Why India’s new crypto rules leave little room for anonymity

ambcryptoPublicado em 2026-01-12Última atualização em 2026-01-12

Resumo

India's Financial Intelligence Unit (FIU) has introduced stricter crypto regulations, effective from January 12, requiring enhanced verification processes beyond traditional ID checks. New measures include live selfie verification with actions like blinking, biometric authentication, geo-tagging, IP address collection, and penny-drop bank account validation. These steps aim to prevent deepfake fraud and money laundering, aligning with the Prevention of Money Laundering Act (PMLA). Crypto exchanges must now implement a three-level compliance system, conduct ongoing due diligence, screen users against sanctions lists, and maintain records for five years. The rules also classify ICOs as high-risk and enforce the "Travel Rule" for transparent transaction trails. India's move signals a tightening of digital asset oversight amid evolving global standards.

As deepfake technology becomes more advanced, India is tightening security rules for crypto users.

In a recent update issued on the 8th of January, the Financial Intelligence Unit (FIU) announced that traditional ID-based verification is no longer enough.

From the 12th of January, crypto investors in India will have to undergo much stricter checks.

Details of the FUI’s guidelines

Instead of just uploading an ID, users will need to prove they are physically present and real.

This includes live selfie checks where users must perform actions like blinking, along with biometric verification.

Crypto exchanges will also be required to collect exact location details, such as latitude and longitude, IP addresses, and complete a “penny-drop” bank verification to confirm that the user’s identity and bank account match.

Remarking on the same, Nischal Shetty, Founder, WazirX, in an email sent to AMBCrypto, said,

“Steps like penny drop method, ID verification through selfies, etc were steps WazirX already had in place as part of the customer onboarding journey.”

By combining biometric checks with location tracking, authorities are creating a digital trail that is extremely hard to fake.

Steps taken to prevent money laundering

Then, to comply with the Prevention of Money Laundering Act (PMLA), the FIU has also introduced a strict three-level compliance system.

Nearly three years after the first set of rules in 2023, these updates effectively turn crypto exchanges into closely monitored reporting entities.

While a user’s PAN card remains mandatory, it must now be supported by another government ID such as Aadhaar, a passport, or a Voter ID.

The key addition is the “live selfie” requirement, where users must perform actions like blinking or turning their head to prove they are a real person and not an AI-generated deepfake.

Echoing similar sentiments in the same email, Raj Karkara, COO, ZebPay, added,

“Measures such as liveness detection and geo-tagging during the onboarding process help strengthen user verification, improve transparency, and ensure greater accountability across platforms, aligning the industry with evolving global compliance expectations.”

How will ICO move ahead now?

Authorities have also increased scrutiny on Initial Coin Offerings (ICOs) and now classify them as high-risk activities.

To ensure a clear audit trail, the report reinforces the “Travel Rule.”

Every crypto transfer must now include sender and recipient details, making cross-border anonymity far more difficult.

The report also stresses long-term compliance and warns of serious penalties for lapses.

Meanwhile, Virtual Digital Asset Service Providers (VDASPs) must conduct ongoing due diligence, including KYC updates every six months for high-risk clients.

They must also screen users in real time against domestic and global sanctions lists.

Lastly, exchanges must store all transaction and identity records for at least five years.

These steps follow the FIU imposing ₹28 crore in fines last fiscal year, signaling the government’s intent to crack down on digital arrest scams and hawala-style crypto transactions.

What’s more?

The timing of this update coincided with Economic Affairs Secretary Ajay Seth noting that as other major jurisdictions soften their stances on digital assets, India must likewise recalibrate its long-delayed discussion paper.

He had noted,

“More than one or two jurisdictions have changed their stance towards cryptocurrency in terms of the usage, their acceptance, where do they see the importance of crypto assets.”

Thus, by implementing some of the most stringent onboarding and reporting standards globally, India is attempting to secure its own borders without waiting for an elusive global consensus.


Final Thoughts

  • By mandating live selfies, geo-tagging, and penny-drop checks, authorities are closing long-standing loopholes exploited by deepfakes and anonymous wallets.
  • Long-term success will depend on how securely exchanges handle vast amounts of sensitive user data.

Perguntas relacionadas

QWhat new verification methods are required for crypto users in India according to the FIU's guidelines?

AUsers must undergo live selfie checks with actions like blinking, biometric verification, provide exact location details (latitude and longitude), IP addresses, and complete a 'penny-drop' bank verification to confirm identity and bank account match.

QWhy has the FIU introduced stricter compliance measures for crypto exchanges?

ATo comply with the Prevention of Money Laundering Act (PMLA), prevent money laundering, close loopholes exploited by deepfakes and anonymous wallets, and align with evolving global compliance expectations.

QWhat additional documents are now required alongside the PAN card for crypto user verification?

AAnother government ID such as Aadhaar, a passport, or a Voter ID is now mandatory alongside the PAN card.

QHow are Initial Coin Offerings (ICOs) classified under the new rules, and what requirement reinforces the audit trail for crypto transfers?

AICOs are classified as high-risk activities, and the 'Travel Rule' is reinforced, requiring every crypto transfer to include sender and recipient details to ensure a clear audit trail.

QWhat are the penalties and storage requirements for Virtual Digital Asset Service Providers (VDASPs) under the new regulations?

AVDASPs face serious penalties for lapses, must conduct ongoing due diligence including KYC updates every six months for high-risk clients, screen users in real-time against sanctions lists, and store all transaction and identity records for at least five years.

Leituras Relacionadas

La Liga Team Bets $1 Million Against Themselves Before Match: Does Using Prediction Markets for Insurance Comply with Sports Regulations?

A Spanish La Liga club, reportedly Osasuna, purchased insurance against relegation and was linked to a transaction of over $1 million on the prediction market platform Kalshi, betting against its own victory in a crucial season-ending match. While Osasuna confirmed buying €1.2 million insurance for a potential €6 million payout in case of relegation through broker Howden, it did not confirm involvement with Kalshi. The reported trade involved intermediaries like Game Point Capital and Greenlight Commodities, with quant firm Susquehanna as the counterparty. This incident highlights the blurring line between financial hedging and gambling in prediction markets. Such markets allow trading on future event outcomes, like sports results. In the US, Kalshi operates as a regulated event contract market under the CFTC. However, Spanish authorities recently initiated penalties against Kalshi and Polymarket, considering their activities unlicensed gambling. The case raises core questions about prediction markets: who can trade, how insider information is handled, and whether participants can influence outcomes, especially in sports where results are human-driven. While leagues like La Liga and Serie A have partnered with Polymarket in North America, the regulatory clash and potential for conflicts of interest, as seen in this club's alleged transaction, present significant challenges as prediction markets evolve toward institutional risk management.

Foresight NewsHá 8m

La Liga Team Bets $1 Million Against Themselves Before Match: Does Using Prediction Markets for Insurance Comply with Sports Regulations?

Foresight NewsHá 8m

From Shouting 150 Dollars to Liquidating HYPE in Just Three Days, How Much Credibility Does Arthur Hayes Have Left?

How much of Arthur Hayes's market credibility remains? Recently, the "godfather of crypto perpetual swaps" and BitMEX co-founder has faced public criticism, including accusations from on-chain investigator ZachXBT about creating exit liquidity for his followers. Starting last week, Hayes executed multiple sudden sell-offs. He had repeatedly publicly predicted the HYPE token would reach $150. After a $100,000 bet defending Hyperliquid on June 1st, he announced just three days later that he had completely sold his HYPE and NEAR holdings, successfully exiting near the peak. He also sold ZEC and WLD. His sale of WLD appeared to be a classic "pump and dump" maneuver. On June 3rd, he publicly set a $10 target for WLD, causing its price to surge over 35%. By June 6th, he announced he had sold his WLD, citing "anomalous" SpaceX pre-IPO price action, which triggered a sharp price drop. On June 9th, Hayes published a lengthy article explaining his actions, citing factors like rising energy costs and a potential AI bubble burst. Consequently, his family office, Maelstrom, now holds positions in US energy producers and only core crypto assets BTC and ETH, having sold AI-related stocks and non-core cryptocurrencies. This pattern is not new. In 2025, he similarly touted HYPE before selling it at what turned out to be a cycle peak, only to repurchase it at the next cycle's low. Similar scenarios played out with tokens like ETHFI and ENA. Long-term observers have developed a strategy: ignore Hayes's public statements but closely monitor his on-chain actions—be cautious following his buys, but decisively follow his sells. If he continues these tactics, especially as seen with the WLD case, his market credibility risks being permanently damaged. As Hayes himself admitted in his latest article, "I remain an unapologetic gambler."

marsbitHá 26m

From Shouting 150 Dollars to Liquidating HYPE in Just Three Days, How Much Credibility Does Arthur Hayes Have Left?

marsbitHá 26m

Fundraising is Like a Strange Dance: The 'Absurd Drama' of Silicon Valley Founders' Capital Raises

The article details a series of absurd and revealing anecdotes shared by Silicon Valley founders about their venture capital fundraising experiences, sparked by Greg Isenberg's story of pitching to a sleeping a16z partner. Founders describe surreal pitch meetings: one faced a barefoot, peanut-eating investor who offered triple the requested amount after 30 seconds; another performed a pitch in a VC's parked car; a founder discovered his audience understood no English beyond "yes." These stories highlight the often irrational and performative nature of fundraising. Beyond the absurdity, darker power imbalances are exposed. Stories include investors suggesting founders fire co-founders for their equity, blatant market misjudgments, disrespectful behavior from LPs, and discriminatory remarks. A debate also emerges around "Sequoia's" practice of splitting a round into two valuations. However, the thread isn't solely critical. Positive counter-narratives celebrate supportive VCs who offered crucial advice during crises, respected founders' timelines, and showed simple gestures of respect—like a partner personally fetching coffee before a major pitch. Ultimately, the collective sharing acts as a pressure release, illustrating that fundraising is a complex dance of power, trust, and sometimes sheer theater. It underscores that beyond capital, mutual respect and integrity remain the most enduring foundations of the founder-investor relationship.

marsbitHá 39m

Fundraising is Like a Strange Dance: The 'Absurd Drama' of Silicon Valley Founders' Capital Raises

marsbitHá 39m

Trading

Spot
Futuros
活动图片