Source: OJ L, 2025/299, 13.2.2025

Current language: EN

Article 6 Complexity and risk considerations


    1. When establishing the business continuity policy, including the plans, procedures and measures, crypto-asset service providers shall take into account elements of increased complexity or risk, including:

      1. the type and range of crypto-asset services offered;

      2. the extent to which the services of the crypto-asset service provider rely on permissionless distributed ledger;

      3. the potential impact of any disruptions on the continuity of the crypto-asset service provider’s activities and availability of its services.

    1. For the purposes of paragraph 1, crypto-asset service providers shall conduct a self-assessment of the scale, the nature, and range of their services annually. Crypto-asset service providers shall base that self-assessment on the criteria set out in the Annex and any other criteria that the crypto-asset service provider considers relevant.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod