Coreal.
Book a working session →
·Compliance · MiCA

MiCA compliance for telco fintech.

Markets in Crypto-Assets Regulation (Regulation (EU) 2023/1114). Enforced from 2024-06-30 (titles III, IV) / 2024-12-30 (full). Supervised by ESMA + national competent authorities (e.g. BaFin in Germany, AMF in France). Coreal generates the evidence pack automatically on every Minctrl build — see /security-compliance for the full posture.

Enforced
2024-06-30
Authority
ESMA…
Penalties
€5M minimum per breach for legal entities
Vertical
TELCO

What this regulation covers.

Authorisation and supervision of crypto-asset service providers (CASPs), stablecoin issuance and custody.

For a telco fintech, the salient angles are: BSS write-path protection (regulator must see read-only on event bus); Subscriber consent for fintech data sharing under GDPR; Group-level vs partner-bank capital allocation. Primary licence: Partner-bank EMI passport (or own EMI for tier-1).

● RELEVANT ARTICLES
  • Art. 16 — CASP authorisation requirements
  • Art. 33 — Custody and administration of crypto-assets
  • Art. 60 — Asset-referenced tokens (stablecoins)
  • Art. 75 — Capital requirements
● EVIDENCE PACK COREAL GENERATES

What lands in the regulator file.

E01CASP authorisation file (national competent authority submission)
E02Custody-light architecture diagram + key-management policy
E03Travel Rule (IVMS101) integration evidence
E04White-paper for any token issued
E05Risk-based AML procedures specific to crypto flows

All items journaled, replayable, 7-year retention.

● READ NEXT
·Questions we hear

Which MiCA articles apply to a telco?

Primarily: Art. 16 — CASP authorisation requirements; Art. 33 — Custody and administration of crypto-assets; Art. 60 — Asset-referenced tokens (stablecoins). The full mapping is in the Coreal compliance posture document — see /security-compliance.

What evidence does Coreal generate per audit?

CASP authorisation file (national competent authority submission); Custody-light architecture diagram + key-management policy; Travel Rule (IVMS101) integration evidence. The Minctrl pipeline produces this artefact set automatically on every build — see /company §05 'How we ship'.

What are the penalties for non-compliance?

€5M minimum per breach for legal entities; up to 12.5% of annual turnover for systemic issues.

·Working session

Bring the perimeter,
leave with a brief.

Book a working session →Read field notes →
Not ready to book 4 hours?

Read the Wave-1 runbook first.

The full 90-day launch sequence — phases, partner-bank gates, who signs off when. No form to read it.

Read the runbook →

INDICATIVE DATA · Numbers and timelines reflect public regulator filings, vendor documentation and our own delivery experience. Per-engagement values vary with operator profile, BSS vintage and regulatory perimeter. Engage early for a fitted estimate under NDA.