ECB Warns: Banks Still Underestimate Climate & Nature Related Risks

Why Companies Should Care

The European Central Bank has released its updated compendium of good practices on climate and nature‑related risk management – and the message is blunt: progress is real, but major blind spots remain.

Banks now have the basic frameworks in place, yet implementation is uneven. Many still fail to cover all material risk drivers, portfolios, and transmission channels.

🔎 Two areas stand out:

  • Physical climate risks – methodologies are still immature, and the non‑linear, forward‑looking nature of these risks means they are likely underestimated.
  • Nature‑related risks – most banks have run materiality assessments, but two‑thirds haven’t turned them into concrete actions. KRIs exist, but often without thresholds that trigger decisions. KRI = Key Risk Indicator measuring risk exposure.

Notably, one‑third of all new good practices focus on nature‑related risks – a clear signal of supervisory priorities.

⚠️ A risk landscape defined by uncertainty

The ECB warns that Europe is moving toward a disorderly transition, with faster‑moving physical and transition risks. Banks must prepare for a wider range of plausible futures, supported by more granular scenario analysis and stress testing.

🛡️ The insurance protection gap is widening

With insurance coverage shrinking and public finances strained, more climate‑ and nature‑related losses will fall directly on banks’ balance sheets – increasing scrutiny on exposed sectors and borrowers.

🌿 What this means for companies

This is not just a banking issue. It directly affects corporates seeking financing or refinancing.

  1. Expect more granular asset‑level data requests on Physical risk exposure, Transition plans, Nature‑related dependencies and impacts and Adaptation measures
  2. Weak disclosures = higher financing costs. If banks cannot quantify your risks, they will price in uncertainty.
  3. Nature‑related risks enter mainstream credit analysis. Expect more questions on biodiversity, land use, water dependency, and supply‑chain exposure.
  4. Transition plans must be credible and operational. Banks are moving from “statements” to evidence of execution. Companies without costed, time‑bound plans will face tighter covenants and reduced credit appetite.
  5. Scenario analysis becomes a shared language. Companies able to articulate resilience under disorderly transition scenarios will stand out.

The ECB’s message is clear: Climate and nature‑related risks are rising, complex, and still underestimated. Banks must accelerate – and so must companies.

Those who provide granular data, credible transition plans, and transparent nature‑related disclosures will secure better financing conditions and stronger long‑term resilience.

📘 The best way to prepare? Adopt ESRS.

The ECB’s expectations align closely with the European Sustainability Reporting Standards (ESRS). For companies, learning and adopting ESRS is the fastest, most reliable way to meet banks’ rising data needs.

👉 Contact us if you want to use our guided digital ESRS end-to-end templates to get a head start.

 


Source: https://www.bankingsupervision.europa.eu/ecb/pub/pdf/ssm.thematicreviewcercompendiumgoodpractices052026.en.pdf

 

 

ESG Shifting Tides

Across the Atlantic, the ESG narrative is splitting in two – as highlighted in the Harvard Law School Forum article “ESG Shifting Tides” – and it is reshaping the landscape in which companies operate.

In the U.S., ESG as a label is shrinking. Mentions in S&P 500 and Fortune 1000 proxies peaked in 2024, fell in 2025, and early 2026 filings have dropped below 2022 levels.

Companies are “greenhushing,” stripping out sustainability language to avoid political, regulatory, and litigation risk.

At the judicial level, new 2025-2026 cases challenge ESG mandates under the doctrine of “unconstitutional vagueness,” arguing that ESG criteria lack objective definition and cannot guide fiduciary duty.

Yet sustainability references in 10‑K risk factors continue to rise – because removing them could expose companies to liability if investors face losses.

Target’s 2021-2025 proxy evolution captures the shift:

▪️ 2021 – sustainability as risk oversight
▪️ 2022-2023 – ESG as a strategic brand asset
▪️ 2024-2025 – ESG nearly disappears, replaced by “resilience” and “long‑term value creation”

ESG isn’t dead, but it’s being rebranded to avoid risk.

Europe, however, is taking a longer‑term view, grounded in the understanding that a company’s negative impacts and dependencies are not abstract ESG issues but concrete financial risks.

The revised ESRS and SFDR 2.0 are not a retreat but a consolidation. While the U.S. backs away from ESG terminology, the EU is doubling down on clarity, comparability, and enforceability.

The ESRS revision simplifies reporting while preserving core objectives. It strengthens definitions, aligns with the Accounting Directive, and reinforces double materiality, preventing companies from reducing sustainability to a pure risk narrative.

SFDR 2.0 complements this by providing a clear financial product framework – clear categories, naming rules, exclusions, thresholds, PAIs – built on CSRD/ESRS data.

This is the opposite of “unconstitutional vagueness.” It is regulatory architecture designed to reduce ambiguity, prevent greenwashing, and support long‑term capital allocation.

ESG as branding is fading. ESG as evidence is rising ‼️ Regulators and investors expect structured, defensible data – not slogans.

Risk‑only framing won’t work in the EU. Double materiality requires addressing both impacts and financial risks.

Simplification is not dilution. ESRS and SFDR 2.0 streamline reporting but raise expectations on quality and comparability.

Capital follows clarity. While U.S. ESG funds face outflows, the EU is building conditions for stable, long‑term sustainable finance.

The EU is not following the U.S. retreat. It is professionalizing sustainability reporting.

Companies that prepare now – with robust data, clear governance, and integrated reporting processes – will be best positioned to benefit from regulatory stability and investor confidence.

The Harvard Law School Forum article “ESG Shifting Tides” is available here: https://corpgov.law.harvard.edu/2026/05/07/esg-shifting-tides-an-analysis-of-the-changing-narrative-around-sustainability-and-esg-investment-contraction/

#CSRD, #ESRS, #SFDR

SFDR 2.0 reform

The main purpose of EU’s Sustainable Finance Disclosure Regulation (SFDR) is to increase transparency about how financial market participants integrate sustainability risks into their investment decisions, how their investments impact environmental, social and governance (ESG) factors, and how financial products address these factors.

Under the SFDR 2.0 reform, this purpose evolves further by introducing a clear, comparable EU‑wide categorisation system for ESG products to strengthen investor protection and reduce greenwashing.

Three fundamental shifts occur:

➡️ SFDR stops being a corporate‑reporting regime and becomes a downstream user of CSRD/ESRS data. Entity‑level SFDR disclosures are largely deleted.

➡️ SFDR’s centre of gravity moves to product‑level clarity and comparability, focusing on investor‑relevant information rather than firm‑level sustainability reporting.

➡️ SFDR replaces open‑ended ESG claims with structured, enforceable financial product categories (Sustainable, Transition, Other ESG), creating a clear EU‑wide system to ensure comparability and reduce greenwashing.

Articles 8 and 9 were not intended as labels, but became de facto labels in the market. The introduction of a voluntary three product category system (Sustainable, Transition, other ESG) is the centrepiece of SFDR 2.0, replacing the de facto Article 8/9 labels. The categories are voluntary – but once a product opts in, the rules are binding.

A financial product may fall under one of the new categories only if it meets all of the following structural requirements and applies one of the permitted investment approaches.

These structural requirements apply to every categorised product:

🌿 Minimum 70% of investments must follow the sustainability claim – i.e., contribute to the stated sustainability objective or apply the stated sustainability‑related considerations.

🌿 Mandatory use of principal adverse impact (PAI) indicators at product level – with Parliament requiring both mandatory and material PAIs.

🌿 Clear exclusions for harmful activities – sectoral and conduct‑based exclusions aligned with ESMA fund‑name guidance and EU minimum safeguards.

🌿 Strict rules for names and marketing – claims must be consistent with the category; non‑categorised products must include a disclaimer and cannot use sustainability terms prominently.

🚀 In short:

SFDR 2.0 becomes a product‑focused classification and anti‑greenwashing tool – not a general ESG disclosure regime – that relies on CSRD/ESRS for entity‑level data and provides investors with clearer, more comparable sustainability product information.

📅 Expected timeline

If the regulation is adopted in late 2026:

➡️ Entry into force: early 2027

➡️ General application: early 2029

➡️ Immediate application for burden‑reduction measures: early 2027

This gives the market a two‑year runway to implement the new categorisation regime and product‑level PAI logic.

 

#CSRD, #SFDR, #ESRS

ESMA’s Assessment framework for opinions on ESRS technical advice

ESMA has just published its new Assessment Framework (11 May), and it’s an important milestone for the future of ESRS.

Unlike the February Opinion on the revised ESRS, this Framework is not a legal deliverable – it’s an internal supervisory tool designed to bring clarity, consistency, and transparency to how ESMA evaluates EFRAG’s technical advice.

The Framework provides a stable methodology that ESMA will use for all future ESRS assessments. It reflects the lessons learned from the February Opinion and ESMA’s core mandate:

▪️ High‑quality, decision‑useful sustainability information
▪️ Investor protection
▪️ Financial stability
▪️ Coherence with EU sustainable finance rules

ESMA evaluates ESRS across four criteria, each with detailed sub‑criteria and indicators, rated from fully capable to not capable:

1️⃣ Quality of sustainability information

Are disclosures forward‑looking, risk‑based, comparable, entity‑specific, and aligned with the Accounting Directive?

2️⃣ Consistent application

Are the standards clear, auditable, enforceable, and compatible with ESEF digital tagging?

3️⃣ Consistency with EU legislation

Do ESRS align with SFDR PAI indicators, Taxonomy Article 8, CTB/PAB benchmarks, and other EU rules?

4️⃣ Interoperability with global standards

How well do ESRS align with IFRS S1/S2 and GRI, while preserving EU‑specific concepts like double materiality?

ESMA may update the Framework as legislation evolves – but it now provides a transparent reference point for future ESRS evaluations.

How this differs from the February Opinion

ESMA’s Opinion on the revised ESRS (Feb) was not a methodology – it was a concrete assessment of EFRAG’s December 2025 draft standards.

ESMA welcomed simplification but flagged some issues affecting investor protection and comparability, including:

  • Reliefs: Too broad or permanent, reducing data quality and weakening alignment with IFRS S1/S2.
  • Materiality: Need for clearer guidance on top‑down assessments and treatment of non‑material subsidiaries.
  • Climate & transition plans: Requests for clearer definitions, ambition levels, and stronger requirements on targets and financed emissions.
  • SFDR & Taxonomy alignment: Risks of burden‑shifting and loss of key datapoints.
  • Digital reporting: Some grouped disclosures still need separate tagging.
  • Interoperability: Divergences in scenario analysis, GHG boundaries, and reliefs absent from IFRS.

In short

  • The February Opinion = ESMA’s judgement on the revised ESRS.
  • The May Assessment Framework = the methodology ESMA will use going forward.

Together, they signal a clear direction: simplification is welcome, but not at the expense of investor‑grade sustainability information – meaning sustainability data that is as trustworthy, comparable, and decision‑useful as financial information.

👉 Contact us if you want to use our guided digital ESRS end-to-end templates to get a head start >>>

CSRD, ESRS

 

The Assessment Framework is available here: https://www.esma.europa.eu/sites/default/files/2026-05/ESMA32-846262651-5443_ESRS_assessment_framework.pdf

Is your sustainability statement ready for an end‑to‑end AI‑driven audit?

The audit profession is being rewritten in real time. Full AI audit automation and advanced AI agents are being deployed to transform how evidence is gathered and insights are delivered.

This shift is not incremental. It is structural – and it directly impacts sustainability reporting.

Under #ESRS 1 §104, sustainability information must be clearly identifiable, structured, and both human‑readable and machine‑readable. In short: your sustainability statement must be ready for AI.

Why this changes everything 👇

1. AI audits require precision, not narrative padding

AI detects gaps, inconsistencies, missing datapoints, and unsubstantiated claims instantly. Vague narratives and inconsistent connections will be surfaced immediately.

Reporting standards exist for a reason: to deliver standardized, comparable, verifiable information – and that visibility is exactly how #CSRD and transparency drive progress.

2. Manual testing is disappearing

KPMG has confirmed that AI will perform routine audit testing, with humans supervising rather than executing the work. PwC anticipates full AI integration across the audit cycle within the year.

This means sustainability statements will be examined by systems capable of scanning 100% of data, cross‑checking disclosures against ESRS datapoints, identifying missing IRO linkages, detecting inconsistencies between narrative and metrics, and flagging anomalies.

3. Governance expectations are rising

AI‑enabled audits increase transparency, professional skepticism, and audit quality. Boards must now understand how AI decision‑making and human oversight interact – and adapt governance frameworks accordingly. This is not just a technology shift. It is a governance shift.

🖥️ ESRS: built for a digital audit era

ESRS was designed for machine readability. Paragraph 104 makes this explicit. This is not optional, it is foundational.

In practice, your sustainability statement must:

▪️ mark every required datapoint, incl GDR requirements

▪️ separate ESRS‑required content from authorized supplementary content

▪️ ensure consistency across policies, actions, targets, and metrics (PATM)

▪️ demonstrate clear IRO‑to‑PATM linkages

▪️ avoid narrative dilution

▪️ be audit‑ready at the datapoint level

The era of promotional ESG storytelling is over. ESRS demands decision‑useful information.

If your first ESRS report is due in FY2027, remember: early reporters will already be on their fourth cycle. Building processes, collecting data, and aligning teams takes time. Waiting until 2027 means falling years behind.

🌿 A well‑structured, machine‑readable sustainability statement strengthens governance, accelerates internal learning, reveals strategic blind spots, and positions your organization for the EU’s dual green and digital transition.

Guided digital ESRS end-to-end templates

👉 Contact us if you want to use our guided digital ESRS end-to-end templates to get a head start.

How the European Commission Has Updated ESRS 1

The Commission has updated ESRS 1 – and the adjustments matter.

From a stricter materiality filter to new guidance on top‑down assessments, clearer rules on what can be omitted, a new value‑chain cap aligned with the voluntary standard, strengthen transparency around omissions, and new exemptions for investment managers under fiduciary duty, these adjustments make ESRS reporting more focused.

For companies, this means less noise, more relevance, and a clearer path to audit‑ready sustainability reporting.

If ESRS preparation is on your agenda, this overview will help you understand what’s changed – and why it matters for your 2026 reporting cycle.

Read the full article for the key takeaways and practical implications. 👇

Overview of the Key Changes

The European Commission has introduced a series of targeted adjustments to ESRS 1, refining how undertakings determine materiality, report value‑chain information, and apply exemptions. Below is a synthesis of the most significant updates.

  1. Reinforced Materiality Filter and Prohibition of Non‑Material Disclosures

A new clarification confirms that undertakings must not disclose non‑material information, whether prescribed by an ESRS Disclosure Requirement or arising from entity‑specific disclosures. This strengthens the materiality filter and explicitly prevents “over‑reporting” that could obscure relevant information.

  1. New Guidance on “Informed Assessments”

A new Application Requirement (AR 8) explains that informed assessments are the reasonable evaluations made by the category “other users of general-purpose sustainability statements” when forming decisions about the undertaking. This addition clarifies the role of non‑financial users – business partners, social partners (trade unions and employer organisations), civil society and NGOs – in the materiality logic.

  1. Clarified Expectations for the Top‑Down Materiality Approach

The Commission adds explanatory guidance confirming that a top‑down approach can avoid unnecessary work by allowing undertakings to conclude on materiality at topic level without assessing every individual impact, risk, or opportunity. However, a more granular assessment is required when it could change the materiality conclusion.

  1. Clarification on the Level at Which Materiality Is Assessed

A new AR (AR 16) explains that the level of materiality assessment is distinct from the level of aggregation for reporting. This separation ensures that undertakings can assess materiality at one level (e.g., topic or geography) while reporting at another, depending on what best supports faithful representation.

  1. New Rules for Undertakings Managing Investments Under Fiduciary Duty

Two new ARs (AR 17 and AR 37) introduce an important exemption:

  • If an undertaking manages investments on behalf of clients under fiduciary duty and does not retain risks or rewards of ownership,
    • it is not expected to assess impacts, risks, and opportunities related to those investments;
    • nor is it expected to provide value‑chain data on them.

This reduces the reporting burden for asset managers operating under strict fiduciary mandates.

  1. Introduction of a New Paragraph on the Value‑Chain Cap

A new paragraph (66) explains how undertakings must apply the value‑chain cap when requesting information from protected undertakings in their value chain. Key points include:

  • The cap covers disclosures marked as “necessary” in both the basic and comprehensive modules of the voluntary standard.
  • The cap differs for undertakings above or below 10 employees.
  • Disclosures marked “voluntary”, “consideration when reporting sector information”, or “necessary if applicable” are not included in the cap.
  • The limitation applies equally to non‑EU undertakings in the value chain.

This addition aligns ESRS 1 with the forthcoming voluntary standard and clarifies the legal boundaries of information requests.

  1. Complete Rewrite of Section 7.7 on Omission of Information

The Commission has substantially rewritten the rules governing when information may be omitted. The revised section:

  • Defines four categories of information that may be omitted: (a) commercially sensitive information, (b) trade secrets, (c) classified information, (d) information protected by other EU or national laws.
  • Requires undertakings to disclose the use of each omission.
  • Requires reassessment at each reporting date.
  • Adds an AR clarifying that non‑EU undertakings’ lighter reporting obligations cannot justify omissions.

This rewrite strengthens transparency while preserving legitimate protections.

  1. Additional Clarifications on Anticipated Financial Effects

A new AR explains that:

  • Reporting anticipated financial effects will often involve estimates.
  • Revisions to estimates do not automatically constitute reporting errors.
  • The omission rules in Section 7.7 also apply to anticipated financial effects.

This provides comfort to preparers and aligns ESRS with financial‑reporting logic.

Overall Impact of the Commission’s Amendments

The changes introduced by the European Commission:

  • Reinforce the materiality filter, reducing unnecessary disclosures.
  • Clarify expectations for top‑down assessments, value‑chain reporting, and the use of estimates.
  • Introduce targeted reliefs for investment managers under fiduciary duty.
  • Align ESRS 1 with the upcoming voluntary standard and the Accounting Directive.
  • Strengthen transparency around omissions while protecting sensitive information.

The Commission’s updates to ESRS 1 sharpen the rules and make compliance more focused. For companies, the priority now is to tighten their materiality process, structure value‑chain requests, and apply omission rules with clear justification.

Strengthened guidance on top‑down assessments, estimates, and fiduciary‑duty exemptions gives organisations room to streamline their work – provided they document decisions and maintain traceability.

In practice, this means building a controlled, well‑evidenced ESRS workflow that avoids unnecessary disclosures, protects sensitive information, and ensures consistent, audit‑ready reporting year after year.

ESRS 1 Is Evolving – Cleerit Gets You Ready

These changes make ESRS reporting more focused – but also more demanding in terms of structure, documentation, and traceability. Cleerit is designed precisely for this.

The solution integrates the full ESRS logic – from materiality assessment and governance to ESRS compliant sustainability reporting – so you can move from interpretation to execution with confidence and ensure your disclosures flow directly into the right ESRS datapoints.

If you’d like to explore how Cleerit can support your ESRS preparation, just reach out >>

Source: https://ec.europa.eu/info/law/better-regulation/have-your-say/initiatives/16775-Revised-European-sustainability-reporting-standards_en

Stay tuned for more CSRD, ESRS and VSME insights on our LinkedIn page >>

European Commission Draft Delegated ESRS Regulation

Today the European Commission published the Draft Delegated ESRS Regulation, open for feedback until 3 June 2026.

The revised introduce minor targeted but meaningful changes to IRO and PATM (GDR) disclosures. The updates increase precision and streamline structure.

🌿 ESRS IRO & PATM: What Changed – and What It Means for Preparers

IRO Disclosures – Clearer, More Action‑Oriented

Most IRO requirements remain stable, but the Commission strengthens precision and action language:

  • “Responded” changed to “Addressed” when describing how undertakings manage impacts, risks and opportunities. This shifts the emphasis from reaction to action‑oriented management, aligning with OECD/UNGP due‑diligence language.
  • Exemption logic clarified: Instead of “cannot provide” the Commission uses “determines it need not provide”. This reframes omissions as reasoned determinations, not inability – raising the bar for justification.

PATM (GDR) – Structural Alignment & Due‑Diligence Upgrade

This is where the Commission introduces the most structural improvements.

  • Policies (GDR‑P) – Expanded due‑diligence verbs: prevent, mitigate, bring to an end, minimise, remediate (instead of the narrower prevention/mitigation/remediation), aligned with UNGP/OECD.
  • Actions (GDR‑A) – Scope and timeframe split into separate datapoints. Clearer structure, easier auditability.
  • Targets (GDR‑T) – Restructuring: the Commission separates methodologies, legal requirements and scenarios into distinct datapoints. Improves transparency and aligns with climate/scenario‑based reporting.
  • Metrics (GDR‑M) – Clarified that planned improvements to value chain data must be disclosed if such actions exist, now avoids implying that actions always exist. No change in substance, but expectations are clearer.

What This Means for Preparers

  • Increased precision – ambition is not decreasing
    • The Commission’s edits make requirements more precise, more auditable, and more aligned with global due‑diligence frameworks.
  • Prepare for structured, modular reporting
    • Explicit references to GDR‑P, GDR‑A, GDR‑T, GDR‑M signal a shift toward a modular, repeatable architecture.
    • Good for tooling and comparability – but it requires early preparation and a move away from high‑level ESG storytelling.
  • Exemptions now require explicit justification
    • Expect auditors to challenge unsupported omissions.
  • Supplementary information is now explicitly exceptional
    • It must be clearly labelled, justified, and must not obscure mandatory disclosures.
    • This is a direct warning against narrative-heavy reporting that dilutes required content.

The message is clear: start preparing now

The Commission’s refinements make one thing obvious: companies that wait will struggle. Expectations are firmer, structure is clearer, and interpretive flexibility is shrinking.

If you haven’t begun aligning your #strategy, #governance, and data model with the revised  #IRO and  #PATM requirements, now is the moment.

IRO, policy, target, action templates in Cleerit

We have updated the IRO-PAT templates in Cleerit. When using these templates correctly your disclosures will be compliant and can be automatically inserted in the corresponding ESRS datapoints. Contact us to get started >>>

Source: https://ec.europa.eu/info/law/better-regulation/have-your-say/initiatives/16775-Revised-European-sustainability-reporting-standards_en

The Commission’s draft Sustainability reporting standard for voluntary use is also available here: https://ec.europa.eu/info/law/better-regulation/have-your-say/initiatives/17232-Sustainability-reporting-standard-for-voluntary-use_en

Stay tuned for more CSRD, ESRS and VSME insights on our LinkedIn page >>

Pink Flamingos vs. Black Swans: Which Risk Should Leaders Fear Most?

In risk management, we often focus on Black Swans — rare, unpredictable shocks that reshape entire systems. They are dramatic and unforgettable.

But the real danger for organisations lies elsewhere.

Pink Flamingo risks 🦩  — the known, visible, repeatedly signalled risks we collectively ignore — are far more likely to undermine resilience. They sit in plain sight, underestimated due to familiarity, optimism bias or fatigue. And because they are known, failing to act is far more damaging.

This distinction matters now more than ever.

‼️ Why this matters for CSRD, CS3D, NIS2 and GDPR

Europe’s regulatory landscape is converging around one idea:

➡️ Resilience is now a legal, strategic and operational requirement.

  1. Sustainability & human‑rights risks (CSRD + CS3D)

Most sustainability‑related negative impacts — human‑rights violations, environmental harm, supply‑chain abuses — are not Black Swans.

They are Pink Flamingos 🦩: well known, repeatedly documented, and often ignored until they escalate into crises.

Under CSRD and CS3D, companies must show they can:

  • identify, mitigate, prevent these impacts
  • manage the financial risks arising from them

Ignoring known risks is no longer poor governance — it is a compliance failure.

  1. Cybersecurity resilience (NIS2 + GDPR)

Cyber incidents are increasingly predictable. Ransomware, supply‑chain attacks, credential theft, DDoS disruptions — none are Black Swans.

They are Pink Flamingos 🦩: widely understood, repeatedly warned about, and capable of causing severe operational disruption or financial loss.

Under NIS2, organisations must prove they can:

  • prevent and manage cybersecurity incidents
  • secure critical systems and supply chains
  • report significant incidents rapidly
  • protect others from material or non‑material harm

And when personal data is involved, GDPR applies simultaneously — making cybersecurity both a resilience and legal obligation.

💡Black Swans scare us in theory. Pink Flamingos hurt us in practice.

Most corporate crises — cyber breaches, human‑rights violations, environmental damage and other sustainability-related failures — were visible long before they became catastrophic.

Resilience today means:

  • acting on the risks we already know
  • closing the gap between awareness and action
  • embedding continuous monitoring, governance and accountability
  • aligning with regulatory frameworks designed to enforce exactly that

Resilience is capital. Negative impacts and dependencies are financial risks. Double materiality is the method to uncover both.

♟️ The strategic takeaway for leaders

To build a resilient organisation under #CSRD, #CS3D, #NIS2 and GDPR, focus less on predicting the unpredictable — and more on addressing the obvious.

Because the risks we ignore are the ones that break us.

👉 Want to strengthen both your resilience and your compliance? Get in touch and we’ll show you how Cleerit can support you.

#ESRS, #SustainabilityReporting, #NIS2, #Governance


Acknowledgement:

This article is based on a Risk and Policy Analysis assignment carried out by Chloé Lefèbvre in February 2024 during her Master’s studies in International Studies and Diplomacy at SOAS University of London. Thank you, Chloé, for introducing us to the world of Pink Flamingos vs. Black Swans!

Svensk utredning om genomförandet av ändringarna i CSRD (SOU 2026:27)

Den svenska utredningen om genomförandet av ändringarna i CSRD (SOU 2026:27) föreslår att EU:s Omnibus I‑lättnader införs så snart som möjligt:

▪️Våg 1‑bolag: från räkenskapsår som börjar 1 jan 2026
▪️Våg 2‑bolag: från räkenskapsår som börjar 1 jan 2027

Företag som inte längre uppfyller de nya gränsvärdena slipper lagstadgad hållbarhetsrapport för räkenskapsåret 2026. Inga svenska särregler föreslås – genomförandet sker i linje med EU‑rätten.

Nya gränsvärden för rapporteringsplikt

Ett företag (eller moderföretag i en koncern) omfattas endast om det under två år i rad har:

▪️> 1 000 anställda, och
▪️> 4,9 mdkr i nettoomsättning

Detta ersätter dagens regler och den tidigare vågindelningen (inkl NFRD‑baserad rapportering). Börsnoterade små och medelstora företag faller därmed ur scope.

Utredningen bedömer att endast 150–200 svenska företag kommer att omfattas framöver. Samtidigt väntas vissa företag fortsätta rapportera frivilligt.

Tillgången till hållbarhetsinformation beräknas dock minska, vilket kan påverka investerare, sparare och civilsamhället negativt.

Dotterföretag, koncerner och tredjelandsföretag

▪️Dotterföretag omfattas inte om koncernen redan rapporterar enligt ESRS eller likvärdiga standarder.

▪️De ska dock upplysa om detta i förvaltningsberättelsen och länka till moderföretagets rapporter.

▪️Filialer till tredjelandsföretag blir rapporteringspliktiga först vid > 4,9 mdkr i EES‑omsättning och > 2,2 mdkr i filialomsättning.

▪️Finansiella holdingföretag vars dotterföretag har affärsmodeller och verksamhet som är oberoende av varandra blir inte rapporteringspliktiga.

Värdekedjan och skyddade företag

▪️Ett företag i värdekedjan med ≤ 1 000 anställda betraktas som skyddat företag.

▪️Det kan därmed vägra att lämna information som ett rapporterande företag begär för sin hållbarhetsrapportering, om uppgifterna går utöver de frivilliga standarder som EU väntas fastställa senast den 19 juli 2026.

👉 Begränsningen gäller när information efterfrågas för att uppfylla kraven i hållbarhetsrapporteringen – inte när information begärs som del av företagets ordinarie leverantörsstrategi.

👉 Den europeiska centralbanken (ECB) rekommenderar i sitt yttrande (feb 2026 sid. 13) att företag som inte längre omfattas av CSRD använder ESRS för sin frivilliga rapportering.

▪️Rapportering om värdekedjan kan undantas i tre år om information saknas – men det rapporterade företaget måste redogöra för sina försök att få fram den.

Revision

Revisorsinspektionen föreslås få möjlighet att godkänna revisorer och revisionsföretag från tredjeland för att granska hållbarhetsrapporter i Sverige – under förutsättning att kraven på granskningen och på revisorn är likvärdiga med svensk rätt.

Tredjelandsrevisorer ska kunna godkännas redan nu – så länge de lämnar in vissa uppgifter. Från och med räkenskapsår 2031 krävs full likvärdighet med svensk rätt.

Remisstid

Förslagen är nu ute på remiss till 21 augusti 2026.

Källa: https://regeringen.se/rattsliga-dokument/statens-offentliga-utredningar/2026/04/sou-202627/

EU’s New Anti‑Corruption Directive: What Business Leaders Need to Know — and How to Prepare

On 21 April 2026, the Council of the EU formally adopted the Anti‑Corruption Directive, creating—for the first time—a fully harmonised EU‑wide criminal law framework to prevent, detect and sanction corruption across all Member States.

This is not “just another compliance update.” It is a structural shift with direct implications for governance, internal controls, procurement, reporting, and sustainability disclosures.

And it aligns closely with the Draft ESRS G1 (Business Conduct)—meaning companies will need to integrate anti‑corruption compliance into their CSRD‑aligned sustainability reporting.

What the Directive Changes — at a Glance

Harmonised EU definitions of corruption offences

The Directive standardises what constitutes:

  • Public and private bribery
  • Misappropriation
  • Trading in influence
  • Obstruction of justice
  • Enrichment from corruption
  • Concealment
  • Serious unlawful exercise of public functions

This closes long‑standing gaps between Member States and removes ambiguity for cross‑border operations.

Turnover‑based sanctions for companies

For the most serious offences, companies face:

  • Fines of at least 5% of global turnover or €40M
  • For other offences: 3% of global turnover or €24M

This mirrors the GDPR model and raises the stakes dramatically.

Corporate liability for lack of supervision

Companies can be held liable when offences are committed for their benefit, including when failures in oversight or internal controls enabled the misconduct.

Extended jurisdiction & longer limitation periods

Member States may prosecute offences committed abroad if the company benefits within their territory. Limitation periods extend to 8–10 years, reflecting the complexity of corruption cases.

Mandatory national anti‑corruption strategies & specialised bodies

Member States must establish dedicated prevention bodies and structured risk assessments.

Whistleblower protection reinforced

The Directive confirms the applicability of the EU Whistleblowing Directive to corruption cases and requires strong protection for individuals reporting or cooperating.

Why This Matters for Companies — Beyond Criminal Law

The Directive is not only about criminal sanctions. It directly intersects with corporate governance, procurement, sustainability reporting, and stakeholder trust.

And this is where ESRS G1 (Business Conduct) becomes central.

  1. How the Anti‑Corruption Directive Connects to ESRS G1 (Nov 2025)

The Draft ESRS G1 requires companies to disclose policies, actions, targets and metrics related to business conduct, including:

Anti‑corruption & anti‑bribery policies

Companies must disclose whether they have policies aligned with the UN Convention Against Corruption—the same international standard the Directive incorporates.

Whistleblower protection

ESRS G1 requires disclosure of whistleblower protection policies—now reinforced by the Directive’s mandatory protections.

Functions most exposed to corruption risk

ESRS G1 requires companies to identify roles most at risk (e.g., procurement, public‑sector interactions, high‑risk geographies). The Directive’s broad definitions of public officials and influence‑trading expand this risk perimeter.

Actions & procedures to prevent, detect, investigate corruption

ESRS G1 requires disclosure of:

  • Training for high‑risk roles
  • Supplier engagement and ESG due diligence
  • Procedures for investigating allegations

These map directly to the Directive’s expectations for effective internal controls and corporate liability mitigation.

Metrics: convictions, fines, political influence, payment practices

ESRS G1 requires transparency on:

  • Convictions and fines for corruption
  • Political contributions and lobbying
  • Payment practices (especially late payments to SMEs)

The Directive’s turnover‑based sanctions will make these disclosures far more material.

What Companies Should Do Now — A Practical Roadmap

With a 24‑month transposition period (36 months for national risk assessments and strategies), companies should not wait.

  1. Conduct a corruption‑risk gap analysis

Assess alignment with:

  • New EU offence definitions
  • Corporate liability triggers
  • Turnover‑based sanctions
  • ESRS G1 disclosure requirements
  1. Update policies and codes of conduct

Ensure consistency with:

  • Harmonised EU definitions (e.g., “undue advantage”)
  • Broader scope of public officials
  • Trading in influence and misappropriation
  1. Strengthen procurement & third‑party due diligence

Given the Directive’s broad liability scope, companies should:

  • Screen intermediaries, agents, distributors
  • Reinforce supplier ESG assessments
  • Monitor high‑risk relationships continuously
  1. Enhance internal controls & audit mechanisms

Courts will assess the effectiveness, not the existence, of compliance systems.

  1. Reinforce whistleblowing channels

Ensure:

  • Confidential reporting
  • Anti‑retaliation measures
  • Awareness and training
  1. Prepare for ESRS G1 reporting

Integrate anti‑corruption data into:

  • Policies (G1‑1)
  • Actions (G1‑2)
  • Targets (G1‑3)
  • Metrics (G1‑4 to G1‑6)
  1. Train leadership and high‑risk functions

The Directive explicitly requires training for roles most exposed to corruption risk.

The Strategic Opportunity

Beyond compliance, this Directive is a catalyst for:

  • Stronger governance
  • More resilient value chains
  • Better investor confidence
  • Enhanced CSRD‑aligned transparency
  • A culture of integrity

Companies that act early will not only reduce legal exposure—they will strengthen their competitive position in a market where trust, transparency and accountability are becoming decisive.

The new Directive will enter into force 20 days after its publication in the Official Journal of the EU.

Source: https://www.consilium.europa.eu/en/press/press-releases/2026/04/21/council-adopts-new-eu-wide-law-to-combat-corruption/

👉 Want to strengthen resilience, compliance and stakeholder trust? Get in touch — Cleerit can help you operationalise all of this efficiently.

#SustainabilityReporting #Governance