2025-01-01 SEC Press press_release 64 KB 4,842 chars

Two Robinhood Broker-Dealers to Pay $45 Million in Combined Penalties for Violating More Than 10 Separate Securities Law Provisions

Release
2025-5
summary

Robinhood Securities and Robinhood Financial agreed to pay $45 million in penalties to settle SEC charges involving regulatory, cybersecurity, and recordkeeping failures.

paragraph

Robinhood Securities and Robinhood Financial faced SEC charges for violations including inadequate identity theft protection, cybersecurity vulnerabilities, and non-compliance with Regulation SHO. The settlement requires a combined $45 million in civil penalties, split between Robinhood Securities at $33.5 million and Robinhood Financial at $11.5 million. Both firms agreed to censures and specific remedial actions, such as internal audits and compliance certifications.

narrative

The SEC announced that Robinhood Securities LLC and Robinhood Financial LLC will pay $45 million in combined civil penalties to settle various regulatory charges. The violations spanned several years and included failures in suspicious activity reporting, inadequate identity theft protections, and a cybersecurity breach that exposed millions of customers' data. Additionally, the firms failed to maintain proper electronic communications and core operational databases. Robinhood Securities specifically faced charges for inaccurate 'blue sheet' trading data and violating Regulation SHO short sale rules. To resolve the matter, Robinhood Securities will pay $33.5 million while Robinhood Financial will pay $11.5 million. Both entities agreed to censures, and Robinhood Securities must certify its remediation of short sale rule deficiencies.

Enriched metadata

Scheme
broker-dealer-fraud (95%)
Settlement
$45,000,000
Classified broker-dealer-fraud(confidence 95%). EDGAR detection: forms Form D· recall 29% / precision 9%. detection rule →
Parties
both firmscore operational databaseselectronic communicationsregulation shorobinhood financialrobinhood securitiessuspicious transactions
Keywords
robinhoodrobinhood securitiessecuritiessecrobinhood failedfailedsuspicious activityorderagreedmillion combinedidentity theftunauthorized accessoff-channel communicationsunder supervisioncommunications

Exhibits & Attached Documents (1)

Extracted insights

Dollar amounts 3
  • $45.00M $45 million $10M–$100M
  • $33.50M $33.5 million $10M–$100M
  • $11.50M $11.5 million $10M–$100M
Entities 7
  • person both firms
  • person core operational databases
  • person electronic communications
  • person regulation sho
  • person robinhood financial
  • company robinhood securities
  • person suspicious transactions
Triples 18
  • Robinhood Agreed To Pay $45 million in combined civil penalties
  • Robinhood Failed To Observe A broad array of significant regulatory requirements
  • Robinhood Failed To Timely Investigate Suspicious transactions
  • Robinhood Failed To Implement Adequate policies and procedures designed to protect customers from identity theft
  • Robinhood Failed To Adequately Address Known risks posed by a cybersecurity vulnerability related to remote access
  • Robinhood Failed To Maintain And Preserve Electronic communications
  • Robinhood Failed To Maintain Copies Of Core operational databases
  • Robinhood Failed To Maintain Some of their communications with their brokerage customers
  • Robinhood Securities Failed To Provide Complete and accurate securities trading information
  • Robinhood Securities Failed To Comply With Regulation SHO
  • Robinhood Securities Violated Rules 200(g), 203(b)(1), and 204(a) of Reg SHO
  • Both Firms Violated Rule 30(a) of Regulation S-P
  • Both Firms Violated Rule 201 of Regulation S-ID
  • Both Firms Admitted Certain Findings In The order
  • Both Firms Agreed To Conduct An internal audit concerning off-channel communications compliance
  • Robinhood Securities Agreed To Certify Its remediation of the deficiencies that caused the Reg SHO violations
  • Robinhood Securities Agreed To Pay A $33.5 million penalty
  • Robinhood Financial Agreed To Pay A $11.5 million penalty
PDF (from attached: pdf)
Text layers
Extracted body text (4,842c)
The Securities and Exchange Commission today announced that broker-dealers Robinhood Securities LLC and Robinhood Financial LLC (collectively, Robinhood) have agreed to pay $45 million in combined civil penalties to settle a range of SEC charges arising from their brokerage operations. “It is essential to the Commission’s broader efforts to protect investors and promote the integrity and fairness of our markets that broker-dealers satisfy their legal obligations when carrying out their various market functions,” said Sanjay Wadhwa, Acting Director of the SEC’s Division of Enforcement. “Today’s order finds that two Robinhood firms failed to observe a broad array of significant regulatory requirements, including failing to accurately report trading activity, comply with short sale rules, submit timely suspicious activity reports, maintain books and records, and safeguard customer information.” According to the SEC’s order, the violations by Robinhood related to the following conduct: Suspicious Activity Reporting: From January 2020 through March 2022, Robinhood failed to timely investigate suspicious transactions, resulting in systematic failures to timely file suspicious activity reports. Identity Theft Protection: From April 2019 to July 2022, Robinhood failed to implement adequate policies and procedures designed to protect their customers from the risk of identity theft. Unauthorized Access to Robinhood Systems: From June 2021 through November 2021, Robinhood failed to adequately address known risks posed by a cybersecurity vulnerability related to remote access to their systems. In November 2021, a third party obtained unauthorized access and downloaded information related to millions of individuals who had provided that information to Robinhood. Off-Channel Communications: Robinhood had longstanding failures to maintain and preserve electronic communications in violation of the recordkeeping provisions of the federal securities laws. Both firms admitted the findings in the order concerning their off-channel communications failures. Retention of Brokerage Data: Robinhood failed to maintain copies of core operational databases in a manner that ensured legally required records were protected from deletion or modification for the required length of time. Failure to Maintain Customer Communications: Robinhood failed to maintain some of their communications with their brokerage customers as legally required between 2020 and 2021. In addition, according to the SEC’s order, Robinhood Securities alone committed the following violations: Electronic Blue Sheets: For more than five years, Robinhood Securities failed to provide complete and accurate securities trading information, known as blue sheet data, to the SEC. Robinhood Securities admitted the SEC’s findings concerning blue sheet filings. Fractional Share Trading and Stock Lending: In connection with its stock lending and fractional share trading programs, Robinhood Securities failed to comply with Regulation SHO, the regulatory framework designed to address abusive short selling practices. From May 2019 through December 2023, Robinhood Securities violated Reg SHO’s close-out, order-marking, and locate requirements. The SEC’s order finds that Robinhood Securities violated Rules 200(g), 203(b)(1), and 204(a) of Reg SHO. The order further finds that both firms violated Rule 30(a) of Regulation S-P, Rule 201 of Regulation S-ID, and the broker-dealer recordkeeping and reporting provisions of the federal securities laws. Both firms admitted certain findings in the order and agreed to be censured. Additionally, both firms agreed to conduct an internal audit concerning off-channel communications compliance, and Robinhood Securities agreed to certify its remediation of the deficiencies that caused the Reg SHO violations. Robinhood Securities agreed to pay a $33.5 million penalty and Robinhood Financial agreed to pay a $11.5 million penalty. The SEC’s electronic blue sheets investigation was conducted by Zheng (Jane) He, Eric Taffet, and Lindsay S. Moilanen and supervised by Thomas P. Smith, Jr. of the New York Regional Office. The SEC’s Regulation SHO investigation was conducted by Jonathan Max Warner and Rahul Kolhatkar of the San Francisco Regional Office and Market Abuse Unit, under the supervision of Joseph G. Sansone. The investigations concerning suspicious activity reporting, identity theft protection, and unauthorized access were conducted by Matthew Meyerhofer and Mr. Kolhatkar of the San Francisco Regional Office, under the supervision of Jason H. Lee and Monique C. Winkler. The recordkeeping investigations were conducted by Mr. Meyerhofer, Hannah Cho, and Mr. Kolhatkar, under the supervision of Mr. Lee and Ms. Winkler. The SEC appreciates the assistance of the Financial Industry Regulatory Authority.
OCR text (4,842c · html-text · 99% conf)
The Securities and Exchange Commission today announced that broker-dealers Robinhood Securities LLC and Robinhood Financial LLC (collectively, Robinhood) have agreed to pay $45 million in combined civil penalties to settle a range of SEC charges arising from their brokerage operations. “It is essential to the Commission’s broader efforts to protect investors and promote the integrity and fairness of our markets that broker-dealers satisfy their legal obligations when carrying out their various market functions,” said Sanjay Wadhwa, Acting Director of the SEC’s Division of Enforcement. “Today’s order finds that two Robinhood firms failed to observe a broad array of significant regulatory requirements, including failing to accurately report trading activity, comply with short sale rules, submit timely suspicious activity reports, maintain books and records, and safeguard customer information.” According to the SEC’s order, the violations by Robinhood related to the following conduct: Suspicious Activity Reporting: From January 2020 through March 2022, Robinhood failed to timely investigate suspicious transactions, resulting in systematic failures to timely file suspicious activity reports. Identity Theft Protection: From April 2019 to July 2022, Robinhood failed to implement adequate policies and procedures designed to protect their customers from the risk of identity theft. Unauthorized Access to Robinhood Systems: From June 2021 through November 2021, Robinhood failed to adequately address known risks posed by a cybersecurity vulnerability related to remote access to their systems. In November 2021, a third party obtained unauthorized access and downloaded information related to millions of individuals who had provided that information to Robinhood. Off-Channel Communications: Robinhood had longstanding failures to maintain and preserve electronic communications in violation of the recordkeeping provisions of the federal securities laws. Both firms admitted the findings in the order concerning their off-channel communications failures. Retention of Brokerage Data: Robinhood failed to maintain copies of core operational databases in a manner that ensured legally required records were protected from deletion or modification for the required length of time. Failure to Maintain Customer Communications: Robinhood failed to maintain some of their communications with their brokerage customers as legally required between 2020 and 2021. In addition, according to the SEC’s order, Robinhood Securities alone committed the following violations: Electronic Blue Sheets: For more than five years, Robinhood Securities failed to provide complete and accurate securities trading information, known as blue sheet data, to the SEC. Robinhood Securities admitted the SEC’s findings concerning blue sheet filings. Fractional Share Trading and Stock Lending: In connection with its stock lending and fractional share trading programs, Robinhood Securities failed to comply with Regulation SHO, the regulatory framework designed to address abusive short selling practices. From May 2019 through December 2023, Robinhood Securities violated Reg SHO’s close-out, order-marking, and locate requirements. The SEC’s order finds that Robinhood Securities violated Rules 200(g), 203(b)(1), and 204(a) of Reg SHO. The order further finds that both firms violated Rule 30(a) of Regulation S-P, Rule 201 of Regulation S-ID, and the broker-dealer recordkeeping and reporting provisions of the federal securities laws. Both firms admitted certain findings in the order and agreed to be censured. Additionally, both firms agreed to conduct an internal audit concerning off-channel communications compliance, and Robinhood Securities agreed to certify its remediation of the deficiencies that caused the Reg SHO violations. Robinhood Securities agreed to pay a $33.5 million penalty and Robinhood Financial agreed to pay a $11.5 million penalty. The SEC’s electronic blue sheets investigation was conducted by Zheng (Jane) He, Eric Taffet, and Lindsay S. Moilanen and supervised by Thomas P. Smith, Jr. of the New York Regional Office. The SEC’s Regulation SHO investigation was conducted by Jonathan Max Warner and Rahul Kolhatkar of the San Francisco Regional Office and Market Abuse Unit, under the supervision of Joseph G. Sansone. The investigations concerning suspicious activity reporting, identity theft protection, and unauthorized access were conducted by Matthew Meyerhofer and Mr. Kolhatkar of the San Francisco Regional Office, under the supervision of Jason H. Lee and Monique C. Winkler. The recordkeeping investigations were conducted by Mr. Meyerhofer, Hannah Cho, and Mr. Kolhatkar, under the supervision of Mr. Lee and Ms. Winkler. The SEC appreciates the assistance of the Financial Industry Regulatory Authority.