generated: '2026-07-19' method: derived source: openapi/land-insight-api-openapi.yml docs: https://developers.land.tech/openapi standards: - id: openapi-3.0 conforms: true evidence: 'openapi: 3.0.3 published at https://developers.land.tech/_spec/openapi.yaml' - id: rest conforms: true evidence: Resource-oriented HTTP paths with GET detail lookups and POST search/batch operations. - id: api-key-auth conforms: true evidence: components.securitySchemes.ApiKeyAuth - apiKey in header, X-API-Key. - id: oauth2 conforms: false evidence: No oauth2 security scheme in the spec and no OAuth documented on the developer portal. - id: openid-connect conforms: false - id: rfc9457-problem-details conforms: false evidence: >- Error responses use application/json with a bespoke Forbidden schema; no application/problem+json media type appears anywhere in the spec. - id: json-api conforms: false evidence: >- Responses use a bespoke {"data": {"": ...}} wrapper rather than the JSON:API document structure, and the application/vnd.api+json media type is not used. - id: geojson conforms: true evidence: >- Feature responses carry boundary geometry and searches accept Polygon / PointWithRadius search locations modelled on GeoJSON geometry objects. - id: ogc-api-features conforms: false evidence: >- Geospatial data is served through bespoke collection endpoints, not the OGC API - Features /collections/{id}/items contract. - id: pagination conforms: false evidence: >- No page/cursor/limit/offset parameters; search operations return a single bounded array capped at 100,000 IDs. See conventions/land-insight-conventions.yml. - id: idempotency conforms: false evidence: >- No idempotency key contract. The API exposes no state-changing operations. See conventions/land-insight-conventions.yml. - id: webhooks conforms: false evidence: No webhooks, callbacks or event surface in the spec or docs. - id: iso-27001 conforms: true evidence: >- LandTech publicly states it has been granted ISO 27001 certification, covering "the tech, the people, the processes - every part of the business". source: https://land.tech/blog/security - id: gdpr conforms: true evidence: GDPR and UK data protection compliance stated alongside the ISO 27001 announcement, and a published DPA. source: https://land.tech/legal/dpa - id: soc2 conforms: false evidence: No SOC 2 claim found on land.tech. data_sources: note: >- The API republishes UK public-sector reference data. These are upstream data standards the payload conforms to rather than protocol standards. registries: - HM Land Registry (title numbers, ownership, leases) - Ordnance Survey AddressBase (UPRN, property classification codes) - ONS GSS codes (geographic area identifiers) - Companies House (corporate ownership) - Valuation Office Agency - Historic England - Environment Agency (flood zones) - Homes England Land Hub - Renewable Energy Planning Database (REPD) - Royal Mail