MERCURY · Trust Center

Mercury Hq Com Trust Center

Trust center

MERCURY publishes a trust page ("Trust & reputability - what a procurement buyer, a directory, or a skeptical agent needs before transacting") that is an operator-identity and verify-it-yourself page rather than a certification portal. It names the operator (Mercury Holdings Pty Ltd, an Australian Pty Ltd with ASIC registration in progress - "ABN/ACN published here ONLY once issued"; jurisdiction Queensland; governance "Mercury Foundation - standards & governance arm ... NOT a token foundation"; contact mercuryuser@proton.me with https://mercury-x402-jed.fly.dev as fallback), the three things a reader can verify independently (offline EIP-191 receipt verification against the pinned key, USDC settlement on a public chain via the payTo wallet on BaseScan, and catalog/checkout generated from one object so they cannot drift), and a "what we do NOT do" list (no token, no faked traction - "N=0 external buyers and $0 external revenue today", no payload retention - "we do not store, resell, or train on the content you fetch"). It names NO SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR or other certification or audit, so no Compliance pointer is emitted. probe-security-programs.py did not record it because the page carries fewer than two of the keywords it requires; it is recorded here by hand because the page is real, first-party and answers the trust question directly.

MERCURY maintains a public trust center covering its security and compliance posture.

CompanyAgentsA2AMCPx402HTTP 402Machine PaymentsWeb DataWeb ScrapingData ExtractionProvenanceStablecoinsArtificial Intelligence
Trust center: https://network.mercury-hq.com/trust

Certifications & Compliance

Source

Trust Center

Raw ↑
generated: '2026-09-19'
method: searched
probe: true
url: https://network.mercury-hq.com/trust
certifications: []
description: >-
  MERCURY publishes a trust page ("Trust & reputability - what a procurement buyer, a directory, or a
  skeptical agent needs before transacting") that is an operator-identity and verify-it-yourself page
  rather than a certification portal. It names the operator (Mercury Holdings Pty Ltd, an Australian Pty
  Ltd with ASIC registration in progress - "ABN/ACN published here ONLY once issued"; jurisdiction
  Queensland; governance "Mercury Foundation - standards & governance arm ... NOT a token foundation";
  contact mercuryuser@proton.me with https://mercury-x402-jed.fly.dev as fallback), the three things a
  reader can verify independently (offline EIP-191 receipt verification against the pinned key, USDC
  settlement on a public chain via the payTo wallet on BaseScan, and catalog/checkout generated from one
  object so they cannot drift), and a "what we do NOT do" list (no token, no faked traction - "N=0 external
  buyers and $0 external revenue today", no payload retention - "we do not store, resell, or train on the
  content you fetch"). It names NO SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR or other certification or audit,
  so no Compliance pointer is emitted. probe-security-programs.py did not record it because the page
  carries fewer than two of the keywords it requires; it is recorded here by hand because the page is
  real, first-party and answers the trust question directly.
operator:
  legal_name: Mercury Holdings Pty Ltd
  type: Australian proprietary limited company (Pty Ltd)
  registration: in progress (ASIC); no ABN/ACN published
  jurisdiction: Queensland, Australia
  governance: Mercury Foundation (standards and governance arm; no token)
  contact: mercuryuser@proton.me
verifiable_claims:
- {claim: signed provenance receipts, how: 'EIP-191 ecrecover over sha256(content)‖url‖status‖fetchedAt‖nonce against the pinned key 0xACB40253BD71Bb9a5d491b2c6EFF755F2A33Fc75 (/.well-known/mercury-attestation); verifier at /x402/verify'}
- {claim: on-chain settlement, how: 'shop wallet 0xe10B9d44e72A29B9c19da02981FFCd875308e3C1 on BaseScan; CDP facilitator; /treasury page shows live balances and $0.00 external earnings'}
- {claim: catalog cannot drift from checkout, how: '/catalog, /openapi.json, /.well-known/x402 and the live 402 are generated from the same catalog object (checked: the 402 for /buy/fetch carried maxAmountRequired 3000, matching $0.003 in all three documents)'}
data_handling:
  payload_retention: none stated ("We do not retain fetched content beyond returning it in the response"; /privacy)
  logs: minimal operational logs (timestamp, route, status)
  personal_data: '"We do not ask for or collect personal information" (/privacy, last updated 2026-06-04)'
related_pages:
- {url: 'https://network.mercury-hq.com/terms', status: 200, note: 'terms effective 2026-06-04; machine-readable with Accept: application/json'}
- {url: 'https://network.mercury-hq.com/privacy', status: 200}
- {url: 'https://network.mercury-hq.com/university/treasury', status: 200, note: live wallet balances and revenue (all external figures $0.00)}
- {url: 'https://network.mercury-hq.com/proof', status: 200, note: 'x402 self-settlement proof: "no on-chain settlement recorded yet"'}
- {url: 'https://network.mercury-hq.com/reviews', status: 200, note: ERC-8004 on-chain reviews page (wallet-connect UI)}
evidence:
- {source: 'https://network.mercury-hq.com/trust', status: 200, keywords: [trust, reputability, operator, verify, no payload retention, jurisdiction]}
probed_absent:
- {url: 'https://trust.mercury-hq.com/', status: 'no DNS'}
- {url: 'https://mercury-hq.com/trust', status: 404}
- {url: 'https://network.mercury-hq.com/security', status: 404}
- {url: 'https://network.mercury-hq.com/compliance', status: 'not probed - no link to it anywhere'}

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/mercury-hq-com-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.