Data security & risk
Nothing of yours to lose
The security question usually asked of new software is “how well do you protect our data?” Terrain's answer is structural, and better: it holds none of your business to protect. Using Terrain means reading organised, cited public information — nothing more.
Risk-free by construction, not by promise
- No client or business data is ingested, held or processed — no data feeds, no CRM access, nothing installed in your estate, no write path to any of your systems.
- It cannot act in your name — no send, post or write capability toward any external system. A design decision, not a setting.
- If you stopped using it tomorrow, nothing of your business would remain inside it — because nothing of your business ever entered it.
- Public data only — the FCA Register, Companies House, the UK trade press, firms' own sites. No special-category data, no consumer profiling.
- Information-only — not financial advice; no recommendations; nothing consumer-facing.
- Identity-gated access — a secure Zero-Trust login (SSO-capable) in front of every screen, plus per-person approval inside the app.
- AI metered & cited — every AI call is metered, logged and budget-capped; generated briefs cite the public sources they draw on.
- UK residency at rest — application and database on UK servers.*
- Backed up daily — with a tested restore path.
* Terrain's application and database run on UK servers. AI drafting is processed by Anthropic (US); only public firm and market context is ever sent — there is no client data in the system to send.
Running a formal review?
A detailed security & data due-diligence document — architecture, data handling, identity, AI governance, operations, with every control honestly labelled — is available on request. Ask for the due-diligence pack.
FAQ