Skip to main content
Home
  • About ESMA
    • Governance Structure
      • Board of Supervisors
      • Management Board
      • Senior Management
      • Joint Committee
      • CCP Supervisory Committee
      • CCP Resolution Committee
      • Joint Monitoring Mechanism
      • Standing Committees
      • SMSG
      • Board of Appeal
      • Ethics and Conflicts of interest
    • Internal Organisation
      • Strategy and Work Programme
      • Working Methods
      • Diversity, Equity and Inclusion
    • International Cooperation
    • Legal Notice and Data Protection
    • Transparency and Access to Documents
    • Agenda
    • Careers
    • Procurement Opportunities
  • ESMA's Activities
    • Investors and Issuers
      • Benchmark Administrators
      • Credit Rating Agencies
      • ESG Rating Providers
      • External Reviewers of European Green Bonds
      • Fund Management
      • Issuer Disclosure
      • Investment Services and Crowdfunding
    • Markets and Infrastructure
      • Central Counterparties
      • Data Reporting Services Providers
      • Trading
      • Consolidated Tape Providers
      • Post-trading
      • Shortening the settlement cycle to T+1 in the EU
      • Market Integrity
      • Short Selling
      • Central Securities Depositories
      • Securitisation
      • Trade Repositories
    • Risk Analysis
      • Risk Monitoring
      • Topical Analysis
      • Interactive Dashboards
    • Sustainable Finance
      • Climate benchmarks and ESG disclosure
      • CRAs and Sustainability
      • Investment Services and Fund Management
      • Sustainability Reporting
    • Digital Finance and Innovation
      • Digital Operational Resilience Act (DORA)
      • DLT Pilot Regime
      • Markets in Crypto-Assets Regulation (MiCA)
    • Supervision and Convergence
      • Registration with ESMA
      • Investigations and Inspections
      • Supervisory Convergence Tools
      • Sanctions and Enforcement
      • Enforcement Convergence Initiatives
      • Breach of Union Law
    • New supervisory and oversight mandates
    • Data
      • Data Reporting
      • Databases and Registers
      • Data Quality and Use
      • Statistical Information
      • European Single Access Point (ESAP)
    • Listing Act
  • News & Publications
    • News
    • Documents
    • Speeches
    • Newsletter
    • Interactive Single Rulebook
    • Guidelines, Recommendations and Technical Standards
    • Peer Reviews
    • Risk Monitoring and Analysis
    • Questions and Answers
  • Investor Corner
    • Is the firm regulated?
    • Get ready to invest
    • Frauds and Scams related to ESMA Logo and ID
    • Publications for Investors
    • Product Intervention
    • Make a complaint
    • Cost of Investment Products
  • Interact With ESMA
    • Media Corner
    • Speaking Requests
    • Stakeholder Engagement
      • Stakeholder Relations
    • Consultations
    • Events
    • Whistleblowers
  • Contact & Help
    • Contact Information
    • FAQs
    • Glossary

Breadcrumb

  1. Home
  2. News and Publications
  3. Interactive Single Rulebook
  4. MiCA
  5. Article 73 Outsourcing

Article 73 Outsourcing

1.  Crypto-asset service providers that outsource services or activities to third parties for the performance of operational functions shall take all reasonable steps to avoid additional operational risk. They shall remain fully responsible for discharging all of their obligations pursuant to this Title and shall ensure at all times that the following conditions are met:

(a) outsourcing does not result in the delegation of the responsibility of the crypto-asset service providers;
(b) outsourcing does not alter the relationship between the crypto-asset service providers and their clients, nor the obligations of the crypto-asset service providers towards their clients;
(c) outsourcing does not alter the conditions for the authorisation of the crypto-asset service providers;
(d) third parties involved in the outsourcing cooperate with the competent authority of the crypto-asset service providers’ home Member State and the outsourcing does not prevent the exercise of the supervisory functions of competent authorities, including on-site access to acquire any relevant information needed to fulfil those functions;
(e) crypto-asset service providers retain the expertise and resources necessary for evaluating the quality of the services provided, for supervising the outsourced services effectively and for managing the risks associated with the outsourcing on an ongoing basis;
(f) crypto-asset service providers have direct access to the relevant information of the outsourced services;
(g) crypto-asset service providers ensure that third parties involved in the outsourcing meet the data protection standards of the Union.

For the purposes of point (g) of the first subparagraph, crypto-asset service providers are responsible for ensuring that the data protection standards are set out in the written agreements referred to in paragraph 3.

2.  Crypto-asset service providers shall have a policy on their outsourcing, including on contingency plans and exit strategies, taking into account the scale, the nature and the range of crypto-asset services provided.

3.  Crypto-asset service providers shall define in a written agreement their rights and obligations and those of the third parties to which they are outsourcing services or activities. Outsourcing agreements shall give crypto-asset service providers the right to terminate those agreements.

4.  Crypto-asset service providers and third parties shall, upon request, make available to the competent authorities and other relevant authorities all information necessary to enable those authorities to assess compliance of the outsourced activities with the requirements of this Title.

Home
ESMA is an authority of the European Union Home
  • Careers
  • ESMA Documents
  • Contact & Help
  • Media Corner
  • Cookie Policy
  • Data Protection
Social Media