How Can Directors Defend Against Money Muling Charges?

How Can Directors Defend Against Money Muling Charges?

Introduction

Directors, corporate treasurers, and other responsible officers may face criminal investigation when a company’s digital payment gateway is allegedly used to receive, transfer, or conceal illicit funds. The accusation may arise from automated transactions, compromised accounts, fraudulent online schemes, or the use of corporate accounts as conduits.

Being a director or treasurer does not, by itself, establish criminal liability. The prosecution must still connect the officer to the alleged money-muling activity through proof of participation, knowledge, intent, gross negligence, or another legally recognized basis for liability, depending on the offense charged.

The defense must therefore separate the corporation’s transactions from the officer’s personal conduct and identify whether the evidence proves an actual criminal act rather than merely a corporate position, approval, or failure to detect fraud.

What Is Money Muling Under Philippine Law?

Money muling generally involves receiving, transferring, withdrawing, or moving funds for another person or group, often in exchange for a fee or other benefit, while concealing the funds’ source, destination, or beneficial ownership.

The Anti-Financial Account Scamming Act (AFASA) expressly criminalizes money muling and social engineering schemes. It also authorizes the Bangko Sentral ng Pilipinas to investigate financial accounts and temporarily hold disputed funds in circumstances covered by the statute. These powers may operate notwithstanding certain bank secrecy and data privacy restrictions during a lawful investigation.

Liability under AFASA must still be assessed according to the particular acts alleged, the officer’s participation, the required mental state, and the statutory conditions applicable to the offense. A company’s use of a digital payment gateway does not automatically mean that its directors or treasurer personally committed money muling.

What Laws Govern the Defense?

The principal statutes and rules may include the following:

AuthorityRelevance to the defense
Anti-Financial Account Scamming Act, R.A. No. 12010Defines and penalizes money muling and related financial account scams, and provides investigative and account-holding powers.
Anti-Money Laundering Act, R.A. No. 9160, as amendedGoverns covered transactions, suspicious transaction reporting, customer identification, recordkeeping, and confidentiality of reports.
Further Strengthening the Anti-Money Laundering Law, R.A. No. 10365Expands covered persons and includes certain company service providers and persons managing client money, securities, or other assets.
Revised Penal Code, Act No. 3815Provides general principles on felonies, including intentional and negligent conduct, conspiracy, participation, and the liability of corporate officers in specified offenses.
Revised Corporation Code, R.A. No. 11232Recognizes the separate juridical personality of the corporation and identifies circumstances in which directors, trustees, and officers may incur personal liability.

Under the Anti-Money Laundering Act, covered institutions and their officers, employees, agents, advisers, and consultants are not deemed to violate bank secrecy laws merely because they make covered transaction reports in the regular performance of their duties and in good faith. They are, however, prohibited from disclosing the fact or contents of such reports to unauthorized persons.

Does Corporate Position Alone Establish Criminal Liability?

No. Corporate status alone generally does not prove that a director or treasurer committed money muling or authorized money laundering.

In In re: Wefund Lending Corporation (JuanHand) and its Responsible Officers, NPC SS Case No. 21-006, 16 May 2022, the National Privacy Commission emphasized that corporate officers cannot be held liable merely because of their positions. There must be substantial evidence of participation, causation, or gross negligence that allowed the violation to occur.

The Commission explained that participation requires a causal connection. The evidence must show that the officer directed the unlawful act, reasonably caused its commission, or performed an act without which the violation would not have occurred. The same decision also stated that the absence of substantial evidence cannot be cured simply by pointing to the officer’s title.

The same principle is reflected in In re: FLI, NPC 19-910, 2020, where the Commission recognized that responsible corporate officers may incur liability when they themselves commit the violation or, by reason of their managerial authority, could have prevented it but failed to do so through gross negligence.

When Can Directors or Treasurers Become Personally Liable?

Personal liability may arise where the evidence establishes one or more of the following:

  • the officer personally received, transferred, withdrew, or directed the movement of illicit funds;
  • the officer knowingly allowed the corporation’s payment gateway or account to be used as a conduit for unlawful proceeds;
  • the officer participated in a conspiracy with the persons operating the scam;
  • the officer approved a transaction despite actual knowledge of facts showing that it was fraudulent or unlawful; or
  • the officer’s gross negligence was a substantial cause of the unlawful transaction, where the governing statute recognizes liability on that basis.

For certain crimes, the Revised Penal Code expressly provides that corporate officers who knowingly permit or fail to prevent specified offenses may be treated as principals. The application of that rule depends on the particular offense and on proof that the officer knowingly permitted or failed to prevent the prohibited conduct.

Under the Revised Corporation Code, directors or trustees may also be personally liable when they willfully and knowingly assent to patently unlawful corporate acts, act with gross negligence or bad faith in directing corporate affairs, or acquire a personal interest in conflict with their duties.

What Is the Effect of the Corporate Veil?

A corporation has a legal personality separate and distinct from its directors, officers, stockholders, and employees. Corporate obligations are ordinarily imposed on the corporation rather than on the individuals who act for it.

In Heirs of Uy, et al. v. International Exchange Bank, G.R. No. 166282, 11 February 2013, the Supreme Court reiterated that a corporate officer is generally not personally liable for corporate obligations. The corporate fiction may be disregarded only when it is used to perpetrate fraud or an illegal act, evade an existing obligation, circumvent statutes, or confuse legitimate issues.

Similarly, in Virata, et al. v. Ng Wee, et al., G.R. No. 220926, 11 July 2018, the Court recognized that directors may be held personally liable where the totality of the circumstances shows complicity in fraud or gross negligence. The decision also emphasized that a board is not merely a group of passive approvers; directors are expected to exercise supervision over corporate assets and business operations.

These doctrines do not mean that every corporate fraud automatically becomes the personal crime of the board or treasurer. The prosecution must still prove the officer’s legally sufficient connection to the alleged offense.

How Should the Defense Challenge the Accusation?

1. Identify the exact offense charged

The defense should first determine whether the accusation concerns money muling under AFASA, money laundering under the Anti-Money Laundering Act, estafa, fraud, conspiracy, or another offense. Each offense has distinct elements, including different requirements concerning intent, knowledge, participation, benefit, and the source or movement of funds.

A vague allegation that an officer “authorized money laundering” is insufficient unless it identifies the transaction, date, account, payment instruction, beneficiary, and specific act attributed to the accused.

2. Separate corporate authority from criminal participation

A treasurer may have authority to sign payment instructions, approve disbursements, or maintain bank relationships. That authority does not necessarily prove knowledge that a transaction involved criminal proceeds.

The defense should distinguish between:

  • routine approval under established corporate procedures;
  • technical or automated processing by a payment gateway;
  • transactions initiated by customers or third-party merchants;
  • transactions reviewed and rejected by compliance personnel; and
  • transactions personally directed or concealed by the accused officer.

3. Challenge proof of knowledge and intent

Money-muling allegations commonly depend on circumstantial evidence, such as repeated transfers, unusual transaction patterns, rapid withdrawals, related accounts, or communications with alleged scammers. These facts may support an investigation, but they do not automatically establish criminal knowledge beyond the applicable evidentiary standard.

The defense should ask whether the prosecution can prove when the officer supposedly learned of the illegal source of the funds, what information was available at that time, what decision the officer made, and how that decision caused or assisted the alleged offense.

Evidence that the officer acted in good faith, relied on verified compliance reports, followed documented approval procedures, or promptly reported suspicious activity may be relevant to negate intent and gross negligence.

4. Examine the digital evidence carefully

Digital payment cases often rely on system logs, device records, user credentials, electronic messages, access histories, and transaction metadata. The defense should examine whether the evidence proves that the accused personally accessed or approved the transaction.

Important questions include whether the account was shared, whether multi-factor authentication was enabled, whether credentials were compromised, whether the system automatically approved transactions, and whether the electronic record identifies the actual person who performed the act.

The prosecution should also establish the integrity, completeness, and proper custody of the electronic records. A transaction appearing under an officer’s user identification does not always prove that the officer personally made the transaction.

5. Establish the company’s compliance controls

Corporate compliance evidence may help demonstrate that the officer did not knowingly authorize money muling. Relevant records may include:

  • anti-money laundering and counter-fraud policies;
  • customer due diligence and know-your-customer procedures;
  • risk-scoring and transaction-monitoring rules;
  • segregation-of-duties matrices;
  • approval thresholds and escalation protocols;
  • incident reports and internal investigation records; and
  • reports made to the AMLC, BSP, law-enforcement agencies, or other regulators.

These materials do not automatically defeat a criminal charge. They may, however, show that the company had preventive safeguards, that the accused performed assigned duties, or that the alleged transaction resulted from an external fraud rather than intentional corporate participation.

6. Distinguish suspicious reporting from participation

Making a suspicious transaction report is not an admission that the reporting officer committed or authorized money laundering. Under the Anti-Money Laundering Act, a person who makes a covered transaction report in good faith and in the regular performance of duties is protected from administrative, criminal, or civil proceedings based solely on the making of the report.

The officer must also avoid unlawful disclosure of the report or its contents. A defense should therefore preserve evidence of proper reporting while ensuring that confidential information is disclosed only to authorized investigators, regulators, or courts.

Can Failure to Prevent a Transaction Create Liability?

Failure to prevent a transaction may become legally significant when the applicable law covers negligent conduct or when the facts show that the officer knowingly permitted the offense. However, mere failure to detect a sophisticated fraud is not automatically equivalent to gross negligence.

The assessment should consider the officer’s actual duties, access to information, decision-making authority, available compliance resources, warning signs, the duration of the alleged conduct, and the steps taken after the activity was discovered.

In In re: Wefund Lending Corporation (JuanHand) and its Responsible Officers, NPC SS Case No. 21-006, 16 May 2022, the National Privacy Commission rejected liability based solely on corporate position and found no sufficient proof that the officers participated in or allowed the violation through gross negligence. This supports the defense proposition that an officer’s title cannot replace proof of causation and culpable conduct.

What Procedural Defenses May Be Available?

Depending on the stage of the case, the accused may consider a request for particulars, a challenge to an insufficient complaint or information, an objection to unlawfully obtained evidence, or a motion attacking the absence of probable cause or an element of the offense.

In Virata v. Sandiganbayan, G.R. No. 106527, 15 July 1993, the Supreme Court explained that a bill of particulars is proper when allegations are so general or indefinite that the defendant cannot intelligently prepare an answer or defense.

The defense should identify the exact deficiency. A demand for particulars should seek the specific transaction, account, date, instruction, communication, beneficiary, and overt act allegedly attributable to the accused officer. It should not be used merely to obtain the prosecution’s entire evidence before trial.

Typical Defense Scenarios

ScenarioPossible defense position
Customers used the gateway to send fraudulent payments.The company processed transactions through an automated system, and the officer did not know the funds were connected with fraud.
The treasurer signed a payment instruction based on complete internal documentation.The approval was an ordinary corporate act performed in good faith and within established controls.
An employee used the officer’s credentials without authorization.The electronic record does not establish personal participation without proof of actual access, authorization, or control.
The officer received an internal fraud alert and did nothing.The defense must examine the officer’s authority, the seriousness of the warning, the response taken, and whether the omission amounts to gross negligence under the applicable law.
The company filed a suspicious transaction report.The report may support good-faith compliance, subject to the confidentiality and non-disclosure requirements of the Anti-Money Laundering Act.

What Evidence Should Be Preserved?

Corporate officers should immediately preserve documents and electronic data that may establish the absence of personal participation or criminal knowledge.

  • board resolutions, delegation documents, and job descriptions;
  • payment gateway access logs and authentication records;
  • transaction-monitoring alerts and compliance reviews;
  • emails, messaging records, and approval workflows;
  • customer onboarding and verification records;
  • internal audit reports and incident-response records; and
  • regulatory reports, correspondence, and notices concerning the transactions.

Preservation should be performed in a manner that maintains metadata and chain of custody. Deleting, altering, or selectively producing records may create separate legal and evidentiary problems.

Practical Recommendations for Directors and Treasurers

  1. Obtain the complaint, subpoena, freeze order, or investigation notice and identify the precise offense and transactions involved.
  2. Retain counsel experienced in criminal, corporate, financial, and data-related investigations.
  3. Do not communicate with suspected scammers or potential co-accused without legal advice.
  4. Preserve all electronic and corporate records, including records that may appear unfavorable.
  5. Document the officer’s actual duties, approval authority, and access to transaction information.
  6. Prepare a transaction timeline showing alerts, reviews, approvals, reports, and corrective actions.
  7. Ensure that responses to regulators are accurate, complete, and consistent with applicable confidentiality duties.
  8. Review whether any account hold, freeze, or information request was issued under the proper statutory authority and procedure.

Conclusion

A director or corporate treasurer accused of authorizing money muling should not assume that the company’s use of a digital payment gateway establishes personal criminal liability. The decisive issues are the officer’s actual conduct, knowledge, authority, causal contribution, and compliance with applicable safeguards.

The defense should focus on the specific statutory elements, the reliability of the digital evidence, the distinction between corporate and personal acts, and the absence of proof showing intentional participation or gross negligence. A well-supported defense should combine procedural objections with documentary evidence demonstrating good faith, proper controls, lack of knowledge, and the absence of a causal link to the alleged unlawful transactions.

About Nicolas and De Vega Law Offices

 Nicolas and de Vega Law Offices is a full-service law firm in the Philippines.  You may visit us at the 16th Flr., Suite 1607 AIC Burgundy Empire Tower, ADB Ave., Ortigas Center, 1605 Pasig City, Metro Manila, Philippines.  You may also call us at +632 84706126, +632 84706130, +632 84016392 or e-mail us at [email protected]. Visit our website https://ndvlaw.com.

SEARCH