The global landscape of digital asset regulation is undergoing a profound transformation as blockchain intelligence firm Elliptic announces the launch of its Continuous Monitoring solution, a tool designed to solve the inherent limitations of static cryptocurrency screening. For years, financial institutions and virtual asset service providers (VASPs) have relied on "point-in-time" risk assessments, which evaluate the safety of a wallet or transaction only at the moment of onboarding or execution. However, as the decentralized finance (DeFi) ecosystem and illicit actor tactics evolve, a wallet cleared as low-risk today can become a high-risk entity within hours. Elliptic’s new feature aims to bridge this gap by providing automated, event-driven rescreening that ensures compliance data remains accurate throughout the entire lifecycle of a customer relationship.
The introduction of Continuous Monitoring comes at a critical juncture for the industry. Regulatory bodies, including the Financial Action Task Force (FATF) and the European Securities and Markets Authority (ESMA) under the Markets in Crypto-Assets (MiCA) framework, are increasingly demanding that firms move beyond basic Know Your Customer (KYC) protocols toward more robust "Know Your Transaction" (KYT) and ongoing monitoring standards. Elliptic’s solution addresses the reality that crypto risk is fluid; a wallet with a pristine history can suddenly receive funds from a sanctioned entity, interact with a high-risk mixer, or send assets to a darknet marketplace long after the initial screening has been completed.
The Problem of Static Risk Assessments in a Dynamic Market
In traditional finance, risk profiles tend to change slowly, often tied to periodic credit checks or annual reviews. In the world of blockchain, however, the velocity of capital movement is near-instantaneous. A primary challenge for compliance teams has been the "cleared result" fallacy. When a compliance officer screens a wallet at onboarding and receives a low risk score—for example, a 0.5 out of 10—that data is recorded in the firm’s internal system as a "pass." Without a mechanism for ongoing surveillance, that score remains static, even if the wallet owner later engages in suspicious activity.
Industry experts have identified a significant compliance gap where high-risk wallets are treated as "clean" simply because they were not rescreened at the exact moment a new risk event occurred. Manual rescreening is not a viable solution for most enterprises; the sheer volume of addresses and transactions makes it impossible for human teams to re-evaluate every historical record on a daily basis. This lack of scalability often leads to "compliance debt," where a firm’s risk exposure grows silently over time, leaving them vulnerable to regulatory fines, reputational damage, and the inadvertent facilitation of money laundering.
Evolution of Crypto Compliance: A Brief Chronology
The need for tools like Continuous Monitoring is best understood through the timeline of the cryptocurrency industry’s growth and the subsequent response from law enforcement and regulators.

- 2009–2013: The Early Era. Bitcoin is primarily used by hobbyists and early adopters. Risk monitoring is virtually non-existent, and the Silk Road darknet marketplace becomes the first major test case for blockchain forensics.
- 2013–2015: The Rise of Forensics. Elliptic is founded in 2013, beginning the systematic attribution of blockchain addresses to real-world entities. Regulators begin to take notice of the potential for money laundering.
- 2018–2020: Institutional Interest and FATF Guidance. The FATF introduces the "Travel Rule," requiring VASPs to share originator and beneficiary information. Compliance moves from optional to mandatory for licensed exchanges.
- 2021–2023: DeFi and Sanctions Escalation. The explosion of decentralized finance and the heavy use of mixers like Tornado Cash by state-sponsored actors (such as the Lazarus Group) lead to unprecedented sanctions from the U.S. Treasury’s Office of Foreign Assets Control (OFAC).
- 2024 and Beyond: Real-Time Requirements. Global regulators begin moving toward "always-on" monitoring requirements. Elliptic’s launch of Continuous Monitoring represents the next stage in this evolution, shifting from reactive forensics to proactive risk management.
Analyzing the Shortfalls of Existing Monitoring Solutions
Before the advent of sophisticated continuous monitoring, compliance teams generally faced two suboptimal choices. The first was "label-based" monitoring. Many early-generation tools only notified users if a specific label on a connected address changed—for instance, if an address was newly tagged as belonging to a specific exchange. However, risk often propagates through the network without a label change. A transaction with a newly created, unlabelled wallet that is only one "hop" away from a sanctioned entity represents a massive spike in risk, yet label-based systems would remain silent.
The second problem was "notification fatigue." Some solutions attempted to solve the monitoring gap by alerting users to every single change in the blockchain’s state. For a major exchange with millions of users, this results in thousands of alerts per day, many of which are immaterial to the firm’s specific risk appetite. Compliance officers reported being overwhelmed by "noise," leading to a situation where genuine threats were buried under a mountain of irrelevant data.
How Continuous Monitoring Redefines Risk Management
Elliptic’s Continuous Monitoring solution utilizes a two-layered approach to ensure both breadth and depth. The first layer is event-driven detection. The system monitors the blockchain for specific triggers, such as new transactions or new connections to illicit actors. When an event occurs that could potentially alter a wallet’s risk score, the system automatically runs a full rescreen against the firm’s specific risk rules. This ensures that the compliance team is only notified when a "material" change occurs, significantly reducing false positives.
The second layer consists of scheduled rescreening. Even in the absence of a specific transaction event, the system periodically re-calculates the risk scores of all enrolled wallets. This "catch-all" mechanism ensures that as Elliptic’s underlying data grows—such as when new illicit entities are identified through forensic investigations—those updates are reflected in the user’s portfolio. This dual-layered strategy provides what Elliptic describes as the most comprehensive risk monitoring available in the current market.
Supporting Data: The Rising Cost of Non-Compliance
The necessity for automated monitoring is underscored by the staggering volume of illicit activity in the digital asset space. According to industry data, while illicit activity represents a small percentage of total crypto transaction volume, the absolute dollar amounts remain significant. In 2023, billions of dollars were linked to scams, ransomware, and sanctioned entities.
Furthermore, the cost of regulatory failure is rising. In recent years, major global exchanges have faced multi-billion dollar settlements for failing to maintain adequate Anti-Money Laundering (AML) and Counter-Terrorist Financing (CTF) programs. These enforcement actions often highlight a failure to conduct "ongoing monitoring" of customer accounts. By automating this process, Elliptic aims to provide firms with the "audit trail" necessary to satisfy regulators. The system allows compliance officers to demonstrate that they were aware of risk changes in real-time and took appropriate action based on pre-defined internal policies.

Industry Reactions and Implications for the Future
While Elliptic has not released specific client testimonials alongside the launch, the broader industry reaction to automated monitoring has been one of cautious optimism. Compliance officers at mid-tier exchanges suggest that such tools could reduce operational overhead by up to 30% by eliminating the need for manual periodic reviews.
Regulators are also expected to view this technology favorably. A statement logically inferred from recent FATF guidance suggests that "automated solutions that provide real-time updates to risk profiles are essential for maintaining the integrity of the virtual asset ecosystem." For banks and traditional financial institutions looking to enter the crypto space, the availability of "institutional-grade" monitoring tools is a prerequisite for board-level approval.
The implications of this technology extend beyond simple compliance. As the "noise" of false positives is filtered out, compliance teams can focus their resources on high-value investigations. This shift from "box-ticking" to active threat hunting could lead to a higher rate of asset recovery and a more hostile environment for cybercriminals.
Conclusion: A New Standard for Digital Asset Integrity
Continuous Monitoring represents a maturation of the cryptocurrency industry. It acknowledges that the blockchain is a living, breathing ledger where the status of an address is never truly "final." By leveraging attribution data refined since 2013, Elliptic is offering a way for firms to maintain a "trustworthy" risk score that evolves alongside the market.
As digital assets become more integrated into the global financial system, the margin for error in compliance is narrowing. The launch of Continuous Monitoring provides a scalable, automated, and customizable path forward for firms that need to stay ahead of both regulators and bad actors. For Elliptic’s clients, the tool is available immediately, marking a significant step toward a future where crypto risk is managed with the same—if not greater—precision as traditional financial risk.















