Source: OJ L, 2025/1140, 10.6.2025

Current language: EN

Article 8 Identification of person or computer algorithm within the crypto-asset service provider making the investment decision


Summary What does Article 8 of the RTS on record keeping say?

This article addresses how investment decision-makers must be identified and recorded in transaction records.

It applies to situations where either a human or a computer algorithm — acting within a crypto-asset service provider — takes the decision to acquire or dispose of a crypto-asset, whether on the provider's own behalf or under a discretionary mandate from a client.

It connects directly to Article 7, which establishes the broader obligation to record transaction details, by specifying how the decision-making party within those records must be captured.

Important points:

  • Crypto-asset service providers must record the identity of whoever — person or algorithm — makes the investment decision, using the designated field in the Annex.
  • This obligation covers decisions made both on behalf of the provider itself and on behalf of clients acting under a discretionary mandate.
  • Where multiple persons or algorithms are involved in a decision, record only the one with primary responsibility.

Springlex's summary of the article, a reading aid, not a substitute for the legal text.

    1. Where a person or computer algorithm within a crypto-asset service provider makes the investment decision to acquire or dispose of a specific crypto-asset on behalf of the crypto-asset service provider or on behalf of a client in accordance with a discretionary mandate given by the client, that person or computer algorithm shall be identified and recorded as specified in Field 41 of Table 3 of Section 3 of the Annex.

    1. Where a person and computer algorithm are both involved in taking the investment decision, or more than one person or algorithm are involved in taking that decision, the crypto-asset service provider shall record the person or computer algorithm with primary responsibility for that decision.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod