AFSL Reporting Obligations — What to Report and When
Key takeaways:
- AFSL holders must submit annual financial reports, audit reports, and compliance certificates to ASIC
- Significant breach reporting must occur within 30 days of detection, other breaches within 90 days
- Licensees must report changes in key personnel, business operations, and ownership to ASIC promptly
- Failure to meet reporting obligations can result in licence conditions, suspension, or cancellation
Ongoing Obligations for AFSL Holders
Holding an Australian Financial Services Licence (AFSL) comes with ongoing reporting obligations to ASIC. Licensees must regularly report on their financial position, compliance activities, and any significant events. These obligations help ASIC monitor the conduct of licensees and protect consumers.
Financial Reporting
AFSL holders must lodge annual financial statements and audit reports with ASIC. This includes a balance sheet, profit and loss statement, and cash flow statement. Large licensees may also need to lodge half-yearly reports. The specific requirements depend on the type and size of the licence.
We publish these guides free because consumers deserve independent information. A $5 donation helps cover the cost of keeping them accurate.
Secure payment via Stripe. No account needed.
Breach Reporting
Licensees must report significant breaches of their licence obligations to ASIC as soon as possible, and within 30 days of becoming aware of the breach. This includes breaches of the law, licence conditions, or the licensee's own compliance arrangements. Failure to report can result in enforcement action.
Audit Requirements
AFSL holders must appoint an auditor to conduct annual compliance audits. The auditor reviews the licensee's compliance with its obligations and reports to ASIC. The audit report must be lodged with ASIC within a specified timeframe after the end of the financial year.
What This Means for Consumers
These reporting obligations exist to ensure that financial advice firms are financially sound and operating within the law. If a licensee is not meeting its obligations, ASIC can step in. As a consumer, knowing that your adviser's licensee has ongoing reporting duties provides an extra layer of protection.
Annual Reporting Requirements
All AFSL holders must lodge annual financial reports with ASIC within three months of the end of their financial year. These reports include a balance sheet, income statement, and statement of cash flows, audited by a registered company auditor. The audit must confirm that the licensee has adequate financial resources to provide the services they are licensed for, including compliance with the net tangible assets or surplus liquid funds requirements.
In addition to financial reports, licensees must lodge a compliance certificate signed by a director confirming that the licensee has complied with its obligations under the Corporations Act during the reporting period. ASIC uses these reports to identify licensees at risk of financial failure or non-compliance and may conduct further investigations based on the information provided.
Breach Reporting Regime
The breach reporting rules (Part 9.4AAA of the Corporations Act) require AFSL holders to report breaches of financial services laws to ASIC. Significant breaches must be reported within 30 days of detection. A breach is "significant" if it has resulted in, or is likely to result in, substantial loss to one or more clients; indicates a systemic issue; or represents a material departure from the licensee's obligations.
Other (non-significant) reportable breaches must be reported within 90 days. Licensees must also keep a written record of all reportable breaches and the actions taken to address them. The breach reporting regime was significantly expanded in October 2022, and ASIC has since conducted targeted surveillances to ensure compliance. Penalties for failing to report breaches include infringement notices, licence conditions, and court-imposed penalties.
Notifications of Changes
AFSL holders must notify ASIC of certain changes within specified timeframes. Changes that require notification include: appointment or cessation of a responsible manager, change of control or ownership of the licensee, change of address or contact details, changes to the services provided, and opening or closing of business premises.
Failure to notify ASIC of significant changes can result in enforcement action, including the imposition of licence conditions. ASIC maintains a public register of AFSL holders that is updated based on these notifications. Consumers can use the register to verify an adviser's current licence status and the scope of their authorisation.
Frequently Asked Questions
What is the deadline for lodging annual financial reports with ASIC?
Annual financial reports and audit reports must be lodged with ASIC within three months of the end of the licensee's financial year. For a licensee with a 30 June year end, the deadline is 30 September.
Can ASIC extend the deadline for reporting?
Yes, ASIC may grant extensions in limited circumstances, such as where the licensee has experienced an exceptional event beyond their control. Extensions are not automatic and must be applied for before the deadline.
What are the penalties for late reporting?
Late reporting may result in late lodgement fees, infringement notices, or more serious enforcement action. Persistent late reporting is treated as an indicator of poor compliance culture and may lead to licence conditions or suspension.
Do small AFSL holders have different reporting requirements?
Limited AFSL holders (those providing advice only, not handling client money) have different financial resource requirements but still must lodge annual reports and comply with the breach reporting regime. The reporting format may be simplified for some limited licensees.
The 2024-25 ASIC Scorecard for Financial Advice
Treat this as a running ledger of what regulators caught — and what clients missed until it was too late. Across 2024-25: $104.1 million in court-ordered penalties, 19 criminal convictions, 38 new civil proceedings, and 58 individuals or companies banned or restricted from financial services. Investigation volume grew roughly 50% year-on-year.
The entries worth reading closely:
- Shield Master Fund (2024-25). Receivers appointed; fund wound up after concerns about inappropriate advice and inadequate disclosure.
- MWL Financial Services (2025). Four advisers banned for terms of 4–8 years for recommending the fund contrary to clients' best interests.
- Glenda Rogan (2025). 10-year ban for moving $14.8 million of client funds into a cryptocurrency-based investment scam.
- Barry King (2025). Permanent ban spanning dishonest conduct, misuse of client funds and provision of false documents.
- Fees-for-no-service actions (2024-25). Several licensees and advisers pursued, including Crown Wealth Group director Andrew Moore, banned for non-reporting of FFNOS conduct.
- Unregistered advice (2025). Infringement notices of $31,300 each issued to licensees including Skye Money and Smart Financial Capital.
Alongside the casework, ASIC has publicly worried about business models that use high-pressure selling and better-return promises to go after Australians' superannuation savings.
Basis: ASIC Annual Report 2025; ASIC Financial Advice Update, August 2025.
Regulatory Context
A decade of reform has reshaped how advice must be given. FOFA (2013) brought in the best interests duty and outlawed conflicted remuneration. DBFO (2024-25) then scrapped the Fee Disclosure Statement, simplified consent for ongoing fees, and settled the legal footing for deducting advice fees from super. In parallel, the Quality of Advice Review (2022) proposes simplified SOAs and a new class of adviser — its Tranche 2 legislation was still in draft as of March 2025.
AdviserCheck's Analysis Pipeline
Unlike single-model tools, AdviserCheck runs a progressive consensus pipeline: one AI model performs the initial six-layer review, a second independently validates every finding, and a third must confirm it before anything reaches your report. Only findings all three models agree on reach the report — trading some recall for much higher precision. For professionals benchmarking automated compliance, that chain-of-verification design is the differentiator. See the output for yourself with a free check.
Are Compliance Audits and Scheme Audits Different?
Yes. A compliance audit checks whether your AFSL holder meets its licence obligations under s912A and RG 104/105, with an audit report lodged with ASIC. A scheme audit relates to a specific registered managed investment scheme or custody arrangement and verifies scheme property and compliance plans. Scope, appointment rules and reporting triggers differ — your SOA should reference the correct audit type where relevant.
Want to check your SOA against compliance standards?
Try AdviserCheck FreeLast updated: 2026-09-12. This guide is for informational purposes only and does not constitute financial or legal advice.