Terrano
Security

You are handing us your phones.
We know what that means.

Those handsets hold accounts, balances and conversations. In plain terms: what protects them, and what we deliberately do not do.

Your rack talks only to you

Each rack has its own identity and credential, created at the factory and never reused. It belongs to one account and only that account sees it.

Encrypted the whole way

Everything between your rack, our servers and your browser travels over TLS. Nothing crosses the network in the clear, video included.

Two networks that never meet

The management channel is separate from the network the accounts operate on. The marketplace sees an ordinary phone on an ordinary line.

Isolation

One customer cannot reach another

This is the part we have been most careful with, because it is the one that cannot be fixed after the fact.

Checked on every request, not once at sign-in

An open session does not become trusted. Every order — open a screen, send a key, take a snapshot — is verified against the account that owns that rack.

  • Video reaches only the browser that asked for it
  • Refused attempts are recorded, not just blocked
  • Knowing an identifier is never enough to use it

Not everyone can do everything

Three roles, so the person who operates the handsets day to day is not the person who can change how the system works.

  • Administratorusers, racks and settings
  • Operatorcontrols handsets, changes nothing
  • Supervisorwatches, does not operate
Restraint

What we deliberately do not do

These are decisions, not gaps.

We do not store your screens

Video is relayed live and never written to disk. There is no archive of your handsets, because there is nothing to archive.

We do not record what you type

Unlock codes and text reach the phone and are gone. The log says a command was sent — never its contents.

We do not touch your phones

No custom firmware, no rooting, nothing installed on the handsets. Unplug the rack and they are exactly as they were.

We do not keep the rack credential

Only a one-way fingerprint. Reading our database would not let anyone impersonate your rack.

We do not reuse the pairing code

It is consumed when the rack is linked. Refurbishing issues fresh credentials and wipes the previous device list.

We do not leave documentation exposed

In production the technical interfaces are closed and the health check reveals no numbers about our customers.

Accounts

Passwords and sessions

Never stored as text

Argon2, the algorithm recommended today for exactly this. Not even we can read them.

Real requirements

Twelve characters, a number and a symbol. Common passwords are rejected, including their obvious variants.

Brute force gets nowhere

Sign-ins, sign-ups and rack pairings are rate limited per address. Guessing is not a viable route.

Short-lived sessions

Access is renewed continuously and expires on its own. A forgotten open tab is not a permanent door.

Your data

Where it lives, and for how long

In the European Union

Servers and backups stay in the EU. Nothing is transferred outside for processing.

Little, and for a reason

Your account, your racks, your device list and the activity log. We do not want the contents of your phones.

It leaves when you do

Unlinking a rack deletes its device list. Closing your account removes your data. No hidden copies.

You can take it with you

Activity and fault logs download as CSV whenever you want, in a format any spreadsheet opens.

Straight answers

The questions people actually ask

Can Terrano staff see my phones?

Screens are relayed only to browsers signed in to your account and are never stored. Access to production systems is limited to what keeping the service running requires, and it is logged.

What happens if my internet goes down?

The rack keeps working and reconnects on its own. Your phones carry on as normal — the rack does not control them, it lets you reach them. The gap is recorded in the fault log.

Can someone with my rack code use it?

No. The code links a rack to an account once and is consumed in the process. After that it is worthless, and pairing attempts are rate limited anyway.

Do you have two-factor authentication?

Not yet. It is the next thing we are building, and we would rather say so than imply otherwise. Meanwhile password requirements are enforced and every sign-in is logged.

What if a handset is lost or stolen?

The rack notices immediately and it appears in the fault log with the exact time. Nothing about that handset is stored on our side beyond its entry in your device list.

Are you certified?

We hold no certification today. We are a young product and we prefer to describe what we do rather than point at a badge. Everything on this page is implemented and you can verify it in the product.

Something missing from this page?

If your situation needs an answer we have not given, ask before you buy. We would rather tell you no than sell you a surprise.

See pricing