Privacy
How Mercury uses your information when you sign in and save your workspace.
Updated September 15, 2026
Account information
When you continue with Google, Mercury receives your basic profile information, email address, whether that email is verified, and Google’s account identifier. We use these to verify your identity and identify your Mercury account. The sign-in request asks for basic profile and email access; it does not request access to your Gmail messages.
Mercury stores your account identifier, sign-in method and display name with your session. If Google does not provide a name, your email address is used as the display name. When you sign in with a wallet, Mercury verifies a signed message and uses your public wallet address as your account identifier.
Cookies and sign-in records
Mercury uses an essential, HTTP-only session cookie to keep you signed in. Sessions expire after seven days; the database stores a hash of the session token rather than the cookie’s original token. Signing out invalidates that session.
Temporary sign-in challenges expire after five minutes and are consumed when used. They contain information needed to verify a wallet message or complete Google sign-in. Expired records are cleaned up during later sign-in requests, so expiry does not mean immediate removal from storage.
Your saved workspace
Mercury stores the wallets you follow, saved strategy configurations, alert rules and related workspace activity under your account identifier. These records are used to restore your workspace when you return. Signing out does not delete your saved workspace.
GMGN connection
When you connect a GMGN API key in Trench or Runners, Mercury sends it through an authenticated server request to GMGN to retrieve market data. The key is held in the current view and request memory. Mercury does not store it in browser storage or the account database. Leaving that view, refreshing the page, or disconnecting clears the key from the view. This form accepts a market-data API key and does not request wallet signing credentials.
Service providers
Mercury uses Vercel to host the website and handle requests, Neon to store account and workspace records, and Google to provide Google sign-in. These providers process information needed to deliver their services and may process technical request information, such as IP addresses and service logs, under their own privacy policies.
Questions or deletion requests
To ask about your information or request deletion of your Mercury account data, email derp12138@gmail.com. Include the Google account email or public wallet address you use for Mercury so we can identify the account. We may need to verify that the request comes from the account holder. Do not send passwords, private keys or recovery phrases.