Mercury · Mercury Privacy Policy · View original document ↗

AI-Assisted Decision-Making with Human Oversight

Medium severity Medium confidence Explicitdocumentlanguage Unique · 0 of 352 platforms
Get alerted the next time Mercury changes these terms. Get same-day alerts →
Share 𝕏 Share in Share 🔒 PDF
Recent governance activity Mercury recorded 3 documented changes in the last 30 days.
Get same-day alerts →
Monitor governance changes for Mercury Monitor emails you the same day this changes. The archive stays free.
Get same-day alerts →

Get the weekly research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.

Document Record

What it is

The policy states that Mercury uses AI and machine learning for fraud detection, credit application evaluation, document verification, and transaction categorization, and that decisions with legal consequences, financial implications, or material effects on service access always include human oversight rather than being made by AI alone.

This analysis describes what Mercury's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision establishes Mercury's stated operational safeguard against fully automated consequential decision-making, which is relevant to GDPR Article 22 requirements for EEA users and to emerging U.S. state automated decision-making regulations; the policy does not specify the mechanism or documentation standard for human oversight.

Interpretive note: The policy does not specify the operational mechanism or documentation standard for 'appropriate human oversight,' and the extent to which this commitment satisfies GDPR Article 22 or U.S. state automated decision-making requirements depends on jurisdiction-specific enforcement interpretation.

Consumer impact (what this means for users)

Under this provision, credit application evaluations and other decisions materially affecting service access involve human oversight as stated by Mercury; however, the policy does not describe a formal right to explanation or contest automated decisions beyond the general privacy rights outlined in Section 9.

Cross-platform context

See how other platforms handle AI-Assisted Decision-Making with Human Oversight and similar clauses.

Compare across platforms →

Monitoring

Mercury has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 25 platforms.

Get Monitor Or create a free account →
▸ View Original Clause Language DOCUMENT RECORD
"
We use artificial intelligence ('AI') and machine learning technologies to enhance security, streamline operations, and deliver personalized, efficient services for our customers. We may apply these tools to analyze information we collect for purposes such as verifying documents, categorizing businesses, detecting fraud, supporting customer service, evaluating credit applications, categorizing transactions, and other legitimate functions. While AI helps us work faster and smarter, we do not rely on it alone to make decisions that could have legal consequences, financial implications, or otherwise materially affect your rights or access to our services. Such decisions always involve appropriate human oversight.

Excerpt from Mercury's Privacy Policy

ConductAtlas Analysis

Institutional analysis (regulatory & governance intelligence)

1) REGULATORY LANDSCAPE: This provision engages GDPR Article 22, which restricts fully automated individual decision-making that produces legal or similarly significant effects, and requires that such decisions involve human review upon request. For EEA users, Mercury's stated human oversight policy aligns directionally with Article 22 but compliance teams should assess whether Mercury's processes meet the full Article 22 requirements including the right to obtain human intervention, express a point of view, and contest the decision. The EU AI Act's provisions on high-risk AI systems in credit and financial services may also apply depending on Mercury's operational jurisdiction. The CFPB's guidance on algorithmic credit decisions and adverse action notice requirements under the Equal Credit Opportunity Act (ECOA) and Fair Credit Reporting Act (FCRA) are relevant to AI-assisted credit application evaluation. 2) GOVERNANCE EXPOSURE: Medium. The policy's statement that AI-assisted consequential decisions 'always involve appropriate human oversight' is an operational commitment without a defined mechanism or audit trail described in the document. Compliance teams should assess whether this commitment is operationally documented and whether adverse action notices for AI-assisted credit decisions comply with ECOA and FCRA requirements. 3) JURISDICTION FLAGS: EEA users have GDPR Article 22 rights to human review of automated decisions. U.S. users subject to FCRA and ECOA have adverse action notice rights when credit decisions are made using automated tools. Several U.S. states including Colorado have enacted or proposed automated decision-making regulations that may require additional disclosure or opt-out rights. 4) CONTRACT AND VENDOR IMPLICATIONS: Mercury discloses AI use for evaluating credit applications, which may involve third-party AI vendors or credit assessment tools. Procurement and vendor management teams should assess whether AI vendor agreements include fairness monitoring, audit rights, and adverse action documentation consistent with ECOA and FCRA obligations. 5) COMPLIANCE CONSIDERATIONS: Legal teams should document the human oversight mechanism for AI-assisted credit and account access decisions to support regulatory examination readiness. Adverse action notice procedures should be reviewed for alignment with FCRA and ECOA requirements when AI tools contribute to credit denials. The policy's statement that AI systems are 'regularly monitored for fairness, accuracy, and security' should be supported by internal audit documentation.

Full institutional analysis
Regulatory citations, enforcement risk, and due diligence action items.
Start Professional · $99/mo Start with Monitor · $29/mo

Applicable agencies

  • CFPB
    The CFPB has authority over algorithmic credit decision-making and adverse action notice requirements under ECOA and FCRA as applied to financial services providers
    File a complaint →

Provision details

Document information
Document
Mercury Privacy Policy
Entity
Mercury
Document last updated
May 5, 2026
Tracking information
First tracked
July 9, 2026
Last verified
July 9, 2026
Record ID
CA-P-015752
Document ID
CA-D-00530
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
f8b49beb208e6c3f2b9fb8ddafa22b88d22bbef9e6d3e086c87840d1d5a282f8
Analysis generated
July 9, 2026 08:43 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Mercury
Document: Mercury Privacy Policy
Record ID: CA-P-015752
Captured: 2026-07-09 08:43:59 UTC
SHA-256: f8b49beb208e6c3f…
URL: https://conductatlas.com/platform/mercury/mercury-privacy-policy/provision/CA-P-015752/ai-assisted-decision-making-with-human-oversight/
Accessed: July 24, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Governance intelligence across arbitration, AI governance, data rights, indemnification, and retention
Provision-level monitoring, governance timelines, and regulatory mapping built from archived source documents and historical version tracking.
Start Professional · $99/mo Start with Monitor · $29/mo

Frequently Asked Questions

What does Mercury's AI-Assisted Decision-Making with Human Oversight clause do?

This provision establishes Mercury's stated operational safeguard against fully automated consequential decision-making, which is relevant to GDPR Article 22 requirements for EEA users and to emerging U.S. state automated decision-making regulations; the policy does not specify the mechanism or documentation standard for human oversight.

How does this clause affect you?

Under this provision, credit application evaluations and other decisions materially affecting service access involve human oversight as stated by Mercury; however, the policy does not describe a formal right to explanation or contest automated decisions beyond the general privacy rights outlined in Section 9.

Is ConductAtlas affiliated with Mercury?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Mercury.