Access tiers
Merki has three access tiers. They differ in who may use them and what has to be verified first, not in the quality of inference. The full comparison is in the tier matrix.
Regular
Open to anyone, at any age. You get hosted models and BYOK, credit-based billing, and the standard data handling. No verification is required.
Roleplay
For adults, 18 and over. Roleplay can serve adult content, so it is age gated. The check is age assurance through Sumsub, not a full identity check. Merki pays for the check; retries after 24 hours. See Age and identity.
Cybersecurity
For accountable operators. Cybersecurity keys can be pointed at live or remote servers, so the tier verifies who is responsible: identity verification through Sumsub, plus proof of domain control. The domain proof is the real gate, and there is no separate age gate on this tier.
Domain control means a DNS TXT record or a .merki challenge file, valid for at most 7 days. The domain rules matter here:
- No wildcards. A pattern such as
*.example.comis not accepted. - Permission does not propagate to subdomains. Verifying
example.comdoes not verifyapi.example.com. Each hostname is verified on its own.
See Cybersecurity verification.
Changing tiers
You can request a higher tier at any time from the dashboard. Lower tiers stay available, so enabling Cybersecurity does not remove access to Regular behavior. How: Tier upgrade.