When inviting someone to your account, you'll be asked to assign them a role. This role determines what they can and can't do in your Mercury account.
Role types at a glance
When you invite a team member, you assign them a role. Each role comes with its own set of permissions. Some roles are fixed; others can be created and edited to match your team's needs.
| Role | Access Level | Customizable |
| Admin | Has full access to the account, settings, users, and policies | No |
| Limited access user | Can be issues cards but cannot view sensitive account information | No |
| Custom roles | Defined by the permissions and account access you configure | Yes — fully configurable |
Admin capabilities
Admins have the highest level of access in Mercury. They’re considered super users because they can manage the account’s structure, security, and financial controls end to end. Admins have all of the capabilities below by default, without additional configuration.
Note: Any permission with an asterisk (*) is available to admins only and aren’t configurable via Custom role
Account and security management
- Update core account settings*
- Create and manage checking and savings accounts
- Link external bank accounts
- Receive and manage security alerts
- Create API tokens*
- Approve 2FA reset requests*
- Request changes to payment limits*
Team and role management
- Invite and remove users
- Manage roles and permissions for all users (including other Admins on the account*)
- Assign and revoke Custom roles
Money movement and approvals
- Send money
- Approve payments (when approval rules are enabled)
- Initiate internal transfers
- Create auto transfer rules*
- Manage payment recipients
- Create request payments
- Deposit checks
Policies and controls
- Configure approval policies for payments and account changes*
Limited access user capabilities
The Limited access role is designed for users who need access to cards funds or submit expenses without visibility into sensitive banking information.
Limited access users can:
- Be issued debit cards
- View and manage their own cards
- View their own transactions
- Submit reimbursements for approval
Limited access users cannot:
- View account balances or account numbers
- See account-wide transactions
- View other users' activity
- Move money between accounts
- Send payments or manage recipients
- Access transactions, user management, or security settings
Custom roles
Custom roles let you define reusable permission sets that reflect real responsibilities in your account. Any changes you make to a custom role automatically apply to everyone assigned to it.
Custom roles are created by selecting which permissions to grant and choosing which accounts the role can access. You can get started from your Users page by clicking Roles.
Configurable permissions
When building a Custom role, you’ll select which permissions make up the Custom role and determine what actions users in that role can do.
1 - Select which money movement actions the role can perform:
- Send money (subject to approval policies if enabled)
- Add, edit, and remove payment recipients
- Initiate internal transfers
- Deposit checks
2 - Select which operational and spend actions the role can take:
- Managing users (anyone except admins)
- Managing cards (creating, editing, and managing cards)
3 - Specify which accounts the role has access to. At least one account must be selected.
Permissions only apply to the accounts a user has access to. For example, a user may have permission to send money, but if they don’t have access to a specific account, they won’t be able to send funds from that account or view its details.
Changing a user's role
- Go to your Users settings
- Find the user's name in the list, and click it to open their details
- In the upper right corner of their details card, click Edit
- You'll be able to change their role
- Note: To edit the permissions for a role, go to Roles via Users page instead. Role permissions can’t be changed from a user’s details
- Click Save to lock in the change. If you're trying to make someone an admin and need another admin to approve, it may say "Request Approval"
Trust account permissions
At this time, Mercury trust accounts support access for verified trustees and grantors associated with the trust during onboarding. Self-serve user management, including inviting additional users or assigning custom roles, is not currently available for trust accounts.
If you need to add, remove, or update users on a trust account, please contact support at personal@mercury.com.
Learn more about Trust accounts at Mercury.
The Mercury Debit Cards are issued by Choice Financial Group and Column N.A., Members FDIC, pursuant to licenses from Mastercard®.