UK regulates ESG ratings providers

UK regulates ESG ratings providers

UK Government introduces law to regulate ESG ratings providers. The legislation places ESG ratings providers under Financial Conduct Authority supervision, following IOSCO’s 2021 call for improved transparency and oversight. The regulation will apply to both UK-based and foreign providers….


The UK Government has introduced its finalised legislation in Parliament to regulate ESG ratings providers, bringing them under the supervision of the Financial Conduct Authority (FCA). This move follows a 2021 call by the International Organization of Securities Commissions (IOSCO) for regulators to enhance transparency in the ESG ratings and data space and to implement regulatory oversight. IOSCO provided recommendations for regulators, such as requiring providers to disclose potential conflicts of interest and to evaluate the data and methodologies they use.

The previous UK government initiated a consultation in 2023 to assess the need for regulation of ESG ratings providers, which led to the current administration’s introduction of draft legislation in 2024. Under the new law, ESG ratings providers operating in the UK will be required to obtain authorisation from the FCA. This requirement will apply to both UK-based providers and foreign providers offering ESG ratings within the UK.

In a statement welcoming the new legislation, the FCA announced that it is developing a regulatory regime for ESG ratings, with plans to introduce proposed rules by the end of the year. The FCA’s proposals will be informed by IOSCO’s recommendations and will focus on transparency, governance, systems and controls, and conflicts of interest. The regulator also plans to issue guidance to help firms determine whether their activities will require FCA authorisation.

The FCA stated: “ESG ratings continue to play a critical role in influencing investment and capital allocation decisions. The legislation, which was broadly supported by the industry, will provide us with the necessary powers to regulate ESG ratings providers – an important step towards ensuring that there are transparent, reliable and comparable ESG ratings.”

The regulation of ESG ratings providers under the new legislation will take effect in June 2028.



  • The cybersecurity paradox of digital trust

    The cybersecurity paradox of digital trust

    Digital growth depends on trust built on fragile foundations. Dan Bridges, Technical Director – International at Dropzone AI, argues that growth demands digital trust, but architectures were built for a more trusting era — leaving security operations struggling to keep pace with AI-driven threats and an always-on risk landscape.


  • Strong knowledge foundations drive AI advantage

    Strong knowledge foundations drive AI advantage

    Mature knowledge systems determine AI and growth outcomes. A global iManage study finds organisations with strong knowledge foundations are nearly twice as likely to report revenue growth and are significantly more successful at embedding AI into daily operations.


  • Google backs Open Partners ad tech build

    Google backs Open Partners ad tech build

    Google partners with Open Partners on proprietary ad tech. The collaboration will see the independent agency’s Automated Campaign Execution platform — ACE — formally developed within the Google ecosystem ahead of a planned early 2026 launch, following reported uplifts of 20–30% in ROAS and conversions.