Overview
Business Ongoing Monitoring alerts notify your firm when there are changes to a monitored business client.
This article explains what these alerts represent, where they appear in Legl, and how to interpret them so you can decide on the appropriate next steps.
Where you will see this
You will see business Ongoing Monitoring alerts in the following places:
The Monitoring dashboard in Legl
The Monitoring tab on an individual business client record
Weekly summary emails sent to your firm's designated compliance contact
Alerts appear automatically when new changes are identified.
What this means
A business Ongoing Monitoring alert indicates that Legl has detected a change relating to a monitored business client since the last check.
Alerts may relate to:
Company information changes, such as updates to company details, structure, ownership, financial position, or legal status
Business sanctions changes, such as new listings, removed listings, or changes to existing matches
Each alert represents a prompt for your firm to review the information and record a decision.
Common reasons you might see this
You may see a business Ongoing Monitoring alert when:
New information has been identified during daily monitoring
A previously reported item has changed or been updated
A new possible sanctions match has been identified
An existing sanctions match has been removed or updated
What these updates look like in Legl:
ℹ️ Important
Some business sanctions alerts may represent false positives, particularly where businesses have similar names.
How alert priority is set
Each company monitoring alert carries a High, Medium, or Low tag. Legl applies a default tag to every alert, based on how relevant that type of change usually is to AML risk. Your firm can change any tag to match its own risk policy and appetite.
The tag controls how an alert is categorised when your team receives it. It does not change whether the update is detected.
Admins can see the tag on every alert, and change it, in Settings, then Monitoring, then Company monitoring.
How the default tags work
High — changes that materially affect AML risk and typically require immediate compliance attention, such as changes to company directors, changes to ownership structure or the Ultimate Beneficial Owner (UBO), changes to a Person with Significant Control (PSC), a change of company name, or a change of company address to a new jurisdiction
Medium — changes that may affect how your firm engages commercially with the client but do not usually require AML review, such as credit score or rating changes, changes in credit limit, or signs of financial stress including CCJs, insolvency, or late filings
Low — changes unlikely to require any action, such as a change of company address within the same country, or a routine registry filing that confirms existing company details
Most alerts can be tagged. Employee count changes, in the Miscellaneous section, cannot.
ℹ️ Further guidance
For an explanation of every alert category, see Understanding company monitoring settings.
To change which alerts you receive and how they are tagged, see How to configure monitoring settings.
What you need to do
When you receive a business Ongoing Monitoring alert:
A firm user must review the alert and record a decision
You may decide that no action is required, or that further review is needed
In some cases, you may choose to refresh a company report to complete a full KYB review
If no further action is required, the alert can simply be marked as reviewed
ℹ️ Further guidance
For full guidance on how to review an alert, see:
What happens next
After a monitoring alert is reviewed:
The alert is marked as Reviewed
The reviewer's name is recorded in the audit trail
The alert no longer appears as Ready for review
Ongoing Monitoring continues, and future alerts may still be generated
Reviewing an alert does not stop future monitoring.
Important information
Monitoring alerts are informational prompts; they are not compliance decisions
Legl does not determine risk outcomes. Your firm is responsible for reviewing and deciding on appropriate action
Alerts are generated daily once monitoring is enabled
Alert settings and auto-assignment only affect future alerts, not historical ones

