{
  "trust_level": "claimed",
  "official_brand_source": false,
  "verification_method": null,
  "verified_domain": null,
  "verified_at": null,
  "verification_last_checked_at": null,
  "verification_expires_at": null,
  "status": "active",
  "customer_handle": "visa-f26a1c9f",
  "certification_status": "not_certified",
  "registry_certified": false,
  "certification": null,
  "brand_name": "Visa",
  "response_scope": "full_tree",
  "integrity": {
    "version": 2,
    "publication_id": "833f0a14373330348b06b319d1e92bce24e6cef6a0d39a719183aed3b95c13ea",
    "revision_id": "f88d55bf-9994-49f3-ad39-1d48b75ad41d",
    "manifest_sha256": "c21ff6dcf16cc1ff739edb6ba75748ef84a41b33b9089b7862a9e612428d7303",
    "manifest_signature": "o+OkKuPaXFTUKW1KMA5shWqoDU+WI9YQVMAUrU9+KK1xn3WGAeWLvJx18azML9VHbNrfhfkW584S3QZuamDUBQ==",
    "manifest_signature_kid": "v1"
  },
  "verified": null,
  "schema": "bcp-readable-package-v1",
  "integrity_scope": "publication_manifest",
  "representation": "Derived readable representation; verify signatures against the canonical source files.",
  "canonical_registry_url": "https://registry.brandcontextprotocol.dev/brands/visa-f26a1c9f",
  "html_url": "https://registry.encodedbrands.ai/brands/visa-f26a1c9f",
  "files": [
    {
      "path": "/.well-known/brand/boundaries.md",
      "content": "---\nbcp_version: \"0.8\"\nfile_type: boundaries\nparent: https://registry.brandcontextprotocol.dev/visa-f26a1c9f/.well-known/brand.md\nlast_updated: 2026-09-04\n---\n\n# Boundaries\n\nThese boundaries are derived from public Visa sources. They are not private Visa policy and have not been owner-confirmed.\n\n## Hard nos\n\n```yaml\nhard_no:\n  - item: \"Do not present Visa as the issuer that sets a cardholder's rates, fees, credit limit, account terms, or individual eligibility.\"\n    tier: core\n    rationale: \"Visa-branded payment products are issued and administered by Visa's financial-institution clients.\"\n    source: \"https://www.sec.gov/Archives/edgar/data/1403161/000140316125000089/v-20250930.htm\"\n  - item: \"Do not promise that Visa has approved a chargeback, refund, fee waiver, or credit decision for an individual account.\"\n    tier: core\n    rationale: \"Visa's public chargeback guide says the issuing bank reviews the case and decides whether to reverse or uphold the disputed payment.\"\n    source: \"https://corporate.visa.com/en/solutions/acceptance/chargebacks.html\"\n  - item: \"Do not make an unqualified legal, regulatory, tax, compliance, or PCI compliance determination for a person or organization.\"\n    tier: core\n    rationale: \"These conclusions depend on facts, jurisdiction, and authorized professional review.\"\n    source: \"https://corporate.visa.com/en/resources/security-compliance.html\"\n  - item: \"Do not convert Visa's security programs into an absolute guarantee that an account, credential, transaction, or system is completely secure or fraud-free.\"\n    tier: core\n    rationale: \"Visa describes a multilayered security approach and evolving threats, not zero risk.\"\n    source: \"https://corporate.visa.com/en/about-visa/crs/securing-commerce.html\"\n  - item: \"Do not state that a network incident or outage is occurring, identify its cause, or give a restoration time without a current authorized Visa source.\"\n    tier: core\n    rationale: \"Incident claims are time-sensitive and should come from current official communications.\"\n    source: \"public-source safety rule; requires Visa confirmation\"\n```\n\n## Context-dependent rules\n\n```yaml\nsoft_no:\n  - item: \"Avoid explaining a sanctions, country, or service-availability decision beyond current public Visa statements.\"\n    tier: core\n    condition: \"It is acceptable to summarize a current official Visa statement accurately and with its date. Do not speculate about motives or undisclosed facts.\"\n  - item: \"Avoid detailed descriptions of security architecture, fraud models, or controls beyond material Visa has publicly disclosed.\"\n    tier: core\n    condition: \"Publicly documented capabilities may be summarized with a source; do not infer confidential design or effectiveness.\"\n  - item: \"Avoid comparative superiority claims.\"\n    tier: default\n    condition: \"Use only current, like-for-like, sourced data and identify the comparison period and scope.\"\n```\n\n## Claims needing exact qualifications\n\n```yaml\nqualification_rules:\n  zero_liability:\n    rule: \"Keep Visa's published exclusions and direct cardholders to their issuer for details.\"\n    exclusions: \"Does not apply to certain commercial card and anonymous prepaid transactions or transactions not processed by Visa; issuer investigation and other restrictions may apply.\"\n    source: \"https://www.visa.com/en-us/personal/security/zero-liability-policy\"\n  disputes:\n    rule: \"Say that the issuing bank investigates and decides the dispute; do not promise the result.\"\n    source: \"https://corporate.visa.com/en/solutions/acceptance/chargebacks.html\"\n  metrics:\n    rule: \"State the fiscal year, exact scope, and source. Do not label operational metrics externally audited without metric-specific evidence.\"\n    source: \"https://www.sec.gov/Archives/edgar/data/1403161/000140316125000089/v-20250930.htm\"\n```\n\n## Handoff guidance\n\n- Account terms, card declines, unauthorized transactions, and individual disputes: direct the person to the issuer or financial institution using the contact information on the credential or account.\n- Immediate safety, fraud, or financial harm: point to current official Visa and issuer support; do not continue as if the agent can investigate or resolve the account.\n- Legal, regulatory, privacy, security, media, partnership, or incident statements for publication: require an authorized Visa reviewer.\n\nDo not trigger escalation from keywords alone. Use the meaning and stakes of the request.\n\n",
      "signature": "nnzveHhrDE+FOIpI8l7RDu5UXEP/4q1UaQdTQX88UhwlGvaAwp4UaM8nLdyTHAcZDt/IMAyVxadCooJ+RRJ8Dw==",
      "sha256": "5279071f245331bce7b4f809a4c076e70f59e6c0491261c5191a7ed7dac20db3",
      "kid": "v1",
      "content_type": "text/markdown; charset=utf-8",
      "html_url": "https://registry.encodedbrands.ai/brands/visa-f26a1c9f/files/boundaries",
      "json_url": "https://registry.encodedbrands.ai/brands/visa-f26a1c9f/files/boundaries/data.json",
      "source_url": "https://registry.encodedbrands.ai/brands/visa-f26a1c9f/source/boundaries.md",
      "canonical_source_url": "https://registry.brandcontextprotocol.dev/visa-f26a1c9f/.well-known/brand/boundaries.md"
    }
  ]
}
