HONG KONG · EAST ↔ WEST
info@lockhartyip.comResponse within 4 hours (UTC+8)
Discuss your matter
Home/Insights/Disputes & Arbitration
Sanctions & AML

Where counterparty screening for a Greater China supply chain stands now

Counterparty screening for a Greater China supply chain. The current cross-border position and what it means in practice. Write to info@lockhartyip.com.

The payment channel is the pressure point. For any international group trading with or through Greater China, the question is no longer whether to screen counterparties – it is whether the screening programme is calibrated to the actual risk, documented in a form that satisfies multiple regulators, and sequenced correctly before the payment instruction reaches the bank. Get that wrong and the downstream cost is account closure, transaction freezes, or a debanking event that disrupts an entire supply chain.

Counterparty screening for a Greater China supply chain sits at the intersection of Hong Kong's Anti-Money Laundering and Counter-Terrorist Financing Ordinance, the United Nations Sanctions Ordinance, and the commercial banking standards that Hong Kong-licensed institutions apply to PRC-connected transaction flows. The governing instruments are clear; the compliance burden falls on the contracting entity and its instructing counsel, not the bank. The risk has sharpened as enforcement posture in the region has moved from guidance to live supervisory action.

This analysis sets out the current commercial and legal position, maps the governing instruments, and offers our read on where the risk concentrates now. The frame is compliance throughout; the question is always what the rules require, never how to avoid them.

What is commercially at stake in a Greater China supply chain?

The stakes are straightforward: banking access. A Greater China supply chain that cannot clear USD, HKD, EUR, or RMB through a correspondent channel is a supply chain that does not function. That is the commercial reality that drives the compliance conversation – not abstract legal obligation, but the immediate operational consequence of a failed transaction.

Consider what a typical structure looks like. A European or Middle Eastern group sources manufactured goods from a PRC entity. The holding entity sits in Hong Kong or the BVI. The payment instruction goes through a Hong Kong-licensed bank. That bank applies its own customer due diligence and transaction monitoring against the payer, the payee, and the underlying counterparty. If any element flags – a restricted-party match, an adverse-media result, a source-of-funds gap – the transaction stops. The goods do not ship. The contract is in breach.

This is not a theoretical scenario. In our cross-border practice, we see this sequence regularly. The practical lesson is that a compliance programme built to satisfy the contracting party's home-jurisdiction regulator is not the same as a programme built to keep the payment channel open in Hong Kong. The two sets of requirements overlap significantly, but they are not identical, and the gap is where operational disruption tends to occur.

A second commercial dimension is reputational. Banks in Hong Kong operate under heightened scrutiny from the Hong Kong Monetary Authority. An account holder whose counterparties generate repeated screening hits will attract enhanced due diligence requirements – or lose the relationship entirely. For a group with a material Greater China exposure, that outcome is not manageable by rerouting payments elsewhere. The problem follows the counterparty, not the bank.

What are the governing instruments and how does the cross-border interface operate?

Two instruments govern the compliance baseline in Hong Kong: the Anti-Money Laundering and Counter-Terrorist Financing Ordinance, which imposes customer due diligence, record-keeping, and suspicious-transaction-reporting obligations on designated non-financial businesses and financial institutions; and the United Nations Sanctions Ordinance, which gives domestic effect to UN Security Council sanctions designations. Hong Kong does not give domestic legal effect to unilateral measures – those of the United States, the European Union, or the United Kingdom – but the commercial banking system operates under its own standards, and those standards are informed by the international correspondent banking environment.

That distinction matters practically. A Hong Kong-registered entity transacting with a PRC counterparty that does not appear on any UN list is not in breach of Hong Kong sanctions law. That same entity may nonetheless find that its Hong Kong bank declines the transaction because the bank's own compliance policy reflects the correspondent banking standards of its USD or EUR clearing relationships. The legal position and the commercial position diverge at precisely that point, and the divergence is where legal counsel earns its fee.

The cross-border interface bites in a second direction. Where the PRC counterparty is itself an entity subject to Chinese domestic AML regulation, the due-diligence file needs to address what that counterparty can disclose. PRC data-protection and state-secrecy rules place limits on the documents a Mainland entity can export. A standard beneficial-ownership questionnaire that works in a UK or Singaporean context may produce incomplete or legally constrained responses from a PRC counterparty – not from bad faith, but from regulatory constraint on the other side of the boundary. Designing the screening programme to work with that constraint, rather than against it, is a core element of competent cross-border AML counsel.

A third instrument worth naming is the Mainland Judgments in Civil and Commercial Matters (Reciprocal Enforcement) Ordinance, which came into force on 29 January 2024. Its relevance here is indirect but real: where a compliance failure generates a civil claim, the enforceability of a resulting judgment across the Mainland–Hong Kong boundary is now materially stronger than it was under the previous regime. The compliance cost of getting screening wrong has therefore risen, not in the criminal sense, but in the civil-enforcement sense.

How does the comparative read across Hong Kong and Mainland systems actually work?

Two systems meet, and neither fully substitutes for the other. Hong Kong operates a common-law AML regime with mandatory suspicious-transaction reporting, tiered customer due diligence, and a Monetary Authority that publishes enforcement guidance and supervisory circulars. The Mainland operates its own AML regime under the Anti-Money Laundering Law – a statutory instrument whose requirements are substantively similar in scope but differ significantly in procedural terms, in the data-sharing constraints noted above, and in the role of financial institutions versus contracting parties.

What does that mean for a screener sitting in Hong Kong? It means the due-diligence file for a PRC counterparty cannot simply replicate the file assembled for a Singaporean or Cayman counterpart. The beneficial-ownership chain may pass through state-owned enterprise structures whose ultimate ownership is, by design, not traceable to a natural person in the same way a private-company structure is. The screening programme needs to address that reality and document the analysis – not pretend the chain does not exist.

Our desk sees this gap most clearly in two situations. First, where a mid-market group acquires a PRC supplier and the compliance team applies its standard onboarding questionnaire without adjusting for PRC structural norms. The questionnaire returns nominally complete responses. The beneficial-ownership analysis is in fact incomplete. The bank flags the transaction six months later when a payment instruction arrives. Second, where a group has operated a Greater China supply chain for years under a legacy compliance programme and then onboards a new banking relationship whose standards are more current. The legacy file that was acceptable in one context fails the new bank's review on day one.

The comparative read across systems also has a sanctions dimension. Hong Kong implements UN designations. The Mainland implements UN designations plus additional domestic designations. A counterparty on neither the UN list nor the Mainland domestic list may nonetheless appear on an OFAC or EU list. The Hong Kong bank will apply its correspondent-bank standards to that designation. The legal answer is that Hong Kong law does not require the corporate screener to apply OFAC or EU lists. The practical answer is that the bank will – and the corporate screener needs to understand both answers to advise its client correctly.

For a deeper read on how source-of-funds file requirements apply to Mainland counterparties specifically, our analysis at AML and source-of-funds files for Mainland China counterparties sets out the current position and the documentation approach we recommend.

Where does the risk actually sit in 2027?

The window for a tolerant supervisory posture has closed. That is the honest read. The Hong Kong Monetary Authority has moved from issuing thematic guidance to conducting targeted supervisory reviews of AML controls at financial institutions with material Greater China exposure. The direct consequence for corporate clients is that banks are passing the compliance burden down the chain: where a bank's own regulatory review produces adverse findings, it remediates through enhanced due diligence requirements on its most PRC-exposed account holders.

The risk concentrates in three places. First, at the payment instruction level. A transaction instruction that arrives without a complete counterparty-screening file – or with a file that pre-dates the current supervisory standards – will be questioned or delayed. For a supply chain operating on tight payment terms, that delay is a commercial event, not a compliance formality.

Second, at the correspondent-bank level. A Hong Kong bank that clears USD through a US correspondent or EUR through a European correspondent is itself subject to the standards of that correspondent. Where the underlying PRC counterparty has any connection – however indirect – to a US or EU designated entity, the correspondent bank may request that the Hong Kong bank provide a certification, or may decline to clear the transaction. The Hong Kong corporate in the middle has no control over that decision unless its compliance file is strong enough to support the certification its bank needs to give.

Third, at the group-liability level. Where a corporate group's compliance programme fails – either because it was never adequate or because it has not been updated to reflect current standards – the exposure is not limited to the Hong Kong entity. Group parent liability, director liability under applicable corporate governance rules, and civil claims from counterparties disrupted by a payment failure all flow from the same root cause: a screening programme that does not match the current environment.

The sequence of steps that determines whether a payment instruction clears or stalls is also the sequence that determines whether a compliance file holds up under a supervisory review. These are not separate questions. They are the same question, asked at different points in time.

What foreign counsel and in-house teams typically get wrong

The most common error we see is jurisdictional mapping. A group's external counsel or compliance team maps the counterparty against the sanctioned-parties lists that apply in the group's home jurisdiction – correctly – and then assumes the Hong Kong position is the same. It is not. The instruments are different. The enforcement posture is different. The data-constraints on the other side of the Mainland boundary are different. Mapping one correctly does not map the other.

A second error is timing. Counterparty screening is treated as an onboarding step rather than a continuous obligation. The Anti-Money Laundering and Counter-Terrorist Financing Ordinance imposes ongoing monitoring obligations, not a one-time check at contract formation. A counterparty that was clean at onboarding may acquire adverse-media or designation risk at any point during a multi-year supply relationship. The compliance programme needs to reflect that.

A third error is documentation strategy. The due-diligence file is prepared to satisfy the client's own internal audit function. It is not designed from the outset to satisfy a bank's compliance query or an HKMA-driven enhanced due diligence request. When the bank query arrives – often as a request for information under a tight deadline – the file does not answer the right questions in the right format. Rebuilding the file under time pressure, with the payment instruction stalled, is avoidable. Building the file correctly the first time is the discipline.

For cross-border transactions that also touch the United Kingdom – where unilateral sanctions apply directly and create a separate compliance layer – our guide at sanctions due diligence for a deal touching the United Kingdom addresses the interface between the UK regime and the Hong Kong position.

Our view: what this means in practice for the payment channel

The payment channel is not automatically available to a commercially sound transaction. It is available to a commercially sound transaction that is also accompanied by a compliance file that the bank can rely on. Those are two different conditions, and the second is the one that legal counsel can directly influence.

In our cross-border practice, the approach that consistently keeps the payment channel open has three elements. First, a screening programme designed against the instruments and standards actually applied in Hong Kong – the Anti-Money Laundering and Counter-Terrorist Financing Ordinance, the United Nations Sanctions Ordinance, and the correspondent-bank standards that the instructed bank operates under – not against the standards of the group's home jurisdiction. Second, a documentation approach that addresses the PRC-specific constraints on beneficial-ownership disclosure explicitly, so the file does not appear incomplete when it is actually constrained by the other jurisdiction's law. Third, a review cycle that matches the current supervisory environment rather than the environment of two or three years ago.

What changes the calculus on a given transaction? Typically three things: the counterparty's ownership structure (state-owned enterprise versus private group versus VIE); the payment currency and the clearing channel it passes through (USD clearing carries different correspondent-bank standards than HKD clearing); and the sector (technology, advanced manufacturing, and dual-use goods attract heightened scrutiny regardless of designation status). A screening programme that does not adjust for those variables will produce a file that is technically complete but practically inadequate.

A micro-scenario illustrates the point. A European industrial group with a long-standing BVI holding entity and a Guangdong-based manufacturing counterparty came to us in early 2027, after its Hong Kong bank's compliance team placed its primary payment account under enhanced due diligence. The trigger was not a sanctions hit. It was a mismatch between the group's legacy beneficial-ownership file – prepared under its German counsel's standard – and the bank's current HKMA-aligned template. We reviewed the existing file, identified the disclosure gaps generated by the PRC subsidiary's state-linked minority shareholder, restructured the documentation approach, and provided the bank with the certification it needed. The account was released within one review cycle.

A second scenario: an Asian family office with a distribution supply chain into the Mainland had operated without a formal counterparty screening programme because its transactions were all with the same three counterparties and the relationships were longstanding. A new banking relationship – established to access a different clearing channel – applied current onboarding standards and identified that two of the three counterparties had beneficial owners who appeared in adverse media connected to a sector under US export controls. The Hong Kong legal position was not compromised. The correspondent-bank question was live. We prepared a documented analysis of the legal position, the business rationale for each relationship, and the monitoring programme going forward. The new bank accepted the file; the clearing relationship was established.

Where this is heading: the directional read

Three directional trends are visible and, on the evidence available, are unlikely to reverse. Each one increases the compliance cost of operating a Greater China supply chain through Hong Kong.

The first is supervisory convergence. The HKMA's AML supervisory standards have moved closer to international FATF (the Financial Action Task Force) expectations since the last mutual evaluation cycle. That convergence is continuing. Banks are responding by tightening their own standards and passing enhanced due diligence requirements to their corporate clients. The compliance threshold that was adequate in 2024 may not be adequate when the next supervisory review cycle begins.

Second, data-constraint complexity is increasing, not decreasing. PRC data-protection rules – including the Personal Information Protection Law and the Data Security Law – impose constraints on the export of personal and sensitive data. Those constraints apply to the beneficial-ownership information a PRC counterparty can provide to a Hong Kong screener. As those rules are interpreted and enforced with greater consistency, the gap between what a standard due-diligence questionnaire asks and what a PRC counterparty can lawfully provide will widen. Compliance programmes that do not account for this gap are heading toward a structural failure point.

Third, the virtual-asset dimension is entering the supply-chain context. Hong Kong's virtual-asset trading platform licensing regime, which commenced on 1 June 2023, and the emerging regime for fiat-referenced stablecoin issuers under the Hong Kong Monetary Authority's oversight, are beginning to intersect with supply-chain financing structures. Where a supply chain uses a stablecoin settlement mechanism or a virtual-asset-denominated payment, the screening programme needs to address the virtual-asset-specific AML requirements – including the FATF travel rule for virtual-asset transfers – in addition to the standard counterparty-screening obligations. That is a newer compliance layer and one where the documentation practice is still developing.

For the full range of compliance positions relevant to this practice, our Sanctions & AML practice page sets out the firm's cross-border approach: Sanctions & AML practice.

The sequence above describes the standard position. Your matter turns on the documents, the jurisdictions actually engaged, and the order of steps – which is where the compliance programme holds or fails.

For a structured assessment of your counterparty screening position across the relevant jurisdictions, write to us at info@lockhartyip.com.

Decision map: situation, instrument, route, risk

Not every Greater China supply-chain transaction presents the same compliance profile. The following map identifies the situations our desk most commonly encounters and the corresponding instrument, route, and risk concentration.

Situation A: a private-company PRC counterparty with a clean UN list result and no adverse media. Governing instrument: the Anti-Money Laundering and Counter-Terrorist Financing Ordinance standard-CDD requirements. Route: a documented CDD file covering beneficial ownership to the natural-person level, source-of-funds confirmation, and a business-rationale statement. Risk: low on the legal position; moderate on the correspondent-bank standard where USD clearing is used, because the bank applies its own risk appetite independently of the legal baseline. Timing: a well-prepared file supports a transaction instruction without delay; a legacy or incomplete file may generate a bank query adding days or weeks.

Situation B: a state-owned enterprise or a counterparty with a state-linked shareholder. Governing instrument: the Anti-Money Laundering and Counter-Terrorist Financing Ordinance, enhanced-CDD limb. Route: a documented analysis of the ownership structure that addresses the non-natural-person ultimate owner explicitly; a business-rationale statement; confirmation that no UN designation applies to any entity in the chain. Risk: moderate to elevated, driven not by the legal position but by the correspondent-bank posture toward state-linked structures in the current supervisory environment. Timing: expect a bank review cycle; the file needs to be ready before the payment instruction, not built in response to a bank query.

Situation C: a counterparty operating in a sector subject to US export controls or EU dual-use regulations, where the Hong Kong entity is not itself subject to those regimes. Governing instrument: the United Nations Sanctions Ordinance confirms there is no Hong Kong domestic breach; the compliance analysis turns on the correspondent-bank standards. Route: a documented legal analysis distinguishing the Hong Kong legal position from the correspondent-bank risk; a clean UN screening result; an explicit statement of the group's position. Risk: the legal position is defensible; the banking position requires active management. Timing: this situation requires legal analysis before the transaction, not after the account query arrives.

Situation D: a supply-chain transaction using a virtual-asset or stablecoin settlement layer. Governing instrument: the Anti-Money Laundering and Counter-Terrorist Financing Ordinance's virtual-asset specific requirements; the FATF travel rule for virtual-asset transfers; the VATP licensing regime under the SFC. Route: a combined CDD file addressing both the counterparty-screening standard and the virtual-asset-transfer record-keeping obligations. Risk: elevated documentation complexity; compliance standards for this structure are still developing; the file needs to reflect current regulatory guidance. Timing: this is the situation where advance legal input has the highest return; the documentation approach is not yet standardised.

If an earlier filing, structure or compliance approach produced an adverse or stalled result, a second read can identify the strategic error and the routes still open. Write to info@lockhartyip.com to discuss a review.

Practical checklist: what a current-standard screening programme covers

This checklist identifies the elements a current-standard programme addresses. It is not a substitute for legal advice tailored to a specific supply chain.

  • Counterparty identification: legal name, jurisdiction of incorporation, and registered address of every entity in the payment chain, including intermediate holding entities.
  • Beneficial-ownership mapping: identification of natural persons who ultimately own or control the counterparty, with explicit treatment of structures where the ultimate owner is a state or state-linked entity.
  • UN sanctions screening: confirmation against current UN Security Council consolidated lists; documented as at the date of each material transaction or payment instruction.
  • Adverse-media review: a structured search against identified natural persons and entities in the ownership chain; documented with the methodology used and the results obtained.
  • Source-of-funds analysis: for counterparties above the financial-institution's risk threshold, a documented assessment of the source of funds entering the transaction.
  • PRC data-constraint notation: explicit acknowledgment in the file where PRC legal constraints limit the documentation available from the counterparty, with a legal analysis of the constraint and the basis for proceeding nonetheless.
  • Sector flag: notation of any sector exposure (technology, advanced manufacturing, dual-use, virtual assets) that attracts heightened correspondent-bank scrutiny, with a documented read of the legal position.
  • Correspondent-bank standard mapping: identification of the clearing currency and the correspondent-bank standards that will apply to the payment instruction; confirmation that the file addresses those standards, not only the Hong Kong domestic legal baseline.
  • Ongoing monitoring cycle: a defined review trigger (event-driven and periodic) so that the file remains current across the life of the supply relationship.
  • Legal signoff: a written legal analysis confirming the Hong Kong law position, distinguishing it where necessary from the correspondent-bank risk analysis.

Related practices

  • Sanctions & AML – cross-border AML compliance, sanctions-neutral contracting, and source-of-funds files for Greater China exposure
  • Holding Structures – BVI and Cayman holding entity design above Hong Kong and PRC operating companies

Frequently asked questions

Which jurisdiction's law applies to counterparty screening for a Greater China supply chain?
The primary governing law for a Hong Kong-based screening programme is Hong Kong's Anti-Money Laundering and Counter-Terrorist Financing Ordinance and the United Nations Sanctions Ordinance. Where the PRC counterparty operates on the Mainland, Chinese AML and data-protection rules affect what documentation that counterparty can lawfully provide. Where the payment instruction clears through a USD or EUR correspondent, that correspondent's own compliance standards apply independently of Hong Kong domestic law. All three layers operate simultaneously, and a screening programme that addresses only one of them is structurally incomplete.
What does the route look like for counterparty screening for a Greater China supply chain?
The standard route runs in five stages: counterparty identification and ownership mapping; UN sanctions and adverse-media screening; source-of-funds analysis calibrated to the financial institution's risk threshold; a documented legal analysis distinguishing the Hong Kong law position from the correspondent-bank standard; and an ongoing monitoring cycle with defined review triggers. Where the counterparty has a state-linked ownership structure or operates in a flagged sector, enhanced-CDD steps are added before the payment instruction is placed. The file should be complete before the transaction, not assembled in response to a bank query.
How long does counterparty screening for a Greater China supply chain usually take?
A well-structured screening programme for a straightforward private-company counterparty – complete ownership chain, no adverse media, no sector flag – can produce a complete file within days where the counterparty is co-operative and the documentation is available. Complex structures – state-linked ownership, multi-layer holding chains, PRC data-constraint issues, or sector flags – take materially longer, and the pace is partly determined by the counterparty's own response time. The practical point is that the programme should not start when the payment instruction is already at the bank. Advance preparation is the difference between a clean clearing event and a stalled transaction.

Speak with Lockhart & Yip

For a scoped view of your matter, contact info@lockhartyip.com. Discuss your matter →

Related

This publication is general information and does not constitute legal advice. For advice on your situation, contact info@lockhartyip.com.

This site uses only strictly necessary cookies. Non-essential cookies are declined by default. Cookie policy