DSR Knowledge LibraryReusable design knowledge and grounded research support
HomeLibraryChatGive feedback ↗

DSR Knowledge Library

Research prototype · Native Open Knowledge Format

LibraryChatImprintPrivacyEvaluation survey ↗
Library/Papers/Know-Your-Customer (KYC) Requirements for Initial Coin Offerings: Toward Designing a Compliant-by-Design KYC-System Based on Blockchain Technology

Research paper

Know-Your-Customer (KYC) Requirements for Initial Coin Offerings: Toward Designing a Compliant-by-Design KYC-System Based on Blockchain Technology

Using an objective-centered DSR approach, the paper identifies KYC and legal requirements and translates them into system design objectives for a compliant-by-design blockchain-based KYC system for ICOs that automatically enforces KYC regulations to prevent money laundering.

Paper
OverviewDSR gridPaper design mapDesign knowledgePublication metadata

01

Overview

Publication metadata and narrative from the current library record.

Authors
Nadine Kathrin Ostern, Johannes Riedel
Year
2021
Venue
Business & Information Systems Engineering 63(5), 2021, 551-567
Methodology
Objective-centered design science research; identification of KYC/legal requirements; prototype; requirements-evaluation.
DOI
10.1007/s12599-020-00677-6
Design knowledge
View design knowledge on GitHub
blockchaincompliancedesign-science-researchicokyckyc-ico-requirementsregulation

Summary

Using an objective-centered DSR approach, the paper identifies KYC and legal requirements and translates them into system design objectives for a compliant-by-design blockchain-based KYC system for ICOs that automatically enforces KYC regulations to prevent money laundering.

Artifact

A compliant-by-design blockchain-based KYC system for the conduct of ICOs.

Methodology

Objective-centered design science research; identification of KYC/legal requirements; prototype; requirements-evaluation.

02

DSR grid

Six dimensions represented in the current paper record.

01

Problem description

Existing blockchain-based KYC proposals for initial coin offerings (ICOs) ignore the severe penalties for non-compliance, so they are inapplicable when legal KYC requirements cannot be met.

02

Input knowledge

Gregor & Hevner's descriptive/prescriptive knowledge distinction; KYC/AML regulation (e.g., GwG, GDPR, eIDAS); electronic identity (eID).

03

Research process

Objective-centered design science research: identification of KYC and legal requirements, translation into design objectives, a prototype, and a requirements-based evaluation.

04

Key concepts

Blockchain, distributed ledger, know-your-customer, anti-money-laundering, initial coin offering.

05

Solution description

A compliant-by-design blockchain-based KYC system for ICOs that automatically enforces KYC regulations. Solution-space representation: Instantiation (prototype) driven by design objectives (model / nascent design knowledge).

06

Output knowledge

A set of design objectives derived from KYC and legal requirements for a compliant-by-design ICO KYC system.

03

Paper design map

The default semantic design map canonicalizes stored design relationships; Raw links retains the complete technical Markdown-link view.

Design-knowledge map

10 stored concepts / 0 canonical semantic relationships

Concept types
Design Objectives
Press enter or space to select a node.You can then use the arrow keys to move the node around. Press delete to remove it and escape to cancel.
Press enter or space to select an edge. You can then press delete to remove it or escape to cancel.

04

Design knowledge

Directly linked concepts, grouped by their represented design-knowledge category.

10 Design Objectives

design-knowledge/kyc-ico-requirements-do1

DO1 - Verified identity from German authorities

Within the KYC-system, the initial recording of identity data must base on information that originates from a person's identity card that is demonstrably verified by German authorities (e.g., through German eID).

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do2

DO2 - eIDAS-compliant identity verification scheme

To ensure that all necessary identity data are collected, the KYC-system must be linked to an eIDAS compliant identity verification scheme to provide a rigorous data collection and verification process.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do3

DO3 - Source-of-funds field for high-value transactions

An investor who transfers more than a pre-defined limit needs to fill in an additional data field during the KYC-process stating information on the source of funds.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do4

DO4 - Five-year storage of transaction data

Data on business relationships and transactions must be stored at least five years on the local database of one of the contracting parties or on the blockchain, which allows for shared access.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do5

DO5 - Correction of inaccurate data

An ICO investor must have the opportunity to ask for the correction of inaccurate data. To this end, data captured during the blockchain-based KYC-process need to be stored in a way that allows for revocation.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do6

DO6 - Erasure of personal data after storage obligation

An ICO investor must have the opportunity to ask the KYC-provider and emitter to delete any records of investment progress once the five-year storage obligation (see requirement 5) is over. Data that is stored locally in the KYC-provider's and emitters database must be deleted.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do7

DO7 - Prevent transaction flow analysis

The KYC-system must prevent transaction flow analysis through proper technical and non-technical solutions.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do8

DO8 - KYC-process status updates

The KYC-system must provide status updates of the KYC-process available for the investor.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do9

DO9 - Web-interface key management

The KYC-system should allow key management facilitated via a web interface; proper incentives for investors need to be set.

compliancedesign-objectiveicokyc+2
design-knowledge/kyc-ico-requirements-do10

DO10 - Decentralized public blockchain for fast KYC access

The KYC-process should run on a decentralized, public blockchain solution, which allows parties involved in the ICO to access the results of the KYC-process as fast as possible through the elimination of third parties.

compliancedesign-objectiveicokyc+2

05

Publication metadata

Additional metadata represented in the current library record.

Show additional metadata+
{
  "type": "paper",
  "title": "Know-Your-Customer (KYC) Requirements for Initial Coin Offerings: Toward Designing a Compliant-by-Design KYC-System Based on Blockchain Technology",
  "description": "Using an objective-centered DSR approach, the paper identifies KYC and legal requirements and translates them into system design objectives for a compliant-by-design blockchain-based KYC system for ICOs that automatically enforces KYC regulations to prevent money laundering.",
  "resource": "https://doi.org/10.1007/s12599-020-00677-6",
  "authors": "Nadine Kathrin Ostern, Johannes Riedel",
  "year": 2021,
  "venue": "Business & Information Systems Engineering 63(5), 2021, 551-567",
  "methodology": "Objective-centered design science research; identification of KYC/legal requirements; prototype; requirements-evaluation.",
  "dsr_grid": true,
  "dsr_solution_space": "Instantiation (prototype) driven by design objectives (model / nascent design knowledge).",
  "tags": [
    "kyc-ico-requirements",
    "kyc",
    "ico",
    "compliance",
    "regulation",
    "design-science-research",
    "blockchain"
  ]
}