For the complete documentation index, see llms.txt. This page is also available as Markdown.

Compliance Policies

Automate KYC/AML compliance with regulatory and custom policies inside workflows. Get real-time policy evaluation, rule-based decisions, and audit-ready evidence.

Compliance Policies Overview

Policies let you apply regulatory rules, industry frameworks, and internal controls inside a workflow. Each policy is a rule set evaluated during the verification journey.

This helps you enforce consistent KYC/AML decisioning across every workflow session.

Compliance Policies are designed for businesses operating in regulated industries. They provide audit-ready evidence that your workflows align with applicable compliance requirements.

Supported regulatory and industry frameworks

ComplyCube supports an extensive set of policies across global frameworks, jurisdiction-specific regulations, and industry requirements.

Coverage includes major KYC, AML, CDD, EDD, and sanctions compliance obligations across leading frameworks and regulators.

Common examples include:

  • Financial Action Task Force (FATF) recommendations for global AML, CTF, beneficial ownership, and risk-based due diligence standards.

  • U.S. Financial Crimes Enforcement Network (FinCEN) rules for Customer Identification Program (CIP), Customer Due Diligence (CDD), and beneficial ownership requirements.

  • UK Home Office requirements for tenancy and employment verification journeys.

  • Monetary Authority of Singapore (MAS) Notice 626 for AML/CFT controls and customer due diligence requirements in Singapore.

  • Australian Transaction Reports and Analysis Centre (AUSTRAC) AML/CTF obligations for reporting entities in Australia.

For the full framework and jurisdiction breakdown, see Regulatory coverage.

Custom policies and policy assurance

You can also create custom policies to reflect your own compliance framework, internal rules, and risk controls. This gives you policy assurance across each verification journey.

Every session is evaluated against defined requirements, which strengthens your audit trail and supporting evidence for regulators, auditors, and internal review teams.

Results are available in the Portal, through the API, and through webhooks for real-time decisioning.

Contact your Account Manager to confirm support for specific policies in your jurisdiction, or to request implementation of bespoke internal policies.

Policy evaluation in workflows

Policies are attached to workflow templates. Not all templates will include them.

When a customer completes a workflow session, captured data and checks undergo policy evaluation. Evaluation runs against the policies assigned to the template. Results are generated in real time. They show whether the session meets requirements or requires further review.

In the Portal, outcomes appear under Policy Assurance. This is your compliance policy engine’s evidence for each decision.

This delivers consistent, repeatable policy enforcement across verification journeys. It reduces manual interpretation by compliance teams. It also improves auditability for KYC and AML programs.

ComplyCube workflow template showing assigned compliance policies for KYC/AML decision rules
Workflow Template with Compliance Policies

Workflow session policy assurance results showing real-time policy evaluation outcomes
Workflow Session with Policy Evaluation Results

KYC and AML policy use cases

Use policies when you need consistent, auditable decisions across onboarding and compliance journeys:

  • KYC onboarding: Apply jurisdiction-specific identity, verification, and eligibility rules without rebuilding each workflow.

  • AML compliance: Enforce policy decisions against frameworks such as FATF, FinCEN, and local AML/CFT regulations.

  • CDD and EDD: Escalate higher-risk customers into stricter Customer Due Diligence and Enhanced Due Diligence requirements.

  • Beneficial ownership and business checks: Support rule-based reviews for UBO, business verification, and higher-risk entity structures.

  • Industry and regulatory controls: Enforce framework-specific requirements such as MiFID II, Right to Rent, and other regulated onboarding obligations.

Frequently asked questions

How are compliance policies applied in a workflow?

Compliance policies are attached to a workflow template.

When a customer completes a workflow session, ComplyCube evaluates the captured data and check results against those assigned policies in real time.

What does a policy evaluation result mean?

A policy evaluation result shows whether the workflow session meets the defined compliance requirements or needs further review.

These outcomes appear under Policy Assurance and give teams clear, auditable evidence for each decision.

Can I use my own internal compliance rules?

Yes.

You can implement custom policies alongside supported regulatory and industry policies to reflect your internal compliance framework, risk rules, and review requirements.

Do compliance policies replace AML screening or identity checks?

No.

Compliance policies evaluate the outputs of a verification journey. They do not replace the underlying checks used to collect evidence.

You typically use them with services like AML Screening Check, Document Check, and Smart Forms.

Can compliance policies support jurisdiction-specific KYC and AML requirements?

Yes.

Policies can be aligned to local regulations and industry frameworks, which helps you apply jurisdiction-specific KYC and AML rules without rebuilding each workflow from scratch.

Where can compliance teams review policy decisions?

Teams can review policy outcomes in the Portal, retrieve them through the API, or receive them through webhooks for downstream decisioning and audit workflows.

  • Regulatory coverage to explore supported frameworks and jurisdictions.

  • AML Risk Scoring for AML risk profiling and customer risk assessment.

  • Workflows to attach policies to workflow templates.

  • Smart Forms to capture declarations and supporting documents.