B_05.01 ICT third-party service providers
Waarvoor dit template is
B_05.01 is de hoofdlijst van derde aanbieders van ICT-diensten: directe aanbieders, aanbieders binnen de groep, onderaannemers uit B_05.02 en hun uiteindelijke moederondernemingen. B_02.02, B_03.02, B_05.02 en B_07.01 verwijzen ernaar.
Invullen
- Alle aanbieders: vermeld elke derde aanbieder van ICT-diensten, niet alleen die voor kritieke of belangrijke functies (EBA-FAQ Q69).
- Type code (0020): gebruik een code uit de lijst: LEI, EUID, CRN, VAT, PNR of NIN, zonder landprefix. Voor rechtspersonen in de Unie mag alleen een LEI of EUID worden gebruikt; voor rechtspersonen buiten de Unie alleen een LEI (EBA-FAQ Q47).
- Uiteindelijke moeder (0110): heeft de aanbieder geen moederonderneming, herhaal dan de eigen identificatiecode van de aanbieder (EBA-FAQ Q99).
- Vul dit tabblad vroeg in: andere tabbladen hergebruiken de identificatiecodes.
Verduidelijkingen van de AFM
- Geen LEI of EUID: vul een ander beschikbaar identificatienummer in. Voor een rechtspersoon zonder LEI of EUID wordt dat aangemerkt als datakwaliteitsprobleem, maar het register wordt niet afgewezen (AFM Q&A, maart 2026 (opent in een nieuw tabblad)). Gebruik geen dummycode en laat het veld niet leeg (AFM (opent in een nieuw tabblad)).
- Welke aanbieders: elke derde aanbieder van ICT-diensten waarmee u een contract hebt, ook digitale advertentieplatforms. Een gratis dienst zonder contractuele overeenkomst hoeft niet te worden opgenomen (AFM Q&A, maart 2026 (opent in een nieuw tabblad)).
Hoe DORA Convert ermee omgaat
Ons Excel-template heeft een tabblad met de naam van dit template. Bij elke kolomkop staat een notitie met wat u invult, een voorbeeld en de officiële bron. Keuzecellen tonen elke optie als omschrijving met de EBA-code; het pakket bevat de code. Fouten blokkeren het pakket, waarschuwingen niet. Zie wat we controleren.
- LEI: is het type code LEI, dan controleren we de code op opbouw en controlecijfers en, met de online controles aan, bij GLEIF, zoals de EBA doet met VR_71.
- Btw-nummer: is het type VAT, dan controleren we de opbouw van het nummer en, met de online controles aan, in VIES.
- EUID: alleen gecontroleerd op opbouw; de EBA toetst EUID's aan BRIS (VR_72), dat wij niet kunnen raadplegen.
- Prefixen: een EUID- of btw-prefix dat niet past bij het land van de aanbieder, is een waarschuwing.
- Opvultekst: waarden zoals "n/a" of "tbd" melden we als waarschuwing.
- Uiteindelijke moeder: verplicht; een lege cel is een fout.
- LEI of EUID voor rechtspersonen in de EU: een aanbieder die een rechtspersoon is met het hoofdkantoor in de EU en een CRN, btw-nummer of andere code heeft, krijgt een waarschuwing (EBA-FAQ Q47). De AFM ziet dat als datakwaliteitsprobleem, niet als reden voor afwijzing. Heeft de aanbieder geen LEI of EUID, houd dan de code die u hebt.
- LEI voor rechtspersonen buiten de EU: een rechtspersoon met het hoofdkantoor buiten de EU en een andere code dan een LEI krijgt ook een waarschuwing (EBA-FAQ Q47). Of een aanbieder in de Unie zit, leiden we af uit het land van het hoofdkantoor (0080).
- Herinnering: tenzij uw werkmap het laat zien, vragen we u te bevestigen dat elke aanbieder is opgenomen, niet alleen de kritieke (FAQ Q69).
- EBA-regels: de actieve bedrijfsregels van de EBA voor dit template draaien als waarschuwing; uitgeschakelde regels passen we niet toe.
Officiële velden
Officiële samenvatting: Lists the direct providers, intra-group providers, subcontractors in B_05.02, and their ultimate parent undertakings. (ITS Annex I Part 1)
| Kolom | Officieel label | Gegevenstype | Sleutel of verwijzing | Verplicht | Toegestane waarden |
|---|---|---|---|---|---|
| c0010 | Identification code of ICT third-party service provider | varchar(255) | PK | Not null | Identifier value as instructed by ITS/DM |
| c0020 | Type of code to identify the ICT third-party service provider | varchar(255) | Not null | Closed set; PV B0501/LISTIDTYPE | |
| c0030 | Additional identification code of ICT third-party service provider | int | Nullable | Integer; TC rule 331 applies | |
| c0040 | Type of additional identification code of the ICT third-party service provider | varchar(255) | Nullable | Closed set; PV B0501/LISTIDTYPE | |
| c0050 | Legal name of the ICT third-party service provider | varchar(255) | Not null | Free text / narrative value per ITS and DM | |
| c0060 | Name of the ICT third-party service provider in Latin alphabet | varchar(255) | Nullable | Free text / narrative value per ITS and DM | |
| c0070 | Type of person of the ICT third-party service provider | varchar(255) | Not null | Closed set; PV B0501/LISTB05010070 | |
| c0080 | Country of the ICT third-party service provider’s headquarters | char(2) | Not null | Closed set; PV B0501/LISTCOUNTRY | |
| c0090 | Currency of the amount reported in RT.05.01.0070 | char(3) | Nullable | Closed set; PV B0501/LISTCURRENCY | |
| c0100 | Total annual expense or estimated cost of the ICT third-party service provider | money | Nullable | Monetary amount; DM and FR numeric-reporting rules apply | |
| c0110 | Identification code of the ICT third-party service provider’s ultimate parent undertaking | varchar(255) | FK | Not null | Identifier value as instructed by ITS/DM |
| c0120 | Type of code to identify the ICT third-party service provider’s ultimate parent undertaking | varchar(255) | Nullable | Closed set; PV B0501/LISTIDTYPE |
Uit het datamodel en de validatieregels van de EBA, zoals vastgelegd op 10 maart 2026. Officiële labels zijn Engelstalig.
Officiële verduidelijkingen
- Published typos that do not change reporting: The official FAQ states that certain B_07.01 and B_05.01 wording problems in the published ITS are typos that do not change code-based reporting and will be corrected in an updated ITS. (FAQ Q48)
- Provider coverage in B_05.01: All ICT third-party service providers must be identified in B_05.01, not only those supporting critical or important functions. (FAQ Q69)
- c0020 Type of code to identify the ICT third-party service provider: FAQ Q47: use only the closed-set code types without the country-prefix pattern shown in the published ITS text; only LEI or EUID may be used for legal persons in the Union.
- c0110 Identification code of the ICT third-party service provider’s ultimate parent undertaking: FAQ Q99: if the ICT third-party service provider has no parent undertaking, repeat the provider identifier here.
EBA-validatieregels
Officiële toelichting: Includes the broadest mix of active and inactive provider-related rules. (VR table B_05.01)
Actieve regels
Officiële formule:
Onze uitleg: Kolommen c0020, c0050, c0060, c0070, c0080 en c0110 moeten in elke rij zijn ingevuld. Dat geldt ook voor "Name of the ICT third-party service provider in Latin alphabet" (c0060), die in de veldenlijst als optioneel (nullable) staat; vul die ook in als hij gelijk is aan de juridische naam.with {tB_05.01, default:null, interval:false}: not ( isnull ({(c0020, c0050, c0060, c0070, c0080, c0110)}) )Officiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Type of code to identify the ICT third-party service provider" (c0020) zijn ingevuld. Kies in c0020 het type code.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0050}) )) or not (( isnull ({c0060}) )) or not (( isnull ({c0070}) )) or not (( isnull ({c0080}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0110}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0020}) ) )) endifOfficiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Legal name of the ICT third-party service provider" (c0050) zijn ingevuld. Vul in c0050 de juridische naam in.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0020}) )) or not (( isnull ({c0060}) )) or not (( isnull ({c0070}) )) or not (( isnull ({c0080}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0110}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0050}) ) )) endifOfficiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Name of the ICT third-party service provider in Latin alphabet" (c0060) zijn ingevuld. Vul in c0060 de naam in Latijnse letters in, ook als die gelijk is aan de juridische naam.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0050}) )) or not (( isnull ({c0020}) )) or not (( isnull ({c0070}) )) or not (( isnull ({c0080}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0110}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0060}) ) )) endifOfficiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Type of person of the ICT third-party service provider" (c0070) zijn ingevuld. Kies in c0070 het type persoon.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0050}) )) or not (( isnull ({c0060}) )) or not (( isnull ({c0020}) )) or not (( isnull ({c0080}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0110}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0070}) ) )) endifOfficiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Country of the ICT third-party service provider’s headquarters" (c0080) zijn ingevuld. Kies in c0080 het land van het hoofdkantoor.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0050}) )) or not (( isnull ({c0060}) )) or not (( isnull ({c0070}) )) or not (( isnull ({c0020}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0110}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0080}) ) )) endifOfficiële formule:
Onze uitleg: Als een andere kolom van c0020 tot en met c0120 is ingevuld, moet ook "Identification code of the ICT third-party service provider’s ultimate parent undertaking" (c0110) zijn ingevuld. Vul in c0110 de code van de uiteindelijke moederonderneming in.with {tB_05.01, default: null, interval: false}: if ( not ( isnull ({c0030}) ) ) or not (( isnull ({c0040}) )) or not (( isnull ({c0050}) )) or not (( isnull ({c0060}) )) or not (( isnull ({c0070}) )) or not (( isnull ({c0080}) )) or not (( isnull ({c0090}) )) or not (( isnull ({c0100}) )) or not (( isnull ({c0020}) )) or not (( isnull ({c0120}) )) then ( ( not ( isnull ({c0110}) ) )) endif
Inactieve regels
Officiële formule:
Onze uitleg: De EBA heeft deze regel op inactief gezet. Zoals hij er staat: als "Type of person of the ICT third-party service provider" (c0070) "Legal person, excluding individual acting in a business capacity" is, moet "Type of code to identify the ICT third-party service provider" (c0020) LEI of EUID zijn.with{tB_05.01, default:0, interval: false}: if ({c0070} = [eba_CT:x212]) then ({c0020} in {[eba_qCO:qx2000], [eba_qCO:qx2002]}) endifOfficiële formule:
Onze uitleg: De EBA heeft deze regel op inactief gezet. Zoals hij er staat: als "Type of person of the ICT third-party service provider" (c0070) "Legal person, excluding individual acting in a business capacity" is, moet "Type of additional identification code of the ICT third-party service provider" (c0040) LEI of EUID zijn.with{tB_05.01, default:0, interval: false}: if ({c0070} = [eba_CT:x212]) then ({c0040} in {[eba_qCO:qx2000], [eba_qCO:qx2002]}) endifOfficiële formule:
Onze uitleg: De EBA heeft deze regel op inactief gezet. Zoals hij er staat: als "Type of code to identify the ICT third-party service provider" (c0020) LEI is, moet "Additional identification code of ICT third-party service provider" (c0030) de vorm van een LEI hebben: 20 tekens, 18 hoofdletters of cijfers, gevolgd door twee cijfers.with{tB_05.01, default:0, interval: false}: if({c0020} = [eba_qCO:qx2000]) then ( (match({c0030}, "^[A-Z0-9]{18}[0-9]{2}$"))) endifOfficiële formule:
Onze uitleg: De EBA heeft deze regel op inactief gezet. Zoals hij er staat: als "Additional identification code of ICT third-party service provider" (c0030) niet de tekst "null" is, mag ook "Type of additional identification code of the ICT third-party service provider" (c0040) niet "null" zijn; hij vergelijkt met die tekst, niet met een lege cel.with {tB_05.01, default: 0, interval: false}: if({c0030} != "null") then ({c0040} != "null") endifOfficiële formule:
Onze uitleg: De EBA heeft deze regel op inactief gezet. Zoals hij er staat: als "Total annual expense or estimated cost of the ICT third-party service provider" (c0100) niet de tekst "null" is, mag ook "Currency of the amount reported in RT.05.01.0070" (c0090) niet "null" zijn; hij vergelijkt met die tekst, niet met een lege cel.with {tB_05.01, default: 0, interval: false}: if({c0100} != "null") then ({c0090} != "null") endif
De regelteksten komen uit het werkboek met validatieregels van de EBA, zoals vastgelegd op 10 maart 2026. De EBA schrijft de meeste regels alleen als formule, in het Engels. "Onze uitleg" is onze eigen lezing van de regel, geen tekst van de EBA; bij verschil geldt de officiële tekst.
Bronnen
- EBA: Preparations for reporting of DORA registers of information (opent in een nieuw tabblad)
- EBA: DORA RoI reporting FAQ (28 maart 2025) (opent in een nieuw tabblad)
- EBA: Data Model for DORA RoI (opent in een nieuw tabblad)
- AFM: Uitvraag informatieregister (opent in een nieuw tabblad)
- AFM: Vragen en antwoorden na Q&A-sessie maart 2026 (pdf) (opent in een nieuw tabblad)
- GLEIF: GLEIF API (opent in een nieuw tabblad)