Head to head · Spend transactions · October 2026 research run

BILL vs Mercury API

Mercury API scores 63.8 (B) on agent readiness against BILL's 60.9 (C), and leads in 4 of 7 scored categories. BILL leads on reliability and schema & documentation. Both do spend transactions.

Which one, for what

BILL C

Good for A US company already on BILL that wants an agent to create and read bills, run approvals, schedule vendor payments, raise invoices and manage budgets, vendor cards, card transactions and reimbursements.

Ahead on

  • Reliability, 81 against 59
  • Schema & documentation, 83 against 72

Watch for

POST /v3/login takes a user's username and password with a developer key, and the session carries that user's role with no scopes

Mercury API B

Good for A company that banks with Mercury and wants an agent to read balances and transactions, set notes and categories, upload receipts, issue virtual cards with spend limits and queue payments for human approval.

Ahead on

  • Agent ergonomics, 68 against 60
  • Security & auth, 82 against 56
  • Payments & pricing, 30 against 25
  • Maintenance & community, 64 against 32

Watch for

No rate limits with numbers and no 429 handling were found in the reviewed documentation

Score by category

CategoryWeight this runBILLMercury APIEdge
Reliability16%208159BILL +22
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28372BILL +11
Agent ergonomics13%16.26068Mercury API +8
Security & auth14%17.55682Mercury API +26
Payments & pricing10%12.52530Mercury API +5
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.83264Mercury API +32
Transparency & trust7%8.86663BILL +3
Negative events≤1500
Total60.9 · C63.8 · B

Facts side by side

FactBILLMercury API
KindHTTP APIHTTP API
VendorBILL Holdings, Inc.Mercury Technologies, Inc.
Hosted endpointhttps://gateway.prod.bill.com/connecthttps://api.mercury.com/api/v1
TransportsHTTPHTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceProprietary service under the BILL Developer Terms and the BILL General Terms of ServiceProprietary service under Mercury's Terms of Use. The Mercury CLI on GitHub is Apache-2.0
Tools exposednone35
Read-only variant documentednoyes
llms.txtyesyes
Last release2026-05-212026-08-12
Terms last updated2026-03-03no date given
Privacy policy last updated2026-01-30no date given
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textyes
Terms restrict benchmarkingnot found in the textyes
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waivernot found in the textyes

Verdicts

BILL

A public OpenAPI 3.0.1 spec covers 326 operations, a self-serve sandbox moves no money, and payments need a session trusted by multi-factor authentication. The AP and AR API signs in with a user's password and has no scopes, no idempotency key protects payment calls, and no official SDK was found.

Mercury API

Custom tokens take per-endpoint scopes, write tokens need an IP allowlist, and payments can be queued for approval in the dashboard through POST /account/{accountId}/request-send-money. No rate limits, error catalogue or SLA were found in the reviewed documentation, the changelog carries no dates, and the MCP server is beta.

Before you call either

BILL

  1. Sign in with POST /v3/login and send sessionId and devKey as headers on every AP and AR call. The session expires after 35 minutes idle
  2. Send the apiToken header alone on /v3/spend/ paths. Spend & Expense calls need no login and are limited to 60 a minute per token
  3. Complete the MFA challenge before POST /v3/payments. An untrusted session fails with BDC_1361
  4. Read back payments before retrying a failed POST /v3/payments. No idempotency key is accepted, so a blind retry can pay twice
  5. Keep to three concurrent requests per developer key per organisation and 20,000 an hour. After BDC_1144, wait for the next hour

Mercury API

  1. Ask for a Custom token with only the scopes the task needs. Scopes can't be edited later, and a token unused for 45 days is deleted.
  2. Without a fixed IP address, send payments through POST /account/{accountId}/request-send-money. Direct sends through POST /account/{accountId}/transactions need an allowlisted IP.
  3. Send a stored idempotencyKey with every payment. The same recipient, account, amount and method within 24 hours returns 400 even with a new key.
  4. Set limit on list calls. GET /transactions returns up to 1,000 rows by default.
  5. Test against https://api-sandbox.mercury.com/api/v1/ with a sandbox token. Webhooks aren't available in the sandbox.

Questions

Which is better for AI agents, BILL or Mercury API?

Mercury API scores 63.8 (B) on agent readiness against BILL's 60.9 (C), and leads in 4 of 7 scored categories. BILL leads on reliability and schema & documentation.

Do BILL and Mercury API need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call BILL and Mercury API without installing anything?

Yes. BILL has a hosted endpoint at https://gateway.prod.bill.com/connect and Mercury API at https://api.mercury.com/api/v1.

Other comparisons with BILL or Mercury API

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.