Financial Integrity Monitor

Czech Republic CZ

Domains (D1–D6)
5
Sources
12
Role actions
8
Horizon <90d
5
Jurisdiction profile
Largely CompliantTier BRisk: IncreasingMixed

AML/CFT is governed by Act No.

More253/2008 (implementing successive EU AML Directives) with the Financial Analytical Office (FAU, Ministry of Finance) as FIU and the Czech National Bank (CNB) as prudential AML supervisor for financial institutions. Beneficial ownership is governed by Act No. 37/2021 (register administered by courts/Ministry of Justice). Czech Republic is a MONEYVAL member (not directly FATF-assessed), last evaluated in its 2018 5th-round MER, currently under MONEYVAL Compliance Enhancing Procedures for one Recommendation.

Key deficiencies
  • Moderate technical-compliance shortcomings persisting on Recommendation 32 (cash couriers/cross-border declarations) since the 2018 MER, still unresolved as of the June 2025 FATF-MONEYVAL Plenary
  • Weak PEP identification practices among non-banking financial institutions noted in the MER and not fully remediated
  • Demonstrated gap in state-institution-level crypto-asset due diligence, exposed by the Justice Ministry's acceptance and liquidation of a large unverified bitcoin donation from a convicted criminal in 2025
  • Long-tail legacy exposure to offshore/BO-opacity structuring (Panama Papers-era shell networks, historically permissive correspondent banks) not fully displaced by the modern BO register
Recent developments (18m)
  • May 2025: Justice Ministry bitcoin donation scandal triggers minister's resignation, prosecutorial probe and a government crisis over alleged money-laundering exposure
  • June 2025: Joint FATF-MONEYVAL Plenary confirms Czechia remains under MONEYVAL Compliance Enhancing Procedures for one Recommendation with moderate shortcomings
  • 1 July 2025: EU 18th sanctions package ends Czechia's temporary pipeline exemption for Russian crude oil imports
  • August 2025: EPPO Prague secures conviction in a €5.5m EU-subsidy fraud and money-laundering case involving fabricated research projects
Weekly brief

Lead signal

Lead Signal

Read full brief

Lead Signal

Czechia enters this cycle as a first-time baseline jurisdiction whose illicit-finance profile is shaped less by any single scandal than by its position inside architectures it does not control. The most consequential structural fact is that Czech-manufactured industrial machinery, alongside comparable equipment from Italy, Germany and Spain, reaches Russian defence-industrial plants via Turkish trading intermediaries, exploiting the gap between direct EU-Russia export controls and less-scrutinised onward re-export. This finding rests on a single tier-2 investigative source without tier-1 corroboration, and its analytical weight lies in the diversion pathway itself rather than in any individual shipment. Running alongside this exporter-side exposure, Czechia's own EU-internal divergence point has closed: the 18th sanctions package ended, effective 1 July 2025, the temporary derogation that had allowed continued imports of Russian pipeline crude, converging Czechia onto the EU-wide oil-import ban baseline. Two subsequent packages then expanded the designation and crypto-sanctions perimeter directly applicable to Czech obliged entities -- the 19th package added 69 listings in October 2025, and the 20th package, in April 2026, imposed a sectoral ban on Russia-based crypto-asset service providers, prohibited RUBx and digital-ruble instruments, and activated the EU anti-circumvention tool against Kyrgyzstan for the first time.

The second defining thread this cycle is a governance blind spot rather than a capture narrative. In 2025 the Czech Ministry of Justice accepted and liquidated an approximately 1 billion CZK (roughly $45m) bitcoin donation from a convicted criminal through a process that bypassed the customer due diligence expected of a regulated VASP or bank, triggering a ministerial resignation and a criminal probe. The assessed judgment is that this reflects an institutional CDD and governance failure at a state body rather than evidence of deliberate state direction of, or capture by, criminal interests -- a distinction that should travel with any downstream flag rather than be flattened into a state-capture reading.

Other Developments

Legacy offshore structuring persists beneath a functioning register. Czechia's 2021 beneficial-ownership register, Act No. 37/2021, operates with meaningful enforcement consequences, yet pre-2021 offshore structuring built through 1990s-privatisation-era professional-enabler infrastructure into Samoa, Seychelles, the British Virgin Islands and Panama has not been retrospectively addressed by the register, leaving a durable stock of latent opacity capacity available for reactivation.

A former Prime Minister remains under foreign scrutiny, not domestic. Andrej Babis is alleged to have used a chain of offshore companies to acquire a French Riviera property, obscuring beneficial ownership, in a matter exposed by the Pandora Papers. French financial authorities initiated the investigation rather than Czech domestic authorities, itself a signal about the reach of domestic enforcement on PEP-linked structures.

EPPO Prague secured a substantive fraud conviction. The European Public Prosecutor's Office obtained convictions in a EUR5.5m fabricated-research-project subsidy fraud, with the ringleader sentenced to eight years plus a seven-year management ban and asset forfeiture, and the companies involved barred from future subsidies and ordered to forfeit EUR2m.

Czechia's MONEYVAL technical-compliance status is disputed, not confirmed. Research initially asserted continuing Compliance Enhancing Procedures status for FATF Recommendation 32, covering cash couriers and cross-border declarations, as of the June 2025 Joint FATF-MONEYVAL Plenary. An adversarial review found this unsubstantiated by the cited document, with the last independently verifiable confirmation dating to the 2022 MONEYVAL follow-up report, so the claim is now carried at reduced confidence pending direct verification.

A sourcing gap, not necessarily an enforcement gap, surrounds the Czech National Bank. No specific dated CNB AML/CFT civil-penalty disclosure was identified in open-source reporting within the eighteen-month baseline window, despite the CNB's role as prudential AML supervisor; this is treated as an absence-of-data finding rather than an absence-of-enforcement finding.

AMLA's build-out continues as the structural counterweight. Operational in Frankfurt since mid-2025 and staffing toward roughly 430 by end-2027, the EU Anti-Money Laundering Authority is scheduled to select its first cohort of around forty directly-supervised entities in 2027, with supervision transferring in 2028; Czech-domiciled entities are eligible if they meet cross-border, high-risk criteria.

The MiCA transitional window has closed. Under Article 143(3), the outer-limit transitional period for legacy-regime crypto-asset service providers ended 1 July 2026; firms without full MiCA authorisation, a valid passport, or an orderly wind-down plan have lost their legal basis to serve EU or Czech clients.

Czechia's enabler-jurisdiction profile reads as capacity deficit, not political choice. A four-dimension assessment finds Czechia's legal framework nominally EU-aligned, its enforcement reality mixed, and its systemic significance moderate given its role as an EU manufacturing and export node rather than a financial-secrecy hub.

Cross-Monitor Connections

The PEP-offshore property structuring around Babis and the Justice Ministry's bitcoin-donation scandal both carry relevance for state-capture-adjacent tracking, though this cycle's evidence indicates a governance and CDD gap rather than proven capture, a distinction that should travel with the flag to WDM rather than be flattened into it. The sequencing of the EU's 18th through 20th sanctions packages, closing Czechia's pipeline-oil exemption, adding 69 listings, and imposing a crypto sectoral ban and anti-circumvention tool against Kyrgyzstan, is relevant to sanctions-as-macro-variable tracking at GMM. AMLA's build-out timeline alongside Czechia's disputed MONEYVAL status is relevant to ESA's EU regulatory-gap tracking, since the two developments sit on different axes: one converging supervision upward, the other exposing where national technical-compliance assessment remains unresolved.

Outlook

Czechia's near-term posture is dominated by two already-crystallised events, the MiCA transitional close and the sequential EU sanctions expansion, rather than by pending uncertainty. The medium-term structural anchor is AMLA's build-out toward 2027 entity selection and 2028 direct supervision, alongside the AMLR and 6AMLD application expected around July 2027, which is expected to replace Czechia's existing Act No. 253/2008 transposition framework with a harmonised EU-wide rulebook, though the specific Czech national 6AMLD transposition vehicle has not yet been confirmed. The single open dispute, whether Czechia's MONEYVAL Compliance Enhancing Procedures status genuinely persisted to June 2025, should be resolved via the next follow-up report before being treated as settled either way. Read together, Czechia's profile this cycle reads as capacity deficit and legacy structural exposure rather than deliberate enablement, a judgment that should be revisited if new evidence emerges of political choice rather than practice gaps.

weekly_brief_draft · JID CZ
Domain intelligence (D1–D6)

D1 Sanctions Architecture and Evasion

Sanctions Architecture and Evasion

Continue reading

Czechia's D1 exposure this cycle is defined by its position as a manufacturing and export node rather than a financial-intermediary hub within the Russian sanctions-evasion architecture. Czech-manufactured industrial machinery, including CNC lathes, furnaces, and presses, reaches Russian defence-industrial plants via Turkish trading intermediaries, alongside comparable flows from Italy, Germany and Spain. This is assessed on a single tier-2 investigative source without tier-1 corroboration; the analytically significant element is the diversion pathway itself, the exploitation of the gap between direct EU-Russia export controls and less-scrutinised third-country re-export, rather than any individual shipment. Architecture over incident applies directly here: the recurring pattern of European manufacturers selling to intermediaries who re-export onward is the structural finding, not the specific transaction that happened to surface in reporting.

Alongside this exporter-side exposure, Czechia's own EU-internal divergence point has closed. The 18th sanctions package, effective 1 July 2025, ended the temporary derogation that had allowed Czechia to continue importing Russian crude oil by pipeline, converging the jurisdiction onto the EU-wide oil-import ban baseline and removing what had been its principal jurisdiction-specific carve-out. This closure should be read as a narrowing of divergence rather than a new enforcement action against Czechia.

The sanctions architecture applicable to Czech obliged entities has also expanded materially through two subsequent packages. The 19th package, adopted in October 2025, added 69 new listings including oligarchs and shadow-fleet entities. The 20th package, adopted in April 2026, went further structurally: it imposed a sectoral ban on Russia-based crypto-asset service providers, prohibited RUBx and digital-ruble instruments, and activated the EU's anti-circumvention tool against Kyrgyzstan for the first time. Each of these is directly applicable to Czech-domiciled obliged entities conducting screening and onboarding. UK and US authorities had already sanctioned overlapping crypto entities months before the EU's 20th package, creating a designation-timing divergence tracked as a standing signal; gaps between allied regimes' designation timing create temporary arbitrage windows for evasion networks operating across jurisdictions.

A separate, cross-cutting judgment applies here as much as to the enabler-jurisdiction domain: Czechia's AML/CFT legal framework and BO register are nominally EU-aligned, and the documented weaknesses in its posture read as capacity and practice deficits rather than a deliberate policy choice to enable opacity. For D1 specifically, this means Czechia's exposure is best read as a manufacturing economy whose export-control screening has a demonstrated gap, not as a jurisdiction knowingly hosting sanctions-evasion facilitation infrastructure.

Taken together, these developments position Czechia less as an enabler jurisdiction in the classic secrecy-hub sense and more as an EU manufacturing and export economy whose obliged entities must now screen against a rapidly expanding designation and instrument-level perimeter, while its own historical divergence point has been closed by EU-level action rather than domestic initiative.

Outlook

The structural trajectory for Czech D1 exposure is one of narrowing divergence at the jurisdiction level and expanding designation complexity at the entity level. With the pipeline-oil exemption closed, Czechia's remaining sanctions-architecture exposure runs through its manufacturing and export sector's vulnerability to third-country re-export diversion, a channel that EU-level designation expansion does not directly address since it targets listed entities and instruments rather than the re-export intermediary structure itself. The gap between UK/US and EU crypto-sanctions designation timing is a pattern worth monitoring for recurrence as allied sanctions regimes continue to diverge on implementation speed even where policy intent converges.

Cumulative analysis

Sanctions Architecture and Evasion -- Cumulative Analysis

This is the first interpretation cycle establishing a Czech Republic baseline for the sanctions-architecture domain, and this synthesis integrates the prior first-cycle framing into a single coherent state-of-domain account. The durable structural read established here is that Czechia functions as a manufacturing and export node within the Russian sanctions-evasion architecture, not as a financial-secrecy or intermediary hub. Czech-manufactured industrial machinery, CNC lathes, furnaces, presses, reaches Russian defence-industrial plants through Turkish trading intermediaries, a pattern shared with manufacturers in Italy, Germany and Spain. This finding rests on a single tier-2 investigative source without tier-1 corroboration and should be read as an architecture-level observation about the diversion pathway rather than a confirmed account of any specific transaction.

Czechia's own position within the EU sanctions regime has simplified over the period covered by this baseline: the temporary derogation permitting continued pipeline-crude imports from Russia ended 1 July 2025 under the 18th sanctions package, closing what had been the jurisdiction's principal EU-internal divergence point and converging it onto the EU-wide import-ban baseline. This closure is a tier-1-confirmed, high-confidence structural fact and removes the single clearest jurisdiction-specific carve-out Czechia had held.

Subsequent EU sanctions packages have expanded the designation and instrument perimeter that Czech obliged entities must screen against. The 19th package, October 2025, added 69 listings spanning oligarchs and shadow-fleet entities. The 20th package, April 2026, marked a qualitative shift by targeting the crypto dimension of sanctions evasion directly: a sectoral ban on Russia-based crypto-asset service providers, prohibitions on RUBx and digital-ruble instruments, and the first-ever activation of the EU's anti-circumvention tool, aimed at Kyrgyzstan. This last element is significant as a structural precedent, since it is the EU acting against a third-country facilitation channel rather than against Russian-designated entities directly, extending the sanctions architecture's reach into circumvention infrastructure itself.

A persistent cross-regime observation threading through this baseline is timing divergence among allied sanctions authorities: the UK and US had already designated overlapping crypto-facilitation entities months ahead of the EU's 20th package action. This divergence is tracked as a standing signal because it recurs across sanctions cycles and represents a structural feature of the transatlantic sanctions architecture rather than an isolated timing artifact, creating windows in which evasion networks operating across jurisdictions can exploit the lag between allied designation regimes.

Reading the machinery-diversion finding alongside the enabler-jurisdiction assessment produced elsewhere this cycle reinforces a single integrated judgment: Czechia's AML/CFT legal framework is nominally EU-aligned, and the weaknesses visible in its sanctions-screening posture read as capacity and practice gaps rather than deliberate policy choice. This matters for how the domain should be weighted going forward. Czechia is not being tracked here as a jurisdiction that knowingly hosts sanctions-evasion facilitation infrastructure; it is being tracked as an EU manufacturing and export economy whose screening controls have a demonstrated, evidenced gap at the re-export layer, a gap that neither the closure of its pipeline-oil exemption nor the expanding EU designation perimeter directly closes.

Going forward, the domain's structural anchor is the sequencing of EU sanctions-package expansion against a backdrop of persistent allied-regime timing divergence, with Czechia's own remaining exposure concentrated in the export-control screening gap at the re-export layer rather than in any domestic sanctions-evasion facilitation choice.

domain_sub_briefs · D1 · Cumulative analysis

D2 Beneficial Ownership and Corporate Transparency

Beneficial Ownership and Corporate Transparency

Continue reading

Czechia's beneficial-ownership picture this cycle is one of a functioning forward-looking register sitting alongside an unaddressed legacy stock of opacity. Act No. 37/2021 established the national BO register with meaningful enforcement teeth, including unenforceable contracts, blocked distributions, and suspended voting rights for non-compliant entities. What the register does not do, and cannot do by design, is retroactively unwind pre-2021 offshore structuring. A durable legacy network built through 1990s-privatisation-era professional-enabler infrastructure into Samoa, Seychelles, the British Virgin Islands and Panama predates the register entirely and remains a latent capacity for reactivation, since forward-looking registration requirements do not reach backward into structures that were never required to disclose.

This legacy-structuring theme is illustrated concretely by the case of Andrej Babis, the former Czech Prime Minister, who is alleged to have used a chain of offshore companies to acquire a French Riviera property, obscuring beneficial ownership in a transaction exposed by the Pandora Papers. The analytically notable feature is not the acquisition itself but the source of scrutiny: French financial authorities initiated the investigation, not Czech domestic authorities, which is itself a signal about the reach and appetite of domestic enforcement on PEP-linked offshore structures.

Against this, EPPO Prague delivered a concrete enforcement data point this cycle, securing convictions in a EUR5.5m fabricated-research-project subsidy fraud in which proceeds were layered through controlled companies. The ringleader received an eight-year sentence, a seven-year management ban, and asset forfeiture, while the companies involved were barred from future EU subsidies and ordered to forfeit EUR2m. This is a genuine enforcement action, distinct from the structural legacy-opacity finding, and demonstrates that Czechia's corporate-transparency enforcement apparatus is not inert.

The standing structural backdrop against which all Czech BO and transparency signal should be read is the EU AML Package, which is properly understood as three distinct instruments rather than one reform. The AML Regulation (AMLR, Regulation (EU) 2024/1624) is directly applicable across Member States and is expected to apply from mid-2027. The sixth AML Directive (6AMLD) requires transposition at Member State level, and Czechia's specific national transposition vehicle and status have not been established this cycle; this should be treated as pending rather than assumed uniform. The AMLA Regulation (Regulation (EU) 2024/1620) established the Anti-Money Laundering Authority itself, which is operational in Frankfurt and building toward direct supervision of a first cohort of roughly forty high-risk cross-border obliged entities from 2027 to 2028, Czech-domiciled entities included where they meet the criteria. Together these three instruments shift the EU's BO and transparency supervisory perimeter from a purely national model toward a hybrid EU-level regime, and this shift is the durable frame within which Czechia's own legacy-structuring and PEP-offshore findings should be read this cycle.

Reading these threads together, Czechia's D2 profile is one of adequate forward architecture, genuine but domestically-limited enforcement reach on PEP structures, and an unresolved legacy stock of opacity that predates every reform discussed here.

Outlook

The forward horizon for Czech beneficial-ownership integrity is dominated by the AMLR/6AMLD application expected around July 2027, which will layer a harmonised EU-wide rulebook for customer due diligence, beneficial ownership and cash-payment limits on top of Czechia's existing Act No. 253/2008 transposition framework, though the specific national 6AMLD transposition vehicle remains unconfirmed. Separately, AMLA's own build-out toward 2027 entity-selection and 2028 direct supervision continues as the structural counterweight to any residual national-level gaps. Neither development, however, addresses the pre-2021 legacy offshore stock directly; that stock remains a standing latent-capacity risk independent of the EU-level supervisory architecture shift, and the Babis case illustrates that where scrutiny does emerge on PEP-linked legacy structures, it may continue to originate from cross-border rather than domestic initiative.

Cumulative analysis

Beneficial Ownership and Corporate Transparency -- Cumulative Analysis

This first-cycle synthesis for Czechia's beneficial-ownership and corporate-transparency domain establishes a baseline built on three coexisting facts rather than a single narrative arc. First, Czechia's 2021 BO register, Act No. 37/2021, is a functioning instrument with real enforcement consequences for non-compliant entities, including unenforceable contracts, blocked distributions and suspended voting rights. Second, and critically, that register is forward-looking by design and has not retrospectively addressed the pre-2021 offshore structuring built through 1990s-privatisation-era professional-enabler infrastructure into Samoa, Seychelles, the British Virgin Islands and Panama. That legacy stock is a durable, latent capacity for reactivation independent of the register's ongoing operation, and it is the single most important structural qualifier on any assessment of Czechia's corporate-transparency posture. Third, enforcement against PEP-linked legacy structures, illustrated by the Andrej Babis Pandora Papers case involving an offshore-company chain used to acquire a French Riviera property, has to date originated from French rather than Czech authorities, a pattern worth tracking for recurrence as a signal about the domestic enforcement appetite on politically-exposed offshore structuring.

Against this backdrop, this cycle also records a genuine enforcement data point distinct from the structural legacy-opacity finding: EPPO Prague's conviction in a EUR5.5m fabricated-research-project subsidy fraud, with an eight-year sentence, a seven-year management ban, asset forfeiture, and a EUR2m company-level forfeiture order. This demonstrates that Czechia's corporate-transparency enforcement apparatus, when a case is brought within its jurisdiction and reach, is capable of substantive outcomes; it does not, however, resolve the separate question of whether legacy pre-register structures or PEP-linked foreign holdings receive comparable domestic scrutiny.

The standing architectural backdrop for this and every future cycle's BO signal is the EU AML Package, properly understood as three distinct instruments: the AML Regulation (AMLR, Regulation (EU) 2024/1624), directly applicable and expected to apply EU-wide from mid-2027; the sixth AML Directive (6AMLD), requiring Member-State transposition, with Czechia's specific transposition vehicle and status not yet established and treated as pending rather than assumed; and the AMLA Regulation (Regulation (EU) 2024/1620), establishing the Anti-Money Laundering Authority, operational in Frankfurt since mid-2025 and building toward direct supervision of a first cohort of roughly forty high-risk cross-border obliged entities between 2027 and 2028, for which Czech-domiciled entities are eligible where the cross-border and high-risk criteria are met. This three-instrument architecture marks a durable shift of the EU's BO and transparency supervisory perimeter from a purely national model toward a hybrid EU-level regime, and every Czech-specific BO finding in this baseline, the functioning register, the unaddressed legacy stock, and the PEP-offshore case, should be read against that shifting perimeter rather than against a static national framework.

The integrated judgment carried forward from this baseline cycle is that Czechia's corporate-transparency exposure is best characterised as capacity-and-legacy-driven rather than choice-driven: the current framework is nominally adequate, enforcement is demonstrably possible domestically for cases squarely within Czech jurisdiction, but a stock of legacy opacity predating every reform discussed here remains unresolved, and cross-border rather than domestic initiative has so far driven scrutiny of the clearest PEP-linked case. This is the frame against which the AMLR/6AMLD application in 2027 and AMLA's 2028 direct-supervision start should be assessed as they materialise in subsequent cycles.

domain_sub_briefs · D2 · Cumulative analysis

D3 Enabler Jurisdictions and Professional Facilitators

Enabler Jurisdictions and Professional Facilitators

Continue reading

Czechia's enabler-jurisdiction status this cycle turns on a disputed technical-compliance claim and an underlying capacity-versus-choice judgment that stands independently of that dispute. Research initially asserted that Czechia remained under MONEYVAL Compliance Enhancing Procedures for FATF Recommendation 32, covering cash couriers and cross-border declarations, as of the June 2025 Joint FATF-MONEYVAL Plenary. An adversarial Challenge-stage review flagged this as a hard-flag unsubstantiated claim: the cited Plenary outcomes document does not itself confirm continued status, and the last independently verifiable confirmation dates to the 2022 MONEYVAL follow-up report. This claim is now carried at reduced, Possible-tier confidence and should not be treated as settled pending direct verification of the 2025 Plenary text.

That dispute notwithstanding, the underlying enabler-jurisdiction assessment for Czechia rests on a four-dimension methodology examining legal framework, enforcement reality, capacity versus choice, and systemic significance. Czechia's AML/CFT legal framework, Act No. 253/2008, and its BO register, Act No. 37/2021, are nominally EU-aligned. The enforcement reality is mixed: the disputed MONEYVAL status sits alongside an absence of visible Czech National Bank AML/CFT civil-penalty disclosures in open-source reporting, which is itself treated as a sourcing-thinness gap rather than confirmed evidence of an enforcement vacuum. On the capacity-versus-choice axis, the judgment is that documented weaknesses, the PEP-identification gaps among non-bank financial institutions, the persistent Recommendation 32 shortcoming, and the state-institution crypto-CDD blind spot exposed by the Justice Ministry bitcoin episode, indicate capacity and practice deficits rather than a deliberate policy choice to enable opacity. On systemic significance, Czechia is judged moderate rather than high, given its role as an EU manufacturing and export node rather than a financial-secrecy hub.

This capacity-deficit framing connects directly to the machinery-diversion finding tracked under the sanctions-architecture domain: a jurisdiction whose enabling role runs through screening and practice gaps at the export-control layer, rather than through deliberate facilitation, is a materially different enabler-jurisdiction profile than one built on active regulatory permissiveness. The same logic applies to the Justice Ministry's crypto-CDD failure, which is better read as an institutional governance gap than as a state choice to enable illicit finance.

Outlook

The single item most likely to move Czechia's enabler-jurisdiction assessment in either direction is the next MONEYVAL follow-up report, expected around the end of 2026, which should resolve whether the Compliance Enhancing Procedures status genuinely persisted to June 2025 or whether Czechia's R.32 standing has already been quietly resolved. Until that report is verified, Czechia's D3 status should remain at watch, with the capacity-deficit judgment carried forward as the operative frame rather than a political-choice narrative, since no evidence surfaced this cycle supports a deliberate-enablement reading.

Cumulative analysis

Enabler Jurisdictions and Professional Facilitators -- Cumulative Analysis

This first-cycle baseline for Czechia's enabler-jurisdiction status is dominated by a single unresolved evidentiary dispute layered over a broader four-dimension capacity assessment. The dispute concerns whether Czechia's MONEYVAL Compliance Enhancing Procedures status, tied to a persistent FATF Recommendation 32 shortcoming on cash couriers and cross-border declarations, genuinely continued through the June 2025 Joint FATF-MONEYVAL Plenary. Research initially asserted that it did; an adversarial Challenge-stage review found the claim unsubstantiated by the cited Plenary document itself, with the last independently verifiable confirmation dating only to the 2022 MONEYVAL follow-up report. This baseline therefore carries the claim at reduced, Possible-tier confidence, and treats Czechia's current technical-compliance standing on R.32 as unresolved rather than confirmed in either direction.

Independent of that dispute, the structural enabler-jurisdiction judgment established this cycle rests on a four-dimension assessment: legal framework, enforcement reality, capacity versus choice, and systemic significance. Czechia's legal framework, Act No. 253/2008 for AML/CFT and Act No. 37/2021 for beneficial ownership, is nominally EU-aligned on paper. Enforcement reality is mixed, evidenced by the disputed MONEYVAL status sitting alongside a sourcing-thinness gap around Czech National Bank AML/CFT civil-penalty disclosures, which this baseline treats as absence-of-data rather than confirmed absence-of-enforcement. On capacity versus choice, the assessment concludes that Czechia's documented weaknesses, spanning PEP-identification gaps among non-bank financial institutions, the persistent R.32 shortcoming, and the 2025 state-institution crypto-CDD blind spot, together indicate a capacity and practice deficit rather than a deliberate policy choice to enable illicit finance. On systemic significance, Czechia is assessed as moderate rather than high, reflecting its role as an EU manufacturing and export economy rather than a financial-secrecy hub.

This capacity-deficit framing is reinforced by, and should be read alongside, two other domain findings from this same baseline: the machinery-diversion pathway tracked under sanctions architecture, where Czech-manufactured equipment reaches Russian defence plants via Turkish intermediaries through an export-control screening gap rather than deliberate facilitation, and the Justice Ministry bitcoin-donation episode, where a state institution's failure to apply CDD-equivalent controls to a large cryptocurrency donation is judged a governance blind spot rather than evidence of state direction of, or capture by, criminal interests. Both findings are consistent with, and support, the same underlying capacity-deficit read rather than a deliberate-enablement narrative.

The standing tension carried forward into future cycles is the unresolved MONEYVAL status dispute itself. This baseline explicitly flags that the discrepancy permeates multiple modules, the domain tracker, the jurisdiction risk tracker, the regulatory horizon, and the proposed KB patch, and that a focused clean-up cycle should normalise the status across all of these once the underlying gap is closed via direct verification of the 2025 Plenary text. Until then, Czechia's enabler-jurisdiction status remains at watch, with an uncertain trajectory driven specifically by this open evidentiary question rather than by any new adverse finding.

domain_sub_briefs · D3 · Cumulative analysis

D4 Conflict Finance

Not covered

Conflict Finance is not yet covered for this jurisdiction in this report.

D5 Crypto, Digital Assets, and Financial Innovation

Crypto, Digital Assets, and Financial Innovation

Continue reading

Czechia's crypto and digital-asset integrity posture is assessed as worsening this cycle, driven by a state-level governance failure rather than a market-structure problem. In 2025 the Czech Ministry of Justice accepted and liquidated an approximately 1 billion CZK, roughly $45m, bitcoin donation from a convicted criminal through a process that bypassed the customer due diligence and know-your-customer chain expected of a regulated virtual-asset service provider or bank. The episode triggered a ministerial resignation, a State Security Council review, and a criminal probe, and it is the most acute crypto-integrity exposure identified in this baseline. The precise bitcoin quantity involved, reported elsewhere as 468 BTC, has not been independently confirmed in the primary baseline record and should be treated as unverified pending stronger sourcing.

This domestic governance gap sits against a rapidly tightening EU-level regulatory environment for crypto-asset service providers. The EU's 20th sanctions package, adopted in April 2026, imposed a sectoral ban on Russia-based crypto-asset service providers, prohibited RUBx and digital-ruble instruments, and activated the EU anti-circumvention tool against Kyrgyzstan for the first time, all directly applicable to Czech-domiciled crypto-asset operators conducting counterparty screening. Separately, and now already crystallised rather than merely pending, MiCA's Article 143(3) transitional window for legacy-regime crypto-asset service providers closed 1 July 2026: firms without full MiCA authorisation, a valid passport, or an orderly wind-down plan have lost their legal basis to serve EU or Czech clients from that date forward.

The combination of these two threads, a state-institution CDD failure exposing where the existing supervisory perimeter does not reach, and a market-facing regulatory environment that has just materially tightened, is the structural story for Czech crypto integrity this cycle. The MiCA closure and the EU sectoral crypto-sanctions ban both raise the compliance bar for licensed, private-sector crypto-asset operators; neither addresses the distinct governance gap that allowed a public institution to bypass equivalent controls entirely, since state bodies accepting donations were never brought within the standard obliged-entity supervisory perimeter in the first place.

Outlook

Czechia's crypto-integrity trajectory over the coming cycles will likely be shaped by whether the Justice Ministry episode produces any structural reform extending CDD-equivalent obligations to public-institution handling of digital assets, an outcome not yet evidenced in this baseline. On the regulatory-perimeter side, the confirmed close of the MiCA transitional window and the EU's sectoral crypto-sanctions measures are both now settled facts rather than open horizon items, meaning Czech-domiciled crypto-asset operators face an already-tightened compliance environment rather than a pending one. The unresolved question is whether the state-level governance gap exposed by the bitcoin scandal will be closed by a parallel reform, or whether it remains an outlier vulnerability outside the perimeter that MiCA and EU sanctions architecture were designed to cover.

Cumulative analysis

Crypto, Digital Assets, and Financial Innovation -- Cumulative Analysis

This first-cycle baseline for Czechia's crypto and digital-asset integrity domain is anchored on a single acute finding, a state-institution governance failure, set against a rapidly tightening EU regulatory perimeter that this baseline treats as structurally distinct from that failure. The Justice Ministry's 2025 acceptance and liquidation of an approximately 1 billion CZK, roughly $45m, bitcoin donation from a convicted criminal, executed through a process that bypassed the customer due diligence and know-your-customer chain expected of a regulated virtual-asset service provider or bank, is this baseline's most consequential crypto-integrity finding. It produced a ministerial resignation, a State Security Council review, and a criminal probe. This baseline explicitly flags that the precise bitcoin quantity, reported elsewhere as 468 BTC, remains unconfirmed in the primary record and should not be treated as settled.

Working alongside this domestic governance gap is a market-facing regulatory environment that tightened materially over the period this baseline covers. The EU's 20th sanctions package, April 2026, introduced a sectoral ban on Russia-based crypto-asset service providers, prohibited RUBx and digital-ruble instruments, and activated the EU's anti-circumvention tool against Kyrgyzstan for the first time, directly binding Czech-domiciled crypto-asset operators' counterparty-screening obligations. Separately, MiCA's Article 143(3) transitional window for legacy-regime crypto-asset service providers closed 1 July 2026, a milestone this baseline treats as already crystallised rather than a pure future horizon item, since the closure date had passed by the time of baseline collection. Firms without full MiCA authorisation, a valid passport, or an orderly wind-down plan have consequently lost their legal basis to serve EU or Czech clients.

The integrated read this baseline establishes, and carries forward as the domain's structural anchor, is that these two threads operate on different planes and should not be conflated. The MiCA closure and the EU's sectoral crypto-sanctions measures both raise the compliance bar for licensed, private-sector crypto-asset operators operating within the regulated perimeter. Neither reaches the distinct governance gap exposed by the Justice Ministry episode, because public institutions accepting digital-asset donations were never brought within the standard obliged-entity supervisory perimeter to begin with. This is a genuine architectural gap, not merely an enforcement lapse within an existing framework, and it is the reason this domain's trajectory is assessed as worsening rather than stable, even as the market-facing regulatory environment simultaneously tightens.

Going forward, the domain's open question is whether the state-level governance gap will be closed by a parallel reform extending CDD-equivalent obligations to public-institution handling of digital assets, an outcome not yet evidenced anywhere in this baseline. Until such a reform materialises, Czechia's crypto-integrity profile should be read as bifurcated: a tightening, increasingly well-specified regulatory perimeter for licensed crypto-asset operators, and an unaddressed structural blind spot for public-institution handling of digital assets that sits entirely outside that perimeter.

domain_sub_briefs · D5 · Cumulative analysis

D6 Compliance Technology and Active Defence

Compliance Technology and Active Defence

Continue reading

Czechia's D6 signal this cycle is improving on balance, driven by a structural counterweight to a freshly exposed governance gap rather than by any deterioration in defensive capability. The governance gap itself is the Justice Ministry's 2025 bitcoin-donation episode: the liquidation of an approximately 1 billion CZK, roughly $45m, cryptocurrency donation from a convicted criminal illustrates that Czech public institutions are not subject to the same customer due diligence and know-your-customer supervisory perimeter as regulated virtual-asset service providers or banks. This is a governance blind spot in how the existing AML Act framework applies, or fails to apply, to state-institution handling of digital assets, rather than evidence of deliberate compromise.

A related, narrower gap concerns supervisory-output transparency rather than supervisory capability: no specific dated Czech National Bank AML/CFT civil-penalty disclosure was identified in open-source reporting within the eighteen-month baseline window, despite the CNB's role as prudential AML supervisor. This is treated as a sourcing-thinness gap rather than as confirmed evidence of an enforcement vacuum, and it should not be read as proof that the CNB's active-defence posture is deficient, only that visible open-source documentation of its AML/CFT enforcement intensity is currently thin.

The structural counterweight to both gaps is AMLA's continuing build-out. Operational in Frankfurt since mid-2025 and staffing toward roughly 430 by end-2027, the EU Anti-Money Laundering Authority is progressing toward its first selection of around forty directly-supervised, high-risk cross-border obliged entities in 2027, with direct supervision beginning in 2028. Czech-domiciled entities are eligible for this cohort if they meet the cross-border and high-risk criteria, which would shift at least a slice of Czechia's compliance-technology and supervisory perimeter from purely national oversight toward a hybrid EU-level regime with its own methodology and technology requirements.

Read together, these three threads describe a compliance-technology landscape in transition: a newly exposed gap in how state institutions handle digital assets, a visibility gap in domestic prudential-supervisor disclosure, and a slow but structurally significant EU-level supervisory build-out that will eventually reach into Czech-domiciled high-risk entities. None of the three is, on its own, dispositive of Czechia's overall active-defence posture, but together they suggest a system where technology and supervisory reach are still catching up to the full range of entities, public and private, that handle high-risk financial flows.

Outlook

The trajectory to watch is AMLA's 2027 entity-selection round and 2028 supervision start, since these are the concrete near-term milestones that will determine whether Czech-domiciled cross-border obliged entities begin operating under the hybrid EU-level supervisory technology and methodology regime. Separately, whether the Justice Ministry's crypto-CDD failure prompts any reform extending obliged-entity-equivalent controls to public-institution handling of digital assets remains an open and, as yet, unaddressed question; its resolution would materially improve Czechia's D6 posture, while its continuation as an unaddressed blind spot would leave a known gap in place regardless of AMLA's progress elsewhere.

Cumulative analysis

Compliance Technology and Active Defence -- Cumulative Analysis

This first-cycle baseline for Czechia's compliance-technology and active-defence domain establishes an improving trajectory built on a structural counterweight, AMLA's build-out, sitting alongside two identified gaps that this baseline is careful to distinguish from one another rather than conflate. The first gap is a genuine governance blind spot: the Justice Ministry's 2025 acceptance and liquidation of an approximately 1 billion CZK, roughly $45m, bitcoin donation from a convicted criminal demonstrates that Czech public institutions sit outside the customer due diligence and know-your-customer supervisory perimeter applied to regulated virtual-asset service providers and banks. This baseline treats this as a genuine architectural gap in how the existing AML Act framework reaches, or fails to reach, state-institution handling of digital assets, not as evidence of deliberate compromise or state direction.

The second gap is narrower and of a different character: no specific dated Czech National Bank AML/CFT civil-penalty disclosure was identified in open-source reporting within the eighteen-month baseline window, despite the CNB's role as prudential AML supervisor. This baseline explicitly treats this as a sourcing-thinness gap, an absence-of-data finding, rather than confirmed evidence of an absence-of-enforcement. The distinction matters going forward: closing this gap requires better documentation of CNB enforcement activity, not necessarily new enforcement itself, and future cycles should watch for published CNB disclosures that would resolve the ambiguity in either direction.

Against both gaps, this baseline identifies AMLA's continuing build-out as the durable structural counterweight for the domain. Operational in Frankfurt since mid-2025 and staffing toward roughly 430 by end-2027, AMLA is progressing toward its first selection of approximately forty directly-supervised, high-risk cross-border obliged entities in 2027, with direct supervision beginning in 2028. Czech-domiciled entities are eligible for this cohort where they meet the cross-border and high-risk criteria. This build-out represents a genuine shift of at least a portion of the EU's, and by extension Czechia's, compliance-technology and supervisory perimeter from a purely national model toward a hybrid EU-level regime, with its own methodology, staffing, and technology requirements distinct from national supervisors' existing tooling.

The integrated judgment this baseline carries forward is that Czechia's active-defence posture is best characterised as a system in transition rather than as either strong or weak in absolute terms: a newly exposed and unaddressed gap in state-institution digital-asset handling, a visibility gap in domestic prudential-supervisor disclosure that may or may not reflect an underlying enforcement gap, and a slow-moving but structurally consequential EU-level supervisory build-out that will not reach its first operational milestone until 2027 at the earliest. None of these three threads alone determines the domain's trajectory; their combination, with AMLA's build-out continuing on schedule while the state-institution gap remains open, is what supports this cycle's improving-but-incomplete assessment.

Future cycles should track two concrete developments specifically: whether AMLA's 2027 entity-selection round proceeds on schedule and whether it includes Czech-domiciled entities, and whether any domestic reform emerges to extend obliged-entity-equivalent controls to public-institution handling of digital assets following the Justice Ministry episode.

domain_sub_briefs · D6 · Cumulative analysis
Regulatory horizon
In Force1 Jul 2026 · ±quarter

MiCA transitional period closes for all EU crypto-asset service providers

The outer-limit transitional window under MiCA Article 143(3) closes; unauthorised legacy crypto-asset service providers can no longer legally serve EU/Czech clients.
In Force Pending31 Dec 2026 · ±half_year

AMLA Work Programme and supervisory-methodology build-out

AMLA stands up in Frankfurt and publishes its first work programme and supervisory methodology.
In Force31 Dec 2026 · ±year

Czechia's next MONEYVAL Compliance Enhancing Procedure follow-up report

Czechia is expected to report further progress on the outstanding FATF Recommendation 32 shortcoming to MONEYVAL.
Adopted1 Jul 2027 · ±year

AMLR / 6AMLD application date

The single AML rulebook (AMLR, Reg (EU) 2024/1624) becomes directly applicable EU-wide and 6AMLD transposition deadlines bite across Member States, replacing Czechia's Act No. 253/2008 transposition of prior directives with harmonised CDD, beneficial-ownership and EU-wide cash-payment-limit rules.
Adopted1 Jan 2028 · ±multi_year

AMLA direct supervision of selected obliged entities begins

AMLA begins direct supervision of a first cohort (~40) of high-risk cross-border obliged entities, shifting supervisory perimeter from purely national authorities toward a hybrid EU-level regime.
5 dated · 4 pending date · baseline financial-integrity-2026-07-05
Role action cards
MLROHigh

A Czech state institution liquidated a large unverified bitcoin donation without VASP-equivalent due diligence, while a separate EPPO conviction and a sourcing gap around CNB AML fines round out this cycle's reportable-activity picture.

The Justice Ministry bitcoin episode is an assessed institutional CDD and governance failure, not confirmed state capture, and illustrates a supervisory seam around public-sector handling of digital assets that sits outside standard obliged-entity onboarding controls. The EPPO subsidy-fraud conviction confirms that layered proceeds through controlled companies remain an active typology in the Czech enforcement environment. The absence of visible CNB AML/CFT penalty disclosure is treated as a sourcing gap, not confirmed under-enforcement, and should not be read as a green light.

3 evidence refs
ComplianceAssessed

Three EU sanctions packages and the MiCA transitional close have materially expanded the screening and authorisation perimeter Czech obliged entities must operate within, while Czechia's MONEYVAL technical-compliance status remains formally unresolved.

The 19th and 20th EU sanctions packages, plus the close of the pipeline-oil derogation, directly expand designation and instrument-level screening obligations for Czech-domiciled obliged entities. MiCA's Article 143(3) transitional close removes the legal basis for unauthorised legacy crypto-asset providers to serve Czech or EU clients. Czechia's enabler-jurisdiction profile is assessed as capacity-deficit rather than choice-driven, but the MONEYVAL Compliance Enhancing Procedures status dispute means the underlying technical-compliance narrative should be treated as pending, not settled, in any control-framework gap analysis.

4 evidence refs
LegalHigh

Czechia's sanctions-derogation closure, expanding EU designation packages, an EPPO conviction, and an ongoing French investigation into a former Prime Minister together define this cycle's liability and enforcement-trajectory picture.

The end of Czechia's pipeline-oil exemption and the sequential 19th/20th package expansions narrow the space for jurisdiction-specific sanctions arguments. The EPPO conviction demonstrates active EU-level prosecutorial reach into Czech subsidy fraud and money laundering. The Babis Pandora Papers matter, being pursued by French rather than Czech authorities, is a live illustration of cross-border rather than domestic enforcement initiative on PEP-linked structures, relevant to any client-instruction risk assessment involving Czech PEPs.

4 evidence refs
BoardAssessed

A ministerial resignation over an unvetted bitcoin donation and an ongoing foreign investigation into a former Prime Minister carry reputational salience, while AMLA's build-out signals a strategic, multi-year shift in EU supervisory architecture.

The bitcoin scandal and the Babis case are both governance-adjacent rather than confirmed capture events, but both carry reputational and political salience given the state and PEP dimensions involved. AMLA's continuing build-out toward 2027 entity-selection and 2028 direct supervision is the more strategically consequential development for board-level oversight, since it signals a durable, multi-year shift of EU AML supervision from national authorities toward a hybrid EU-level regime that may eventually reach Czech-domiciled entities.

3 evidence refs
CTOHigh

The EU's crypto-sanctions sectoral ban and the confirmed close of MiCA's transitional authorisation window materially change the technical and platform-level compliance requirements for Czech-domiciled crypto operators, alongside a state-level CDD failure exposing a supervisory-perimeter gap.

The EU 20th package's sectoral ban on Russia-based crypto-asset service providers and its RUBx/digital-ruble prohibitions require updated counterparty-screening logic for Czech-domiciled crypto-asset platforms. MiCA's Article 143(3) transitional close, now a crystallised rather than pending event, removes the legal basis for unauthorised legacy providers to operate. The Justice Ministry bitcoin episode illustrates that CDD-equivalent controls are not uniformly applied outside the licensed VASP perimeter, a structural gap distinct from platform-level technical compliance.

3 evidence refs
RiskAssessed

Czechia's risk profile is assessed as an export-node exposure in the Russian sanctions-evasion architecture and a legacy offshore-structuring stock, both read as capacity-deficit exposures rather than deliberate-enablement risk.

The machinery-diversion pathway via Turkish intermediaries and the unaddressed pre-2021 legacy offshore structuring both represent durable, structural exposure concentrations for counterparties with Czech trade-finance or fund-structure links. The four-dimension enabler-jurisdiction assessment supports treating Czechia as moderate rather than high systemic-significance risk, given its manufacturing-node rather than secrecy-hub profile, though this should be monitored for change if new evidence of deliberate facilitation emerges.

3 evidence refs
OperationsAssessed

Screening lists and onboarding workflows for Czech-linked trade finance and crypto counterparties need to reflect the closed pipeline-oil exemption, the expanded EU sanctions perimeter, and the closed MiCA transitional window.

The end of Czechia's pipeline-crude derogation removes a jurisdiction-specific screening exception that some workflows may still be carrying. The 19th and 20th EU sanctions packages add both new designated entities and new instrument-level prohibitions requiring updated screening rules. MiCA's transitional close is an operational deadline that has already passed, meaning onboarding workflows for EU/Czech crypto-asset counterparties should already reflect the requirement for full MiCA authorisation or an orderly wind-down status.

3 evidence refs
AuditAssessed

The Justice Ministry's undocumented bitcoin due diligence, the sourcing gap around CNB AML fine disclosures, and the disputed MONEYVAL status together highlight documentation and evidentiary gaps in the Czech control environment worth control-testing attention.

The bitcoin episode is a concrete illustration of a missing audit trail for CDD-equivalent controls at a state institution accepting large-value crypto transfers. The absence of published CNB civil-penalty data is treated as a documentation gap rather than confirmed under-enforcement, but it limits the evidentiary basis for assessing prudential AML enforcement intensity. The disputed MONEYVAL status similarly reflects a documentation-verification gap at the international assessment level, reinforcing that control-testing scope should not assume Czechia's technical-compliance status is settled.

3 evidence refs
Decision lens
MLRO

A Czech state institution liquidated a large unverified bitcoin donation without VASP-equivalent due diligence, while a separate EPPO conviction and a sourcing gap around CNB AML fines round out this cycle's reportable-activity picture.

Compliance

Three EU sanctions packages and the MiCA transitional close have materially expanded the screening and authorisation perimeter Czech obliged entities must operate within, while Czechia's MONEYVAL technical-compliance status remains formally unresolved.

Legal

Czechia's sanctions-derogation closure, expanding EU designation packages, an EPPO conviction, and an ongoing French investigation into a former Prime Minister together define this cycle's liability and enforcement-trajectory picture.

Board

A ministerial resignation over an unvetted bitcoin donation and an ongoing foreign investigation into a former Prime Minister carry reputational salience, while AMLA's build-out signals a strategic, multi-year shift in EU supervisory architecture.

CTO

The EU's crypto-sanctions sectoral ban and the confirmed close of MiCA's transitional authorisation window materially change the technical and platform-level compliance requirements for Czech-domiciled crypto operators, alongside a state-level CDD failure exposing a supervisory-perimeter gap.

Risk

Czechia's risk profile is assessed as an export-node exposure in the Russian sanctions-evasion architecture and a legacy offshore-structuring stock, both read as capacity-deficit exposures rather than deliberate-enablement risk.

Operations

Screening lists and onboarding workflows for Czech-linked trade finance and crypto counterparties need to reflect the closed pipeline-oil exemption, the expanded EU sanctions perimeter, and the closed MiCA transitional window.

Audit

The Justice Ministry's undocumented bitcoin due diligence, the sourcing gap around CNB AML fine disclosures, and the disputed MONEYVAL status together highlight documentation and evidentiary gaps in the Czech control environment worth control-testing attention.

Shared evidence: 8 refs
Scenario sketches

AMLA direct-supervision transition and its evasion-landscape implications

As AMLA moves from establishment toward its 2027 entity-selection round and 2028 direct-supervision start, the supervisory perimeter for high-risk cross-border obliged entities could shift from a purely national model toward a hybrid EU-level regime. Illustratively, this transition could reshape where evasion actors seek supervisory arbitrage: entities currently relying on inconsistent national-level enforcement intensity across Member States, of the kind this baseline observes in the Czech National Bank sourcing-thinness gap, may find that gap narrowing as AMLA methodology standardises supervisory expectations. Conversely, entities just below AMLA's direct-supervision threshold could see relatively increased national-supervisor attention as national authorities recalibrate resource allocation around the entities AMLA does not select. This is illustrative orientation on a structural transition already publicly scheduled, not a prediction of how any specific entity or jurisdiction will behave.

Illustrative scenario for analytical orientation only. Not compliance advice, not a prediction, and not a statement of observed fact.

Public-institution digital-asset handling as an unaddressed supervisory seam

The Justice Ministry bitcoin episode illustrates a structural seam in which public institutions accepting or handling digital assets sit outside the obliged-entity CDD perimeter applied to regulated VASPs and banks. Illustratively, similar seams could exist wherever public bodies, across jurisdictions, accept large-value donations, settlements, or asset transfers in cryptocurrency without a defined internal control framework equivalent to VASP-level onboarding. Absent a targeted reform extending obliged-entity-equivalent controls to public-sector handling of digital assets, this seam could persist as a latent vector regardless of how tightly the licensed private-sector crypto perimeter is regulated under instruments such as MiCA. This is an illustrative structural orientation, not an assertion that any other public institution has been or will be affected.

Illustrative scenario for analytical orientation only. Not compliance advice, not a prediction, and not a statement of observed fact.

Standing trackers (T1–T6)
TrackerStatusNote
T1 · Russian Sanctions-Evasion Architecturematerial_change
T2 · EU AML Package / AMLAmaterial_change
T3 · FATF Grey Listno_change
T4 · Beneficial-Ownership Register Statusmaterial_change
T5 · Crypto & Digital-Asset Integritymaterial_change
T6 · Sanctions Regime Divergenceno_change
Registers

Enforcement actions

  • State prosecutors opened a formal probe into the Justice Ministry's acceptance of a c. 1 billion CZK bitcoin donation from a convicted criminal and its subsequent liquidation, examining possible facilitation of money laundering at a state institution. 30 May 2025
  • A Czech court convicted three people and three companies of EU-subsidy fraud and money laundering in a €5.5 million scheme involving fabricated research projects and layered laundering through controlled companies. 20 Aug 2025
  • The joint FATF-MONEYVAL Plenary confirmed Czechia remains subject to MONEYVAL's Compliance Enhancing Procedures, reserved for members whose moderate or major shortcomings on a core FATF Recommendation persist beyond three years after their mutual evaluation report. 13 Jun 2025

Sanctions changes

  • The EU's 18th sanctions package ended the temporary derogation that had allowed Czechia (along with formerly Poland and Germany) to keep importing Russian crude oil by pipeline owing to geographic dependence, removing a jurisdiction-specific carve-out from the EU oil-import ban. 1 Jul 2025
  • The EU's 19th sanctions package (October 2025) added 69 new listings including oligarchs, shadow-fleet management entities, and third-country facilitators, directly expanding the screening perimeter Czech obliged entities and exporters must apply under EU Regulation 269/2014. 23 Oct 2025
  • The EU's 20th sanctions package (April 2026) imposed a total sectoral ban on Russia-based crypto service providers and decentralised platforms, prohibited the RUBx ruble-backed stablecoin and the digital ruble CBDC, and activated the EU's anti-circumvention tool for the first time against the Kyrgyz Republic, all directly applicable to Czech-domiciled CASPs and financial institutions. 23 Apr 2026

Regulatory horizon (register)

  • MiCA transitional period closes for all EU CASPs
  • EU AML Regulation (AMLR) becomes directly applicable
  • AMLA begins direct supervision of high-risk obliged entities
  • Czechia's next MONEYVAL Compliance Enhancing Procedure follow-up

Active schemes

  • [CRITICAL] State-institution crypto-asset monetisation without due diligence
  • [HIGH] Czech-manufactured machinery diverted to Russian defence plants
  • Legacy Czech offshore/shell-company structuring network
  • PEP offshore property structuring (Babiš/Pandora Papers nexus)
Sources
  1. FATF / MONEYVAL
  2. FATF / MONEYVAL
  3. Council of the European Union (Consilium)
  4. European Commission e-Justice Portal / Czech Ministry of Justice submission
  5. OCCRP
  6. Bloomberg
  7. OCCRP / Kyiv Independent / IrpiMedia
  8. European Commission (DG FISMA)
  9. European Commission (AMLA Task Force / DG FISMA)
  10. OCCRP / Czech Center for Investigative Journalism
  11. ICIJ
  12. OCCRP
Coverage gaps
Since its 2018 MER and successive 2020, 2021 and 2022 follow…
Since its 2018 MER and successive 2020, 2021 and 2022 follow-up reports, Czechia has retained moderate technical-compliance shortcomings on one FATF Recommendation, confirmed as still unresolved at the June 2025 joint FATF-MONEYVAL Plenary under Compliance Enhancing Procedures.
The Justice Ministry's acceptance and sale of an unverified …
The Justice Ministry's acceptance and sale of an unverified c.$45m bitcoin donation from a convicted criminal, absent the CDD/KYC chain expected of a regulated VASP or bank, exposed a capacity gap in how Czech public institutions themselves handle high-value crypto assets outside the AML supervisory perimeter.
Despite the 2021 beneficial-ownership register, the legacy a…
Despite the 2021 beneficial-ownership register, the legacy architecture of offshore shell structuring built by Czech nationals through the 1990s-2000s (documented extensively in the Panama Papers) has not been retrospectively dismantled; historic non-compliant entities and the professional-enabler networks that built them persist as latent capacity.
No specific, dated Czech National Bank (ČNB) AML/CFT civil-p…
No specific, dated Czech National Bank (ČNB) AML/CFT civil-penalty or supervisory-fine disclosure specific to a bank or payment institution was identified in open-source reporting within the 18-month window, despite ČNB's role as prudential AML supervisor; available disclosures concentrate on non-AML market-conduct fines (e.g., CEZ) rather than AML enforcement statistics.

Evidence

Confidence-tiered claims

No structured claims published for this jurisdiction yet.