VATPs must meet.

Hong Kong SFC new rules regime

  • Senior management accountability: Service providers must appoint a designated ‘Responsible Officer or Manager-in-Charge’ to oversee custody operations, ensuring strong governance, internal controls, risk management, and overall compliance in operations.
  • Robust cold wallet infrastructure: Private keys should be generated offline in secure environments, using certified hardware security modules (HSMs) and proper backups. The SFC expects thorough due diligence on HSM providers, ongoing patch and certification management, and avoidance of public smart contracts in cold wallet setups to reduce attack surfaces.
  • Secure wallet operations: Platforms must guard against asset theft through strict withdrawal controls. Withdrawals must go only to whitelisted addresses, with multiple verification steps, segregation of duties, and air-gapped signing devices to prevent tampering or insider abuse.
  • Strict oversight of third-party wallet providers: If a VATP uses an external custody provider, it must apply the same security and governance standards as it would in-house. External custody solutions must pass rigorous due diligence, independent code reviews, and regular disaster recovery drills, with admin access tightly controlled.
  • Real-time threat monitoring: Platforms must run a Security Operations Centre to monitor incidents in real time, track balances, unauthorised access, and adapt alerts based on emerging risks.
  • Staff training and creation of awareness: All staff involved in custody must undergo role-specific security training, including phishing simulations and blind-signing prevention exercises, to strengthen human defenses.

All requirements are effective immediately, with VATPs expected to assess and upgrade their custody frameworks. The new mandate comes as Hong Kong continues to advance its mission to become a global digital hub. 

The first stablecoin bill in its history recently officially came into effect on August 1, creating a licensing regime for issuers. Earlier this year, the government also issued its upgraded policy statement on digital assets, outlining priorities such as regulatory clarity and domestic adoption.

Hong Kong now stands as one of the most pro-crypto regions in Asia and continues to work on cementing its place on the global radar.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now?

Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now?

The post Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now? appeared on BitcoinEthereumNews.com. On the lookout for a Sector – Tech fund? Starting with Putnam Global Technology A (PGTAX – Free Report) should not be a possibility at this time. PGTAX possesses a Zacks Mutual Fund Rank of 4 (Sell), which is based on various forecasting factors like size, cost, and past performance. Objective We note that PGTAX is a Sector – Tech option, and this area is loaded with many options. Found in a wide number of industries such as semiconductors, software, internet, and networking, tech companies are everywhere. Thus, Sector – Tech mutual funds that invest in technology let investors own a stake in a notoriously volatile sector, but with a much more diversified approach. History of fund/manager Putnam Funds is based in Canton, MA, and is the manager of PGTAX. The Putnam Global Technology A made its debut in January of 2009 and PGTAX has managed to accumulate roughly $650.01 million in assets, as of the most recently available information. The fund is currently managed by Di Yao who has been in charge of the fund since December of 2012. Performance Obviously, what investors are looking for in these funds is strong performance relative to their peers. PGTAX has a 5-year annualized total return of 14.46%, and is in the middle third among its category peers. But if you are looking for a shorter time frame, it is also worth looking at its 3-year annualized total return of 27.02%, which places it in the middle third during this time-frame. It is important to note that the product’s returns may not reflect all its expenses. Any fees not reflected would lower the returns. Total returns do not reflect the fund’s [%] sale charge. If sales charges were included, total returns would have been lower. When looking at a fund’s performance, it…
Share
BitcoinEthereumNews2025/09/18 04:05
WazirX founder confirms that the Indian crypto exchange’s dispute with Binance has escalated to formal litigation

WazirX founder confirms that the Indian crypto exchange’s dispute with Binance has escalated to formal litigation

WazirX founder and CEO Nischal Shetty has confirmed that the Indian crypto exchange’s dispute with Binance has escalated to formal litigation. This has raised concerns
Share
Coinstats2025/12/27 05:45
WazirX founder Nischal Shetty says Binance ownership dispute now in litigation

WazirX founder Nischal Shetty says Binance ownership dispute now in litigation

The post WazirX founder Nischal Shetty says Binance ownership dispute now in litigation appeared on BitcoinEthereumNews.com. WazirX founder and CEO Nischal Shetty
Share
BitcoinEthereumNews2025/12/27 05:53