Skip to content
Terrain
Data security & risk

Nothing of yours to lose

The security question usually asked of new software is “how well do you protect our data?” Terrain's answer is structural, and better: it holds none of your business to protect. Using Terrain means reading organised, cited public information — nothing more.

Risk-free by construction, not by promise

  • No client or business data is ingested, held or processed — no data feeds, no CRM access, nothing installed in your estate, no write path to any of your systems.
  • It cannot act in your name — no send, post or write capability toward any external system. A design decision, not a setting.
  • If you stopped using it tomorrow, nothing of your business would remain inside it — because nothing of your business ever entered it.
  • Public data only — the FCA Register, Companies House, the UK trade press, firms' own sites. No special-category data, no consumer profiling.
  • Information-only — not financial advice; no recommendations; nothing consumer-facing.
  • Identity-gated access — a secure Zero-Trust login (SSO-capable) in front of every screen, plus per-person approval inside the app.
  • AI metered & cited — every AI call is metered, logged and budget-capped; generated briefs cite the public sources they draw on.
  • UK residency at rest — application and database on UK servers.
  • Backed up daily — with a tested restore path.

* Terrain's application and database run on UK servers. AI drafting is processed by Anthropic (US); only public firm and market context is ever sent — there is no client data in the system to send.

Running a formal review?

A detailed security & data due-diligence document — architecture, data handling, identity, AI governance, operations, with every control honestly labelled — is available on request. Ask for the due-diligence pack.

FAQ

Questions, answered