Skip to main content
Category: Insider Trading Controls

Restricted List

Also known as: Restricted Securities List, List of Restricted Securities Owners
Simply put

In a corporate compliance context, a restricted list is a controlled record identifying securities, companies, or individuals that are subject to trading limitations, often because of access to non-public information or private, unregistered holdings. It is used to prevent employees or affiliates from trading in ways that could violate securities rules. The exact restrictions and who they apply to depend on the specific program and applicable law.

Formal definition

A restricted list is a compliance control mechanism maintaining a record of securities or associated owners subject to trading or dealing restrictions. In securities compliance, this may relate to restricted securities, securities acquired in unregistered, private sales from the issuing company or from an affiliate of the issuer, whose resale is governed under U.S. Rule 144, or to a roster of restricted securities owners holding securities subject to such conditions. The list functions as one operational control within a broader compliance program and does not itself constitute a complete program; its scope, resale conditions, and applicability are jurisdiction-specific and should be confirmed against primary regulatory sources and qualified legal counsel. Note that 'Restricted List' is also used in unrelated consumer contexts (for example, social media privacy settings), which fall outside this compliance definition. This entry is educational and not a substitute for professional legal advice.

Why it matters

A restricted list is one of the operational controls organizations use to reduce the risk that employees or affiliates trade securities in ways that could violate securities rules. Because certain personnel may have access to material non-public information, or may hold securities acquired through unregistered, private sales from an issuer or an affiliate of the issuer, uncontrolled trading in those securities can expose both the individual and the organization to legal and regulatory consequences. Maintaining a controlled record of the affected securities, companies, or individuals gives compliance teams a defined reference point for enforcing trading limitations.

It is important to understand what a restricted list does and does not do. It is a single compliance control, not a complete compliance program, and it does not by itself guarantee prevention of misconduct or provide legal protection. Its effectiveness depends on how it is implemented, kept current, and integrated with other controls such as pre-clearance procedures, training, and monitoring. The specific restrictions, the resale conditions that apply, and the persons covered are jurisdiction-specific. In the United States, for example, the resale of restricted securities is governed under Rule 144, but organizations should confirm applicable conditions against primary regulatory sources and qualified legal counsel rather than assuming universal application.

Who it's relevant to

Compliance officers and program managers
Those responsible for designing and maintaining trading controls rely on a restricted list as one operational component of a broader compliance program. They must ensure it is kept current, integrated with related controls, and applied consistently, while recognizing that the list alone does not constitute a complete program.
Legal and audit teams
Legal counsel and auditors assess whether the list's scope and the resale conditions applied to listed securities align with applicable law, which in the U.S. includes Rule 144 governing restricted securities. Because these conditions are jurisdiction-specific, they should be confirmed against primary regulatory sources; this entry is educational and not a substitute for professional legal advice.
Learning and development staff
Those who build training on securities compliance can use the concept to help employees and affiliates understand why certain securities carry trading limitations and how a restricted list operates as a control. Training may support awareness of these restrictions but does not by itself satisfy an organization's full compliance obligations.

Inside Restricted List

Securities identifiers
The specific companies, issuers, or financial instruments subject to trading or transactional restrictions, typically identified by name, ticker, or other unique reference to avoid ambiguity.
Restriction type and scope
A statement of what activity is limited, such as prohibitions on proprietary trading, personal account dealing, solicitation, or the publication of research, and to whom the restriction applies within the organization.
Basis or trigger for restriction
The reason a security or counterparty is listed, commonly the possession of material non-public information, an active deal or engagement, or a conflict of interest, though the underlying details may themselves be confidential.
Effective and review dates
The period during which the restriction is in force, including when an item was added and when it is scheduled for review or removal, so that restrictions do not persist beyond their justification.
Ownership and administration
The function responsible for maintaining the list, typically compliance or a control room, along with escalation and approval procedures for adding, amending, or clearing entries.

Common questions

Answers to the questions practitioners most commonly ask about Restricted List.

Is a restricted list the same as a watch list?
No. Although both are control lists used in information barrier and conflicts management, they serve different functions and should not be treated as interchangeable. A restricted list generally identifies securities or entities on which specified activities, such as proprietary trading, research publication, or personal trading, are prohibited or curtailed. A watch list is typically a confidential, more narrowly circulated list used for monitoring rather than outright prohibition. Confirm the precise definitions and permitted activities for each list against your organization's own policies, as terminology and usage vary by firm and jurisdiction.
Does placing a security on the restricted list by itself prevent misconduct such as insider trading?
No. A restricted list is one control within a broader compliance program and cannot by itself guarantee prevention of misconduct or provide legal protection. Its effectiveness depends on implementation, including how reliably the list is maintained, how promptly it is updated, how it is communicated, and whether it is supported by monitoring, training, and information barriers. The list is intended to support compliance efforts, not to serve as a standalone safeguard. Matters involving insider trading law require qualified legal counsel.
Who is responsible for maintaining and updating the restricted list?
Responsibility is generally assigned to a designated compliance or control-room function, but the specific ownership, escalation paths, and update authority should be defined in your organization's policies. Because the list's value depends on being current, firms commonly establish clear procedures for who can add or remove items and under what triggering events. Confirm assigned roles against your internal governance documentation rather than assuming a universal model.
How does the restricted list interact with employee personal trading procedures?
Restricted lists are frequently referenced when screening or pre-clearing personal trades, so that employees are prevented from transacting in restricted securities. The precise mechanics, such as whether pre-clearance is automated, which populations of employees are covered, and how exceptions are handled, vary by firm and by applicable regulatory obligations. These procedures are one component of a larger control system and should be documented and coordinated with the personal account dealing policy.
What should trigger adding or removing an item from the restricted list?
Additions and removals are typically driven by defined events relevant to the firm's activities and its access to material non-public information, but the specific triggers should be set out in your organization's own procedures. Establishing documented criteria and timing helps ensure consistency and auditability. Because the appropriateness of triggers can depend on securities and other laws that vary by jurisdiction, these criteria should be reviewed with qualified legal and compliance input.
How is compliance with the restricted list monitored and evidenced?
Monitoring and auditing functions, distinct from the list itself, are generally used to test whether restrictions are being observed, for example by reviewing transactions against the list and documenting exceptions. Maintaining records of list versions, update timing, and review activity can support demonstrating that the control operates as intended. The scope and rigor of monitoring should be defined in policy and calibrated to the firm's risk profile; this entry is educational and not a substitute for professional advice.

Common misconceptions

A restricted list and a watch list are the same thing.
They are distinct tools. A watch list is generally a confidential monitoring device used to observe activity in named securities without necessarily prohibiting it, while a restricted list actively bars specified transactions or activities. Organizations often maintain both, and conflating them can lead to inappropriate handling of confidential information.
Maintaining a restricted list satisfies an organization's obligations around insider trading and conflicts.
A restricted list is one control within a broader compliance program. It does not replace training, policies, monitoring and auditing, information barriers, or supervisory review, and its presence alone does not demonstrate program effectiveness, which depends on how it is implemented and enforced.
A restricted list is a legal requirement with uniform content across all jurisdictions.
The specific obligations surrounding trading restrictions, insider dealing, and information handling vary by jurisdiction and by the nature of the firm's activities. Whether and how a restricted list must be maintained is a matter for qualified legal counsel and applicable local regulation.

Best practices

Assign clear ownership of the restricted list to a defined function, such as compliance or a control room, with documented procedures for adding, amending, and removing entries.
Use unambiguous security identifiers and precisely state the scope of each restriction so employees understand exactly what activity is prohibited and to whom it applies.
Record the trigger, effective date, and review date for each entry, and remove restrictions promptly once the underlying justification no longer applies.
Integrate the restricted list with related controls such as personal-account-dealing checks, information barriers, and monitoring rather than treating it as a standalone safeguard.
Control access to the list and any confidential rationale on a need-to-know basis, distinguishing it from any separately maintained watch list.
Confirm the design and legal sufficiency of restricted-list practices with qualified legal counsel against applicable jurisdictional requirements, as this entry is educational and not a substitute for professional advice.