PayMeMerchantBot is the website crawler of PayMe, a payment service provider. It reads public pages of merchants' websites (home, about, contact, terms, privacy, shipping and refund policies, robots.txt, sitemaps) and, for online shops, the public product catalog the shop's platform publishes (Shopify storefront JSON, WooCommerce Store API), to check merchants' identity, policies and the goods they sell. It does not log in, submit forms, buy, or collect personal data beyond what the site publishes.
User-Agent:
PayMeMerchantBot/1.0 (+https://payme.io/bot)
It signs its requests with Web Bot Auth
(HTTP Message Signatures, RFC 9421, Ed25519). Signature-Agent is https://payme.io; the
public keys are at /.well-known/http-message-signatures-directory
(current key id VvTfCkzNgab3Q9ZF4M4Pk21NiyyrIQwYTV544xMMXlA).
robots.txt for the token PayMeMerchantBot (and *). To keep it out:
User-agent: PayMeMerchantBot Disallow: /
Crawl-delay when robots.txt asks for one.429 / Retry-After and on errors, and revisits a site about once a month.Questions, problems or opt-out requests: support@payme.io.