You are using an outdated browser and your browsing experience will not be optimal. Please update to the latest version of Microsoft Edge, Google Chrome or Mozilla Firefox. Install Microsoft Edge

September 2, 2026

Thailand Proposes Crypto ETF Framework and Stricter Custodian Rules for Digital Asset Funds

On August 21, 2026, Thailand’s Securities and Exchange Commission (SEC) published two consultation papers that would broaden regulated access to crypto assets while tightening custody standards. The first proposes a framework for establishing crypto exchange-traded funds (crypto ETFs) in Thailand. The second proposes enhanced qualification requirements for foreign digital asset custodians serving mutual funds and private funds that invest in digital assets.

The proposals seek to expand regulated access to crypto assets while strengthening custody, governance, disclosure, and investor protection, and they affect fund managers, trustees, and licensed digital asset operators. Comments on both papers are due by September 20, 2026, and the SEC expects the resulting rules to take effect later in 2026.

Elevating Foreign Custodian Standards

Under current rules in effect since January 16, 2025, mutual funds and private funds investing in digital assets may use foreign custodians that meet qualifications similar to those set for domestic digital asset business operators. The SEC now proposes that foreign digital asset custodians satisfy two cumulative requirements:

  • Compliance with the existing baseline qualifications: demonstrated expertise, robust cybersecurity measures, segregation of client assets, controls preventing unauthorized asset transfers, and sound financial standing.
  • Supervision by a regulator that is either (1) an IOSCO Signatory A member under the Multilateral Memorandum of Understanding, the international arrangement through which securities regulators share information and cooperate on enforcement, or (2) a regulator in a jurisdiction that the Thai SEC designates as having adequate supervisory and investor protection standards.

The SEC is initially considering 11 jurisdictions for the approved-country list: France, Germany, Hong Kong SAR, Ireland, Japan, Liechtenstein, Luxembourg, Malaysia, Singapore, South Korea, and the United States. The SEC may expand this list over time based on its assessment of other jurisdictions’ regulatory frameworks governing custodian licensing, asset segregation, secure custody practices, client rights in insolvency, and custody agreement terms. Designation of a jurisdiction does not, however, automatically qualify every custodian based there; fund managers and trustees will still have to conduct case-by-case due diligence on each service provider, evaluating its regulatory scope, risk profile, and alignment with fund and investor interests.

The enhanced requirements would apply to foreign custodians used by mutual funds and private funds investing in digital assets and, if permitted by the SEC, by crypto ETFs. Existing funds would have 120 days from the proposed rules’ effective date to comply. Fund managers using foreign custodians may therefore wish to begin reassessing provider due diligence and monitoring, contractual protections, audit and information rights, and transition arrangements prior to the rules taking effect later in 2026.

Crypto ETF Framework: Prioritizing Thai Custodians

The SEC’s companion consultation addresses crypto ETF establishment and oversight, building on the previous hearing held during April and May 2026. The Capital Markets Committee approved the framework principles on June 16, 2026, and the SEC Board followed on July 2, 2026.

Under the proposed rules, crypto ETFs must use Thai-licensed digital asset custodians as a primary route. The SEC may permit foreign custodians when necessary and appropriate to market conditions, applying the same elevated qualification criteria detailed above. Each fund would be structured as a passive, single-crypto ETF and would generally be required to maintain an average annual net exposure of at least 80% of its net asset value to the relevant crypto asset, without using derivatives to obtain that exposure.

Fund managers must demonstrate readiness in personnel, systems, risk management, and investment strategy, and must identify service providers, including custodians, participant dealers, and market makers, before receiving approval.

The rules would permit digital asset custodians and certain other digital asset business operators—such as exchanges and brokers—to serve as trustees for crypto ETFs, subject to applicable financial, personnel, independence, and systems requirements. A digital asset custodian acting as trustee could hold the crypto assets itself, while another category of digital asset operator acting as trustee would need to appoint a licensed digital asset custodian. These distinctions will affect operating models, outsourcing arrangements, conflicts management, and the allocation of regulatory responsibility.

Thai Market Implications for Fund Managers and Digital Asset Operators

Requiring crypto ETFs to rely primarily on Thai-licensed custodians is likely to concentrate initial demand among a limited pool of qualified local providers. This may create capacity, pricing, counterparty, and business-continuity considerations for fund managers, while also creating opportunities for licensed custodians and other qualified digital asset operators to expand into fund-related services.

Fund managers launching crypto ETFs or managing funds with digital asset exposure should begin identifying and evaluating Thai-licensed custodians and other critical service providers. Where existing arrangements involve foreign custodians, managers should verify whether those providers meet the proposed dual-qualification test and assess whether contractual amendments or a change of provider may be required within the 120-day transition period. Because fund operations depend heavily on these providers, fund managers should also confirm that due diligence, incident-response protocols, contingency plans, and ongoing monitoring are documented and in place before the rules take effect.

For digital asset business operators, the framework opens pathways to expand services: custodians can position themselves to serve the anticipated crypto ETF market, while exchanges and brokers may develop trustee or execution capabilities. Opportunities may also arise for participant dealers, market makers, index and pricing providers, technology vendors, and specialist compliance and cybersecurity providers. Whether these roles prove commercially viable will depend on custody costs, liquidity, and market-making capacity, alongside valuation methodology, creation and redemption arrangements, tracking performance, operational resilience, and distribution reach. Operators seeking trustee registration will also need systems appropriate for asset oversight, transaction monitoring, fiduciary duties, and conflicts management.

Next Steps

Fund managers and trustees should assess current custodian arrangements against the proposed foreign-custodian criteria and evaluate domestic alternatives, while digital asset operators interested in trustee, custody, or execution roles should review their licensing scope and their readiness requirements for capital, personnel, systems, governance, and contractual arrangements.

In addition, stakeholders may also wish to comment on the availability and capacity of Thai-licensed custodians, implementation timeframes, and the sequencing of licensing and fund-approval processes, and safeguards that could support competition and operational resilience without weakening investor protection. If there are concerns on the above implications, comments should be submitted by September 20, 2026.

RELATED INSIGHTS​ 

September 20, 2024
On September 12, 2024, the Bank of Thailand (BOT) Notification Re: Virtual Bank Supervision Criteria took effect. According to this notification, virtual banks must adhere to standards for traditional commercial banks, along with additional requirements tailored to address virtual banks’ digital nature and corporate structure. Specific Requirements The concepts of supervision remain unchanged from the consultation paper titled “Criteria for Supervising Virtual Banks”. Some of the key additional provisions and details on supervision criteria relate to the following: Financial business groups: The notification identifies virtual banks as financial businesses, subject to the BOT’s regulations on financial business group supervision. If a virtual bank is a part of another financial institution’s financial business group, the virtual bank must be under a solo consolidated group. After the “initial phase” (see below), other financial institutions and companies within the financial business group are prohibited from extending credit to or engaging in transactions similar to lending activities with the virtual bank. Capital fund requirements: If other financial institutions’ investment in a virtual bank increases the capital fund in the financial system beyond a safe level and this poses a risk to other financial institutions, the BOT may order the relevant financial institution to maintain capital funds as the BOT deems appropriate. Service channels and outsourcing: Virtual banks must provide services solely through digital channels, except when necessary. For example, with the BOT’s approval, a virtual bank may use other commercial bank electronic branches via an ATM pool system, use a banking agent to serve customer needs for cash, or occasionally provide on-site services. Initial Phase The “initial phase” runs from the date that the virtual bank commences its operations until it receives the BOT’s approval to become fully operational. During this period, certain BOT supervisory requirements are relaxed as follows: Governance: Virtual banks in the initial phase may request
September 16, 2024
On July 23, 2024, the State Bank of Vietnam (SBV) published a draft circular regulating the implementation of open (publicly available) application programming interfaces, or Open APIs, in the banking industry (Draft Circular) to collect public comments. Open APIs in the banking sector are APIs of banks that allow third parties to process data for their own use or to provide products and services to customers. Urgent need Currently, the development of Open APIs in Vietnam is fragmented, with each bank using different API standards and security standards. There is no common standard for information technology systems, information storage, security, connectivity, or legal frameworks. Therefore, the promulgation of a regulation on Open APIs is urgently needed to create a clear legal basis and guidance for electronic banking transactions, especially in connecting to bank information systems and processing customer data safely, and creating new, innovative products and services to meet the increasing needs of customers. Cooperation of banks required The Draft Circular requires banks to provide Open API services to third parties for connection to the bank system and data processing. Banks have the right to refuse or suspend Open API services if third parties do not meet specified conditions. However, banks will be responsible for ensuring the quality and security of data, providing tools for customer data queries and revocation of third-party data processing rights, and coordinating with third parties and authorities to resolve issues. The Draft Circular standardizes Open API functions for all banks according to the Open API function list and the technical standards list specified in the Draft Circular. Open API service contract The template Open API service contract between banks and third parties using Open API services must have certain required contents such as provisions regarding confidentiality, data use purpose, and that the security level
September 10, 2024
In recent years, Thailand has witnessed a significant transformation in its financial landscape, particularly in the rapid adoption of financial technology (fintech). At the forefront of this evolution are electronic payment systems and services, which have revolutionized how individuals and businesses conduct financial transactions. This transformation has been driven by both traditional financial institutions and alternative financial service operators. Overseeing this dynamic landscape are two primary regulators: the Bank of Thailand (BOT) and the Securities and Exchange Commission (SEC). This article explores the development of electronic payment systems in Thailand, with a particular focus on the Payment Systems Act (PSA) of 2017 and its role in shaping the fintech ecosystem. Payment Systems Act In October 2017, Thailand took a significant step forward in regulating its burgeoning electronic payment sector by adopting the Payment Systems Act. This landmark legislation was designed to create and ensure electronic payment system stability and enhance consumer protection in the digital financial realm. The PSA establishes a comprehensive framework by categorizing electronic payment businesses into two main categories: payment systems and payment services. Electronic Payment Systems under the PSA The PSA recognizes two types of electronic payment systems that require specific licenses or registration: Central or network systems. These include systems that act as a center or network between service users for fund transfers, clearing, or settlement. Examples include: Inter-institution Fund Transfer System Payment card networks Settlement systems Systems of public interest. This category encompasses any other payment systems that may affect public interest, public confidence, or the stability and security of the payment infrastructure. Electronic Payment Services under the PSA The PSA also identifies several electronic payment services that require specific licenses or registration: Credit cards, debit cards, and ATM cards Electronic money E-payments Acquisition Payment facilitation Receipt of payment on behalf of others
August 29, 2024
Thailand’s Securities and Exchange Commission (SEC) has revised its regulations on digital asset operators and exchanges to impose stricter governance standards on digital asset business operators and to align digital asset exchange rules with international standards. The new regulations are laid out in SEC Notification No. GorThor. 23/2567 on the Criteria, Conditions, and Procedures for Operating a Digital Asset Business (No. 24) and SEC Notification No. GorLorThor. 24/2567 on Determination of Prohibited Qualifications for Directors and Executives of Digital Asset Business Operators (No. 5). These were published in the Government Gazette on August 16, 2024, with most of the provisions taking effect on the same date. Governance for Digital Asset Businesses The heightened standards for digital asset business operators aim to ensure efficient business supervision and appropriate response to operational risks. The new requirements mainly address: Board of directors composition. Large-sized digital asset business operators (i.e., those with at least 10,000 customers and holding customer assets of at least THB 500 million) who do not provide digital asset custodian services must have at least five directors, at least two of whom must be independent directors. In addition, the business operators must establish an audit committee, with at least two members being independent directors, to create an appropriate “check and balance” mechanism within the organizational structure. Current digital asset business operators must comply with the requirements within 180 days of the notification’s effective date. Qualifications of authorized directors and managers. Authorized directors and managers are now required to (1) either have at least one year of working experience in the digital asset field or have participated in a digital asset course from an SEC-approved list, and (2) participate in a good corporate governance course recognized by the SEC. Current authorized directors and managers who have not previously completed a good