Insights on Compliance, Risk & RegTech
Practical guidance from the One Constellation team — KYC, AML, transaction monitoring, sanctions, and the regulatory landscape that shapes them.
Money Laundering
Trade-Based Money Laundering (TBML): Typologies, Red Flags & Detection
Trade-Based Money Laundering exploits the commercial trade system to move illicit value across borders — through over- and under-invoicing, phantom shipments, multiple invoicing, and front-company export schemes. FATF…
Crypto
MiCA Regulation Explained: Compliance Requirements for Crypto Firms in 2026
MICA — the EU's Markets in Crypto-Assets Regulation — is the world's first comprehensive crypto-asset framework. It introduces a unified authorization regime for Crypto-Asset Service Providers (CASPs), strict…
Anti Money Laundering (AML)
AML Compliance Checklist 2026: 25 Steps Every Regulated Firm Must Cover
An AML programme is only as strong as its weakest control — and weak controls are usually the ones nobody is monitoring. This 25-step checklist organises the obligations…
Money Laundering
The MLRO Role: Responsibilities, Reporting Lines & Personal Liability
The Money Laundering Reporting Officer is the only role in a regulated firm that carries personal regulatory liability for the AML programme. The MLRO decides whether to file…
Sanctions Screening
Adverse Media Screening: How It Works & Why Compliance Teams Need It
Adverse media screening searches the open and licensed information environment for risk signals about a customer — investigations, prosecutions, regulatory findings, sanctions adjacency, and reputational events. It sits…
Due Diligence (DD)
Source of Funds vs Source of Wealth: Documentation Standards Explained
Source of Funds is the origin of the specific money entering an account; Source of Wealth is the origin of the customer's entire net worth. Both are EDD…
Risk Management
Customer Risk Rating: Building a Defensible Risk Matrix
How to build a customer risk rating model that scales — the four factor categories, weighted-additive vs matrix-based scoring, refresh triggers, and avoiding the implausible-distribution trap
Know Your Customer (KYC)
eKYC Liveness Detection and Biometric Verification Explained
Active vs passive liveness, ISO 30107-3 PAD levels, the deepfake threat model, and which eKYC methods regulators actually accept across MAS, RBI, eIDAS, and FinCEN.
Suspicious Activity Report (SAR)
Suspicious Activity Reporting (SAR/STR): When to File and How
When the SAR filing obligation is triggered, how the no-tipping-off rule works in practice, and how filing mechanics differ across STRO, FinCEN, the NCA, and other major FIUs.
