Introduction
Elliptic, the London-headquartered blockchain analytics firm, has launched an upgraded version of its Continuous Monitoring product aimed at crypto compliance teams. According to the company, the release expands the range of risk-changing events the system can detect and introduces configurable alerting controls designed to reduce alert fatigue, which Elliptic states can cut manual rescreening and alert triage by up to 75%.
The upgrade addresses an operational challenge facing money laundering reporting officers (MLROs) at exchanges, custodians, and digital asset firms. Customer risk profiles are not static following onboarding: wallets that score low at the point of initial screening can later transact with illicit counterparties, shift cluster membership, or accumulate unexplained inflows. Without automated rescreening, compliance teams must manually re-run checks across an entire customer book, an approach that does not scale at current transaction volumes.
This development is relevant to MLROs and compliance teams at crypto-asset service providers navigating tightening regulatory obligations, as well as institutional buyers evaluating blockchain intelligence and monitoring vendors in a increasingly contested market segment.
What Elliptic’s Continuous Monitoring Upgrade Involves
The updated product introduces two structural changes, according to Elliptic. The event-detection layer now covers a broader set of triggers beyond label changes alone, including material shifts in inflow or outflow volumes, address clustering updates, label changes on counterparties several hops away from the screened address, and direct label changes on screened addresses themselves. Alongside this event-based detection, every enrolled wallet and transaction is also rescreened on a fixed schedule, which the company says is intended to prevent risk from going undetected between triggered events.
The alerting configuration has also been restructured, now operating across four parameters: risk-score thresholds, risk-score deltas, specific risk rules, and screening-type filters. Individual entities can be excluded from alerting where they are no longer commercially relevant to the compliance team. When a rescreen runs but does not meet defined notification criteria, the updated score is written to the Elliptic Lens interface for passive review rather than generating an active alert.
How Continuous Transaction Monitoring Functions in Practice
Continuous monitoring systems of this type work by repeatedly rescreening wallets and transactions after initial onboarding, rather than relying solely on a one-time risk assessment. Jackson Hull, chief technology officer and chief operating officer at Elliptic, said monitoring obligations on MLROs are tightening and that existing solutions leave exposure gaps by alerting only on obvious triggers such as label changes, while compensating for that narrowness by generating notifications so broadly that material alerts get buried among lower-priority ones.
Event-Triggered Detection vs Scheduled Rescreening
The upgraded product combines two distinct monitoring mechanisms. Event-triggered detection responds to specific changes, such as a counterparty label update or an unusual shift in transaction volume, as they occur. Scheduled rescreening, by contrast, runs on a fixed cadence regardless of whether a triggering event has occurred, providing a backstop against risk changes that might not generate an explicit trigger.
Key Factors Driving Demand for Monitoring Upgrades
Regulatory pressure is a primary factor shaping demand for continuous monitoring tools. In the UK, the Financial Conduct Authority has continued to raise registration requirements for crypto firms under the Money Laundering Regulations, and the Bank of England’s systemic risk framing increasingly extends to firms operating digital asset infrastructure. Across the EU, the Markets in Crypto-Assets (MiCA) regulation’s travel rule requirements and the accompanying transfer-of-funds regulation place ongoing transaction monitoring at the centre of compliance obligations for crypto-asset service providers. Both regulatory regimes place personal liability risk on MLROs, a pressure point Hull’s statement directly addresses.
Costs, Impact, and Competitive Implications
For compliance teams, the stated goal of reducing manual rescreening and alert triage by up to 75% addresses a resource constraint that has become more acute as digital asset transaction volumes have grown. Compliance headcount at many institutions has not scaled proportionally with transaction volume, making automated, appropriately configured alerting systems increasingly relevant to operational capacity.
The continuous transaction monitoring segment includes several established competitors. Chainalysis, TRM Labs, and Merkle Science all offer risk-scoring and monitoring tools targeting the same institutional compliance buyer, with several bundling monitoring more tightly into broader blockchain intelligence platforms. Elliptic’s differentiation claim rests on the breadth of its event detection and the granularity of its alert configuration rather than on proprietary data coverage alone.
Risks and Limitations
Elliptic’s claim of a 75% reduction in triage time has not been independently validated, and whether this figure holds across different institutional compliance environments will likely matter to buyers making procurement decisions. No pricing terms were disclosed in the announcement, limiting the ability to assess cost-effectiveness relative to competing products at this stage.
Additionally, the effectiveness of any continuous monitoring system depends significantly on how individual compliance teams configure alerting parameters; poorly calibrated thresholds could still result in either excessive alert volume or missed risk signals, regardless of the underlying detection capability. This analysis is based on statements from Elliptic; independent third-party assessment of the product’s performance was not available at the time of reporting.
Future Outlook
Continued tightening of AML expectations for digital asset firms, including UK FCA registration requirements and EU MiCA travel rule obligations, suggests sustained demand for continuous monitoring tools among crypto-asset service providers. Whether Elliptic’s approach to broader event detection and configurable alerting gains traction relative to competitors such as Chainalysis, TRM Labs, and Merkle Science will likely depend on independent validation of efficiency claims and how the product performs under real-world compliance team workloads.
Conclusion
Elliptic has upgraded its Continuous Monitoring product to expand the range of detectable risk-changing events and introduce more configurable alerting controls, aiming to reduce alert fatigue among crypto compliance teams. The release responds to tightening regulatory expectations in both the UK and EU, where MLROs face increasing personal liability for monitoring failures, and enters a competitive market segment where blockchain intelligence providers are increasingly bundling continuous monitoring into broader compliance platforms.

