Effective September 2026
This notice explains what personal data Terrace Research, Inc. collects about the people who visit this website and use the Terrace service, why, who receives it, how long it is kept, and the rights you have.
Terrace Research, Inc. ("Terrace") is a Delaware corporation, 2810 N Church St STE 90208, Wilmington, DE 19802, United States. It provides a service to institutional investors that organizes the documents investment managers send them. Questions about this notice go to [email protected].
Investment professionals whose public professional information Terrace holds as reference data are covered by a separate notice, available on request.
Website visitors. Standard server logs, including the network address a request comes from, the pages requested, the time and the browser type, used to operate the site and detect abuse. The site uses only the cookies and browser storage needed to operate. If you use the access-request form, we receive the details you enter and use them to respond to you.
Users. Your name, email address, organization and role, provided by you or your organization when the account is created, so that we can identify you, give you access to the right workspace, secure your account and contact you about the service. Sign-in is handled through a managed identity service. Security and usage logs record which account did what and when, including the network address of the request, to keep the service secure and to answer your organization's questions. If your organization connects a mailbox, Terrace processes the messages and attachments within the scope of that connection and keeps a record of what it processed.
People named in documents. Names, roles and affiliations that appear in the materials a client supplies are extracted so that the client can organize its own records. Terrace does not use this data to contact anyone and does not sell it.
Where the law requires a legal basis, Terrace relies on its contract with your organization, its legitimate interest in operating a secure service, and its legal obligations.
Within Terrace, access to personal data is limited to the people who need it to operate the service. Personal data is shared with the service providers that operate the service on Terrace's behalf, such as cloud hosting and storage, identity, email and AI model providers, each engaged under terms that restrict their use of the data. The list of providers is given to client organizations. Terrace does not sell personal data and does not share it with advertisers. Terrace may disclose personal data where the law requires it or to protect its rights, its users or the public.
The service runs on cloud infrastructure in the United States, and personal data may be processed there and in the other locations where Terrace's providers operate. Where the law requires safeguards for a transfer of personal data across borders, Terrace relies on the safeguards available under that law.
Terrace keeps personal data for as long as it is needed for the purposes described in this notice, to meet legal obligations, and to resolve disputes and enforce agreements, and no longer. Logs are kept for a limited period and then deleted. The data in a client's workspace is kept for the term of the client's agreement and handled afterward as that agreement provides. Terrace's retention practices are described in documents provided to client organizations.
Depending on where you live, you may have the right to ask what personal data Terrace holds about you, to ask for it to be corrected or deleted, to object to or restrict its processing, or to receive a copy of it. Write to [email protected] with enough information to identify you. Terrace responds within the period the applicable law allows. Where the data belongs to a client's workspace, Terrace will refer your request to that client, which decides what is done with it. You may also complain to the data-protection authority where you live. Terrace does not sell personal data or use it for targeted advertising.
Terrace protects personal data with measures appropriate to its sensitivity, including encryption in transit and at rest, access controls that separate one client organization's data from another's, multi-factor authentication on administrative access, backups, and a written incident-response plan. Terrace's security documents are provided to client organizations and available to prospective clients on request.
Terrace may update this notice and will post the current version here with its effective date. Questions and requests: [email protected], or by post to the address in Section 1.
© 2026 Terrace Research, Inc. · Terms of Service