Our Expert in China
No results available
Last updated: September 2026, updated for current CAC/SAMR/SAFE guidance.
Cross-border m&a due diligence china sits at the centre of any successful inbound acquisition, and in 2026 it demands more discipline than ever before. This guide is a practitioner-led, sequenced checklist for foreign buyers acquiring PRC entities or PRC assets, whether the deal is a share purchase of an onshore target, an asset transfer, the acquisition of a wholly foreign-owned enterprise (WFOE), or the purchase of a group that relies on a variable interest entity (VIE) structure. It integrates the three strands that too often run in isolation: commercial and financial diligence, regulatory review (antitrust, data and foreign-exchange), and operational on-site verification.
The purpose is to help buyers avoid the delays and blocked transactions that follow when regulatory triggers are discovered late.
Who should read this:
Treat the steps below as a project plan. Each carries an action, an owner, evidence to collect and the red flags that should stop, or reprice, a deal. This is transactional guidance, not legal advice; confirm all conclusions with qualified local counsel.
Before deep diligence begins, run a fast eligibility screen to determine which regulatory workstreams your transaction triggers. Getting this right early prevents wasted effort and, more importantly, prevents a filing being missed. Ask three questions: does the deal trigger antitrust merger control, does it involve regulated or cross-border data, and does it require foreign-exchange registrations? The answers shape the entire timetable for cross-border m&a due diligence china.
Merger control in China is administered by the State Administration for Market Regulation (SAMR) under the Anti-Monopoly Law and is turnover-based. A concentration that meets the applicable revenue thresholds set out in the State Council’s notification rules must be notified and cleared before completion. Where the parties’ China and worldwide turnover figures approach the thresholds, engage antitrust counsel to assess the numbers precisely against the current thresholds. Certain sectors, telecoms, financial services, healthcare and data-intensive businesses, can attract heightened scrutiny even where thresholds are marginal. Whether a specific transaction is notifiable is subject to the applicable thresholds and regulator guidance; confirm with local counsel.
If the target handles large volumes of personal information, operates critical information infrastructure, or transfers data outside China, a Cyberspace Administration of China (CAC) security assessment, standard-contract filing or certification may be required under the Cybersecurity Law, the Data Security Law and the Personal Information Protection Law (PIPL). Data classification and an inventory of cross-border data flows should be an early screening item, not an afterthought. The more the target’s business model depends on user data, the higher the CAC risk.
Inbound foreign direct investment, subsequent profit repatriation and offshore holding arrangements all engage the State Administration of Foreign Exchange (SAFE), with much routine registration handled by qualified banks acting under SAFE’s delegation. Verify that historical inbound and outbound registrations were made and are complete; gaps in the SAFE record are among the most common, and most fixable, deal problems, provided they are found in time.
This is the core how-to. Work the steps broadly in sequence, though regulatory mapping (Step 1) should run in parallel with early commercial screening so that filing timelines are understood from the outset. For each step, note the lead, the evidence to collect and the red flags that warrant escalation.
Before committing resources, establish that the deal is commercially sound and free of disqualifying integrity risks. This is a go/no-go gate. The buyer’s corporate development team leads, supported by counsel for the integrity screens.
Deliverable: a go/no-go memo and an initial document request list to open the data room.
This step determines the critical path. Map which regulators are engaged and in what order, because regulatory clearance, not commercial diligence, usually dictates the closing date. Buyer counsel leads, working with local regulatory counsel.
Red flag: any regulated activity conducted without the corresponding licence, or a licence expressed to be non-transferable on change of control.
Verify who owns what and whether the structure you are buying can lawfully be transferred to a foreign acquirer. Examine the register of shareholders, board and shareholder resolutions, ultimate beneficial owners (UBOs), any nominee arrangements, and the relationship between onshore and offshore holding entities. Where a VIE is present, review the full suite of control contracts and the proof of IP and equity assignment that underpins them. Note that VIE structures operate in a legally uncertain space in China and their enforceability is not guaranteed.
Red flag: undisclosed nominee shareholders, unsigned or undated control agreements, or a chain of ownership that cannot be traced to a genuine UBO. The comparison table later in this guide sets out how diligence priorities differ between a direct share acquisition and the purchase of a VIE.
Intellectual property and data are frequently the most valuable, and most fragile, assets in a China deal. Map the IP ownership chain and confirm that employee-created IP has been validly assigned to the company, because unassigned inventor rights are a recurring source of post-close disputes. Review software licences and open-source exposure, and build a data-flow diagram showing where personal and important data are collected, stored and transferred.
The data checklist, applying the Cybersecurity Law, Data Security Law and PIPL, should confirm the legal basis for any cross-border transfer, the existence of a data protection impact assessment, encryption and access controls, and consent records. Whether the transaction itself triggers a CAC security assessment is subject to regulator guidance; flag it for local counsel and, where appropriate, technical advisers.
Chinese employment liabilities crystallise quickly and are difficult to disclaim after closing. Review employment contracts, confirm that social insurance and housing-fund contributions are current, and examine payroll records for undocumented arrangements. Check the history of any trade union or employee representative body, the enforceability of restrictive covenants, and the exposure to mass-layoff procedures under the Labour Contract Law if the buyer plans post-close restructuring.
Red flag: systematic under-contribution of social insurance, a common cost-saving practice that transfers to the buyer as a quantifiable arrears liability.
Assess the durability of the target’s commercial relationships and its tax position. Identify customer concentration, screen material contracts for change-of-control clauses that could be triggered by the acquisition, and confirm the continuity of key suppliers. On tax, review transfer-pricing arrangements between related parties, VAT compliance and enterprise income tax exposures, and obtain tax clearance evidence where available. Tax risks in M&A are governed by State Taxation Administration (STA) rules, and unresolved transfer-pricing positions are a frequent source of hidden liability.
Conduct site visits with defined objectives: gain access to servers and IT systems, witness the physical condition of key assets, verify inventory, and interview key managers on the record. Photograph asset condition and document who was interviewed and when.
Draw up a closing checklist that ties each identified risk to a condition, escrow or indemnity. Sequence post-close filings, company registry updates, SAFE registrations, any SAMR completion steps and tax registrations, and confirm who is responsible for each and by when.
| Topic | Share acquisition (onshore target) | Purchase of a VIE (contractual control) |
|---|---|---|
| Regulatory triggers | Foreign-investment access review; SAMR if thresholds met; CAC and SAFE checks | Fewer direct FDI approvals, but contract enforceability and CAC/data risk dominate; stronger AML/UBO checks |
| SAFE / FX impact | SAFE registration for inbound capital and subsequent profit repatriation required | SAFE scrutiny of offshore investments and ultimate beneficial ownership; cross-border payments sensitive |
| Data and CAC risk | Data localisation and cross-border transfers governed by the Data Security Law and PIPL | Control contracts may involve cross-border data flow, high CAC scrutiny |
| Typical diligence focus | Title, licences, shareholder approvals, employment, tax | Enforceability of VIE agreements, proof of IP assignment, related-party payments |
A disciplined document request drives efficient diligence. Split your request into an initial tranche, the documents needed to confirm the deal is viable, such as the business licence, register of shareholders, key licences and SAFE registrations, and a deep tranche covering contracts, financials, IP and litigation. Request certified copies of corporate records and check that company seals (chops) are genuine and consistently applied, since in China the chop often carries decisive legal weight in binding the company. Where documents are in Chinese, obtain accurate translations, and arrange notarisation or legalisation for any document that must be relied on cross-border. The table below is a working checklist you can copy into your data-room index.
| Category | Key documents / examples | Who provides / notes |
|---|---|---|
| Corporate records | Articles of association, business licence, register of shareholders, board minutes, equity transfer agreements | Target, request certified copies; check corporate seals |
| Ownership & structure | Group chart, UBO evidence, offshore holding documents, trust deeds | Target and seller; verify chain to ultimate owners |
| Licences & approvals | Industry licences, permits, regulatory approvals, licence transfer rules | Target; check validity, transferability, restrictions |
| Contracts | Major customer & supplier contracts, distribution/agency, JV agreements, leases | Seller; request originals and amendments |
| Financials & tax | Audited financial statements, tax filings, VAT invoices, tax clearance letters | Seller; obtain working papers and tax opinions |
| Employment | Employment contracts, social insurance records, payroll, collective agreements, termination letters | HR records; check for outstanding disputes |
| IP & technology | IP registrations, assignment agreements, source-code escrow, software licences | IP owner; verify employee invention assignments |
| Data & cybersecurity | Data inventory, cross-border data-flow diagram, DPIAs, data-processor contracts | IT/data owner; critical for CAC review |
| Regulatory filings | SAFE registrations, SAMR filings, past regulator communications | Seller; check completeness and inconsistencies |
| Litigation & disputes | Court files, arbitration awards, settlement agreements | Seller; request full copies |
| Environmental & real estate | Environmental reports, property titles, land-use rights | Seller; site-specific; needed for asset deals |
| Insurance | Policies, claims history, coverage limits | Seller; check exclusions and continuity |
Foreign buyers routinely underestimate the schedule for cross-border m&a due diligence china because regulatory clearances sit outside the parties’ control. Commercial and legal diligence on a mid-sized target can be completed in six to eight weeks; where a SAMR filing or a CAC security assessment is required, the overall timetable extends materially, because those reviews run to their own statutory and administrative clocks. Build the timeline backwards from the latest expected clearance, not forwards from signing. The table below gives realistic spans you can drop into a project plan; treat the regulatory rows as the critical path and start them first.
| Step | Lead / who | Typical duration |
|---|---|---|
| Initial commercial screens & NDA | Buyer counsel / seller | 1–2 weeks |
| Data room setup & initial document request | Seller / buyer counsel | 1–2 weeks |
| Regulatory mapping & priority checks | Buyer counsel + local regulatory counsel | 1 week |
| Deep diligence (corporate, IP, contracts, tax, employment) | Buyer counsel + specialists | 2–6 weeks |
| On-site inspections / interviews | Buyer team + local counsel + technical advisers | 1–2 weeks (may be staggered) |
| Antitrust merger filing preparation (if needed) | Antitrust counsel | 2–6 weeks to prepare; review timelines vary |
| CAC / data security assessment (if needed) | Data counsel / technical advisers | Variable; can run several weeks to months |
| SAFE pre-closing filings / recordals | Local counsel + finance | 1–4 weeks (or concurrent with closing) |
| Signing to closing (incl. remediations) | Transaction counsel | 2–8 weeks (subject to regulatory clearance) |
| Post-close filings & registrations | Local counsel | 1–6 months (incl. tax filings, record updates) |
Budget across four buckets: adviser fees (legal, tax and technical), filing and administrative fees, remediation reserves for issues found in diligence, and escrow or holdback set-asides. Chinese regulatory filings themselves often carry low administrative fees; the real cost is advisory time, particularly where an antitrust remedy must be negotiated or a CAC assessment demands technical testing. The ranges below are indicative only and vary significantly with deal size, the number of jurisdictions and the target’s complexity, obtain a scoped fee estimate from your advisers.
| Item | Indicative cost range | Notes |
|---|---|---|
| Local & international legal fees | USD 30,000 – 300,000+ | Depends on deal size, complexity and jurisdictions |
| Antitrust filing / counsel | USD 10,000 – 150,000+ | Higher where remedy negotiation is required |
| Data / cybersecurity technical review | USD 5,000 – 100,000 | Code review, DPIA and penetration-test costs vary |
| SAFE / FX advisory & filings | USD 2,000 – 20,000 | Higher for complex structuring |
| Accounting / tax due diligence | USD 10,000 – 100,000 | Depends on years reviewed and complexity |
| On-site inspection & travel | USD 2,000 – 30,000 | Travel, translation and interpreter costs |
| Regulatory filing admin fees | Generally low; counsel costs drive totals | Government filing fees are typically modest |
| Post-close remediation reserve | Deal-specific (commonly a low single-digit % of value) | Holdback / escrow for indemnities |
Three regulatory themes define the 2026 landscape and should reshape how buyers scope diligence. First, the CAC continues to develop and refine its rules on cross-border data transfers, so targets that move personal or important data offshore now warrant an earlier and deeper data assessment. Second, SAMR maintains an active enforcement posture on merger control, meaning marginal notifiability questions should be resolved with counsel against the current thresholds rather than assumed away. Third, SAFE and the banks acting under its delegation continue to scrutinise documentary completeness on inbound and outbound registrations, and both change-of-control filings and UBO disclosure receive close documentary review.
The practical effect, in the view of experienced practitioners, is that diligence must front-load regulatory mapping: the workstreams most likely to delay a deal are now the ones regulators examine most closely. Confirm the current position on any specific 2026 rule or circular with local counsel, as regulator guidance continues to evolve.
The failures that derail China deals are recurring and, with early diligence, avoidable.
Across all of these, the same mitigations recur: early data and regulatory mapping, conditional or escrowed signing, pre-filing engagement with regulators where sensible, and targeted on-site verification of anything the paper record cannot confirm.
Cross-border m&a due diligence china rewards buyers who sequence the work correctly: map the regulatory triggers first, run commercial and financial diligence in parallel, verify what the paper record cannot show through on-site inspection, and tie every unresolved risk to a condition, escrow or indemnity before signing. In 2026, with the CAC, SAMR and SAFE all applying close scrutiny, the regulatory workstreams are the ones most likely to determine whether, and when, a deal closes. Use the checklists, tables and timelines in this guide as a project plan, adapt them to the specifics of your target, and confirm every legal conclusion with qualified local counsel before you commit.
For further guidance, see the Cross Border Corporate Advisory, practice area page. Supporting guides on China data and cybersecurity due diligence, SAFE filings and FX compliance, and verifying offshore structures and UBOs in China deals complement this pillar. To speak with an adviser, use the Find a China M&A lawyer directory.
This article was produced by Global Law Experts. For specialist advice on this topic, contact Roberto Gilardino at Horizons (Shanghai) Corporate Advisory Company Limited, a member of the Global Law Experts network.
posted 12 minutes ago
posted 33 minutes ago
posted 1 hour ago
posted 2 hours ago
posted 2 hours ago
posted 2 hours ago
posted 3 hours ago
posted 3 hours ago
posted 3 hours ago
posted 4 hours ago
posted 4 hours ago
posted 4 hours ago
No results available
Find the right Legal Expert for your business
Send welcome message