Politica di Conoscenza del Cliente e Antiriciclaggio
Questa pagina è disponibile solo in lingua inglese.
Introduction
Whalestack's Know Your Customer and Anti-Money Laundering Policy (hereinafter - the “AML/KYC Policy”) is designed to prevent and mitigate possible risks of Whalestack being involved in any kind of illegal activity.
Both international and local regulations require Whalestack to implement effective internal procedures and mechanisms to prevent money laundering, terrorist financing, drug and human trafficking, proliferation of weapons of mass destruction, corruption and bribery and to take action in case of any form of suspicious activity from its Users.
AML/KYC Policy covers the following matters:
- Verification Procedures
- Compliance Officer
- Monitoring Transactions
- Risk Assessment
1. Verification procedures
One of the international standards for preventing illegal activity is customer due diligence (“CDD”). According to CDD, Whalestack establishes its own verification procedures within the standards of anti-money laundering and “Know Your Customer” frameworks.
1.1. Identity verification (Natural Person)
Whalestack’s identity verification procedure requires the User to provide Whalestack with reliable, independent source documents, data or information (e.g., national ID, international passport, bank statement, utility bill). For such purposes Whalestack reserves the right to collect User’s identification information for the AML/KYC Policy purposes.
Whalestack will take steps to confirm the authenticity of documents and information provided by the Users. All legal methods for double-checking identification information will be used and Whalestack reserves the right to investigate certain Users who have been determined to be risky or suspicious.
Whalestack reserves the right to verify User’s identity in an on-going basis, especially when their identification information has been changed or their activity seemed to be suspicious (unusual for the particular User). In addition, Whalestack reserves the right to request up-to-date documents from the Users, even though they have passed identity verification in the past.
User’s identification information will be collected, stored, shared and protected strictly in accordance with the Whalestack’s Privacy Policy and related regulations.
Once the User’s identity has been verified, Whalestack is able to remove itself from potential legal liability in a situation where its Services are used to conduct illegal activity.
1.2. Identity verification (Legal Person)
All of the above except requiring reliable, independent source documents, data or information about the legal person or company (e.g., certificate of incorporation, memorandum and articles of association, certificate of good standing, proof of business)
2. Compliance Officer
The Compliance Officer is the person, duly authorized by Whalestack, whose duty is to ensure the effective implementation and enforcement of the AML/KYC Policy. It is the Compliance Officer’s responsibility to supervise all aspects of Whalestack’s anti-money laundering and counter-terrorist financing, including but not limited to:
- Collecting Users’ identification information.
- Establishing and updating internal policies and procedures for the completion, review, submission and retention of all reports and records required under the applicable laws and regulations.
- Monitoring transactions and investigating any significant deviations from normal activity.
- Implementing a records management system for appropriate storage and retrieval of documents, files, forms and logs.
- Updating risk assessment regularly.
- Providing law enforcement with information as required under the applicable laws and regulations.
The Compliance Officer is entitled to interact with law enforcement, which are involved in prevention of money laundering, terrorist financing and other illegal activity.
3. Monitoring Transactions
The Users are known not only by verifying their identity (who they are) but, more importantly, by analyzing their transactional patterns (what they do). Therefore, Whalestack relies on data analysis as a risk-assessment and suspicion detection tool. Whalestack performs a variety of compliance-related tasks, including capturing data, filtering, record-keeping, investigation management, and reporting. System functionalities include:
- Daily check of Users against recognized “black lists” (e.g. OFAC), aggregating transfers by multiple data points, placing Users on watch and service denial lists, opening cases for investigation where needed, sending internal communications and filling out statutory reports, if applicable;
- Case and document management.
With regard to the AML/KYC Policy, Whalestack will monitor all transactions and it reserves the right to:
- ensure that transactions of suspicious nature are reported to the proper law enforcement through the Compliance Officer;
- request the User to provide any additional information and documents in case of suspicious transactions;
- suspend or terminate User’s Account when Whalestack has reasonably suspicion that such User engaged in illegal activity.
The above list is not exhaustive and the Compliance Officer will monitor Users’ transactions on a day-to-day basis in order to define whether such transactions are to be reported and treated as suspicious or are to be treated as bona fide.
4. Risk Assessment
Whalestack, in line with the international requirements, has adopted a risk-based approach to combating money laundering and terrorist financing. By adopting a risk-based approach, Whalestack is able to ensure that measures to prevent or mitigate money laundering and terrorist financing are commensurate to the identified risks. This will allow resources to be allocated in the most efficient ways. The principle is that resources should be directed in accordance with priorities so that the greatest risks receive the highest attention.
[Last updated: April 2nd, 2018]