---
title: "Why do crypto off-ramps ask for source of funds? Documents, triggers, and on-chain proof"
seoTitle: "Source of funds for crypto off-ramps: what to provide"
description: "Why off-ramps ask where your stablecoins came from, how source of funds differs from source of wealth, what triggers a request, and which documents pass."
date: "2026-08-24"
updated: "2026-08-24"
category: "compliance"
author: "BlindPay Team"
faq:
  - q: "What does source of funds mean for a crypto off-ramp?"
    a: "It's the origin of the specific money you're converting: the invoice a client paid, the exchange account you withdrew from, the capital round that funded your treasury. The off-ramp needs to see that those funds came from a lawful activity that matches what your business says it does. For stablecoins, that usually means documents plus an on-chain trail with wallet addresses and transaction hashes."
  - q: "What is the difference between source of funds and source of wealth?"
    a: "Source of funds is about the particular money in a transaction or account: where this USDC came from. Source of wealth is about how a business or its owners built up their total assets over time, such as years of operating profit, a prior company sale, or long-term investments. FATF guidance treats them as two different concepts. Off-ramps ask for source of wealth less often, usually in enhanced due diligence."
  - q: "How do I prove the source of stablecoins I received?"
    a: "Connect the money to a real activity and show the chain. Pair the commercial document, such as an invoice or contract, with the on-chain transfer that paid it: the sending address, the receiving address, the transaction hash, and the amount. If the stablecoins came from an exchange, add the exchange statement showing the withdrawal. Prove you control the wallet, for example by signing a message with it."
  - q: "Why was my off-ramp asked for source of funds after months of normal use?"
    a: "Reviews aren't one-time. Off-ramps re-check customers when activity changes: higher volumes, a new corridor, a change in ownership or business model, or a transaction that a monitoring rule flagged. Regulators expect ongoing monitoring, not just onboarding checks. A request mid-relationship usually means your activity moved outside the profile you declared, not that you did something wrong."
  - q: "What happens if I don't answer a source of funds request?"
    a: "The account or the transaction stays frozen until you do, and eventually the provider closes it out. At BlindPay, a customer with an open request for information can't send or receive funds and is rejected automatically after 27 days without a response. A held transaction whose request goes unanswered for 24 hours may be refunded to the sender."
---

Crypto off-ramps ask for source of funds to confirm that the stablecoins you convert came from a lawful activity that matches your business. It's part of enhanced due diligence under AML rules, triggered by risk: high volumes, unusual transactions, high-risk countries, or funds with a crypto-only history. Good evidence links a document, like an invoice, to the on-chain transfer that paid it.

It isn't personal. The off-ramp is the point where a blockchain balance becomes a bank deposit ([how off-ramps work](/resources/more/what-is-a-crypto-on-ramp-and-off-ramp)), and someone has to vouch for it.

## Key takeaways

- Source of funds is where this money came from. Source of wealth is how the business or its owners got rich overall. Different questions, different documents.
- Off-ramps ask when risk goes up: onboarding into enhanced checks, limit increases, flagged transactions, and changes in your activity.
- Crypto-origin funds need a trail: transaction hashes, wallet addresses, exchange statements, and proof you control the wallet.
- Documents must be in the business's name, legible, unredacted, and consistent with what you said your business does.

## What is source of funds, and how is it different from source of wealth?

FATF, the global standard-setter for anti-money-laundering rules, draws the line in its [guidance on politically exposed persons](https://www.fatf-gafi.org/en/publications/Fatfrecommendations/Peps-r12-r22.html) (paragraphs 86 to 88). "Wealth" and "funds" are two different concepts. Source of funds is the origin of the particular funds in the business relationship. Source of wealth is the origin of the customer's entire body of wealth.

| | Source of funds | Source of wealth |
| --- | --- | --- |
| Question it answers | Where did this money come from? | How did this business or person accumulate its assets? |
| Scope | One transaction, or the money moving through the account | Total assets over time |
| Typical evidence | Invoices, contracts, bank or exchange statements, on-chain history | Financial statements, tax returns, records of a company sale or investments |
| When off-ramps ask | Higher-risk customers, large or unusual transactions, limit increases | Enhanced due diligence, complex ownership, high-risk profiles |

FATF also makes a point that matters for crypto: knowing which institution the money came from isn't enough. You have to know the activity behind it.

## Why do crypto off-ramps ask for it?

Because their regulators and their banks require it, and stablecoins make the question both easier and harder to answer.

The rules are risk-based almost everywhere:

- **FATF.** The [virtual asset guidance](https://www.fatf-gafi.org/content/fatf-gafi/en/publications/Fatfrecommendations/Guidance-rba-virtual-assets-2021.html) points virtual asset service providers to enhanced due diligence for higher-risk situations, including obtaining information on the customer's source of funds.
- **EU.** The EBA's [ML/TF risk factor guidelines](https://www.eba.europa.eu/sites/default/files/2024-01/a3e89f4f-fbf3-4bd6-9e07-35f3243555b3/Final%20Amending%20%20Guidelines%20on%20MLTF%20Risk%20Factors.pdf), applying since December 2024, tell crypto-asset service providers to get evidence of the source of funds, the source of wealth, or the source of crypto-assets for higher-risk transactions. They also name self-hosted addresses that use mixers as a risk factor.
- **US.** FinCEN's customer due diligence rule doesn't require source of funds for every customer. It requires a risk profile and ongoing monitoring, and source of funds comes in through enhanced checks on higher-risk accounts.

The crypto-specific part: every stablecoin has a public history. Blockchain analytics can show whether a deposit passed through a mixer, a sanctioned address, or a hacked exchange before it reached you. That's why an off-ramp can ask about money you received from a legitimate client. The client's wallet history comes along with the payment. Most of that screening is automated now, which is what [compliance agents](/resources/more/what-are-compliance-agents-in-fintech) do, but the questions it raises still go to a person.

Regulation by country is in the [stablecoin regulation tracker](/resources/more/stablecoin-regulation-tracker-2026).

## When does an off-ramp ask for source of funds?

At predictable moments. Here are the usual triggers, in the order most businesses meet them:

1. **Onboarding into enhanced checks.** Individuals from high-risk countries go through enhanced KYC, which at BlindPay requires a source of funds document and a stated purpose of transactions ([KYC requirements](/docs/kb/kyc), [country tiers](/docs/kb/supported-countries)).
2. **Limit increases.** Asking for higher per-transaction, daily, or monthly caps means showing the money behind the volume: bank statements, financial statements, or tax returns.
3. **Volume or structure that needs validation.** High transaction volumes, or funding that runs through several entities or wallets.
4. **A change in your profile.** New ownership, a new business model, or activity that no longer matches what you declared.
5. **A flagged transaction.** Monitoring holds a payout and compliance asks what it is: who the sender is to you, why the money moved, and what it's for. Some providers review every dollar payout as a standard step, as the [US off-ramp guide](/resources/more/how-to-off-ramp-usdc-to-us-bank-account) explains.

BlindPay's [source of funds guide](/docs/kb/source-of-funds) lists the same triggers for businesses.

## What documents prove source of funds?

Two families: documents for money that came through banks, and documents for money that lives on-chain. These are the categories BlindPay accepts, and most regulated off-ramps ask for the same.

| Funds came from | Documents that prove it |
| --- | --- |
| Operating revenue | Invoices, customer contracts, settlement statements, receipts |
| A bank account | Bank statements or account summaries from a regulated institution |
| Investors or founders | Subscription agreements, capital injection or founder contribution records |
| Borrowing | Executed loan agreements or credit facilities |
| Selling assets | Records of a sale of business assets, securities, or property |
| A crypto wallet | Proof the business or its principals control the wallet |
| On-chain activity | Transaction history with transaction hashes and wallet addresses |
| A crypto exchange | Statements from a regulated exchange showing deposits, withdrawals, or trades |
| Minting or redeeming | Stablecoin issuance or redemption records |
| Trading or market making | Trade history, P&L summaries, liquidity provision records |
| A token sale | Allocation summaries, private placement records, use-of-funds explanations |

## How do you prove funds that came from crypto?

Tell the story of the money, then attach the receipts. A worked example:

A Mexican software company invoices a US client for 25,000 USDC. The client pays from its own wallet on Base. Three months later, the company's off-ramp asks about the deposit.

1. **The commercial reason.** The signed services contract and invoice number INV-2026-0412 for 25,000 USDC.
2. **The payment itself.** The transaction hash, the client's sending address, the company's receiving address, the amount, and the date. A block explorer link lets the reviewer check it in seconds.
3. **The link between the two.** The invoice names the client's company, and the client's wallet was shared in writing before payment, for example in the contract or an email.
4. **Proof you control the receiving wallet.** On EVM networks, signing a message with the wallet proves control without moving funds. BlindPay offers this signed-message option when you [register a blockchain wallet](/docs/blockchain-wallets).
5. **Where the money went next.** If part of it was swapped or bridged before the off-ramp, include those transaction hashes too, so the trail has no gaps.

The common failure is a gap in step 5. Stablecoins that hop through three wallets with no explanation look like layering, even when they're just a messy treasury.

## What makes a source of funds review fail?

Usually the paperwork, not the money. BlindPay's [document standards](/docs/kb/source-of-funds) are typical: documents issued in the name of the business, showing the source and flow of funds, legible and complete with no material redactions, in PDF, JPG, or PNG.

Red flags that trigger follow-up questions or rejection:

- Funds that don't match the declared business activity. A consultancy receiving trading-desk volumes.
- Third-party wallets paying with no contract or explanation.
- Heavy redactions on statements.
- On-chain exposure to mixers, sanctioned addresses, or known scam clusters.
- Round-tripping: the same money leaving and coming back to make volume look larger.
- An owner or controller who doesn't appear in the documents.

## What happens if you don't respond?

The money stops until you do.

At BlindPay, a [request for information](/docs/kb/information-requests) moves the customer to `compliance_request`. While it's open the customer can't send or receive funds, and BlindPay emails your team on days 0, 7, and 17. With no submission by day 27, the customer is rejected automatically. For a single held transaction, the [on-hold process](/docs/kb/on-hold-transactions) is faster: if the request goes unanswered for 24 hours, the transaction may be refunded to the sender.

## Who collects the documents, you or the provider?

Responsibility is shared, and it's worth writing down before the first request arrives.

| Task | Usually the provider | Usually you | Evidence to ask the provider for |
| --- | --- | --- | --- |
| Verify your customers (KYC, KYB) | Runs the checks and decides | Collects data and documents from your customer | Required fields per tier, review times |
| Source of funds | Reviews and decides | Collects documents from your customer and uploads them | Accepted documents and standards |
| Sanctions and wallet screening | Runs on every customer and transfer | Nothing, beyond accurate data | What gets screened and when |
| Transaction monitoring | Flags and holds | Answers requests for information | Response deadlines |
| Records | Keeps its own | Keeps contracts and invoices behind each payment | Retention periods |

At BlindPay, requests go to your team, not straight to your customer, because collecting and uploading the documents is the platform's job. If you sit between BlindPay and your own users, build the upload path into your product before you need it.

## How does BlindPay handle source of funds?

Compliance runs inside the payment flow. BlindPay verifies customers, screens transactions, and reviews source of funds and source of wealth when an account or transaction needs enhanced due diligence. Requests arrive by email and in the dashboard, and you answer them in one submission. Read the [source of funds guide](/docs/kb/source-of-funds) for the full document list before you onboard a high-volume customer.

*This article is educational content, not legal advice. Requirements vary by jurisdiction and provider; confirm your obligations with counsel.*
