TRUST & CONTROL
Control you can see. Actions you can trace.
MertAGI is designed to make authority, evidence and every external action visible — before, during and after execution.
- Clear data disclosures. Processing locations, subprocessors, transfer safeguards and model-data policy will be published before merchant access opens.
- Traceable actions. Accepted facts, decisions and external actions are linked through an append-only, hash-chained audit trail.
- Authority checked at execution. Every external action is checked against your active Merchant Mandate; human action remains where you choose it or where law or a provider requires it.
- Required checks before action. VAT, sanctions, blacklist and counterparty-risk gates stop unsupported actions.
THE EXCEPTION LAB
Judged by what it refuses.
Six scenarios from the trade record: the trigger, what stopped, what was written. Every one of them fails closed.
A supplier email asks for payment to a new IBAN.
- No master-data update.
- No payment.
- No automatic re-routing.
The request, the mismatch against the verified account, and a security review item for a person.
Conflicting market evidence on the same product and market.
- The conflict does not resolve itself into an accepted fact.
Both sources, the disagreement, and an open evidence gap that stays visible.
Landed cost rises above the floor set in your mandate.
- The commitment does not proceed, even if it was already prepared.
The recalculation and the exact rule that blocked it.
A verification service does not answer.
- Every action that depends on that check waits.
Absence is recorded as absence — never as a pass.
The prepaid MertAGI Operating Balance reaches its configured floor.
- New and ongoing fee-bearing autonomous work stops.
Top-up, authentication, read-only access, export, security and billing notices stay available. Your own customer, return and legal obligations continue.
REPLAY
WHAT WE HAVE NOT PUBLISHED YET
The honest list.
These documents are not ready. Naming them and their status is more useful than a badge we have not earned.
| DOCUMENT | STATUS | PUBLICATION |
|---|---|---|
| Security architecture overview | In preparation | Before 1 October 2026 |
| Data-processing agreement (DPA) | In preparation | Before 1 October 2026 |
| Subprocessor list | In preparation | Before 1 October 2026 |
| Public report on the twelve-month trade record | In preparation | Before 1 October 2026 |
| Service agreement and tariff schedule | In legal review | Before merchant purchase opens |
| Verified company registry facts (MertAGI OÜ) | Awaiting verified evidence | Published when verified |
We would rather show an empty row with a date than a certificate we do not have. No page on this site claims a certification, an audit or a legal approval that has not been completed.
The security architecture, GDPR information, data-processing agreement and subprocessor list will be published before merchant access opens on 1 October 2026.
WHERE RESPONSIBILITY SITS
Your company is the seller. That does not move.
- Your company remains the seller and the relevant economic operator for its trade — goods, customers, tax, customs, returns, warranties and chargebacks stay with you.
- MertAGI is not the seller, merchant of record, importer, customs representative or payment institution, and never becomes one.
- MertAGI acts only within your active authority and applicable legal or provider limits. Anything reserved to a person by law or a provider stops and goes to that person.
- MertAGI remains responsible for its own service, security, data processing and duties that cannot legally be excluded. The service agreement governs the final allocation.