We collect it ourselves, so we can stand behind it.
Every Nordic company, from the national registers and the filings themselves. Refreshed daily, held in the EU.
Independently audited, continuously monitored, published in full.
-
SOC 2SOC 2
-
Independently audited against the SOC 2 criteria, with the underlying controls monitored continuously rather than once a year.Report available on request
-
GDPRGDPR
-
A Finnish company processing under European law, with a data processing agreement and a published privacy policy.Privacy policy published
-
EUEU infrastructure
-
Compute runs on AWS in Ireland and storage on MongoDB in Ireland. Both are named publicly, with their role.AWS · MongoDB · Ireland
-
LiveLive controls
-
Security controls across infrastructure, product, organisation and governance. The current status of each is shown in the Trust Center.Updated continuously
How we collect it. How we protect it.
Nordic data, kept in the EU

Nordic data, kept in the EU
Three places to look closer.
The fields, the documents behind them, and the evidence that both are handled properly.
-
01Structured data
550+ documented fields across ten families: firmographics, financials, decision-makers, group structure, technologies, vehicles and property. Every one addressable and traceable to its register.
See the catalogue → -
02Unstructured data
Annual reports, meeting minutes, budgets, strategies and web text. Parsed into citable lines, classified into document types, retrievable by question.
Read the documents → -
03Trust Center
Live status for all our security controls, our compliance position, and the infrastructure we run on: named, dated and open to anyone.
Open the Trust Center →
What buyers and review teams ask us first
From each country’s national business register: PRH and the Finnish Trade Register in Finland, Bolagsverket in Sweden, Brønnøysundregistrene in Norway and Erhvervsstyrelsen (CVR) in Denmark, plus financial statements, public filings and company websites. All collected first-hand, cross-checked and merged into one record per company, with every field pointing back to its source.
Structured data is the typed, comparable layer: 550+ documented fields across ten families, queried by field path when the answer has to be exact. Unstructured data is the documents behind those numbers: filings, meeting minutes, budgets and web text, parsed into lines you can ask questions of and quote with a source.
On AWS and MongoDB infrastructure in Ireland, inside the EU, both named publicly in our Trust Center. Privileged access to the production database, network, operating systems and firewall is restricted to authorised people with a business need, and remote access requires multi-factor authentication.
Yes. Company records come from official registries, filings and public sources. Contact data covers people in a professional role, processed under legitimate interest, with the source recorded on every field and objection and erasure honoured on request.
We are SOC 2 audited and GDPR compliant. The Trust Center lists all the controls we monitor across infrastructure, product, organisational and internal security, with the current status of each. The SOC 2 report is available on request.
Infrastructure is monitored by tooling that alerts on predefined thresholds, and we notify customers of critical system changes that may affect their processing. Personal-data breaches are reported within the timelines GDPR requires.
You can export everything you created at any time: lists, tags, notes and enrichment history. After termination your account data is deleted in line with the retention terms set out in your data processing agreement.
Most of it is already answered in the Trust Center: compliance status, monitored controls and the infrastructure we run on. Send anything left over to security@vainu.io and our security team will pick it up.
What buyers and review teams ask us first
From each country’s national business register: PRH and the Finnish Trade Register in Finland, Bolagsverket in Sweden, Brønnøysundregistrene in Norway and Erhvervsstyrelsen (CVR) in Denmark, plus financial statements, public filings and company websites. All collected first-hand, cross-checked and merged into one record per company, with every field pointing back to its source.
Structured data is the typed, comparable layer: 550+ documented fields across ten families, queried by field path when the answer has to be exact. Unstructured data is the documents behind those numbers: filings, meeting minutes, budgets and web text, parsed into lines you can ask questions of and quote with a source.
On AWS and MongoDB infrastructure in Ireland, inside the EU, both named publicly in our Trust Center. Privileged access to the production database, network, operating systems and firewall is restricted to authorised people with a business need, and remote access requires multi-factor authentication.
Yes. Company records come from official registries, filings and public sources. Contact data covers people in a professional role, processed under legitimate interest, with the source recorded on every field and objection and erasure honoured on request.
We are SOC 2 audited and GDPR compliant. The Trust Center lists all the controls we monitor across infrastructure, product, organisational and internal security, with the current status of each. The SOC 2 report is available on request.
Infrastructure is monitored by tooling that alerts on predefined thresholds, and we notify customers of critical system changes that may affect their processing. Personal-data breaches are reported within the timelines GDPR requires.
You can export everything you created at any time: lists, tags, notes and enrichment history. After termination your account data is deleted in line with the retention terms set out in your data processing agreement.
Most of it is already answered in the Trust Center: compliance status, monitored controls and the infrastructure we run on. Send anything left over to security@vainu.io and our security team will pick it up.
Judge the data on your own accounts.
Book a demo to see the coverage and depth for your exact segment, or send your security questionnaire to security@vainu.io.
Judge the data on your own accounts.
Book a demo to see the coverage and depth for your exact segment, or send your security questionnaire to security@vainu.io.